CN105871873A - Security encryption authentication module for power distribution terminal communication and method thereof - Google Patents

Security encryption authentication module for power distribution terminal communication and method thereof Download PDF

Info

Publication number
CN105871873A
CN105871873A CN201610284505.4A CN201610284505A CN105871873A CN 105871873 A CN105871873 A CN 105871873A CN 201610284505 A CN201610284505 A CN 201610284505A CN 105871873 A CN105871873 A CN 105871873A
Authority
CN
China
Prior art keywords
distribution
message information
encryption
message
authentication module
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610284505.4A
Other languages
Chinese (zh)
Inventor
邵立嵩
陈宁
王传勇
韩蓬
张健
王坤
代二刚
杨凤文
康文文
孙宝峰
王绪浩
张凯
刘帅
马力
梁野
高明慧
谷丰强
多志林
马铭
冉利楠
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
State Grid Corp of China SGCC
State Grid Shandong Electric Power Co Ltd
Beijing Kedong Electric Power Control System Co Ltd
Nanjing NARI Group Corp
Zaozhuang Power Supply Co of State Grid Shandong Electric Power Co Ltd
Original Assignee
State Grid Corp of China SGCC
Beijing Kedong Electric Power Control System Co Ltd
Nanjing NARI Group Corp
Zaozhuang Power Supply Co of State Grid Shandong Electric Power Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by State Grid Corp of China SGCC, Beijing Kedong Electric Power Control System Co Ltd, Nanjing NARI Group Corp, Zaozhuang Power Supply Co of State Grid Shandong Electric Power Co Ltd filed Critical State Grid Corp of China SGCC
Priority to CN201610284505.4A priority Critical patent/CN105871873A/en
Publication of CN105871873A publication Critical patent/CN105871873A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0442Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0823Network architectures or network communication protocols for network security for authentication of entities using certificates
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0869Network architectures or network communication protocols for network security for authentication of entities for achieving mutual authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0838Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures

Abstract

The invention discloses a security encryption authentication module for power distribution terminal communication and a method thereof. The security encryption authentication module comprises a main control chip, a commercial code algorithm encryption chip, a communication interface and a storage unit; the main control chip is connected with the commercial code algorithm encryption chip, the communication interface and the storage unit and receives message information of a front-end processor of a distribution master station and a distribution terminal through safe interface software of the distribution terminal to overall manages the other modules, and the commercial code algorithm encryption chip encrypts or decrypts the message information received by the main control chip. The special encryption chip is adopted in the security encryption authentication module, response speed is increased, and dependence on a CPU and an internal storage is reduced. Besides, communication security is greatly improved by means of bidirectional authentication of verifying each other's identity between the security encryption authentication module and a distribution security interaction gateway.

Description

A kind of safety encryption authentication module for distribution terminal communication and method thereof
Technical field
The present invention relates to a kind of safety encryption authentication module, particularly relate to a kind of for distribution terminal The safety encryption authentication module of communication, also relates to realize distribution terminal communication based on this module Encryption and authentication method, belong to technical field of electric power communication.
Background technology
Along with the fast development of national economic development, power automatic system is used widely. The distribution terminal with distribution network control function disperses to be deployed in distribution network in a large number.Distribution Main website sends instruction by front end processor and each distribution terminal realizes the modes such as remote measurement, remote signalling, remote control Long-range management, thus indirectly realize the control to distribution network.In recent years, along with telecommunications network The fast development of network, distribution terminal uses public by wireless communication unit based on serial communication Communication network communicate, distribution main website building security access area promote corresponding security protection Ability.
It addition, along with networking, informationalized deepen continuously, to distribution terminal secure communication Requiring more and more higher, relevant departments' successively issue associated documents are for specification distribution terminal safety Communication.Such as in 2011, " low and medium voltage distribution network automated system security protection supplementary provisions " In be distinctly claimed that " no matter using which kind of telecommunication mode, distribution automation system should prop up Holding unilateral authentication function based on unsymmetrical key technology, the guidance command that main website issues should be with Digital signature based on scheduling certificate, side, substation or end side should be able to differentiate the numeral label of main website Name ".
2015, " distributing monitoring system security protection scheme " is distinctly claimed " to important son Stand and the communication of terminal can use two-way authentication to encrypt, it is achieved the two-way body between main website and substation Part differentiates, it is ensured that message confidentiality and integrity ".It addition, be distinctly claimed power distribution network security protection The intensity of two-way authentication should be stepped up, simultaneously need to original safety is prevented from unilateral authentication Watch box system and associated safety Protection Product are optimized upgrading.
In consideration of it, the upgrading for distribution terminal communication security has carried out substantial amounts of research, but, Prior art still suffers from following shortcoming:
1) existing distribution terminal safety communication technology mainly realizes in distribution terminal equipment, mainly Realizing algorithm for software, the response speed of its algorithm is slow, takies a large amount of CPU and memory source, Affect distribution terminal equipment work efficiency.
2) existing distribution terminal safety communication technology uses unilateral authentication, and its algorithm is simple label Name algorithm, uses the PKI control message that sends distribution main website of distribution main website at distribution terminal In signature verify, the communication message of standard is still in plain text, is easily intercepted collection and analysis.
3) existing distribution terminal safety communication technology uses the PKI of distribution main website not to be to be with certificate Carrier, the effect duration of PKI cannot be completely secured with the safety of electron key.
4), in existing distribution terminal safety communication technology, distribution terminal does not has corresponding key safety Storage medium, does not use the unsymmetrical key of oneself in communication process, and distribution main website cannot Terminal identity is verified, there is the risk forging terminal.
5) existing distribution terminal generally uses based on business development is the technological architecture of core, supports Communication, but lack security protection, it is difficult to the network attack that reply is becoming increasingly rampant.
Summary of the invention
For the deficiencies in the prior art, the technical problem to be solved is to provide one Safety encryption authentication module and method thereof for distribution terminal communication.
For achieving the above object, the present invention uses following technical scheme:
A kind of safety encryption authentication module for distribution terminal communication, is deployed in distribution terminal On master control borad, including main control chip, state's close algorithm for encryption chip, communication interface and memory element;
Wherein, described main control chip algorithm for encryption chip close with described state, described communication respectively connects Mouthful and described memory element, preposition by the safe interface software receipt distribution main website of distribution terminal Other modules are managed as a whole by machine and the message information of described distribution terminal;
The message information that described main control chip is received by described state close algorithm for encryption chip is encrypted / decryption processing.
The most more preferably, described main control chip includes driving layer, functional interface layer and function logic Layer;Described function logic layer obtains distribution main website front end processor or the message information of distribution terminal, enters Row finds corresponding mould according to process demand by the corresponding interface of described functional interface layer after analyzing Block, is processed by corresponding driving of described driving layer, and the message information after processing passes through Serial ports is sent to distribution terminal or distribution main website front end processor.
The most more preferably, described state close algorithm for encryption chip include mastery routine, mh, Mode interface routine, cryptographic algorithm driver, SPI communication driver and serial communication drive Dynamic program;
When message information is sent to described state close algorithm for encryption chip by described main control chip, institute State state's close algorithm for encryption chip to be interrupted described in acquisition by the reception of described SPI communication driver Message information, is sent to described mastery routine, described mastery routine according to type by described message information Being sent to described mh resolve according to structure, the message information after resolving is sent out Deliver to described cryptographic algorithm driver and be encrypted/decryption processing, will after encrypt/having deciphered Message information is sent back to described mh and carries out organized processing, then beams back described main journey Sequence, described mastery routine is called described SPI communication driver and message information is sent back to described master Control chip.
The most more preferably, described memory element is demonstrate,proved in order to the PKI preserving safe distribution of electric power interactive gateway Book and the PKI of distribution main website unilateral authentication;
When message information is sent to described main control chip by safe distribution of electric power interactive gateway, described state Close algorithm for encryption chip passes through the PKI of described distribution main website unilateral authentication to described message information Sender carries out authentication, by the public key certificate of described safe distribution of electric power interactive gateway to carrying out Session key agreement.
The most more preferably, described safe interface software includes that message intercept submodule, message are located in advance Reason submodule and security module drive;
Wherein, operation layer and the communication layers of the distribution terminal that described packet capture submodule is intercepted and captured it Between message information, described message information is sent to described message pretreatment submodule, and connects Receive the message information that described message pretreatment submodule is beamed back;
Described security module drives and message information is sent to described main control chip, shown master control core Sheet calls security strategy by Policy Management interface and configures;Then by Message processing interface interchange Packet filtering submodule, described packet filtering submodule obtains the application protocol that message information is corresponding, Judge whether the application protocol that described message information is corresponding meets security strategy configuration, if it is satisfied, Message information is then sent to state's close algorithm for encryption chip process, and the report that process is completed Literary composition information back is to described message intercept submodule;Otherwise, then described message information was carried out Filter.
The most more preferably, the described safety encryption authentication module for distribution terminal communication, also Including electric power special encryption chip;
When described main control chip receives the message information with electric power proprietary algorithm processes, message Information will be sent to described electric power special encryption chip and be encrypted/decryption processing, will encrypt/ Message information after decryption processing returns described main control chip.
The most more preferably, the described safety encryption authentication module for distribution terminal communication, also Including LED display unit;
Described LED display unit shows the close algorithm of main control chip, state by the switch of LED Encryption chip and the current operating state of described electric power special encryption chip, determine described master control Chip, described state close algorithm for encryption chip and described electric power special encryption chip are the most correctly transported OK.
A kind of safe encryption and authentication method for distribution terminal communication, adds based on above-mentioned safety Close authentication module realizes, and comprises the steps:
S1, safety encryption authentication module uses unsymmetrical key to perform with safe distribution of electric power interactive gateway Two-way authentication conversates key agreement;
S2, is encrypted communication by session key, and safety encryption authentication module will be truncated to join The message information of electricity main website front end processor is sent to distribution terminal after being decrypted;Distribution will be truncated to The message information of terminal is sent to distribution main website front end processor after being encrypted;
S3, sets time threshold, when in communication between after time of advent threshold value, repeat step S1~ S2。
The most more preferably, in step sl, distribution main website front end processor is set up with distribution terminal and is communicated After connection, the safe interface software of distribution terminal obtains the distribution master received by distribution terminal Stand the message information of front end processor, message information is sent to safety and encrypts authentication module;Safety adds The packet filtering submodule of close authentication module obtains the application protocol that message information is corresponding, it is judged that institute State whether application protocol corresponding to message information meets security strategy configuration, if it is satisfied, then then Message information is sent to state's close algorithm for encryption chip process, and the message that process is completed Information back is to returning to safe interface software;Otherwise, described message information is filtered.
The most more preferably, in step sl, before described safety encrypts authentication module and distribution main website Machine of putting uses unsymmetrical key to perform two-way authentication and conversates key agreement, comprises the steps:
S11, safety encryption authentication module generates unsymmetrical key pair, derives certificate when initializing Request, after grant a certificate, imports safe distribution of electric power interactive gateway by public key certificate;
S12, by public key certificate and the PKI of distribution main website unilateral authentication of safe distribution of electric power interactive gateway Import to safety encrypt in authentication module;
S13, safe distribution of electric power interactive gateway generates " consulting request " message with random number, Described " consulting request " message is signed by the private key using safe distribution of electric power interactive gateway, and It is sent to distribution terminal;
S14, after the safe interface software in distribution terminal obtains " consulting request " message, sends Use safe distribution of electric power interactive gateway to safety encryption authentication module, described safety encryption authentication module PKI in public key certificate carries out signature verification to " consult request " message, generate one with " consulting response " message of random number, uses the private key of safety encryption authentication module to sign, And it is sent to safe interface software, it is sent to distribution main website by distribution terminal;
S15, safe distribution of electric power interactive gateway is intercepted and captured " consulting response " message, is used safety encryption to recognize The PKI of card module carries out signature verification to " consulting response " message, generates " consulting successfully " Message, uses the private key of safe distribution of electric power interactive gateway to sign, and is sent to distribution terminal;
S16, safe interface software is intercepted and captured " consulting successfully " message, is sent to safety and encrypts certification Module, uses the PKI in safe distribution of electric power interactive gateway public key certificate to " consulting successfully " message Carry out signature verification;
S17, safety encryption authentication module utilizes, with safe distribution of electric power interactive gateway, consult to obtain two Generating random number session key.
Safety encryption authentication module for distribution terminal communication provided by the present invention, uses special Encryption chip, promote response speed, and reduce the dependence to CPU and internal memory.Safety encryption is recognized Card module uses unsymmetrical key with safe distribution of electric power interactive gateway, performs two-way authentication and conversates close Key is consulted, it is achieved the two-way authentication of checking the other side's identity;After session key agreement, use association The symmetric key of business is encrypted/decryption processing, has greatly accelerated safe encryption authentication module encryption/solution The close time, improve communication efficiency.In addition, the carrier of PKI is certificate, can basis The safety of certificate chain and definitiveness, ensure that certificate information cannot be tampered, and can also sentence simultaneously Disconnected certificate is the most expired, it is ensured that the safety of PKI itself.
Accompanying drawing explanation
Fig. 1 is the structural representation that safety provided by the present invention encrypts authentication module;
Fig. 2 is that in safety encryption authentication module provided by the present invention, the structure of main control chip is shown It is intended to;
Fig. 3 is in safety encryption authentication module provided by the present invention, state's close algorithm for encryption chip Structural representation;
Fig. 4 is in an embodiment provided by the present invention, the structure of distribution terminal software system Schematic diagram;
Fig. 5 is in an embodiment provided by the present invention, the framework map of distribution terminal communication.
Detailed description of the invention
With specific embodiment, the technology contents of the present invention is carried out the most concrete below in conjunction with the accompanying drawings Explanation.
As it is shown in figure 1, the safety encryption certification for distribution terminal communication provided by the present invention Module (security module), is deployed on distribution terminal master control borad by special purpose interface.Special purpose interface USB interface, SPI interface, pci interface etc. can be made, in embodiment provided by the present invention, Use SPI interface.This is encrypted safely authentication module and includes main control chip, state close algorithm for encryption core When sheet, electric power special encryption chip, communication interface, LED display unit, memory element, RTC Clock unit and watchdog unit.Wherein, main control chip algorithm for encryption chip close with state, electricity respectively Power special encryption chip, communication interface, LED display unit, memory element, RTC clock unit It is connected with watchdog unit, before obtaining distribution main website by the safe interface software of distribution terminal Put the message information of machine and distribution terminal, other modules are managed as a whole.Wherein, distribution The safe interface software of terminal disposition obtains the distribution main website by the interface such as network interface, serial ports The message information of front end processor, by SPI interface be sent to safety encrypt authentication module carry out filtering, Decryption processing, and will process after message information be sent to distribution terminal.In addition, distribution The safe interface software of terminal obtains the message information that distribution terminal sends, and is sent out by SPI interface Deliver to safety encrypt authentication module and be encrypted, and the message information after processing is by joining The interfaces such as the network interface of electric terminals, serial ports are sent to distribution main website front end processor.
As in figure 2 it is shown, main control chip uses MK22FN512VLH12 chip, main responsible to cutting Between the distribution main website front end processor and the distribution terminal that obtain, all communication messages carry out logical process, remote The processes such as the process of end management, the process of configuration item and control encryption/deciphering.Main control chip by Three level compositions, including driving layer, functional interface layer and function logic layer.Function logic layer Obtain distribution main website front end processor or the message information of distribution terminal, according to processing need after being analyzed Seek the module being found correspondence by the corresponding interface of functional interface layer, driven by the correspondence driving layer Moving and process, the message information after processing is sent to distribution terminal or distribution main website front end processor. Wherein, IIC drives, SPI communication drives, serial communication drives and GPIO drives to drive layer to include Dynamic, these drive the interface with standard to provide service interface for last layer.Functional interface layer includes RTC clock interface, enciphering and deciphering algorithm calling interface, memory interface, transceiver communication interface, join Put and debug calling interface, Policy Management interface, Message processing interface, house dog interface, LED Display interface and packet filtering submodule.Functional interface layer is mainly for realizing concrete function offer Interface, finds corresponding module by interface, completes required function.Wherein, tactical management Interface is responsible for maintenance management security strategy, the internal preset one group of safe plan of safety encryption authentication module Slightly configure, call the safety internal preset one group of safety of encryption authentication module by Policy Management interface Strategy configuration, it is achieved the filtration to message information correspondence application protocol, also may be used by long-range management To revise the configuration of security strategy.Packet filtering submodule is by Message processing interface interchange, mainly Be responsible for message format parsing, security strategy performs, the packet filtering submodule report to required process Literary composition information carries out application protocol format analysis, identifies application protocol and content, according still further to safe plan Content slightly is mated one by one.If the security strategy of being unsatisfactory for, then this message is filtered, return Error message;If all meeting security strategy, then carry out enciphering/deciphering process according to set flow process. Enciphering and deciphering algorithm calling interface can call appointment chip according to the handling process that security strategy specifies Message is processed, it is possible to call state's close algorithm for encryption chip or electric power special encryption chip is real Existing encryption and decryption functions.Function logic layer mainly utilizes the functional interface that functional interface layer provides, root According to concrete reality, call different modules and realize function services, final realization communication Two-way encryption.The detailed functions driving layer, functional interface layer and function logic layer is carried out below Detailed description.
Communication interface uses based on SPI interface standard, in order to responsible security module and distribution terminal CPU communicates, and receives or sends data, in order to realize the final purpose of secure communication.When The safe interface software of distribution terminal obtains the distribution main website by the interface such as network interface, serial ports During the message information of front end processor, or when obtaining message information that distribution terminal sends, it is sent to Safety encrypts the communication interface (SPI communication interface) of authentication module, and communication interface receives message letter During breath, producing interrupt signal in main control chip, main control chip calls interrupt routine and uses SPI Communication drivers reads the message information received;When message information process completed sends Time, main control chip calls SPI communication driving and the most packaged message information is sent to distribution eventually End, the security module in safe interface software drives and gets message information, passes through interception module It is sent to operation layer or communication layers according to original operation flow.
Debugging and configuration interface include two chips, all support RS232 serial communication, in order to Realize the debugging of host CPU chip and the debugging of encryption chip.According to main control chip function logic layer Instruction, by configure and debug calling interface call debugging and configuration interface, driven by serial ports The dynamic configuration realized the safety encryption various information of authentication module, meets the need of different situations with this Ask.
In embodiment provided by the present invention, state's close algorithm for encryption chip is carried out with main control chip Communication, it is achieved various encryption/decryption algorithm, including SM2 rivest, shamir, adelman, SM3 hash Algorithm, SM4 symmetric encipherment algorithm etc., accelerate to calculate speed with this.State's close algorithm for encryption chip Started by main control chip, call state's close algorithm for encryption chip by enciphering and deciphering algorithm calling interface, Driving by calling spi bus, the data and key that need encryption and decryption are sent into state by main control chip In close algorithm for encryption chip, state's close algorithm for encryption chip return data to main after processing Control chip and the interface of return is provided.
As it is shown on figure 3, state's close algorithm for encryption chip includes mastery routine, mh, tune Formula interface routine, cryptographic algorithm driver, SPI communication driver and serial communication drive Program.Wherein, mastery routine judges in order to the type completing all message informations to reception, And realize different data for different types of message information and process (to enter during follow-up Row describe in detail), and will process after data be sent in mh, process the most at last The message information completed is sent back in main control chip by SPI communication driver again.Serial communication Driver is primarily to the serial ports realizing this state close algorithm for encryption chip uses interface.SPI Communication driver achieves the communication function of main control chip algorithm for encryption close with this state chip and connects Mouthful, interrupt obtaining the message come from main control chip transmission by receiving of SPI communication driver Information.Mh in order to message information that SPI communication driver is obtained according to knot Structure resolves, or the message information after organized processing encryption/deciphering.Cryptographic algorithm drives journey Sequence is used for realizing being encrypted/decipherment algorithm with special coprocessor, and its algorithm contains SM2 Rivest, shamir, adelman, SM3 hashing algorithm, SM4 symmetric encipherment algorithm, support random number simultaneously Other algorithms such as generation.
When main control chip has message information to need to be sent to state's close algorithm for encryption chip, by adding Decipherment algorithm calling interface calls the SPI communication driver of state's close algorithm for encryption chip, passes through Spi bus drives the SPI communication driver calling state's close algorithm for encryption chip, it is achieved master control Chip and the communication function interface of state's close algorithm for encryption chip, by SPI communication driver Receive to interrupt obtaining and send, from main control chip, the message information of coming, be sent to mastery routine, mastery routine It is sent to mh according to type after message information is processed carry out according to structure Resolving, the message information after resolving is sent to cryptographic algorithm driver and is encrypted/deciphers, After encrypt/having deciphered, message information is sent back to mh and carries out organized processing, afterwards Beaming back mastery routine, mastery routine is called SPI communication driver and is finally sent back to by message information main In control chip.Debugging interface program, during state's close algorithm for encryption chip debugging, passes through serial ports The interface of Communication driver is responsible for being exported all Debugging message by serial ports.
Electric power special encryption chip, for processing electric power dedicated encrypted algorithm, was communicating Cheng Zhong, when main control chip receives the ciphertext data with electric power dedicated encrypted algorithm for encryption, main Control chip will call the corresponding interface function and to transmit data to electric power special by spi bus driving With in encryption chip, it is responsible for carrying out the deciphering of ciphertext by electric power special encryption chip afterwards, and will Plaintext after deciphering returns data to main control chip by spi bus.When main control chip receives Data need to use electric power tailor-made algorithm when being encrypted, main control chip calls corresponding interface Function is also driven by spi bus and sends the data to this electric power special encryption chip, afterwards by Encryption data is returned to main control chip by spi bus by this chip again.
Memory element uses FLASH chip, mainly stores needed for this encrypts authentication module safely Configuration item, and the distribution peace used in distribution terminal and distribution main website front end processor communication process The public key certificate of full interactive gateway and the PKI of distribution main website unilateral authentication, be used for distribution main website The message information that front end processor is sent carries out identity validation and deciphering.In enforcement provided by the present invention In example, memory element is used for preserving this every Configuration Values encrypting safely authentication module and this safety Encryption certificate used by authentication module.Certificate information is sent to by main control chip by memory interface Memory element, calls spi bus and drives realize with memory element mutual, provide external simultaneously Read-write interface, it is achieved the preservation of data and read functions.When needs carry out body to message information When part checking and deciphering, main control chip is transferred certificate from memory element and is sent to encryption chip.
RTC clock unit is RTC clock chip, mainly provides for safety encryption authentication module Current time reliably.RTC clock chip is connected with main control chip by iic bus, master control Message information is sent to RTC clock unit by RTC clock interface by chip, total by IIC Line drives the interaction realized with RTC clock chip, upper offer current time is inquired about, simultaneously Pair time etc. basic function.
Watchdog unit uses MAX823TEUK chip, is directly connected to main control chip, master control core " feeding-dog signal " is sent to watchdog unit by the timing of house dog interface by sheet, calls GPIO Drive and outside watchdog reset circuit is interacted, it is achieved exceptional reset function.When " feeding Canis familiaris L. Signal " stop after, watchdog unit will reset automatically safety encrypt authentication module.Guard the gate Canis familiaris L. unit mainly solves locked problem when exception occurs in main control chip, encrypts certification mould for safety The stability of block provides and ensures.
LED display unit is mainly used to show the current of state's close algorithm for encryption chip and main control chip With this, duty, determines that encryption chip and main control chip the most correctly run, and as existing Field engineer applied and debugging provide auxiliary information.By LED, main control chip shows that interface is by message Information is sent to LED display unit, calls GPIO and drives the light on and off function realizing LED.
In embodiment provided by the present invention, safety encryption authentication module also includes download interface. Download interface is the firmware in order to update state's close algorithm for encryption chip, realizes encrypting safely recognizing with this The upgrading of card module.
As shown in Figure 4, operation layer and communication layers are included in distribution terminal system architecture.Business The layer each business application of major deployments, it is achieved miscellaneous service logic function.Communication layers includes net The various communication interface such as network, serial ports, is responsible for business datum communication.Safe interface software is deployed in In distribution terminal software system, it is used for serving as between distribution terminal and safety encryption authentication module Safe interface, builds Secure Service layer, it is provided that to the intercepting and capturing of communication data packet, analyze, filter, The security services such as encryption/deciphering.Safe interface software includes: message intercept submodule, message are pre- Process submodule and security module drives.Wherein, packet capture submodule is used for intercepting and capturing distribution eventually Data stream between operation layer and the communication layers of end system, by the initial data streaming of sender To message pretreatment submodule, the result that message pretreatment submodule returns is passed to data stream Recipient.Message pretreatment submodule is mainly responsible for original data stream and safety encryption certification mould The built-in message form of block is changed, it is simple to safety encryption authentication module is corresponding by data stream Carry out judging to filter by agreement, strengthen the security protection to terminal communication.Security module drives Message information in order to be obtained by safe interface software sends safety to by SPI data/address bus and adds The main control chip of close authentication module, and send interrupt signal;Main control chip is connect by tactical management Mouth calls the internal preset one group of security strategy configuration of safety encryption authentication module;Then message is passed through Processing Interface calls packet filtering submodule, and the message of required process is believed by packet filtering submodule Breath carries out application protocol format analysis, identifies application protocol and content, according still further to security strategy Content is mated one by one.If the security strategy of being unsatisfactory for, then this message information is filtered, return Error message;If all meeting security strategy, then message information is sent to the close algorithm for encryption of state Chip.State's close algorithm for encryption chip interrupts obtaining from master by the reception of SPI communication driver Control chip sends the message information of coming, and is sent to mastery routine, and mastery routine is in order to complete reception The type of all message informations carries out judgement process, and the data after processing are sent at message In reason program, mh carries out enciphering/deciphering process to message information, and process is completed Message information sent back in main control chip by SPI communication driver, main control chip by send out Send interrupt signal, message information is returned to safe interface software.At safe interface software is incited somebody to action again Message information after reason is sent to operation layer or communication layers according to operation flow.Safe interface software Operation, be transparent relative to operation system, it is not necessary to original operation system is modified.
Fig. 4 is in one embodiment of the present of invention, the framework map of distribution terminal communication.Safety adds Close authentication module is deployed on distribution terminal master control borad by special purpose interface.Joining of distribution main website side Electricity secure interactive gateway is responsible for (should by safe distribution of electric power communication protocol with safety encryption authentication module By agreement) realize secure communication, when communicating, the safe interface software of distribution terminal obtains Take the message information of the distribution main website front end processor received by network interface or serial ports, or obtain distribution The message information that terminal sends, is sent to safety by communication interface and encrypts authentication module to distribution Secure communication protocols is identified filtering, to strengthen the security protection to terminal communication.Communicated Journey mainly includes that session key agreement communicates with data encryption two processes.Wherein, session key Negotiations process is that both sides exchange the random number with private key signature, by using public key verifications to sign Reach to verify the other side's identity, specified the session key of symmetric key algorithm by related algorithm structure For coded communication.In data encryption communication process, on the one hand, safety encryption authentication module Obtain distribution terminal by safe interface software and be sent to the communication data of distribution main website, use meeting Construct new communication data packet after words cipher key pair communication data encryption, passed by safe interface software Deliver to respective communication interface, then send distribution master to through wireless communication unit or light Network Communication unit Stand front end processor;On the other hand, safety encryption authentication module by the serial line interface of distribution terminal or It is preposition from distribution main website that network interface reception wireless communication unit or light Network Communication unit transmit The encryption data bag of machine, sends packet to safe interface by special purpose interface after deciphering soft again Part, is ultimately sent to distribution terminal operation layer application program.Specifically include following steps:
S1, after distribution main website front end processor is connected with distribution terminal connection setup, safety encryption is recognized Card module and safe distribution of electric power interactive gateway use unsymmetrical key execution two-way authentication to conversate close Key is consulted, it is achieved the two-way authentication of checking the other side's identity.
After distribution main website front end processor sets up communication connection with distribution terminal, the peace of distribution terminal Full interface software obtains the message information of the distribution main website front end processor received by network interface or serial ports, Message information is sent to safety by SPI interface and encrypts the main control chip of authentication module, concurrently Go out interrupt signal;In main control chip, transceiver communication interface interchange communication interface receives message information, Processed by Message processing interface interchange packet filtering submodule.
Call packet filtering submodule and be mainly responsible for message format parsing, security strategy execution, adjust With packet filtering submodule, the message information of required process is carried out application protocol format analysis, know Other application protocol and content, the content according still further to security strategy is mated one by one.If the safety of being unsatisfactory for Strategy, then filter this message information, returns error message;If all meeting safe plan Slightly, then carry out enciphering/deciphering process according to set flow process, by enciphering and deciphering algorithm interface, message is believed Breath is sent to state's close algorithm for encryption chip or electric power tailor-made algorithm chip processes.
State's close algorithm for encryption chip interrupts obtaining from master control by the reception of SPI communication driver Chip sends the message information of coming, and is sent to mastery routine, and mastery routine is in order to complete the institute received The type having message information carries out judgement process, and the data after processing are sent to Message processing In program, mh carries out enciphering/deciphering process to message information, and process is completed Message information is sent back in main control chip by SPI communication driver.If needing electric power special Algorithm chip carries out encryption and decryption process, then electric power tailor-made algorithm chip obtains report by SPI interface Literary composition data, utilize the symmetric key of session key agreement, message data are carried out enciphering/deciphering process, Data after process are returned to main control chip.Main control chip is by sending interrupt signal, by message Information returns to the message pretreatment submodule of safe interface software.Certification mould is encrypted by safety Safe distribution of electric power communication protocol is identified filtering by block, to strengthen the security protection to terminal communication.
Safety encryption authentication module is close with distribution main website front end processor employing unsymmetrical key consulting session Key, it is achieved the two-way authentication of checking the other side's identity, specifically includes following steps:
S11, safety encryption authentication module generates unsymmetrical key pair, derives certificate when initializing Request, after grant a certificate, imports safe distribution of electric power interactive gateway by public key certificate.
Safety encryption authentication module is first carried out it by main control chip after being powered on by distribution terminal and drives The initialization of hardware, in order to meet main control chip and the communication of other chips (module) and control, After completing the initialization that all hardware drives, read the configuration information in memory element, to peace In full encryption authentication module, the continuous item of unit configures.Afterwards, the close algorithm for encryption of state Chip generates unsymmetrical key pair, derives certificate request, imports safe distribution of electric power and hand over after grant a certificate Gateway mutually.Wherein, in embodiment provided by the present invention, state's close algorithm for encryption chip internal Contain SM2 rivest, shamir, adelman, SM3 hashing algorithm, SM4 symmetric encipherment algorithm, simultaneously Support other algorithms such as generating random number.The carrier of PKI is certificate, can be according to certificate chain Safety and definitiveness, ensure that certificate information cannot be tampered, and can also judge certificate simultaneously The most expired, it is ensured that the safety of PKI itself.
S12, by public key certificate and the PKI of distribution main website unilateral authentication of safe distribution of electric power interactive gateway Import to safety encrypt in authentication module.
After powering on for state's close algorithm for encryption chip, main control chip is by close for state algorithm for encryption chip institute The information such as the key needed are sent to state's close algorithm for encryption chip, in embodiment provided by the present invention In, main control chip obtains public key certificate and the distribution master of safe distribution of electric power interactive gateway from memory element Stand the PKI of unilateral authentication, by unidirectional to public key certificate and the distribution main website of safe distribution of electric power interactive gateway The PKI of certification imports in state's close algorithm security encryption authentication module.So that post-session is close When key is consulted, it is achieved the two-way authentication to the other side's identity.
S13, distribution main website front end processor is connected with distribution terminal foundation, and safe distribution of electric power interactive gateway is examined After measuring connection establishment, start the negotiations process of session key agreement, generate one with at random Number and symmetric key algorithm select " consulting request " message of information, and use safe distribution of electric power to hand over This message is signed by the private key of gateway mutually, then sends to distribution terminal by the connection set up " consult to ask " message.
S14, after the safe interface software of distribution terminal obtains " consulting request " message, sends Start session key agreement state machine and open to safety encryption authentication module, safety encryption authentication module Beginning negotiations process, uses the public key certificate of safe distribution of electric power interactive gateway at state's close algorithm for encryption chip In PKI " consult request " message is carried out signature verification, then generate one with at random " consulting response " message of number, and use safety to encrypt the private key signature of authentication module, transmit To safe interface software, then send message by the connection set up to distribution main website.
S15, after safe distribution of electric power interactive gateway intercepts and captures " consulting response " message, uses safe encryption The PKI of authentication module carries out signature verification to " consulting response " message, then generates and " consults Successfully " message, and use the private key signature of safe distribution of electric power interactive gateway, then by setting up Connection to distribution terminal send " consulting successfully " message;
S16, after safe interface software obtains " consulting successfully " message, is sent to encrypt safely recognize Card module, in state's close algorithm for encryption chip uses the public key certificate of safe distribution of electric power interactive gateway PKI carries out signature verification to " consulting successfully " message;
S17, safety encryption authentication module utilizes, with safe distribution of electric power interactive gateway, consult to obtain two Generating random number session key.
S2, is encrypted communication by session key, and safety encryption authentication module will receive distribution The message information after safe distribution of electric power interactive gateway is encrypted that main website front end processor sends is according to negotiation Symmetric key algorithm is decrypted, then is sent out by special purpose interface by the plaintext message generated after deciphering Give distribution terminal;If message comprising distribution main website in plain text use unilateral authentication private key signature letter Breath, safety encryption authentication module uses the unilateral authentication public key verifications signature of distribution main website, then will Former message is sent to distribution terminal through special purpose interface;Safety encryption authentication module passes through special purpose interface Receive distribution terminal message information, use session key message is encrypted, recombinate after send out Back to the safe interface software of distribution terminal, the safe interface software serial interface by distribution terminal Mouth or network interface are sent to distribution main website front end processor.Wherein, session key is symmetric key, Greatly accelerate the time of safe encryption authentication module encryption/deciphering, improve communication efficiency.
The session key constructed through consultation is encrypted communication, after communication event triggers, and SPI Receive master control in the data feeding safety encryption authentication module that serial ports or network interface can be received by interruption The reception relief area of chip, carries out the inspection of a frame message, when determining one in receiving relief area After frame complete message, type of message is judged, send when message information is communication message It is encrypted/decryption processing to state's close algorithm for encryption chip or electric power special encryption chip.Work as safety What encryption authentication module received is with the message information of electric power proprietary algorithm processes, or needs to use During the message information of electric power proprietary algorithm processes, message information will be sent to close authentication module Electric power special encryption chip is encrypted/decryption processing, is believed by the message after encryption/decryption process Breath returns safety and encrypts the main control chip of authentication module.When what safety encryption authentication module received it is During the message information of non-electricity proprietary algorithm processes, message information will be sent to safety and encrypt and recognizes State's close algorithm for encryption chip of card module is encrypted/decryption processing, after encryption/decryption process Message information return safety encrypt authentication module main control chip.When safety encrypts authentication module When receive is the message information of electric power proprietary algorithm processes, message information will be sent to safety The electric power special encryption chip of encryption authentication module is encrypted/decryption processing, will encryption/deciphering Message information after process returns safety and encrypts the main control chip of authentication module.When message information is During management message, the configuration of safety encryption authentication module is updated by management message.
In embodiment provided by the present invention, safe distribution of electric power interactive gateway send management message, After receiving management message, safety encryption authentication module uses session key to enter management message Row decryption processing, and according to the information obtained after deciphering, configuration information is write configuration file, with Time refresh configuration global variable, with this update safety encrypt authentication module duty.? The state value that configuration is completed by rear structure management message returns to safe distribution of electric power interactive gateway.
S3, sets time threshold, after using the session key call duration time threshold value time of advent, Repeat step S1~S2.
Set time threshold according to demand, when in communication between after time of advent threshold value, re-start Session key agreement between safety encryption authentication module and safe distribution of electric power interactive gateway, then root Coded communication is re-established, it is achieved distribution terminal and distribution main website are preposition according to the session key consulted Secure communication between machine.So can avoid due to the identical symmetric key of long-time use Communications security is made to reduce, it is also possible to avoid well using unsymmetrical key to add continually Close/to decipher time-consuming problem, communication can be ensured well on the premise of ensureing communication efficiency Safety.
In sum, the safety encryption certification mould for distribution terminal communication provided by the present invention Block, is deployed on distribution terminal master control borad by special purpose interface, and safety encryption authentication module is arranged Inside distribution terminal, it is not necessary to extra use shell and supply unit, reduce materials'use, Save cost.Safety encryption authentication module uses special encryption chip, promotes response speed, And reduce the dependence to CPU and internal memory.Safety encryption authentication module and safe distribution of electric power interactive gateway Use unsymmetrical key, perform two-way authentication and conversate key agreement, it is achieved checking the other side's body The two-way authentication of part;After session key agreement, use the symmetric key and symmetric key consulted Algorithm is encrypted/decryption processing, greatly accelerated safe encryption authentication module encryption/deciphering time Between, improve communication efficiency.Even if ciphertext message is intercepted, it is also difficult to crack.In addition, The carrier of PKI is certificate, can ensure that certificate is believed according to the safety of certificate chain and definitiveness Breath cannot be tampered, and can also judge that certificate is the most expired, it is ensured that the safety of PKI itself simultaneously. It addition, the setting of security service unit, be equivalent to distribution terminal and safety encryption authentication module it Between be mounted with safe interface, by application protocol is carried out judge filter, strengthen terminal communication Security protection, be effectively prevented network attack, further increase the safety of communication.Meanwhile, The method compatibility supports that distribution terminal uses the communication such as serial ports, network interface.
Above to provided by the present invention for distribution terminal communication safety encryption authentication module and Its method has been described in detail.For one of ordinary skill in the art, without departing substantially from Any obvious change on the premise of true spirit done it, all by composition To infringement of patent right of the present invention, corresponding legal responsibility will be undertaken.

Claims (10)

1., for a safety encryption authentication module for distribution terminal communication, it is deployed in distribution terminal Master control borad on, it is characterised in that include main control chip, state close algorithm for encryption chip, communication connect Mouth and memory element;
Wherein, described main control chip algorithm for encryption chip close with described state, described communication respectively connects Mouthful and described memory element, preposition by the safe interface software receipt distribution main website of distribution terminal Other modules are managed as a whole by machine and the message information of described distribution terminal;
The message information that described main control chip is received by described state close algorithm for encryption chip is encrypted / decryption processing.
2. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, It is characterized in that:
Described main control chip includes driving layer, functional interface layer and function logic layer;Described function Logical layer obtains distribution main website front end processor or the message information of distribution terminal, is analyzed rear basis Process demand finds the module of correspondence by the corresponding interface of described functional interface layer, by described The corresponding driving driving layer processes, and the message information after processing is sent to join by serial ports Electric terminals or distribution main website front end processor.
3. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, It is characterized in that:
Described state close algorithm for encryption chip includes mastery routine, mh, mode interface journey Sequence, cryptographic algorithm driver, SPI communication driver and serial communication driver;
When message information is sent to described state close algorithm for encryption chip by described main control chip, institute State state's close algorithm for encryption chip to be interrupted described in acquisition by the reception of described SPI communication driver Message information, is sent to described mastery routine, described mastery routine according to type by described message information Being sent to described mh resolve according to structure, the message information after resolving is sent out Deliver to described cryptographic algorithm driver and be encrypted/decryption processing, will after encrypt/having deciphered Message information is sent back to described mh and carries out organized processing, then beams back described main journey Sequence, described mastery routine is called described SPI communication driver and message information is sent back to described master Control chip.
4. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, It is characterized in that:
Described memory element is in order to preserve public key certificate and the distribution main website of safe distribution of electric power interactive gateway The PKI of unilateral authentication;
When message information is sent to described main control chip by safe distribution of electric power interactive gateway, described state Close algorithm for encryption chip passes through the PKI of described distribution main website unilateral authentication to described message information Sender carries out authentication, by the public key certificate of described safe distribution of electric power interactive gateway to carrying out Session key agreement.
5. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, It is characterized in that:
Described safe interface software includes message intercept submodule, message pretreatment submodule and peace Full module drive;
Wherein, operation layer and the communication layers of the distribution terminal that described packet capture submodule is intercepted and captured it Between message information, described message information is sent to described message pretreatment submodule, and connects Receive the message information that described message pretreatment submodule is beamed back;
Described security module drives and message information is sent to described main control chip, shown master control core Sheet calls security strategy by Policy Management interface and configures;Then by Message processing interface interchange Packet filtering submodule, described packet filtering submodule obtains the application protocol that message information is corresponding, Judge whether the application protocol that described message information is corresponding meets security strategy configuration, if it is satisfied, Message information is then sent to state's close algorithm for encryption chip process, and the report that process is completed Literary composition information back is to described message intercept submodule;Otherwise, then described message information was carried out Filter.
6. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, Characterized by further comprising electric power special encryption chip;
When described main control chip receives the message information with electric power proprietary algorithm processes, message Information will be sent to described electric power special encryption chip and be encrypted/decryption processing, will encrypt/ Message information after decryption processing returns described main control chip.
7. the safety encryption authentication module for distribution terminal communication as claimed in claim 1, Characterized by further comprising LED display unit;
Described LED display unit shows the close algorithm of main control chip, state by the switch of LED Encryption chip and the current operating state of described electric power special encryption chip, determine described master control Chip, described state close algorithm for encryption chip and described electric power special encryption chip are the most correctly transported OK.
8. for a safe encryption and authentication method for distribution terminal communication, based on claim In 1~8, the safety encryption authentication module described in any one realizes, it is characterised in that include as follows Step:
S1, safety encryption authentication module uses unsymmetrical key to perform with safe distribution of electric power interactive gateway Two-way authentication conversates key agreement;
S2, is encrypted communication by session key, and safety encryption authentication module will be truncated to join The message information of electricity main website front end processor is sent to distribution terminal after being decrypted;Distribution will be truncated to The message information of terminal is sent to distribution main website front end processor after being encrypted;
S3, sets time threshold, when in communication between after time of advent threshold value, repeat step S1~ S2。
9. the safe encryption and authentication method for distribution terminal communication as claimed in claim 8, It is characterized in that:
In step sl, after distribution main website front end processor sets up communication connection with distribution terminal, join The safe interface software of electric terminals obtains the report of the distribution main website front end processor received by distribution terminal Literary composition information, is sent to message information safety and encrypts authentication module;Safety encryption authentication module Packet filtering submodule obtains the application protocol that message information is corresponding, it is judged that described message information pair Whether the application protocol answered meets security strategy configuration, if it is satisfied, then then sent out by message information Deliver to state's close algorithm for encryption chip process, and message information process completed sends back to return Back to safe interface software;Otherwise, described message information is filtered.
10. the safety encryption authenticating party for distribution terminal communication as claimed in claim 8 Method, it is characterised in that in step sl, described safety encryption authentication module is preposition with distribution main website Machine uses unsymmetrical key to perform two-way authentication and conversates key agreement, comprises the steps:
S11, safety encryption authentication module generates unsymmetrical key pair, derives certificate when initializing Request, after grant a certificate, imports safe distribution of electric power interactive gateway by public key certificate;
S12, by public key certificate and the PKI of distribution main website unilateral authentication of safe distribution of electric power interactive gateway Import to safety encrypt in authentication module;
S13, safe distribution of electric power interactive gateway generates " consulting request " message with random number, Described " consulting request " message is signed by the private key using safe distribution of electric power interactive gateway, and It is sent to distribution terminal;S14, the safe interface software in distribution terminal obtains " consulting request " After message, being sent to safety and encrypt authentication module, described safety encryption authentication module uses distribution PKI in secure interactive gateway public key certificate carries out signature verification to " consulting request " message, Generate " the consult response " message with random number, use safety encryption authentication module Private key is signed, and is sent to safe interface software, is sent to distribution master by distribution terminal Stand;
S15, safe distribution of electric power interactive gateway is intercepted and captured " consulting response " message, is used safety encryption to recognize The PKI of card module carries out signature verification to " consulting response " message, generates " consulting successfully " Message, uses the private key of safe distribution of electric power interactive gateway to sign, and is sent to distribution terminal;
S16, safe interface software is intercepted and captured " consulting successfully " message, is sent to safety and encrypts certification Module, uses the PKI in safe distribution of electric power interactive gateway public key certificate to " consulting successfully " message Carry out signature verification;
S17, safety encryption authentication module utilizes, with safe distribution of electric power interactive gateway, consult to obtain two Generating random number session key.
CN201610284505.4A 2016-04-29 2016-04-29 Security encryption authentication module for power distribution terminal communication and method thereof Pending CN105871873A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610284505.4A CN105871873A (en) 2016-04-29 2016-04-29 Security encryption authentication module for power distribution terminal communication and method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610284505.4A CN105871873A (en) 2016-04-29 2016-04-29 Security encryption authentication module for power distribution terminal communication and method thereof

Publications (1)

Publication Number Publication Date
CN105871873A true CN105871873A (en) 2016-08-17

Family

ID=56630079

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610284505.4A Pending CN105871873A (en) 2016-04-29 2016-04-29 Security encryption authentication module for power distribution terminal communication and method thereof

Country Status (1)

Country Link
CN (1) CN105871873A (en)

Cited By (55)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106209916A (en) * 2016-08-31 2016-12-07 南京普瑶电子科技有限公司 Industrial automation produces business data transmission encryption and decryption method and system
CN106506452A (en) * 2016-09-30 2017-03-15 国网北京市电力公司 The collocation method of distribution net equipment and system
CN106603499A (en) * 2016-11-18 2017-04-26 国网甘肃省电力公司电力科学研究院 Safety communication reconstruction method and system for power distribution terminal
CN106973056A (en) * 2017-03-30 2017-07-21 中国电力科学研究院 The safety chip and its encryption method of a kind of object-oriented
CN107018134A (en) * 2017-04-06 2017-08-04 北京中电普华信息技术有限公司 A kind of distribution terminal secure accessing platform and its implementation
CN107147673A (en) * 2017-06-21 2017-09-08 中国电子信息产业集团有限公司第六研究所 Long distance wireless coded communication technology based on flexible encryption decryption card
CN107682155A (en) * 2017-11-15 2018-02-09 浙江神州量子通信技术有限公司 The application system of quantum key in power distribution terminal communication access net
CN107819788A (en) * 2017-12-06 2018-03-20 中国大唐集团科学技术研究院有限公司华东分公司 A kind of secure encryption system based on power generation control with Monitoring Data
CN107992734A (en) * 2017-10-25 2018-05-04 广东联合电子服务股份有限公司 A kind of CPU card read-write method of servicing, electronic equipment, storage medium, system
CN108076457A (en) * 2017-12-15 2018-05-25 北京国电通网络技术有限公司 A kind of safety-type power grid private radio communication module of wisdom based on linux system
CN108810023A (en) * 2018-07-19 2018-11-13 北京智芯微电子科技有限公司 Safe encryption method, key sharing method and safety encryption isolation gateway
CN108809645A (en) * 2018-07-24 2018-11-13 南方电网科学研究院有限责任公司 The method, apparatus and electrical power distribution automatization system of key agreement
CN108881224A (en) * 2018-06-19 2018-11-23 南方电网科学研究院有限责任公司 A kind of encryption method and relevant apparatus of electrical power distribution automatization system
CN108900540A (en) * 2018-08-10 2018-11-27 南方电网科学研究院有限责任公司 A kind of business data processing method of the distribution terminal based on double-encryption
CN109033805A (en) * 2018-09-30 2018-12-18 山东电工电气集团新能科技有限公司 Intelligent power distribution terminal and authorization and authentication method with micro services authorization identifying function
CN109120405A (en) * 2018-10-29 2019-01-01 全球能源互联网研究院有限公司 A kind of terminal security cut-in method, apparatus and system
CN109194490A (en) * 2018-09-21 2019-01-11 南京蓝途电力自动化有限公司 A kind of Distribution Network Communication security certification system and method
CN109257327A (en) * 2017-07-14 2019-01-22 中国电力科学研究院 A kind of the communication message safety interacting method and device of electrical power distribution automatization system
CN109344639A (en) * 2018-10-30 2019-02-15 南方电网科学研究院有限责任公司 A kind of distribution automation double protection safety chip, data transmission method and equipment
CN109495499A (en) * 2018-12-13 2019-03-19 南京国电南自电网自动化有限公司 Communication protocol bi-directional verification automated test tool and method based on Encryption Algorithm
CN109495259A (en) * 2018-12-20 2019-03-19 成都三零瑞通移动通信有限公司 A kind of portable mobile termianl encryption equipment
CN110012027A (en) * 2019-04-19 2019-07-12 鼎信信息科技有限责任公司 Safe distribution of electric power communication terminal
CN110020536A (en) * 2019-04-11 2019-07-16 南方电网科学研究院有限责任公司 A kind of power distribution automation equipment, data encryption/decryption method and system
WO2019144403A1 (en) * 2018-01-29 2019-08-01 深圳市汇顶科技股份有限公司 Chip access method, security control module, chip and debugging device
CN110176996A (en) * 2019-06-25 2019-08-27 南方电网科学研究院有限责任公司 A kind of safety device of power distribution network terminal
CN110365505A (en) * 2018-04-09 2019-10-22 中国电力科学研究院有限公司 A kind of general network shape of the mouth as one speaks power dispatching data communication device and control method
CN110365103A (en) * 2018-04-09 2019-10-22 中国电力科学研究院有限公司 A kind of wireless universal type low-power consumption power dispatching data transmitting device and control method
CN110400402A (en) * 2019-07-18 2019-11-01 国网河北省电力有限公司 A kind of line feed terminals with the ESAM security module for controlling safety lock
CN110535653A (en) * 2019-07-15 2019-12-03 中国电力科学研究院有限公司 A kind of safe distribution terminal and its means of communication
CN111065091A (en) * 2019-12-30 2020-04-24 武汉希文科技股份有限公司 Wireless data acquisition system and data transmission method based on lora
CN111404968A (en) * 2020-04-14 2020-07-10 南方电网数字电网研究院有限公司 Electric power safety terminal and electric power terminal safety control system
CN111487498A (en) * 2020-05-20 2020-08-04 广州思泰信息技术有限公司 Distribution automation remote availability test system and method
CN111526018A (en) * 2020-05-06 2020-08-11 广东纬德信息科技股份有限公司 Communication encryption system and communication encryption method based on power distribution
CN111600828A (en) * 2019-02-20 2020-08-28 中国电力科学研究院有限公司 Communication assembly
CN111711625A (en) * 2020-06-15 2020-09-25 江苏方天电力技术有限公司 Power system information security encryption system based on power distribution terminal
CN112134694A (en) * 2020-08-11 2020-12-25 北京智芯微电子科技有限公司 Data interaction method, master station, terminal and computer readable storage medium
CN112217795A (en) * 2020-09-07 2021-01-12 国家电网有限公司 Method and device for managing communication safety of intelligent electric meter
CN112270020A (en) * 2020-10-27 2021-01-26 江苏方天电力技术有限公司 Terminal equipment safety encryption device based on safety chip
CN112351041A (en) * 2020-11-11 2021-02-09 宏图智能物流股份有限公司 Network request tamper-proof method applied to logistics network
CN112533186A (en) * 2020-11-19 2021-03-19 许继集团有限公司 Communication message monitoring system and method for feeder terminal
CN112953968A (en) * 2021-03-30 2021-06-11 云谷技术(珠海)有限公司 Power distribution terminal operation and maintenance communication method and device based on security authentication
CN112953937A (en) * 2021-02-20 2021-06-11 云南电网有限责任公司电力科学研究院 End-to-end secure communication system for electric power trusted computing platform communication
CN113051593A (en) * 2021-04-01 2021-06-29 深圳市卡卓无线信息技术有限公司 Data transmission method and electronic equipment
CN113365269A (en) * 2021-06-15 2021-09-07 珠海市鸿瑞信息技术股份有限公司 Power distribution 5G communication encryption system and communication encryption method based on Internet of things
US20210303390A1 (en) * 2020-03-31 2021-09-30 Lapis Semiconductor Co., Ltd. Semiconductor device
CN113904856A (en) * 2021-10-15 2022-01-07 广州威戈计算机科技有限公司 Authentication method, switch and authentication system
CN113992432A (en) * 2021-12-24 2022-01-28 南京中孚信息技术有限公司 Message processing method, message bus system, computer device, and storage medium
CN114157410A (en) * 2021-11-25 2022-03-08 国网浙江省电力有限公司信息通信分公司 Lightweight 5G hard encryption communication module for power terminal
CN114157509A (en) * 2021-12-14 2022-03-08 成都国泰网信科技有限公司 Encryption method and device with SSL and IPsec based on cryptographic algorithm
CN114172745A (en) * 2022-01-19 2022-03-11 中电华瑞技术有限公司 Internet of things security protocol system
CN114730265A (en) * 2020-10-29 2022-07-08 华为技术有限公司 Electronic equipment and method for entering forced loading mode
CN114745137A (en) * 2022-05-10 2022-07-12 山东鲁软数字科技有限公司 Method for realizing secure communication and block link Internet of things agent device
CN114900337A (en) * 2022-04-19 2022-08-12 贵州电网有限责任公司 Authentication encryption method and system suitable for power chip
CN115277125A (en) * 2022-07-13 2022-11-01 南京国电南自电网自动化有限公司 Bidirectional credible safe transformer substation remote control method and system thereof
CN117118636A (en) * 2023-10-23 2023-11-24 湖南密码工程研究中心有限公司 IPv6 national security network card

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN203352292U (en) * 2013-06-30 2013-12-18 安徽中兴继远信息技术股份有限公司 Power distribution network monitoring automation system having encryption function
CN103888444A (en) * 2014-02-24 2014-06-25 北京科东电力控制系统有限责任公司 Distribution safety authentication device and method
CN103888292A (en) * 2014-02-25 2014-06-25 北京科东电力控制系统有限责任公司 Tool and method for operation and maintenance of distribution terminal
WO2015027410A1 (en) * 2013-08-28 2015-03-05 华为技术有限公司 Key distribution method, machine-to-machine (m2m) platform and m2m terminal
CN104579679A (en) * 2014-12-10 2015-04-29 国家电网公司 Wireless public network data forwarding method for rural power distribution network communication equipment
CN105763542A (en) * 2016-02-02 2016-07-13 国家电网公司 Device and method of encryption and authentication for distribution terminal serial port communication

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN203352292U (en) * 2013-06-30 2013-12-18 安徽中兴继远信息技术股份有限公司 Power distribution network monitoring automation system having encryption function
WO2015027410A1 (en) * 2013-08-28 2015-03-05 华为技术有限公司 Key distribution method, machine-to-machine (m2m) platform and m2m terminal
CN103888444A (en) * 2014-02-24 2014-06-25 北京科东电力控制系统有限责任公司 Distribution safety authentication device and method
CN103888292A (en) * 2014-02-25 2014-06-25 北京科东电力控制系统有限责任公司 Tool and method for operation and maintenance of distribution terminal
CN104579679A (en) * 2014-12-10 2015-04-29 国家电网公司 Wireless public network data forwarding method for rural power distribution network communication equipment
CN105763542A (en) * 2016-02-02 2016-07-13 国家电网公司 Device and method of encryption and authentication for distribution terminal serial port communication

Cited By (81)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106209916A (en) * 2016-08-31 2016-12-07 南京普瑶电子科技有限公司 Industrial automation produces business data transmission encryption and decryption method and system
CN106506452A (en) * 2016-09-30 2017-03-15 国网北京市电力公司 The collocation method of distribution net equipment and system
CN106603499A (en) * 2016-11-18 2017-04-26 国网甘肃省电力公司电力科学研究院 Safety communication reconstruction method and system for power distribution terminal
CN106973056A (en) * 2017-03-30 2017-07-21 中国电力科学研究院 The safety chip and its encryption method of a kind of object-oriented
CN106973056B (en) * 2017-03-30 2020-11-17 中国电力科学研究院 Object-oriented security chip and encryption method thereof
CN107018134A (en) * 2017-04-06 2017-08-04 北京中电普华信息技术有限公司 A kind of distribution terminal secure accessing platform and its implementation
CN107018134B (en) * 2017-04-06 2020-11-06 北京国电通网络技术有限公司 Power distribution terminal safety access platform and implementation method thereof
CN107147673A (en) * 2017-06-21 2017-09-08 中国电子信息产业集团有限公司第六研究所 Long distance wireless coded communication technology based on flexible encryption decryption card
CN109257327A (en) * 2017-07-14 2019-01-22 中国电力科学研究院 A kind of the communication message safety interacting method and device of electrical power distribution automatization system
CN109257327B (en) * 2017-07-14 2021-01-08 中国电力科学研究院 Communication message safety interaction method and device for power distribution automation system
CN107992734A (en) * 2017-10-25 2018-05-04 广东联合电子服务股份有限公司 A kind of CPU card read-write method of servicing, electronic equipment, storage medium, system
CN107992734B (en) * 2017-10-25 2022-02-08 广东联合电子服务股份有限公司 CPU card read-write service method, electronic equipment, storage medium and system
CN107682155A (en) * 2017-11-15 2018-02-09 浙江神州量子通信技术有限公司 The application system of quantum key in power distribution terminal communication access net
CN107819788B (en) * 2017-12-06 2023-11-07 中国大唐集团科学技术研究院有限公司华东分公司 Safety encryption system based on power production control and monitoring data
CN107819788A (en) * 2017-12-06 2018-03-20 中国大唐集团科学技术研究院有限公司华东分公司 A kind of secure encryption system based on power generation control with Monitoring Data
CN108076457A (en) * 2017-12-15 2018-05-25 北京国电通网络技术有限公司 A kind of safety-type power grid private radio communication module of wisdom based on linux system
US11093600B2 (en) 2018-01-29 2021-08-17 Shenzhen Goodix Technology Co. Ltd. Chip accessing method, security controlling module, chip and debugging device
WO2019144403A1 (en) * 2018-01-29 2019-08-01 深圳市汇顶科技股份有限公司 Chip access method, security control module, chip and debugging device
CN110365103A (en) * 2018-04-09 2019-10-22 中国电力科学研究院有限公司 A kind of wireless universal type low-power consumption power dispatching data transmitting device and control method
CN110365505B (en) * 2018-04-09 2024-03-22 中国电力科学研究院有限公司 Universal network port type distribution data communication device and control method
CN110365505A (en) * 2018-04-09 2019-10-22 中国电力科学研究院有限公司 A kind of general network shape of the mouth as one speaks power dispatching data communication device and control method
CN108881224A (en) * 2018-06-19 2018-11-23 南方电网科学研究院有限责任公司 A kind of encryption method and relevant apparatus of electrical power distribution automatization system
CN108810023A (en) * 2018-07-19 2018-11-13 北京智芯微电子科技有限公司 Safe encryption method, key sharing method and safety encryption isolation gateway
CN108809645A (en) * 2018-07-24 2018-11-13 南方电网科学研究院有限责任公司 The method, apparatus and electrical power distribution automatization system of key agreement
CN108900540B (en) * 2018-08-10 2021-09-03 南方电网科学研究院有限责任公司 Service data processing method of power distribution terminal based on double encryption
CN108900540A (en) * 2018-08-10 2018-11-27 南方电网科学研究院有限责任公司 A kind of business data processing method of the distribution terminal based on double-encryption
CN109194490A (en) * 2018-09-21 2019-01-11 南京蓝途电力自动化有限公司 A kind of Distribution Network Communication security certification system and method
CN109194490B (en) * 2018-09-21 2021-09-03 南京蓝途电力自动化有限公司 Power distribution network communication security authentication system and method
CN109033805A (en) * 2018-09-30 2018-12-18 山东电工电气集团新能科技有限公司 Intelligent power distribution terminal and authorization and authentication method with micro services authorization identifying function
CN109120405A (en) * 2018-10-29 2019-01-01 全球能源互联网研究院有限公司 A kind of terminal security cut-in method, apparatus and system
CN109120405B (en) * 2018-10-29 2021-11-09 全球能源互联网研究院有限公司 Terminal secure access method, device and system
CN109344639A (en) * 2018-10-30 2019-02-15 南方电网科学研究院有限责任公司 A kind of distribution automation double protection safety chip, data transmission method and equipment
CN109495499B (en) * 2018-12-13 2021-10-22 南京国电南自电网自动化有限公司 Encryption algorithm-based communication protocol bidirectional verification automatic test tool and method
CN109495499A (en) * 2018-12-13 2019-03-19 南京国电南自电网自动化有限公司 Communication protocol bi-directional verification automated test tool and method based on Encryption Algorithm
CN109495259A (en) * 2018-12-20 2019-03-19 成都三零瑞通移动通信有限公司 A kind of portable mobile termianl encryption equipment
CN111600828A (en) * 2019-02-20 2020-08-28 中国电力科学研究院有限公司 Communication assembly
CN110020536A (en) * 2019-04-11 2019-07-16 南方电网科学研究院有限责任公司 A kind of power distribution automation equipment, data encryption/decryption method and system
CN110012027A (en) * 2019-04-19 2019-07-12 鼎信信息科技有限责任公司 Safe distribution of electric power communication terminal
CN110176996A (en) * 2019-06-25 2019-08-27 南方电网科学研究院有限责任公司 A kind of safety device of power distribution network terminal
CN110535653A (en) * 2019-07-15 2019-12-03 中国电力科学研究院有限公司 A kind of safe distribution terminal and its means of communication
CN110400402A (en) * 2019-07-18 2019-11-01 国网河北省电力有限公司 A kind of line feed terminals with the ESAM security module for controlling safety lock
CN111065091A (en) * 2019-12-30 2020-04-24 武汉希文科技股份有限公司 Wireless data acquisition system and data transmission method based on lora
CN111065091B (en) * 2019-12-30 2023-09-26 武汉希文科技股份有限公司 Wireless data acquisition system and data transmission method based on lora
US11675652B2 (en) * 2020-03-31 2023-06-13 Lapis Semiconductor Co., Ltd. Semiconductor device
US20210303390A1 (en) * 2020-03-31 2021-09-30 Lapis Semiconductor Co., Ltd. Semiconductor device
CN111404968A (en) * 2020-04-14 2020-07-10 南方电网数字电网研究院有限公司 Electric power safety terminal and electric power terminal safety control system
CN111526018B (en) * 2020-05-06 2023-08-01 广东纬德信息科技股份有限公司 Communication encryption system and communication encryption method based on power distribution
CN111526018A (en) * 2020-05-06 2020-08-11 广东纬德信息科技股份有限公司 Communication encryption system and communication encryption method based on power distribution
CN111487498A (en) * 2020-05-20 2020-08-04 广州思泰信息技术有限公司 Distribution automation remote availability test system and method
CN111487498B (en) * 2020-05-20 2022-03-25 广州思泰信息技术有限公司 Distribution automation remote availability test system and method
CN111711625A (en) * 2020-06-15 2020-09-25 江苏方天电力技术有限公司 Power system information security encryption system based on power distribution terminal
CN112134694B (en) * 2020-08-11 2024-01-23 北京智芯微电子科技有限公司 Data interaction method, master station, terminal and computer readable storage medium
CN112134694A (en) * 2020-08-11 2020-12-25 北京智芯微电子科技有限公司 Data interaction method, master station, terminal and computer readable storage medium
CN112217795A (en) * 2020-09-07 2021-01-12 国家电网有限公司 Method and device for managing communication safety of intelligent electric meter
CN112270020A (en) * 2020-10-27 2021-01-26 江苏方天电力技术有限公司 Terminal equipment safety encryption device based on safety chip
CN112270020B (en) * 2020-10-27 2022-06-21 江苏方天电力技术有限公司 Terminal equipment safety encryption device based on safety chip
CN114730265A (en) * 2020-10-29 2022-07-08 华为技术有限公司 Electronic equipment and method for entering forced loading mode
CN112351041A (en) * 2020-11-11 2021-02-09 宏图智能物流股份有限公司 Network request tamper-proof method applied to logistics network
CN112351041B (en) * 2020-11-11 2023-04-21 宏图智能物流股份有限公司 Network request tamper-proof method applied to logistics network
CN112533186A (en) * 2020-11-19 2021-03-19 许继集团有限公司 Communication message monitoring system and method for feeder terminal
CN112533186B (en) * 2020-11-19 2023-03-07 许继集团有限公司 Communication message monitoring system and method for feeder terminal
CN112953937B (en) * 2021-02-20 2023-06-06 云南电网有限责任公司电力科学研究院 Communication end-to-end safety communication system of electric power trusted computing platform
CN112953937A (en) * 2021-02-20 2021-06-11 云南电网有限责任公司电力科学研究院 End-to-end secure communication system for electric power trusted computing platform communication
CN112953968A (en) * 2021-03-30 2021-06-11 云谷技术(珠海)有限公司 Power distribution terminal operation and maintenance communication method and device based on security authentication
CN113051593A (en) * 2021-04-01 2021-06-29 深圳市卡卓无线信息技术有限公司 Data transmission method and electronic equipment
CN113365269A (en) * 2021-06-15 2021-09-07 珠海市鸿瑞信息技术股份有限公司 Power distribution 5G communication encryption system and communication encryption method based on Internet of things
CN113904856B (en) * 2021-10-15 2024-04-23 广州威戈计算机科技有限公司 Authentication method, switch and authentication system
CN113904856A (en) * 2021-10-15 2022-01-07 广州威戈计算机科技有限公司 Authentication method, switch and authentication system
CN114157410B (en) * 2021-11-25 2024-04-19 国网浙江省电力有限公司信息通信分公司 Lightweight 5G hard encryption communication module for power terminal
CN114157410A (en) * 2021-11-25 2022-03-08 国网浙江省电力有限公司信息通信分公司 Lightweight 5G hard encryption communication module for power terminal
CN114157509A (en) * 2021-12-14 2022-03-08 成都国泰网信科技有限公司 Encryption method and device with SSL and IPsec based on cryptographic algorithm
CN114157509B (en) * 2021-12-14 2024-04-09 成都国泰网信科技有限公司 Encryption method and device with SSL and IPsec based on cryptographic algorithm
CN113992432A (en) * 2021-12-24 2022-01-28 南京中孚信息技术有限公司 Message processing method, message bus system, computer device, and storage medium
CN114172745A (en) * 2022-01-19 2022-03-11 中电华瑞技术有限公司 Internet of things security protocol system
CN114900337B (en) * 2022-04-19 2024-04-05 贵州电网有限责任公司 Authentication encryption method and system suitable for power chip
CN114900337A (en) * 2022-04-19 2022-08-12 贵州电网有限责任公司 Authentication encryption method and system suitable for power chip
CN114745137A (en) * 2022-05-10 2022-07-12 山东鲁软数字科技有限公司 Method for realizing secure communication and block link Internet of things agent device
CN115277125B (en) * 2022-07-13 2024-02-13 南京国电南自电网自动化有限公司 Substation remote control method and system with bidirectional credibility and safety
CN115277125A (en) * 2022-07-13 2022-11-01 南京国电南自电网自动化有限公司 Bidirectional credible safe transformer substation remote control method and system thereof
CN117118636A (en) * 2023-10-23 2023-11-24 湖南密码工程研究中心有限公司 IPv6 national security network card
CN117118636B (en) * 2023-10-23 2023-12-29 湖南密码工程研究中心有限公司 IPv6 national security network card

Similar Documents

Publication Publication Date Title
CN105871873A (en) Security encryption authentication module for power distribution terminal communication and method thereof
CN105763542A (en) Device and method of encryption and authentication for distribution terminal serial port communication
CN112073375B (en) Isolation device and isolation method suitable for client side of electric power Internet of things
CN200962604Y (en) Vertical encryption authentication gateway device special for power
CN107995608A (en) A kind of method and device being authenticated by blue tooth vehicular unit
CN101409619B (en) Flash memory card and method for implementing virtual special network key exchange
CN101447907A (en) VPN secure access method and system thereof
CN102118426B (en) Network security payment terminal and network security payment method thereof
CN104579679B (en) Wireless public network data forwarding method for agriculture distribution communication equipment
CN102111265A (en) Method for encrypting embedded secure access module (ESAM) of power system acquisition terminal
CN102523095B (en) User digital certificate remote update method with intelligent card protection function
CN101610150B (en) Third-party digital signature method and data transmission system
CN105721443B (en) A kind of link session cipher negotiating method and device
CN103036681B (en) A kind of password safety keyboard device and system
CN102571340A (en) Certificate authentication device as well as access method and certificate update method thereof
CN114448727B (en) Information processing method and system based on industrial internet identification analysis system
CN103974255B (en) A kind of vehicle access system and method
CN107181716A (en) A kind of secure communication of network system and method based on national commercial cipher algorithm
CN111131416A (en) Business service providing method and device, storage medium and electronic device
CN103746815A (en) Secure communication method and device
CN103297940A (en) Short message encryption communication system and method
CN103905389B (en) Relay equipment-based security association, data transmission method, device and system
CN101640614A (en) Method and device for configuring IPSEC security strategy
CN102594564A (en) Equipment for traffic guidance information security management
CN106027256B (en) A kind of identity card card reading response system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
CB03 Change of inventor or designer information
CB03 Change of inventor or designer information

Inventor after: Shao Lisong

Inventor after: Yang Fengwen

Inventor after: Kang Wenwen

Inventor after: Sun Baofeng

Inventor after: Wang Xuhao

Inventor after: Zhang Kai

Inventor after: Liu Shuai

Inventor after: Ma Li

Inventor after: Liang Ye

Inventor after: Gao Minghui

Inventor after: Gu Fengqiang

Inventor after: Chen Ning

Inventor after: Duo Zhilin

Inventor after: Ma Ming

Inventor after: Ran Linan

Inventor after: Liu Yong

Inventor after: Fang Mu

Inventor after: Wang Chuanyong

Inventor after: Han Peng

Inventor after: Zhang Jian

Inventor after: Wang Kun

Inventor after: Dai Ergang

Inventor before: Shao Lisong

Inventor before: Sun Baofeng

Inventor before: Wang Xuhao

Inventor before: Zhang Kai

Inventor before: Liu Shuai

Inventor before: Ma Li

Inventor before: Liang Ye

Inventor before: Gao Minghui

Inventor before: Gu Fengqiang

Inventor before: Duo Zhilin

Inventor before: Ma Ming

Inventor before: Chen Ning

Inventor before: Ran Linan

Inventor before: Wang Chuanyong

Inventor before: Han Peng

Inventor before: Zhang Jian

Inventor before: Wang Kun

Inventor before: Dai Ergang

Inventor before: Yang Fengwen

Inventor before: Kang Wenwen

TA01 Transfer of patent application right
TA01 Transfer of patent application right

Effective date of registration: 20170401

Address after: No. 86 West Xicheng District, Beijing, Chang'an Avenue

Applicant after: State Grid Corporation of China

Applicant after: State Grid Shandong Electric Power Company

Applicant after: Zaozhuang Power Supply Company of State Grid Shandong Electric Power Company

Applicant after: Nanjing Nari Co., Ltd.

Applicant after: Beijing Kedong Power Control System Co., Ltd.

Address before: No. 86 West Xicheng District, Beijing, Chang'an Avenue

Applicant before: State Grid Corporation of China

Applicant before: Zaozhuang Power Supply Company of State Grid Shandong Electric Power Company

Applicant before: Nanjing Nari Co., Ltd.

Applicant before: Beijing Kedong Power Control System Co., Ltd.

SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20160817