CN104539406A - Double control network encryptor system - Google Patents

Double control network encryptor system Download PDF

Info

Publication number
CN104539406A
CN104539406A CN201410730196.XA CN201410730196A CN104539406A CN 104539406 A CN104539406 A CN 104539406A CN 201410730196 A CN201410730196 A CN 201410730196A CN 104539406 A CN104539406 A CN 104539406A
Authority
CN
China
Prior art keywords
network
data
machine
encryption machine
network encryption
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410730196.XA
Other languages
Chinese (zh)
Inventor
刘方
姜凯
梁智豪
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Inspur Group Co Ltd
Original Assignee
Inspur Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Inspur Group Co Ltd filed Critical Inspur Group Co Ltd
Priority to CN201410730196.XA priority Critical patent/CN104539406A/en
Publication of CN104539406A publication Critical patent/CN104539406A/en
Pending legal-status Critical Current

Links

Landscapes

  • Small-Scale Networks (AREA)

Abstract

The invention provides a double control network encryptor system, which comprises a network encryptor A and a network encryptor B. The network encryptor A and the network encryptor B perform network encryption simultaneously, use a high-speed data bus for data synchronization, guarantee consistency of the data at any time, and are connected by a heartbeat cable. The system is erected between an external network and an internal network. The network encryptor A and the network encryptor B of the system isolate the data of the internal network and the external network, encrypt data simultaneously and synchronize in real time; and connection of the encryptors by the heartbeat cable ensures that the other network encryptor is informed of taking charge of all encryption tasks when any one network encryptor goes down, so that the encrypted data is guaranteed to be safe and reliable.

Description

A kind of dual control network encryption machine system
Technical field
The present invention relates to the network safety filed of cloud computing, be used in controlled secure network application, specifically a kind of dual control network encryption machine system.
Background technology
Common network encryption machine in application process, occur system delay machine or machine breakdown time, the situation that network cannot communicate can be caused.The scheme of a kind of network more safely and reliably secret machine is needed to address this problem.
Summary of the invention
The object of this invention is to provide a kind of dual control network encryption machine system.
The object of the invention is to realize in the following manner, system comprises network encryption machine A and network encryption machine B, and two encryption equipment functions are consistent, and network encryption machine A and network encryption machine B is connected to outer net and Intranet, wherein:
1) network encryption machine A and network encryption machine B can by outer network data and intranet data completely isolated, the enciphered data of outer net is dealt into Intranet by encryption, and the data of Intranet are sent to outer net by encryption;
2) network encryption machine A is connected by high speed data bus with network encryption machine B, the data that real-time synchronization is mutual and encryption and decryption task;
3) have heartbeat to be connected between network encryption machine A and network encryption machine B, guarantee system network encryption machine delay machine time, data transmit and cryptographic tasks by another encryption equipment take over, guarantee data safety.
The invention has the beneficial effects as follows: the network encryption machine A of native system and network encryption machine B isolates intranet and extranet data, network encryption machine A and network encryption machine B works simultaneously, enciphered data real-time synchronization, heartbeat be connected ensure any network encryption machine delay machine time notify another adapter all cryptographic tasks, ensure enciphered data safe and reliable.
Accompanying drawing explanation
Fig. 1 is dual control network encryption machine system configuration schematic diagram.
Embodiment
With reference to Figure of description, method of the present invention is described in detail below.
System comprises network encryption machine A and network encryption machine B, and two encryption equipment functions are consistent, and network encryption machine A and network encryption machine B is connected to outer net and Intranet, wherein:
1) network encryption machine A and network encryption machine B can by outer network data and intranet data completely isolated, the enciphered data of outer net is dealt into Intranet by encryption, and the data of Intranet are sent to outer net by encryption;
2) network encryption machine A is connected by high speed data bus with network encryption machine B, the data that real-time synchronization is mutual and encryption and decryption task;
3) have heartbeat to be connected between network encryption machine A and network encryption machine B, guarantee system network encryption machine delay machine time, data transmit and cryptographic tasks by another encryption equipment take over, guarantee data safety.
Except the technical characteristic described in specification, be the known technology of those skilled in the art.

Claims (1)

1. a dual control network encryption machine system, is characterized in that, system comprises network encryption machine A and network encryption machine B, and two encryption equipment functions are consistent, and network encryption machine A and network encryption machine B is connected to outer net and Intranet, wherein:
1) network encryption machine A and network encryption machine B can by outer network data and intranet data completely isolated, the enciphered data of outer net is dealt into Intranet by encryption, and the data of Intranet are sent to outer net by encryption;
2) network encryption machine A is connected by high speed data bus with network encryption machine B, the data that real-time synchronization is mutual and encryption and decryption task;
3) have heartbeat to be connected between network encryption machine A and network encryption machine B, guarantee system network encryption machine delay machine time, data transmit and cryptographic tasks by another encryption equipment take over, guarantee data safety.
CN201410730196.XA 2014-12-05 2014-12-05 Double control network encryptor system Pending CN104539406A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410730196.XA CN104539406A (en) 2014-12-05 2014-12-05 Double control network encryptor system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410730196.XA CN104539406A (en) 2014-12-05 2014-12-05 Double control network encryptor system

Publications (1)

Publication Number Publication Date
CN104539406A true CN104539406A (en) 2015-04-22

Family

ID=52854879

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410730196.XA Pending CN104539406A (en) 2014-12-05 2014-12-05 Double control network encryptor system

Country Status (1)

Country Link
CN (1) CN104539406A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105933271A (en) * 2015-12-29 2016-09-07 中国银联股份有限公司 Data processing method and apparatus based on encoder

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101753553A (en) * 2008-12-08 2010-06-23 北京财富天湖科技有限公司 Safety isolating and message switching system and method
CN102316108A (en) * 2011-09-09 2012-01-11 周伯生 Device for establishing network isolated channel and method thereof
CN103853634A (en) * 2014-02-26 2014-06-11 北京优炫软件股份有限公司 Disaster recovery system and disaster recovery method
CN104168324A (en) * 2014-08-26 2014-11-26 浪潮集团有限公司 Safe cloud storage layer

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101753553A (en) * 2008-12-08 2010-06-23 北京财富天湖科技有限公司 Safety isolating and message switching system and method
CN102316108A (en) * 2011-09-09 2012-01-11 周伯生 Device for establishing network isolated channel and method thereof
CN103853634A (en) * 2014-02-26 2014-06-11 北京优炫软件股份有限公司 Disaster recovery system and disaster recovery method
CN104168324A (en) * 2014-08-26 2014-11-26 浪潮集团有限公司 Safe cloud storage layer

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105933271A (en) * 2015-12-29 2016-09-07 中国银联股份有限公司 Data processing method and apparatus based on encoder
CN105933271B (en) * 2015-12-29 2020-05-01 中国银联股份有限公司 Data processing method and device based on encryption machine

Similar Documents

Publication Publication Date Title
WO2016190990A3 (en) Method, apparatus, and system for cloud-based encryption machine key injection
CN105406960B (en) A kind of method of information encryption and decryption
JP2018518090A5 (en)
WO2014139341A8 (en) Key management method and system
EP4325804A3 (en) Multi-perimeter firewall in the cloud
EP4250637A3 (en) Dynamic offline encryption
IN2014CH00971A (en)
WO2014207581A3 (en) Processing guest event in hypervisor-controlled system
GB2567990A (en) Data protection system and method
WO2016060722A3 (en) Homomorphic encryption in a healthcare network environment, system and methods
MX2017001646A (en) Method and system for reconstructing obstructed face portions for virtual reality environment.
MX2017005313A (en) Transaction messaging.
WO2015119679A3 (en) Method and system for securely establishing cryptographic keys for aircraft-to-aircraft communications
WO2014116528A3 (en) Providing an encrypted account credential from a first device to a second device
WO2017019201A8 (en) Cryptographic assurances of data integrity for data crossing trust boundaries
NZ746653A (en) Access control for encrypted data in machine-readable identifiers
WO2015175426A8 (en) Managing nic-encrypted flows for migrating guests or tasks
SG10201907538SA (en) Cloud encryption key broker apparatuses, methods and systems
GB2528226A (en) Method performed by at least one server for processing a data packet from a first computing device to a second computing device to permit end-to-end
MX2017000430A (en) Networked access control system.
IN2014DN09465A (en)
EP3118771A4 (en) Confidential data management method and device, and security authentication method and system
EP3734928A4 (en) Method for virtual machine to access remote acceleration device, and system
MX2016003801A (en) Bus system, and method for operating such a bus system.
WO2018213744A3 (en) Reducing compromise of sensitive data in virtual machine

Legal Events

Date Code Title Description
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20150422