NL2019629B1 - Data processing apparatus and method of connecting the apparatus to a network - Google Patents

Data processing apparatus and method of connecting the apparatus to a network Download PDF

Info

Publication number
NL2019629B1
NL2019629B1 NL2019629A NL2019629A NL2019629B1 NL 2019629 B1 NL2019629 B1 NL 2019629B1 NL 2019629 A NL2019629 A NL 2019629A NL 2019629 A NL2019629 A NL 2019629A NL 2019629 B1 NL2019629 B1 NL 2019629B1
Authority
NL
Netherlands
Prior art keywords
motherboard
shared
data processing
network connector
power supply
Prior art date
Application number
NL2019629A
Other languages
Dutch (nl)
Inventor
Theodoor Willem Van Putten Ir
Original Assignee
Theodoor Willem Van Putten Ir
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Theodoor Willem Van Putten Ir filed Critical Theodoor Willem Van Putten Ir
Priority to NL2019629A priority Critical patent/NL2019629B1/en
Application granted granted Critical
Publication of NL2019629B1 publication Critical patent/NL2019629B1/en

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F15/00Digital computers in general; Data processing equipment in general
    • G06F15/16Combinations of two or more digital computers each having at least an arithmetic unit, a program unit and a register, e.g. for a simultaneous processing of several programs
    • G06F15/161Computing infrastructure, e.g. computer clusters, blade chassis or hardware partitioning
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computing Systems (AREA)
  • Mathematical Physics (AREA)
  • Software Systems (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer And Data Communications (AREA)

Abstract

Method of providing a data processing apparatus which is suited to be connected to a network with other data pro— cessing apparatuses, comprising the step of providing the data processing apparatus with 5 — a shared chassis; — a shared power supply; — a first motherboard mounted in the shared chassis and pow— ered by the shared power supply; — a second motherboard mounted in the shared chassis and pow— 10 ered by the shared power supply; and — by mounting a third motherboard in the shared chassis and arranging it to be powered by the shared power supply, and organizing and structuring the third motherboard to facili— tate and control data exchange between the third motherboard 15 and the first motherboard, and to facilitate and control da— ta exchange between the third motherboard and the second motherboard. The first motherboard is configured in such a way that it has no connections for external devices such as an USB 20 stick, or card reader or WIFI. The first motherboard is equipped with a network connector that is capable of connect— ing to the intra—net. It is essential that the first mother— board is not visible from the Internet. The second motherboard is configured as a standard motherboard. It has all the stand— 25 ard connection capabilities and can connect to the Internet.

Description

OctrooicentrumPatent center

Θ 20196292019629

Figure NL2019629B1_D0001

(2?) Aanvraagnummer: 2019629 (22) Aanvraag ingediend: 26 september 2017(2?) Application number: 2019629 (22) Application submitted: 26 September 2017

Int. CL:Int. CL:

G06F 15/16(2017.01) H04L 29/06 (2018.01)G06F 15/16 (2017.01) H04L 29/06 (2018.01)

0 Aanvraag ingeschreven: 0 Application registered: 0 Octrooihouder(s): 0 Patent holder (s): 3 april 2019 April 3, 2019 ir. Theodoor Willem van Putten te Eindhoven. ir. Theodoor Willem van Putten in Eindhoven. 0 Aanvraag gepubliceerd: 0 Request published: - - 0 Uitvinder(s): 0 Inventor (s): ir. Theodoor Willem van Putten te Eindhoven. ir. Theodoor Willem van Putten in Eindhoven. 0 Octrooi verleend: 0 Patent granted: 3 april 2019 April 3, 2019 0 Gemachtigde: 0 Authorized representative: 0 Octrooischrift uitgegeven: 0 Patent issued: mr. ir. J. van Breda c.s. te Amsterdam. ir. J. van Breda et al. in Amsterdam. 31 mei 2019 May 31, 2019

54) Data processing apparatus and method of connecting the apparatus to a network54) Data processing apparatus and method or connecting the apparatus to a network

5^ Method of providing a data processing apparatus which is suited to be connected to a network with other data processing apparatuses, comprising the step of providing the data processing apparatus with5 ^ Method of providing a data processing apparatus which is suited to be connected to a network with other data processing apparatuses, including the step of providing the data processing apparatus with

- a shared chassis;- a shared chassis;

- a shared power supply;- a shared power supply;

- a first motherboard mounted in the shared chassis and powered by the shared power supply;- a first motherboard mounted in the shared chassis and powered by the shared power supply;

- a second motherboard mounted in the shared chassis and powered by the shared power supply; and- a second motherboard mounted in the shared chassis and powered by the shared power supply; and

- by mounting a third motherboard in the shared chassis and arranging it to be powered by the shared power supply, and organizing and structuring the third motherboard to facilitate and control data exchange between the third motherboard and the first motherboard, and to facilitate and control data exchange between the third motherboard and the second motherboard.- by mounting a third motherboard in the shared chassis and arranging it to be powered by the shared power supply, and organizing and structuring the third motherboard to facilitate and control data exchange between the third motherboard and the first motherboard, and to facilitate and control data exchange between the third motherboard and the second motherboard.

The first motherboard is configured in such a way that it has no connections for external devices such as an USB stick, or card reader or WIFI. The first motherboard is equipped with a network connector that is capable of connecting to the intra-net. It is essential that the first motherboard is not visible from the Internet. The second motherboard is configured as a standard motherboard. It has all the standard connection capabilities and can connect to the Internet.The first motherboard is configured in such a way that it has no connections for external devices such as a USB stick, card reader or WIFI. The first motherboard is equipped with a network connector that is capable of connecting to the intra-net. It is essential that the first motherboard is not visible from the Internet. The second motherboard is configured as a standard motherboard. It has all the standard connection capabilities and can connect to the Internet.

NL B1 2019629NL B1 2019629

Dit octrooi is verleend ongeacht het bijgevoegde resultaat van het onderzoek naar de stand van de techniek en schriftelijke opinie. Het octrooischrift komt overeen met de oorspronkelijk ingediende stukken.This patent has been granted regardless of the attached result of the research into the state of the art and written opinion. The patent corresponds to the documents originally submitted.

Data processing apparatus and method of connecting the apparatus to a networkData processing apparatus and method or connecting the apparatus to a network

The invention relates to a data processing apparatus and to a method of connecting the data processing apparatus to a network.The invention relates to a data processing apparatus and to a method of connecting the data processing apparatus to a network.

From US 5,680,536 a data processing apparatus is known comprisingFrom US 5,680,536 a data processing apparatus is known including

- a shared chassis;- a shared chassis;

- a shared power supply;- a shared power supply;

- a first motherboard mounted in the shared chassis and powered by the shared power supply;- a first motherboard mounted in the shared chassis and powered by the shared power supply;

- a second motherboard mounted in the shared chassis and powered by the shared power supply.- a second motherboard mounted in the shared chassis and powered by the shared power supply.

Both motherboards support their own set of peripheral boards and a motherboard select circuit arbitrates which motherboard is in control of the shared keyboard port, a shared video port, and a shared serial port.Both motherboards support their own set of peripheral boards and a motherboard select circuit arbitrates which motherboard is in control of the shared keyboard port, a shared video port, and a shared serial port.

The instant invention has as an object to provide a reliable data processing apparatus with improved resistance, if not entire immunity, against software virus infections.The instant invention has as an object to provide a reliable data processing apparatus with improved resistance, if not entire immunity, against software virus infections.

It is common knowledge that software virus infections spread around through the Internet, and are spread for various reasons including extortion (ransomware) or even simply sabotage. According to Wikipedia computer viruses currently cause billions of dollars' worth of economic damage each year, due to causing system failure, wasting computer resources, corrupting data, increasing maintenance costs, etc. Software viruses can be especially dangerous when they infect computers that manage infrastructure components like airports, harbours, hospitals and power grids. In this way computer viruses become a powerful weapon in cyber warfare. In response software antivirus tools have been developed, and an industry of antivirus software has cropped up, selling or freely distributing virus protection to users of various operating systems.It is common knowledge that software viruses spread around through the Internet, and are spread for various reasons including extortion (ransomware) or equally simply sabotage. According to Wikipedia computer viruses currently cause billions of dollars worth of economic damage each year, due to causing system failure, wasting computer resources, corrupting data, increasing maintenance costs, etc. Software viruses can be especially dangerous when they infect computers that manage infrastructure components like airports, harbors, hospitals and power grids. In this way, computer viruses become a powerful weapon in cyber warfare. In response software antivirus tools have been developed, and an industry or antivirus software has cropped up, selling or freely distributing virus protection to users or various operating systems.

The invention proposes an entire new approach to tackle the current vulnerability of data processing apparatuses that connect or are connectable to the Internet.The invention proposes an entire new approach to tackle the current vulnerability of data processing apparatuses that connect or are connectable to the Internet.

Essential to the invention is that a third motherboard is mounted in the shared chassis and powered by the shared power supply, which is organized and structured to facilitate and control data exchange between the third motherboard and the first motherboard, and to facilitate and control data exchange between the third motherboard and the second motherboard. This enables that the first motherboard and the second motherboard can be structured in the chassis without interconnection between this first and second motherboard except for the third motherboard, so that no direct interchange of data is possible between the first motherboard and the second motherboard. In other words: from a data communication point of view the first motherboard and the second motherboard are communicatively isolated from each other. Accordingly a selected one of the first motherboard and the second motherboard is connected to the Internet, the other non-connected motherboard only has access to the Internet under control of the third motherboard which facilitates and controls data exchange between this third motherboard and the other two motherboards. This means that the non-connected motherboard is secure from viruses spread through the Internet and that may affect the connected motherboard through its connection with the Internet.Essential to the invention is that a third motherboard is mounted in the shared chassis and powered by the shared power supply, which is organized and structured to facilitate and control data exchange between the third motherboard and the first motherboard, and to facilitate and control data exchange between the third motherboard and the second motherboard. This allows that the first motherboard and the second motherboard can be structured in the chassis without interconnection between this first and second motherboard except for the third motherboard, so that no direct interchange of data is possible between the first motherboard and the second motherboard. In other words: from a data communication point of view the first motherboard and the second motherboard are communicatively isolated from each other. Accept a selected one of the first motherboard and the second motherboard is connected to the Internet, the other non-connected motherboard only has access to the Internet under control of the third motherboard which facilitates and controls data exchange between this third motherboard and the other two motherboards. This means that the non-connected motherboard is secure from viruses spread through the Internet and that may affect the connected motherboard through its connection to the Internet.

One thing and another is suitably structured by providing the first, the second and the third motherboard of the data processing apparatus each with a CPU, memory and hard disk and with connectors for peripheral equipment, and to restrict the connectors of the first motherboard to an intranet network connector and to a connection with the third motherboard only, and to provide the second motherboard with a connection with the third motherboard as well as with an Internet network connector and connectors for further ancillary equipment, while the third motherboard can then connect to the first motherboard and the second motherboard. Via an analog switch connectors for mouse, keyboard and video are supported to enable user communications with all motherboards. Within the meaning of this description the term 'intranet'' is meant to relate to a private network accessible only internally to members of an organization, whereas the term 'Internet'' re lates to the commonly known global system of interconnected computer networks (which former VP Al Gore has claimed to have invented).One thing and another is suitably structured by providing the first, the second and the third motherboard of the data processing apparatus each with a CPU, memory and hard disk and with connectors for peripheral equipment, and to restrict the connectors of the first motherboard to an intranet network connector and to a connection with the third motherboard only, and to provide the second motherboard with a connection with the third motherboard as well as with an Internet network connector and connectors for further ancillary equipment, while the third motherboard can then connect to the first motherboard and the second motherboard. Analog switch connectors for mouse, keyboard and video are supported to enable user communications with all motherboards. Within the meaning of this description the term 'intranet' is meant to relate to a private network accessible only internally to members of an organization, whereas the term 'Internet' 'lates to the commonly known global system or interconnected computer networks (which former VP Al Gore has claimed to have invented).

Immunity against software viruses spreading through the Internet is particularly promoted by the feature that the third motherboard has read/write capability with reference to both the hard disk of the first motherboard and with reference to the hard disk of the second motherboard. It is further desirable that the first motherboard and the second motherboard are incapable of accessing the hard disk of the third motherboard .Immunity against software viruses spreading through the Internet is particularly promoted by the feature that the third motherboard has read / write capability with reference to both the hard disk or the first motherboard and with reference to the hard disk or the second motherboard. It is further desirable that the first motherboard and the second motherboard are incapable of accessing the hard disk or the third motherboard.

The immunity against software viruses infecting the (first motherboard of the) data processing apparatus is further promoted by arranging that the intranet network connector of the first motherboard and the Internet network connector of the second motherboard are of physically different design so as to counteract or prevent accidental connection of the first motherboard with the Internet and accidental connection of the second motherboard with the intranet.The immunity against software viruses infecting the (first motherboard of the) data processing apparatus is further promoted by arranging that the intranet network connector or the first motherboard and the Internet network connector or the second motherboard or physically different design so as to counteract or prevent accidental connection of the first motherboard with the Internet and accidental connection of the second motherboard with the intranet.

It is further beneficial that the intranet network connector of the first motherboard and the Internet network connector of the second motherboard operate at different voltages corresponding to or defining a logical one so as to arrange that at least the first motherboard is incapable to communicate with the Internet. When for instance the intranet network connector of the first motherboard defines the threshold voltage of a logical one at 6 V, a logical zero and a logical one cannot be distinguished in the data flow from the Internet, wherein a threshold of approximately 2.5 V applies for separating a logical zero from a logical one.It is further beneficial that the intranet network connector of the first motherboard and the Internet network connector of the second motherboard operate at different voltages corresponding to or defining a logical one so as to arrange that at least the first motherboard is incapable to communicate with the Internet . When for instance the intranet network connector of the first motherboard defines the threshold voltage of a logical one at 6 V, a logical zero and a logical one cannot be distinguished in the data flow from the Internet, a threshold of approximately 2.5 V applies for separating a logical zero from a logical one.

A further preferable feature is that the first motherboard is loaded with a computer program which is arranged to continuously check IP addresses of sources within the intranet from which the first motherboard receives data, and to deny processing of such data when the IP address of the established source of the data is outside a predetermined range. In this way only data exchange can be accepted with known and trusted sources of data within the intranet of which the IP addresses are known.A further preferable feature is that the first motherboard is loaded with a computer program which is arranged to continuously check IP addresses or sources within the intranet from which the first motherboard receives data, and to deny processing or such data when the IP address of the established source of the data is outside a predetermined range. In this way only data exchange can be accepted with known and trusted sources or data within the intranet or which the IP addresses are known.

The invention will hereinafter be further elucidated with reference to the drawing of an exemplary embodiment of a data processing apparatus according to the invention that is not limiting as to the appended claims.The invention will be further elucidated with reference to the drawing of an exemplary embodiment of a data processing apparatus according to the invention that is not limiting as to the appended claims.

In the drawing:In the drawing:

- a single figure shows schematically a data processing apparatus according to the invention.- a single figure shows schematically a data processing apparatus according to the invention.

The figure shows a data processing apparatus 1 comprising :The figure shows a data processing apparatus 1 including:

- a shared chassis 2;- a shared chassis 2;

- a shared power supply 3;- a shared power supply 3;

- a first motherboard 4 mounted in the shared chassis 2 and powered by the shared power supply 3;- a first motherboard 4 mounted in the shared chassis 2 and powered by the shared power supply 3;

- a second motherboard 5 mounted in the shared chassis 2 and powered by the shared power supply 3; and- a second motherboard 5 mounted in the shared chassis 2 and powered by the shared power supply 3; and

- a third motherboard 6 mounted in the shared chassis 2 and powered by the shared power supply 3.- a third motherboard 6 mounted in the shared chassis 2 and powered by the shared power supply 3.

The first motherboard 4, the second motherboard 5 and the third motherboard 6 are each provided with an individual CPU 4', 5', 6', an individual memory 4'', 5'', 6'' and an individual hard disk 4''', 5''', 6''' and with connectors for peripheral equipment.The first motherboard 4, the second motherboard 5 and the third motherboard 6 are each provided with an individual CPU 4 ', 5', 6 ', an individual memory 4' ', 5' ', 6' 'and an individual hard disk 4 '' ', 5' '', 6 '' 'and with connectors for peripheral equipment.

The third motherboard 6 is organized and structured to facilitate and control back-and-forth or mutual data exchange between the third motherboard 6 and the first motherboard 4 as symbolized by the double arrow A, and to facilitate and control such two-way data exchange between the third motherboard 6 and the second motherboard 5 as symbolized by the double arrow B.The third motherboard 6 is organized and structured to facilitate and control back-and-forth or mutual data exchange between the third motherboard 6 and the first motherboard 4 as symbolized by the double arrow A, and to facilitate and control such two-way data exchange between the third motherboard 6 and the second motherboard 5 as symbolized by the double arrow B.

Such two-way data exchange is only possible when initiated by the third motherboard 6 or by a process running on this third motherboard 6. For this purpose the third motherboard 6 has read/write capability with reference to both the hard disk 4''' of the first motherboard 4 and with reference to the hard disk 5''’ of the second motherboard 5. Further the first motherboard 4 and the second motherboard 5 are incapable of accessing the hard disk 6'’' of the third motherboard 6.Such two-way data exchange is only possible when initiated by the third motherboard 6 or by a process running on this third motherboard 6. For this purpose the third motherboard 6 has read / write capability with reference to both the hard disk 4 '' ' or the first motherboard 4 and with reference to the hard disk 5 '' 'or the second motherboard 5. Further the first motherboard 4 and the second motherboard 5 are incapable of accessing the hard disk 6' '' or the third motherboard 6.

The connectors of the first motherboard 4 are restricted to an intranet network connector 7 and to a connec tion with the third motherboard 6 only as symbolized with the double arrow A. The second motherboard 5 is provided with a connection with the third motherboard 6 as symbolized by the double arrow B, as well as an Internet network connector 8 and connectors 9 for further ancillary equipment, such as USB, CDROM, Wi-Fi etc. The third motherboard 6 connects to the first motherboard 4 and to the second motherboard 5. Via an analog switch bank 14 that is connected to all three motherboards 4, 5, 6, a connection can be made to external devices such as a mouse 12, a keyboard 13 and a video display unit 11. The intranet is symbolized by the small cloud 14, whereas the Internet is symbolized by the relatively larger cloud 15.The connectors of the first motherboard 4 are restricted to an intranet network connector 7 and to a connection with the third motherboard 6 only as symbolized with the double arrow A. The second motherboard 5 is provided with a connection with the third motherboard 6 as symbolized by the double arrow B, as well as an Internet network connector 8 and connectors 9 for further ancillary equipment, such as USB, CDROM, Wi-Fi etc. The third motherboard 6 connects to the first motherboard 4 and to the second motherboard 5. Via an analog switch bank 14 that is connected to all three motherboards 4, 5, 6, a connection can be made to external devices such as a mouse 12, a keyboard 13 and a video display unit 11. The intranet is symbolized by the small cloud 14, whereas the Internet is symbolized by the relatively larger cloud 15.

The intranet network connector 7 of the first motherboard 4 and the Internet network connector 8 of the second motherboard 5 are preferably of physically different design so as to prevent or counteract accidental connection of the first motherboard 4 with the Internet 15 and accidental connection of the second motherboard 5 with the intranet 14. This means that the currently applied RJ-45 connector can still be applied for connection with the Internet 15 but is not to be applied to connect the first motherboard 4 with the intranet 14.The intranet network connector 7 of the first motherboard 4 and the Internet network connector 8 of the second motherboard 5 are preferably of physically different design so as to prevent or counteract an accidental connection of the first motherboard 4 with the Internet 15 and accidental connection of the second motherboard 5 with the intranet 14. This means that the currently applied RJ-45 connector can still be applied for connection to the Internet 15 but is not applied to connect the first motherboard 4 with the intranet 14.

It is further preferred that the intranet network connector 7 of the first motherboard 4 and the Internet network connector 8 of the second motherboard 5 operate at different voltages defining a logical one so as to arrange that at least the first mother-board 4 is incapable to communicate with the Internet 15.It is further preferred that the intranet network connector 7 or the first motherboard 4 and the Internet network connector 8 or the second motherboard 5 operate at different voltages defining a logical one so as to arrange that at least the first motherboard 4 is incapable to communicate with the Internet 15.

Finally it is remarked that one other preferable feature is that the first motherboard 4 is loaded with a computer program which is arranged to continuously check IP addresses of sources within the intranet 14 from which the first motherboard 4 receives data, and to deny processing of such data when the IP address of the established source of the data is outside a predetermined range.Finally it is remarked that one other preferable feature is that the first motherboard 4 is loaded with a computer program which is arranged to continuously check IP addresses of sources within the intranet 14 from which the first motherboard 4 receives data, and to deny processing of such data when the IP address or the established source or data is outside a predetermined range.

Although the invention has been discussed in the foregoing with reference to an exemplary embodiment of the apparatus of the invention, the invention is not restricted to this particular embodiment which can be varied in many ways without departing from the invention. The discussed exemplary embodiment shall therefore not be used to construe the appended claims strictly in accordance therewith. On the contrary the embodiment is merely intended to explain the wording of the appended claims without intent to limit the claims to this 5 exemplary embodiment. The scope of protection of the invention shall therefore be construed in accordance with the appended claims only, wherein a possible ambiguity in the wording of the claims shall be resolved using this exemplary embodiment.Although the invention has been discussed in the foregoing with reference to an embodiment of the apparatus of the invention, the invention is not restricted to this particular embodiment which can be varied in many ways without departing from the invention. The discussed example is therefore not used to construct the appended claims strictly in accordance with therewith. On the contrary the embodiment is merely intended to explain the wording of the appended claims without intent to limit the claims to this 5 exemplary embodiment. The scope of protection of the invention shall therefore be constructed in accordance with the appended claims only, where possible ambiguity in the wording of the claims shall be resolved using this exemplary embodiment.

Claims (14)

CONCLUSIESCONCLUSIONS 1. Data-verwerkingsinrichting (1) omvattende:A data processing device (1) comprising: - een gedeeld chassis (2);- a shared chassis (2); - een gedeelde voeding (3);- a shared power supply (3); - een eerste moederbord (4) gemonteerd in het gedeelde chassis (2) en gevoed door de gedeelde voeding (3);- a first motherboard (4) mounted in the shared chassis (2) and powered by the shared power supply (3); - een tweede moederbord (5) gemonteerd in het gedeelde chassis en gevoed door de gedeelde voeding (3);- a second motherboard (5) mounted in the shared chassis and powered by the shared power supply (3); met het kenmerk datcharacterized in that - een derde moederbord (6) gemonteerd is in het gedeelde chassis (2) en gevoed wordt door de gedeelde voeding (3), welke georganiseerd en gestructureerd is om data-uitwisseling te faciliteren en te beheersen tussen het derde moederbord (6) en het eerste moederbord (4), en om data-uitwisseling te faciliteren en te beheersen tussen het derde moederbord (6) en het tweede moederbord (5).- a third motherboard (6) is mounted in the shared chassis (2) and is powered by the shared power supply (3), which is organized and structured to facilitate and control data exchange between the third motherboard (6) and the first motherboard (4), and to facilitate and control data exchange between the third motherboard (6) and the second motherboard (5). 2. Data-verwerkingsinrichting volgens conclusie 1, met het kenmerk dat het eerste, het tweede en het derde moederbord ieder voorzien zijn van een CPU (4', 5½ 6' ) , geheugen (4'', 5'', 6'') en harde schijf (4'''f 5''', 6''') en met connectoren voor randapparatuur, waarbij de connectoren van het eerste moederbord (4) beperkt zijn tot slechts een intranet netwerkconnector (7) en tot een verbinding met het derde moederbord (6), en dat het tweede moederbord (5) voorzien is van een verbinding met het derde moederbord (6) alsook met een Internet netwerkconnector (8) en connectoren (9) voor verdere hulp-apparatuur, terwijl het derde moederbord (6) in verbinding staat met het eerste moederbord (4) en met het tweede moederbord (5).Data processing device according to claim 1, characterized in that the first, the second and the third motherboard are each provided with a CPU (4 ', 5½ 6'), memory (4 '', 5 '', 6 '' ), and hard disk (4 '''f5''', 6 '''), and with connectors for peripheral devices, in which the connectors of the first board (4) are limited to only one intranet network connector (7) and to a compound with the third motherboard (6), and that the second motherboard (5) is provided with a connection to the third motherboard (6) as well as with an Internet network connector (8) and connectors (9) for further auxiliary equipment, while the third motherboard (6) is connected to the first motherboard (4) and the second motherboard (5). 3. Data-verwerkingsinrichting volgens conclusie 2, met het kenmerk dat het derde moederbord (6) lees/schrijfcapaciteit bezit met betrekking tot de harde schijf (4''') van het eerste moederbord (4) en met betrekking tot de harde schijf (5''') van het tweede moederbord (5).Data processing device according to claim 2, characterized in that the third motherboard (6) has read / write capacity with respect to the hard disk (4 '' ') of the first motherboard (4) and with regard to the hard disk ( 5 '' ') from the second motherboard (5). 4. Data-verwerkingsinrichting volgens conclusie 2 ofA data processing device according to claim 2 or 3, met het kenmerk dat het eerste moederbord (4) en het tweede moederbord (5) incapabel zijn om toegang te krijgen tot de harde schijf (6''') van het derde moederbord (6).3, characterized in that the first motherboard (4) and the second motherboard (5) are incapable of accessing the hard disk (6 '' ') of the third motherboard (6). 5. Data-verwerkingsinrichting volgens één der conclusies 2-4, met het kenmerk dat de intranet netwerkconnector (7) van het eerste moederbord (4) en de Internet netwerkconnector (8) van het tweede moederbord (5) een fysiek verschillend ontwerp bezitten teneinde onbedoelde verbinding van het eerste moederbord (4) met het Internet (15) en onbedoelde verbinding van het tweede moederbord (5) met het intranet (14) tegen te gaan.Data processing device according to one of claims 2-4, characterized in that the intranet network connector (7) of the first motherboard (4) and the Internet network connector (8) of the second motherboard (5) have a physically different design in order to prevent unintended connection of the first motherboard (4) to the Internet (15) and unintended connection of the second motherboard (5) to the intranet (14). 6. Data-verwerkingsinrichting volgens één der conclusies 2-5, met het kenmerk dat de intranet netwerkconnector (7) van het eerste moederbord (4) en de Internet netwerkconnector (8) van het tweede moederbord (5) op verschillende spanningen werkzaam zijn die een logische één bepalen teneinde te bewerkstelligen dat tenminste het eerste moederbord (4) niet in staat is om te communiceren met het Internet (15).Data processing device according to one of claims 2 to 5, characterized in that the intranet network connector (7) of the first motherboard (4) and the Internet network connector (8) of the second motherboard (5) operate at different voltages determining a logical one to cause at least the first motherboard (4) to be unable to communicate with the Internet (15). 7. Data-verwerkingsinrichting volgens één der conclusies 1-6, met het kenmerk dat het eerste moederbord (4) geladen is met een computerprogramma welke is ingericht om continu IP-adressen van bronnen binnen het intranet (14) te controleren van welke het eerste moederbord (4) data ontvangt, en verwerking van dergelijke data te weigeren wanneer het IPadres van de vastgestelde bron van de data buiten een vooraf bepaald bereik ligt.Data processing device according to any of claims 1-6, characterized in that the first motherboard (4) is loaded with a computer program which is adapted to continuously check IP addresses of sources within the intranet (14) of which the first motherboard (4) receives data, and refuses processing of such data when the IP address of the determined source of the data is outside a predetermined range. 8. Werkwijze voor het verschaffen van een data- verwerkingsinrichting (1) welke geschikt is om verbonden te worden met een netwerk (14, 15) van andere data-verwerkingsinrichtingen, omvattende de stap van het voorzien van de dataverwerkingsinrichting (1) vanA method for providing a data processing device (1) suitable for being connected to a network (14, 15) of other data processing devices, comprising the step of providing the data processing device (1) with - een gedeeld chassis (2);- a shared chassis (2); - een gedeelde voeding (3);- a shared power supply (3); - een eerste moederbord (4) gemonteerd in het gedeelde chassis (2) en gevoed door de gedeelde voeding (3);- a first motherboard (4) mounted in the shared chassis (2) and powered by the shared power supply (3); - een tweede moederbord (5) gemonteerd in het gedeelde chassis (2) en gevoed door de gedeelde voeding (3);- a second motherboard (5) mounted in the shared chassis (2) and powered by the shared power supply (3); gekenmerkt door de stap vancharacterized by the step of - het monteren van een derde moederbord (6) in het gedeelde chassis (2) en bewerkstelligen dat deze gevoed wordt door de gedeelde voeding (3), en het organiseren en structureren van het derde moederbord (6) om data-uitwisseling te faciliteren en te beheersen tussen het derde moederbord (6) en het eerste moederbord (4), en om data-uitwisseling te faciliteren en te beheersen tussen het derde moederbord (6) en het tweede moederbord (5).- mounting a third motherboard (6) in the shared chassis (2) and ensuring that it is powered by the shared power supply (3), and organizing and structuring the third motherboard (6) to facilitate data exchange and to control between the third motherboard (6) and the first motherboard (4), and to facilitate and control data exchange between the third motherboard (6) and the second motherboard (5). 9. Werkwijze volgens conclusie 8, gekenmerkt doorThe method according to claim 8, characterized by - het verschaffen van het eerste, tweede en derde moederbord van een CPU (4', 5', 6'), geheugen (4'', 5'', 6'') en harde schijf (4''', 5''', 6''') en met connectoren voor randapparatuur,- providing the first, second and third motherboards of a CPU (4 ', 5', 6 '), memory (4' ', 5' ', 6' ') and hard disk (4' '', 5 ' '', 6 '' ') and with connectors for peripherals, - erin te voorzien dat de connectoren van het eerste moederbord (4) beperkt zijn tot slechts een intranet netwerkconnector (7) en tot een verbinding met het derde moederbord (6) ,- providing that the connectors of the first motherboard (4) are limited to only one intranet network connector (7) and to a connection to the third motherboard (6), - erin te voorzien dat het tweede moederbord (5) een verbinding heeft met het derde moederbord (6) alsook met een Internet netwerkconnector (8) en connectoren (9) voor verdere randapparatuur, en- providing that the second motherboard (5) has a connection with the third motherboard (6) as well as with an Internet network connector (8) and connectors (9) for further peripherals, and - het verbinden van het derde moederbord (6) met het eerste moederbord (4) en met het tweede moederbord (5).- connecting the third motherboard (6) with the first motherboard (4) and with the second motherboard (5). 10. Werkwijze volgens conclusie 9, gekenmerkt door erin te voorzien dat het derde moederbord (6) lees/schrijfmogelijkheid bezit met betrekking tot de harde schijf (4' ' ' ) van het eerste moederbord (4) en met betrekking tot de harde schijf (S'’'') van het tweede moederbord (5).A method according to claim 9, characterized in that the third motherboard (6) has read / write capability with respect to the hard disk (4 '' ') of the first motherboard (4) and with respect to the hard disk ( S '' '') of the second motherboard (5). 11. Data-verwerkingsinrichting volgens conclusie 9 ofA data processing device according to claim 9 or 10, gekenmerkt door erin te voorzien dat het eerste moederbord (4) en het tweede moederbord (5) niet in staat zijn om toegang te krijgen tot de harde schijf ) van het derde moederbord (6) .10, characterized by providing that the first motherboard (4) and the second motherboard (5) are unable to access the hard disk) of the third motherboard (6). 12. Werkwijze volgens één der conclusies 9 - 11, gekenmerkt door erin te voorzien dat de intranet netwerkconnector (7) van het eerste moederbord (4) en de Internet netwerkconnector (8) van het tweede moederbord (5) een fysiek verschillend ontwerp bezitten teneinde onbedoelde verbinding van het eerste moederbord (4) met het Internet (15) en onbedoelde verbinding van het tweede moederbord (5) met het intranet (14) tegen te gaan.Method according to one of claims 9 to 11, characterized in that the intranet network connector (7) of the first motherboard (4) and the Internet network connector (8) of the second motherboard (5) have a physically different design in order to prevent unintended connection of the first motherboard (4) to the Internet (15) and unintended connection of the second motherboard (5) to the intranet (14). 13. Werkwijze volgens één der conclusies 9 - 12, gekenmerkt door erin te voorzien dat de intranet netwerkconnec2019629 tor (7) van het eerste moederbord (4) en de Internet netwerkconnector (8) van het tweede moederbord (5) op verschillende spanningen werkzaam zijn die een logische één definiëren teneinde te bewerkstelligen dat tenminste het eerste moederbord 5 (4) niet in staat is om te communiceren met het Internet (15).Method according to one of claims 9 to 12, characterized in that the intranet network connector (1919) of the first motherboard (4) and the Internet network connector (8) of the second motherboard (5) operate at different voltages defining a logical one to cause at least the first motherboard 5 (4) to be unable to communicate with the Internet (15). 14. Werkwijze volgens één der conclusies 8 - 13, gekenmerkt door het laden van het eerste moederbord (4) met een computerprogramma welke is ingericht om continu IP-adressen van bronnen binnen het intranet (14) te controleren van welke 10 het eerste moederbord (4) data ontvangt, en verwerking van dergelijke data te weigeren wanneer het IP-adres van de vastgestelde bron van de data buiten een vooraf bepaald bereik ligt.14. Method as claimed in any of the claims 8-13, characterized by loading the first motherboard (4) with a computer program which is adapted to continuously check IP addresses of sources within the intranet (14) of which the first motherboard ( 4) receive data, and refuse processing of such data when the IP address of the determined source of the data is outside a predetermined range. 1/11/1
NL2019629A 2017-09-26 2017-09-26 Data processing apparatus and method of connecting the apparatus to a network NL2019629B1 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
NL2019629A NL2019629B1 (en) 2017-09-26 2017-09-26 Data processing apparatus and method of connecting the apparatus to a network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
NL2019629A NL2019629B1 (en) 2017-09-26 2017-09-26 Data processing apparatus and method of connecting the apparatus to a network

Publications (1)

Publication Number Publication Date
NL2019629B1 true NL2019629B1 (en) 2019-04-03

Family

ID=60081241

Family Applications (1)

Application Number Title Priority Date Filing Date
NL2019629A NL2019629B1 (en) 2017-09-26 2017-09-26 Data processing apparatus and method of connecting the apparatus to a network

Country Status (1)

Country Link
NL (1) NL2019629B1 (en)

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140068286A1 (en) * 2011-03-21 2014-03-06 NCS Technologies, Inc. Adaptive computing system with modular control, switching, and power supply architecture
US9332023B1 (en) * 2014-08-25 2016-05-03 Symantec Corporation Uploading signatures to gateway level unified threat management devices after endpoint level behavior based detection of zero day threats

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140068286A1 (en) * 2011-03-21 2014-03-06 NCS Technologies, Inc. Adaptive computing system with modular control, switching, and power supply architecture
US9332023B1 (en) * 2014-08-25 2016-05-03 Symantec Corporation Uploading signatures to gateway level unified threat management devices after endpoint level behavior based detection of zero day threats

Similar Documents

Publication Publication Date Title
US11016783B2 (en) Secure storage access utilizing multi-path layer of host device to identify processes executed on the host device with authorization to access data of a storage system
US10474816B2 (en) Secure memory implementation for secure execution of Virtual Machines
US11470120B2 (en) Providing different levels of resource access to a computing device that is connected to a dock
AU2017251702B2 (en) Use of freeform metadata for access control
EP3432549A1 (en) Method and apparatus for processing user requests
WO2021216930A1 (en) System and method for continuous collection, analysis and reporting of attack paths in a directory services environment
JP2016031762A5 (en)
AU2015374078A1 (en) Systems and methods for automatically applying firewall policies within data center applications
US20140207861A1 (en) Access control policies associated with freeform metadata
US9171178B1 (en) Systems and methods for optimizing security controls for virtual data centers
CN107643940A (en) Container creation method, relevant device and computer-readable storage medium
US8091115B2 (en) Device-side inline pattern matching and policy enforcement
US10225284B1 (en) Techniques of obfuscation for enterprise data center services
US9805190B1 (en) Monitoring execution environments for approved configurations
CN105049445B (en) A kind of access control method and free-standing access controller
US10609013B2 (en) Twin factor authentication for controller
EP3811250A1 (en) Systems and methods for controlling access to a peripheral device
JP2019532405A (en) System and method for detecting malicious processes on computing devices
NL2019629B1 (en) Data processing apparatus and method of connecting the apparatus to a network
US9672173B2 (en) Shared PCI interrupt line management
WO2019190607A1 (en) Systems and methods for providing secure memory
JP2016184214A (en) Access control system and access control method
US10318767B2 (en) Multi-tier security framework
US20150347050A1 (en) Methods and apparatus for dividing secondary storage
US10771482B1 (en) Systems and methods for detecting geolocation-aware malware

Legal Events

Date Code Title Description
MM Lapsed because of non-payment of the annual fee

Effective date: 20231001