CN111901129A - Safety protection device based on network multimedia - Google Patents

Safety protection device based on network multimedia Download PDF

Info

Publication number
CN111901129A
CN111901129A CN202010596277.0A CN202010596277A CN111901129A CN 111901129 A CN111901129 A CN 111901129A CN 202010596277 A CN202010596277 A CN 202010596277A CN 111901129 A CN111901129 A CN 111901129A
Authority
CN
China
Prior art keywords
module
network
network multimedia
microprocessor
safety protection
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202010596277.0A
Other languages
Chinese (zh)
Inventor
尤文杰
强科华
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Ganxun Information Technology Wuxi Co ltd
Original Assignee
Ganxun Information Technology Wuxi Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Ganxun Information Technology Wuxi Co ltd filed Critical Ganxun Information Technology Wuxi Co ltd
Priority to CN202010596277.0A priority Critical patent/CN111901129A/en
Publication of CN111901129A publication Critical patent/CN111901129A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/10Current supply arrangements
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/06Network architectures or network communication protocols for network security for supporting key management in a packet data network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0891Revocation or update of secret information, e.g. encryption key update or rekeying

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Small-Scale Networks (AREA)

Abstract

The invention discloses a safety protection device based on network multimedia, and relates to the technical field of network safety protection equipment. Including installation casing, straining device, drive gear, hemostasis bandage and regulation handle, the installation casing is cylindrically, be equipped with the hemostasis groove in the installation casing, straining device establishes to be equipped with at least threely, and is a plurality of straining device lays in the installation casing, drive gear links up in the installation casing, the regulation handle transmission is connected to in the straining device, the hemostasis bandage is the rubber material, the hemostasis bandage sets up in the installation casing and is in the hemostasis groove, be equipped with a plurality of pull rings on the hemostasis bandage, and is a plurality of straining device all is connected to a pull ring. In the invention, hemostasis is realized by extrusion of the hemostasis bandage, and the tightening force of the hemostasis bandage is controlled by the stretching mechanism, so that the hemostasis bandage can be properly adjusted according to the thickness of a bleeding part and a trunk.

Description

Safety protection device based on network multimedia
Technical Field
The invention relates to the technical field of network safety protection equipment, in particular to a safety protection device based on network multimedia.
Background
With the rapid development of technologies such as network, communication, image processing and the like, the network multimedia system plays an increasingly important role in the fields of intelligent transportation, public safety and the like. The network multimedia system is an information system based on a TCP/IP protocol and integrating remote image acquisition, monitoring, transmission, storage and analysis, and if an effective security prevention means is not adopted, the security risks of remotely controlling a camera by a hacker, illegally acquiring network multimedia data, illegally accessing monitoring and the like exist.
Therefore, a network complete protection device is needed to be arranged to encrypt and authenticate data, ensure the data security of a network channel and an information source, and prevent the illegal attack and the illegal remote control on the front-end network multimedia through network penetration.
Disclosure of Invention
The invention provides a safety protection device based on network multimedia, which aims to solve the technical problems of safety risks of hackers in remote control of a camera, illegal acquisition of network multimedia data, illegal access monitoring and the like due to the defects of a safety protection system of network multimedia equipment in the prior art.
A safety protection device based on network multimedia comprises a microprocessor module, a storage module, a cache module, a safety module, an FPGA module, a communication interface module, a network module and a power management module, wherein the microprocessor module is respectively connected with the safety module, the storage module, the cache module, the FPGA module, an indicator lamp module, the communication interface module and the network module, and the power management module is externally connected with a DC/POE power supply and is electrically connected with all the modules;
the microprocessor module realizes functions of high-speed data communication, network message processing, password service, file storage and the like, realizes generation and acquisition of random numbers through a local bus, and realizes password operation, key generation and storage and the like through a USB interface security chip;
the storage module is used for system operation and dynamic storage of program codes and data;
the cache module comprises NOR FLASH and NOR FLASH storage bootstrap programs, and NAND FLASH stores Linux operating system kernel codes, file systems, working programs and log information;
the safety module is connected with the microprocessor module through a USB 2.0 bus and provides the functions of generating, updating, storing and destroying the secret key; the functions of operation service of SM2, SM3 and SM4 cryptographic algorithms and the like are provided, the encryption and decryption of data in the network multimedia transmission process are realized, and the security of multimedia data transmission is improved;
the FPGA module is a communication bridge between the microprocessor module and the digital physical noise source module, acquires and caches random numbers output by the digital physical noise source module, and is read by the microprocessor module through a local bus;
the communication interface module comprises all communication interface module types used by the network multimedia equipment, including various communication interface modules such as PROFIBUS, SPI, IIC, CAN, 1-WIRE, RS232, RS422, RS423, RS485, USB, Bluetooth, infrared and the like;
the network module is used for providing a data network communication channel and a local management network port, and comprises wired communication and wireless communication;
and the DC/POE power supply module is used for supplying voltage to all the modules.
The system further comprises a clock module, wherein the clock module is connected with the microprocessor module, the clock module provides an initial working clock for the Linux operating system, the subsequent working clock is clocked by the operating system, time factor service is provided for network messages, and protection of network against replay attack is achieved.
And the indicating lamp module is connected with the microprocessor module and used for prompting the current data communication state and the working state of the protection box.
And the output of the two digital physical noise source chips is subjected to XOR inside the FPGA module, and the FPGA module is used for shifting and caching.
Compared with the prior art, the invention has the beneficial effects that:
firstly, the invention is connected in series at the back end of the front-end network multimedia equipment when in use, after the front-end network multimedia equipment and the device are bound in identity, a safety tunnel is established between the front-end network multimedia equipment and the remote decryption server during communication, data encryption and authentication are carried out, the safety of a network channel and information source data is ensured, and the illegal attack and illegal remote control on the front-end network multimedia through network penetration are prevented, thereby effectively solving the technical problems of the safety protection system of the network multimedia equipment in the prior art, such as the existence of safety risks of hacker remote control cameras, illegal acquisition of network multimedia data, illegal access monitoring and the like.
Secondly, the network multimedia safety protection device can complete the multimedia data communication between the network multimedia devices.
Thirdly, the invention is provided with a safety module which is connected with the microprocessor module through a USB 2.0 bus and provides the functions of generating, updating, storing and destroying the secret key; the functions of the SM2, SM3 and SM4 cryptographic algorithms such as operation service and the like are provided, the encryption and decryption of data are realized, and the transmission safety is improved.
Fourthly, the network multimedia equipment A is connected with the network multimedia safety protection device C, the opposite terminal network multimedia equipment B is connected with the network multimedia safety protection device D, and the network multimedia safety protection device C is connected with the network multimedia safety protection device D through a wired network or a wireless network. Two network multimedia safety protection devices used between the two devices of the network multimedia device A and the network multimedia device B are paired one to one; after the encrypted data is transmitted through the network by the network multimedia safety protection device C, only the network multimedia safety protection device D can decrypt the encrypted data, and only the network multimedia equipment B can receive the decrypted data of the network multimedia safety protection device D; the network multimedia equipment E is connected with the network multimedia safety protection device J, the network multimedia equipment F is connected with the network multimedia safety protection device K, the opposite end network multimedia equipment G and the network multimedia equipment H are both connected with the network multimedia safety protection device L, and the network multimedia safety protection device J, K is connected with the network multimedia safety protection device L through a wired network or a wireless network. The network multimedia security device L is one-to-many pairable. The network multimedia devices E, F and G, H are paired with each other; that is, after the encrypted data is transmitted through the network by the network multimedia security device J, K, only the network multimedia security device L can decrypt the encrypted data, so that the invention can realize one-to-one pairing and also one-to-many pairing, thereby increasing the practicability and convenience of the invention.
Drawings
In order to more clearly illustrate the embodiments of the present invention or the technical solutions in the prior art, the drawings used in the description of the embodiments or the prior art will be briefly described below, and it is obvious that the drawings in the following description are some embodiments of the present invention, and other drawings can be obtained by those skilled in the art without creative efforts.
FIG. 1 is a schematic diagram of the connection and layout states of the modules in the present invention;
FIG. 2 is a schematic view of the working principle of the present invention after being connected to a device;
Detailed Description
The technical solutions of the present invention will be described clearly and completely with reference to the accompanying drawings, and it should be understood that the described embodiments are some, but not all embodiments of the present invention.
The components of embodiments of the present invention generally described and illustrated in the figures herein may be arranged and designed in a wide variety of different configurations. Thus, the following detailed description of the embodiments of the present invention, presented in the figures, is not intended to limit the scope of the invention, as claimed, but is merely representative of selected embodiments of the invention.
All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present invention.
In the description of the present invention, it should be noted that the terms "center", "upper", "lower", "left", "right", "vertical", "horizontal", "inner", "outer", etc., indicate orientations or positional relationships based on the orientations or positional relationships shown in the drawings, and are only for convenience of description and simplicity of description, but do not indicate or imply that the device or element being referred to must have a particular orientation, be constructed and operated in a particular orientation, and thus, should not be construed as limiting the present invention. Furthermore, the terms "first," "second," and "third" are used for descriptive purposes only and are not to be construed as indicating or implying relative importance.
In the description of the present invention, it should be noted that, unless otherwise explicitly specified or limited, the terms "mounted," "connected," and "connected" are to be construed broadly, e.g., as meaning either a fixed connection, a removable connection, or an integral connection; can be mechanically or electrically connected; they may be connected directly or indirectly through intervening media, or they may be interconnected between two elements. The specific meanings of the above terms in the present invention can be understood in specific cases to those skilled in the art.
The utility model provides a safety device based on network multimedia, includes microprocessor module, storage module, buffer memory module, security module, FPGA module, clock module, pilot lamp module, communication interface module, network module, power management module, microprocessor module is connected respectively with security module, storage module, buffer memory module, FPGA module, pilot lamp module, clock module, communication interface module, network module, pilot lamp module. The FPGA module is connected with the digital physical noise source module, and the power management module is externally connected with a DC/POE power supply and is electrically connected with all the modules;
the microprocessor module realizes functions of high-speed data communication, network message processing (such as ESP packaging and unpacking), cryptographic service, file (operating system kernel, file system, driver program and service program) storage and the like, realizes generation and acquisition of random numbers through a local bus, and realizes cryptographic operation, key generation and storage and the like through a USB interface security chip;
the storage module is used for system operation and dynamic storage of program codes and data;
the cache module comprises NOR FLASH and NOR FLASH storage bootstrap programs, and NAND FLASH stores Linux operating system kernel codes, file systems, working programs and log information;
the safety module is connected with the microprocessor module through a USB 2.0 bus and provides the functions of generating, updating, storing and destroying the secret key; the functions of operation service of SM2, SM3 and SM4 cryptographic algorithms and the like are provided, the encryption and decryption of data in the network multimedia transmission process are realized, and the security of multimedia data transmission is improved;
the FPGA module is a communication bridge between the microprocessor module and the digital physical noise source module, acquires and caches random numbers output by the digital physical noise source module, and is read by the microprocessor module through a local bus;
the clock module provides an initial working clock for the Linux operating system, and the subsequent working clock is clocked by the operating system to provide time factor service for the network message, so that the protection of preventing the network from replay attack is realized;
the pilot lamp module is used for prompting the current data communication state and the working state of the protection box:
in normal state, the green light is on, the red light is not on,
abnormal state and indicator light: the red light flickers, and the red light flickers once from turning on to turning off;
long flashing: "2 s one flash";
short flashing: "1 s one flash";
the communication interface module comprises all communication interface module types used by the network multimedia equipment, including various communication interface modules such as PROFIBUS, SPI, IIC, CAN, 1-WIRE, RS232, RS422, RS423, RS485, USB, Bluetooth, infrared and the like;
the network module is used for providing a data network communication channel and a local management network port, and comprises wired communication and wireless communication;
the output of the two digital physical noise source chips of the digital physical noise source module is subjected to exclusive OR in the FPGA module, and the FPGA module is used for shifting and caching;
and the DC/POE power supply module is used for supplying voltage to all the modules.
The invention can carry out one-to-one pairing and also can carry out one-to-many pairing.
The network multimedia equipment A is connected with the network multimedia safety protection device C, the opposite terminal network multimedia equipment B is connected with the network multimedia safety protection device D, and the network multimedia safety protection device C is connected with the network multimedia safety protection device D through a wired network or a wireless network. Two network multimedia safety protection devices used between the two devices of the network multimedia device A and the network multimedia device B are paired one to one; that is, after the encrypted data is transmitted through the network, only the network multimedia security device D can decrypt the encrypted data, and only the network multimedia device B can receive the decrypted data.
The network multimedia equipment E is connected with the network multimedia safety protection device J, the network multimedia equipment F is connected with the network multimedia safety protection device K, the opposite end network multimedia equipment G and the network multimedia equipment H are both connected with the network multimedia safety protection device L, and the network multimedia safety protection device J, K is connected with the network multimedia safety protection device L through a wired network or a wireless network. The network multimedia security device L is one-to-many pairable. The network multimedia devices E, F and G, H are paired with each other; that is, only the network multimedia security device L can decrypt the encrypted data transmitted through the network multimedia security device J, K.
It should be noted that, if the network multimedia device M is connected with the network multimedia security device K, and the network multimedia device N communicating with the network multimedia device M is not connected with the network multimedia security device K, when the network multimedia device M and the network multimedia device N perform data transmission, data communication between the network multimedia device M and the network multimedia device N cannot be performed normally.
If the network multimedia device M is connected with the network multimedia safety protection device K, and the network multimedia safety protection device connected with the network multimedia device N communicating with the device is not paired with the network multimedia safety protection device K, data communication between the network multimedia device M and the network multimedia device N cannot be normally performed.
Finally, it should be noted that: the above embodiments are only used to illustrate the technical solution of the present invention, and not to limit the same; while the invention has been described in detail and with reference to the foregoing embodiments, it will be understood by those skilled in the art that: the technical solutions described in the foregoing embodiments may still be modified, or some or all of the technical features may be equivalently replaced; and the modifications or the substitutions do not make the essence of the corresponding technical solutions depart from the scope of the technical solutions of the embodiments of the present invention.

Claims (4)

1. A safety protection device based on network multimedia is characterized by comprising a microprocessor module, a storage module, a cache module, a safety module, an FPGA module, a communication interface module, a network module, a DC/POE power supply and a power management module, wherein the microprocessor module is respectively connected with the safety module, the storage module, the cache module, the FPGA module, an indicator lamp module, the communication interface module and the network module;
the microprocessor module realizes the functions of high-speed data communication, network message processing, password service and file storage, realizes the generation and acquisition of random numbers through a local bus, and realizes password operation and key generation and storage through a USB interface security chip;
the storage module is used for system operation and dynamic storage of program codes and data;
the cache module comprises NOR FLASH and NOR FLASH storage bootstrap programs, and NAND FLASH stores Linux operating system kernel codes, file systems, working programs and log information;
the safety module is connected with the microprocessor module through a USB 2.0 bus and provides the functions of generating, updating, storing and destroying the secret key; the operation service functions of SM2, SM3 and SM4 cryptographic algorithms are provided, and encryption and decryption of data in the network multimedia transmission process are realized;
the FPGA module is a communication bridge between the microprocessor module and the digital physical noise source module, acquires and caches random numbers output by the digital physical noise source module, and is read by the microprocessor module through a local bus;
the communication interface module comprises all communication interface module types used by the network multimedia equipment, including PROFIBUS, SPI, IIC, CAN, 1-WIRE, RS232, RS422, RS423, RS485, USB, Bluetooth and infrared communication interface modules;
the network module is used for providing a data network communication channel and a local management network port, and comprises wired communication and wireless communication;
and the DC/POE power supply module is used for supplying voltage to all the modules.
2. The network multimedia-based security protection device according to claim 1, further comprising a clock module, wherein the clock module is connected to the microprocessor module, the clock module provides an initial working clock for the Linux operating system, and a subsequent working clock is clocked by the operating system to provide a time factor service for the network packet, thereby implementing protection against network replay attack.
3. The network multimedia-based safety device according to claim 1, further comprising an indicator light module connected to the microprocessor module for indicating a current data communication status and a working status of the protection box.
4. The network multimedia-based safety protection device according to claim 1, further comprising a digital physical noise source module, wherein the digital physical noise source module is connected with the microprocessor module, and the outputs of the digital physical noise source module and the two digital physical noise source chips are subjected to exclusive-or inside the FPGA module and are shifted and buffered by the FPGA module.
CN202010596277.0A 2020-06-28 2020-06-28 Safety protection device based on network multimedia Pending CN111901129A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202010596277.0A CN111901129A (en) 2020-06-28 2020-06-28 Safety protection device based on network multimedia

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202010596277.0A CN111901129A (en) 2020-06-28 2020-06-28 Safety protection device based on network multimedia

Publications (1)

Publication Number Publication Date
CN111901129A true CN111901129A (en) 2020-11-06

Family

ID=73207111

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202010596277.0A Pending CN111901129A (en) 2020-06-28 2020-06-28 Safety protection device based on network multimedia

Country Status (1)

Country Link
CN (1) CN111901129A (en)

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1567808A (en) * 2003-06-18 2005-01-19 联想(北京)有限公司 A network security appliance and realizing method thereof
CN101141727A (en) * 2007-10-19 2008-03-12 孟智平 Switch storage method and related equipment of terminal data
CN107154920A (en) * 2016-03-04 2017-09-12 神讯电脑(昆山)有限公司 Encryption method, decryption method and the reception device to receive security information of security information
CN107276961A (en) * 2016-04-06 2017-10-20 北京天威诚信电子商务服务有限公司 A kind of method and device based on cipher algorithm encryption and ciphertext data
CN109981271A (en) * 2019-04-11 2019-07-05 乾讯信息技术(无锡)有限公司 A kind of network multimedia security protection encryption method
CN110781506A (en) * 2019-10-18 2020-02-11 浪潮电子信息产业股份有限公司 Operation method, operation device and operation system of virtualized FPGA
CN212660173U (en) * 2020-06-28 2021-03-05 乾讯信息技术(无锡)有限公司 Safety protection device based on network multimedia
CN213940865U (en) * 2020-08-18 2021-08-13 王辉 Surgical nursing hemostasis device

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1567808A (en) * 2003-06-18 2005-01-19 联想(北京)有限公司 A network security appliance and realizing method thereof
CN101141727A (en) * 2007-10-19 2008-03-12 孟智平 Switch storage method and related equipment of terminal data
CN107154920A (en) * 2016-03-04 2017-09-12 神讯电脑(昆山)有限公司 Encryption method, decryption method and the reception device to receive security information of security information
CN107276961A (en) * 2016-04-06 2017-10-20 北京天威诚信电子商务服务有限公司 A kind of method and device based on cipher algorithm encryption and ciphertext data
CN109981271A (en) * 2019-04-11 2019-07-05 乾讯信息技术(无锡)有限公司 A kind of network multimedia security protection encryption method
CN110781506A (en) * 2019-10-18 2020-02-11 浪潮电子信息产业股份有限公司 Operation method, operation device and operation system of virtualized FPGA
CN212660173U (en) * 2020-06-28 2021-03-05 乾讯信息技术(无锡)有限公司 Safety protection device based on network multimedia
CN213940865U (en) * 2020-08-18 2021-08-13 王辉 Surgical nursing hemostasis device

Similar Documents

Publication Publication Date Title
CN101346930B (en) Secure system-on-chip
US7673338B1 (en) Intelligent electronic cryptographic module
US9674164B2 (en) Method for managing keys in a manipulation-proof manner
US9515823B2 (en) Cryptographic device with detachable data planes
US7673337B1 (en) System for secure online configuration and communication
US20180249328A1 (en) Anti-takeover systems and methods for network attached peripherals
CN101783793B (en) Improve the method, system and device of safety of monitoring data
CN210719302U (en) Safety communication system of gas meter
CN101990748A (en) Method and device for transmitting messages in real time
CN112270020B (en) Terminal equipment safety encryption device based on safety chip
US11804972B2 (en) Fluid meter communicating with an electromechanical valve
CN110417706B (en) Switch-based secure communication method
US11423187B2 (en) Security device and field bus system for supporting secure communication by means of a field bus
CN201336704Y (en) Remote video monitoring system
CN212660173U (en) Safety protection device based on network multimedia
CN115118751A (en) Block chain-based supervision system, method, equipment and medium
US9306946B1 (en) Intelligent electronic cryptographic cloud computing system
CN110445782A (en) A kind of multi-media safety broadcast control system and method
CN108184091B (en) Video monitoring equipment deployment method and device
CN111901129A (en) Safety protection device based on network multimedia
CN106411559A (en) Low voltage transformer area anti-electricity-stealing diagnosis system
CN108270601B (en) Mobile terminal, alarm information acquisition method and device and alarm information sending method and device
CN110048838B (en) Power line carrier system
CN107317925A (en) Mobile terminal
CN114338095A (en) Data encryption transmission method and related device, equipment, medium and program product

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information

Address after: 4-2-4, Building 4, No. 99, Qingshu Road, Wuxi Economic Development Zone, Jiangsu Province, 214000

Applicant after: GANXUN INFORMATION TECHNOLOGY (WUXI) Co.,Ltd.

Address before: 214000 2-18-1702 Longshan Road, Xinwu District, Wuxi City, Jiangsu Province

Applicant before: GANXUN INFORMATION TECHNOLOGY (WUXI) Co.,Ltd.

CB02 Change of applicant information