TW201404072A - Remote management method and remote management device thereof - Google Patents

Remote management method and remote management device thereof Download PDF

Info

Publication number
TW201404072A
TW201404072A TW101123910A TW101123910A TW201404072A TW 201404072 A TW201404072 A TW 201404072A TW 101123910 A TW101123910 A TW 101123910A TW 101123910 A TW101123910 A TW 101123910A TW 201404072 A TW201404072 A TW 201404072A
Authority
TW
Taiwan
Prior art keywords
instruction
remote management
management device
central control
control computer
Prior art date
Application number
TW101123910A
Other languages
Chinese (zh)
Other versions
TWI504197B (en
Inventor
Wen Zhang
Original Assignee
Aten Int Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Aten Int Co Ltd filed Critical Aten Int Co Ltd
Priority to TW101123910A priority Critical patent/TWI504197B/en
Priority to KR1020130062883A priority patent/KR101454017B1/en
Priority to CN201310270484.7A priority patent/CN103533019B/en
Publication of TW201404072A publication Critical patent/TW201404072A/en
Application granted granted Critical
Publication of TWI504197B publication Critical patent/TWI504197B/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/08Protocols specially adapted for terminal emulation, e.g. Telnet
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/16Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]

Abstract

A remote management device, coupled through its network interface to a console computer and through its serial interface to a target device such that the terminal computer can control the target device through the remote management device, comprises a first physical layer, a second physical layer, and an application layer. The first physical layer receives a first command from the console computer or sends a second command to the console computer according to a first communication protocol. The second physical layer sends a third command to the target device or receives a fourth command from the target device according to a second communication protocol. The application layer transforms the first command into the third command through the second physical layer, or transforms the fourth command into the second command through the first physical layer. The application layer further parses the fourth command to determine whether the fourth command is a to-be-filtered command. If the fourth command matches with the to-be-filtered command, an enter command from the console computer will be blocked such that the target device does not respond to the to-be-filtered command.

Description

遠端管理方法及使用該方法之遠端管理裝置 Remote management method and remote management device using the same

本發明係關於一種遠端管理方法及使用該方法之遠端管理裝置;具體而言,本發明係關於一種可過濾指令之遠端管理方法及套用其方法之遠端管理裝置。 The present invention relates to a remote management method and a remote management device using the same; in particular, the present invention relates to a remote management method for a filterable instruction and a remote management device applying the same.

一般而言,網路的概念或架構可以第1圖所示之多種模型來表示,例如OSI模型、DoD模型或是TCP/IP協定組合。以DoD模型為例,其係為一四層的架構,包含一「應用層」、一「傳輸層」、一「網路層」以及一「連結層」。雖然OSI模型、DoD模型或是TCP/IP協定組合對於個別階層所定義的功能在劃分上不盡相同,但是仍可看出其間的對應關係。例如DoD模型之「應用層」即同時對應至OSI模型之「會議層」、「表現層」及「應用層」等三層;DoD模型之「連結層」對應至OSI模型之「鏈結層」及「實體層」。另外,DoD模型之「連結層」則對應至TCP/IP協定組合之LLC層、MAC層及實體連線。 In general, the concept or architecture of a network can be represented by a variety of models as shown in Figure 1, such as an OSI model, a DoD model, or a TCP/IP protocol combination. Taking the DoD model as an example, it is a four-layer architecture, including an "application layer", a "transport layer", a "network layer" and a "link layer". Although the OSI model, the DoD model, or the TCP/IP protocol combination differs in the functions defined for individual classes, the correspondence between them can be seen. For example, the "application layer" of the DoD model corresponds to three layers of the "conference layer", "presentation layer" and "application layer" of the OSI model; the "connection layer" of the DoD model corresponds to the "chain layer" of the OSI model. And the "physical layer". In addition, the "link layer" of the DoD model corresponds to the LLC layer, MAC layer and entity connection of the TCP/IP protocol combination.

具有網路介面的遠端管理裝置使得某一中控電腦可經由網路管理及控制一被控裝置,也可使得被控裝置可與該中控電腦產生互動,使得電腦機房或是工業控制設備的管理者即使身處遙遠的異地亦可由遠端對伺服器、網路設備或是工業控制設備進行控制。與個人電腦(PC)或伺服器(Server)不同的是,大部分的網路設備或工業控制設備都不具有影像輸出的能力,使得在中控電腦前的管理者僅能由純文字的使用者介面及串列介 面與其互動。管理者必須以輸入多個字元的方式來對這些設備下達指令,然後藉由中控電腦之螢幕所產生的反應(純文字介面)來與這些設備進行互動。 The remote management device with the network interface enables a central control computer to manage and control a controlled device via the network, and also enables the controlled device to interact with the central control computer, so that the computer room or the industrial control device The administrator can control the server, network device or industrial control device from a remote location even in remote locations. Unlike personal computers (PCs) or servers (Servers), most network devices or industrial control devices do not have the ability to output images, so that managers in front of the central computer can only use plain text. Interface and serial interface Face interaction with it. Managers must place commands on these devices by entering multiple characters, and then interact with these devices through the reaction (plain text interface) generated by the screen of the central computer.

由於上述遠端管理裝置使得某一中控電腦可經由網路管理及控制一被控裝置,因此實際上被控裝置之使用者的人數並不限於一人。為了防止某一使用者的操作行為對其他使用者造成不便,遠端管理裝置實有針對不同使用者劃分權限並依據其使用者權限進行管理或限制之必要。 Since the remote management device allows a central control computer to manage and control a controlled device via the network, the number of users of the controlled device is not limited to one person. In order to prevent the inconvenience of the operation behavior of a certain user from other users, the remote management device has the necessity of dividing the authority for different users and managing or restricting according to the user rights.

本發明之一目的在於提供一種遠端管理方法及使用該方法之遠端管理裝置,其具有反射式或穿透式指令過濾(Command Filter)功能,以阻絕某些指令之執行,進而提供權限管理的功能。 An object of the present invention is to provide a remote management method and a remote management device using the same, which has a reflective or transmissive Command Filter function to block the execution of certain instructions, thereby providing rights management. The function.

本發明之另一目的在於提供一種遠端管理方法及使用該方法之遠端管理裝置,可提供不同裝置間之訊號傳輸的介面轉換服務。 Another object of the present invention is to provide a remote management method and a remote management device using the same, which can provide an interface conversion service for signal transmission between different devices.

本發明提供一種遠端管理方法,用於一中控電腦、一遠端管理裝置與一被控裝置之間,該遠端管理裝置之一端經由網路耦接至一中控電腦,該遠端管理裝置之另一端更耦接至該被控裝置,使得該中控電腦可經由該遠端管理裝置控制該被控裝置,該方法至少包含下列步驟: The present invention provides a remote management method for a central control computer, a remote management device, and a controlled device. One end of the remote management device is coupled to a central control computer via a network. The other end of the management device is further coupled to the controlled device, so that the central control computer can control the controlled device via the remote management device, and the method includes at least the following steps:

對該遠端管理裝置設定一待過濾指令;在該中控電腦端輸入一或多個字元;由該中控電腦將該一或多個字元轉換為一或多個網路封包後經由網路傳送至該遠端管理裝置。其中該設定 待過濾指令之使用者可能不同或相同於輸入該些字元之使用者,也可能由不同的中控電腦分別進行設定與輸入字元,例如由某一中控電腦進行待過濾指令的設定,然後由另一中控電腦輸入一或多個字元。 Setting a to-be-filtered command to the remote management device; inputting one or more characters on the central control computer; converting the one or more characters into one or more network packets by the central control computer The network is transmitted to the remote management device. Which setting The user of the command to be filtered may be different or the same as the user who inputs the characters, and may also be set and input by different central control computers, for example, the setting of the to-be-filtered command by a central control computer. Then one or more characters are entered by another central control computer.

在該遠端管理裝置端,將該一或多個網路封包轉換為該被控裝置之可讀(Readable)指令。 At the remote management device side, the one or more network packets are converted into Readable instructions of the controlled device.

在該被控裝置端,因應於該被控裝置端之可讀指令產生一終端機控制指令;將該終端機控制指令經由該遠端管理裝置傳給該中控電腦。 At the controlled device end, a terminal control command is generated according to the readable command of the controlled device end; and the terminal control command is transmitted to the central control computer via the remote management device.

在該遠端管理裝置端,將該終端機控制指令進行暫存,並在收到來自該中控電腦之一換行指令後,依據暫存之該終端機控制指令判斷該一或多個字元是否為該待過濾指令;若是,則在該遠端管理裝置端將該換行指令攔截,使該被控裝置無法收到該換行指令。若該被控裝置沒有收到該換行指令,便不會對該待過濾指令產生反應,因此對於下達此待過濾指令的使用者而言,會感覺到其下達之指令被遠端管理裝置阻絕了。 At the remote management device end, the terminal control command is temporarily stored, and after receiving a line feed instruction from the central control computer, determining the one or more characters according to the temporarily stored terminal control command Whether it is the to-be-filtered instruction; if yes, intercepting the line-feeding instruction at the remote management device end, so that the controlled device cannot receive the line-feeding instruction. If the controlled device does not receive the line feed command, it will not react to the to-be-filtered command, so the user who issues the command to be filtered will feel that the command issued is blocked by the remote management device. .

本發明提供一種遠端管理裝置,使得一中控電腦可經由該遠端管理裝置控與一被控裝置產生互動,該遠端管理裝置至少包含:一第一實體層,對應於該中控電腦,並依據一第一通訊協議自該中控電腦接收一第一指令,或依據該第一通訊協議傳送一第二指令至該中控電腦,且該第一通訊協議至少包含乙太網路協議;一第二實體層,對應於該被控裝置,並依據一第二通訊協議傳送一第三指令至該被控裝置以控制該被控裝置,或依據該第二通訊協議自該被控裝置接收一第四指令;以及一應 用層,對應於該第一實體層及該第二實體層,且該應用層因應於該第一指令進而使該第二實體層產生該第三指令,或因應於該第四指令進而使該第一實體層依據一第三通訊協議產生該該第二指令,以控制該中控電腦產生回應,其中該應用層更解析該第四指令,判斷該第四指令是否為一待過濾指令,若該第四指令該係為一待過濾指令,則該應用層攔截由該中控電腦所發出之一觸發指令,使該被控裝置無法接收到該觸發指令,其中該第一通訊協議至少包含乙太網路協議。 The present invention provides a remote management device, such that a central control computer can interact with a controlled device via the remote management device, and the remote management device includes at least: a first physical layer corresponding to the central control computer And receiving a first instruction from the central control computer according to a first communication protocol, or transmitting a second instruction to the central control computer according to the first communication protocol, and the first communication protocol at least includes an Ethernet protocol a second physical layer corresponding to the controlled device, and transmitting a third command to the controlled device according to a second communication protocol to control the controlled device, or from the controlled device according to the second communication protocol Receiving a fourth instruction; a layer corresponding to the first physical layer and the second physical layer, and the application layer causes the second entity to generate the third instruction according to the first instruction, or corresponding to the fourth instruction The first entity layer generates the second instruction according to a third communication protocol, to control the central control computer to generate a response, wherein the application layer further parses the fourth instruction, and determines whether the fourth instruction is a to-be-filtered instruction. The fourth instruction is a to-be-filtered instruction, and the application layer intercepts one of the triggering instructions issued by the central control computer, so that the controlled device cannot receive the triggering instruction, wherein the first communication protocol includes at least B Too network protocol.

本發明係提供一種遠端管理方法及使用該方法之遠端管理裝置。請參閱第二A圖,本發明揭露一種遠端管理裝置10,使得一中控電腦50可管理一或多個遠端管理裝置10,並經由該遠端管理裝置10進一步控制該被控裝置70。本發明之遠端管理裝置10包含多種操作模式,例如主控台管理(Console Management)模式、TCP伺服器模式(TCP Server Mode)、TCP用戶模式(TCP Client Mode)及真實通訊埠模式(Real COM Port),並且在主控台管理模式下本發明之遠端管理裝置10具有一指令過濾(Command Filter)功能。另外,本發明之遠端管理裝置10係在中控電腦50與被控裝置70之間作為一介面轉換裝置,使得中控電腦50可與不同介面之被控裝置70互相進行通訊。例如中控電腦50可以其網路介面間接與被控裝置70之串列介面通訊。 The present invention provides a remote management method and a remote management device using the same. Referring to FIG. 2A, the present invention discloses a remote management device 10 such that a central control computer 50 can manage one or more remote management devices 10 and further control the controlled device 70 via the remote management device 10. . The remote management device 10 of the present invention includes various operation modes, such as a console management mode, a TCP server mode, a TCP client mode, and a real communication mode (Real COM). Port), and in the console management mode, the remote management device 10 of the present invention has a Command Filter function. In addition, the remote management device 10 of the present invention acts as an interface conversion device between the central control computer 50 and the controlled device 70, so that the central control computer 50 can communicate with the controlled devices 70 of different interfaces. For example, the central control computer 50 can communicate with the serial interface of the controlled device 70 indirectly through its network interface.

如第二A圖所示,本發明之遠端管理裝置10具有一第一端10A及一第二端10B。該第一端10A及該第二端10B可位於遠端管理裝置10之殼體的同一側或不同側。就功能而言,該第一端10A係為一網路介面而該第二端10B係為一串列介面。其中第一端10A可經由網路耦接至一中控電腦50,第二端10B更可耦接至一或多個被控裝置70,使得該中控電腦50可管理該遠端管理裝置10,並經由該遠端管理裝置10進一步控制該被控裝置70。當耦接至複數個被控裝置70時,本發明之遠端管理裝置10使得中控電腦50可選擇在不同的被控裝置70之間進行切換。 As shown in FIG. 2A, the remote management device 10 of the present invention has a first end 10A and a second end 10B. The first end 10A and the second end 10B can be located on the same side or on different sides of the housing of the distal management device 10. In terms of function, the first end 10A is a network interface and the second end 10B is a serial interface. The first end 10A can be coupled to a central control computer 50 via a network, and the second end 10B can be coupled to one or more controlled devices 70, so that the central control computer 50 can manage the remote management device 10. And the controlled device 70 is further controlled via the remote management device 10. When coupled to a plurality of controlled devices 70, the remote management device 10 of the present invention enables the central control computer 50 to selectively switch between different controlled devices 70.

該被控裝置70係經由其串列介面(Serial Interface)與本發明之遠端管理裝置10的第二端10B進行耦接。串列介面係指以DB9連接器、DB25連接器或是其他相容之連接器為實體連接媒介,並以RS-232、RS-422或RS-485等標準為通訊協議之介面。因此,一般而言該中控電腦50僅能藉由一文字化介面與該被控裝置70進行互動。被控裝置70可為伺服器(Servers)、數據機(Modems)、集線器(Hubs)、路由器(Routers)、印表機、條碼讀取器(Barcode Readers)或電源管理裝置(Power Management Devices)等。另外RS-232、RS-422或RS-485亦可稱為EIA-232、EIA-422或EIA-485。 The controlled device 70 is coupled to the second end 10B of the remote management device 10 of the present invention via its serial interface. Serial interface refers to the interface of DB9 connector, DB25 connector or other compatible connector as the physical connection medium, and the communication protocol is adopted by RS-232, RS-422 or RS-485 standards. Therefore, in general, the central control computer 50 can only interact with the controlled device 70 through a textual interface. The controlled device 70 can be a server, a modem, a hub, a router, a printer, a bar code reader, or a power management device. . In addition, RS-232, RS-422 or RS-485 can also be called EIA-232, EIA-422 or EIA-485.

該中控電腦50更具有一螢幕51以及一鍵盤52,或是其他 的輸入/輸出裝置。該中控電腦50之上更有運行一遠端登入程式,例如Telnet或是SSH等,使得遠端管理裝置10可將該中控電腦50視為一終端機(Terminal)。該遠端登入程式可由遠端管理裝置10之製造商所提供,以搭配該遠端管理裝置10一同使用;或者是由遠端管理裝置10之製造商以外之其他廠商所提供。 The central control computer 50 has a screen 51 and a keyboard 52, or other Input/output device. The central control computer 50 further runs a remote login program, such as Telnet or SSH, so that the remote management device 10 can regard the central control computer 50 as a terminal. The remote login program can be provided by the manufacturer of the remote management device 10 for use with the remote management device 10; or by other vendors than the manufacturer of the remote management device 10.

仍請參閱第二A圖,在外觀上,本發明之遠端管理裝置10的第一端10A具有至少一個網路連接埠,用以連接至區域網路或是網際網路。本發明之遠端管理裝置10的第二端10B具有一或多個裝置連接埠,用以耦接一或多個被控裝置70。在每個裝置連接埠與每個被控裝置70之間更具有一條纜線20,此纜線20的第一端具有一RJ-45連接器、DB9連接器或是DB25連接器,而此纜線20的第二端亦可具有一RJ-45連接器、DB9連接器或是DB25連接器。換句話說,此纜線之兩端可均為RJ-45連接器;或是此纜線之兩端可均為DB9連接器;或是此纜線之第一端為RJ-45連接器而第二端為DB9連接器,本領域具有通常知識者可依此類推其多種不同的組合方式。此纜線可例如為台灣宏正自動科技股份有限公司所提供之SA0141、SA0142、SA0143或SA0144。此纜線20的第一端係用以連接遠端管理裝置10的上述裝置連接埠;此纜線20的第二端係用以連接被控裝置70之串列介面。 Still referring to FIG. 2A, in appearance, the first end 10A of the remote management device 10 of the present invention has at least one network port for connecting to a local area network or an internet. The second end 10B of the remote management device 10 of the present invention has one or more device ports for coupling one or more controlled devices 70. There is a cable 20 between each device connection port and each controlled device 70. The first end of the cable 20 has an RJ-45 connector, a DB9 connector or a DB25 connector, and the cable The second end of the wire 20 can also have an RJ-45 connector, a DB9 connector or a DB25 connector. In other words, both ends of the cable may be RJ-45 connectors; or both ends of the cable may be DB9 connectors; or the first end of the cable is an RJ-45 connector The second end is a DB9 connector, and those skilled in the art can push a variety of different combinations thereof. This cable can be, for example, SA0141, SA0142, SA0143 or SA0144 provided by Taiwan Acer Automation Technology Co., Ltd. The first end of the cable 20 is used to connect the device connection port of the remote management device 10; the second end of the cable 20 is used to connect the serial interface of the controlled device 70.

請參閱第二B圖,為便於說明起見,本圖僅顯示一個被控 裝置70,但實際上,本發明之遠端管理裝置10可連接之被控裝置70的數量不限於一個。本發明之遠端管理裝置10至少包含一第一實體層(Physical Layer)100、一第二實體層200及一應用層(Application Layer)300。其中,該第一實體層100係對應於該中控電腦50,並依據一第一通訊協議經由網路自該中控電腦50接收一第一指令410,或依據該第一通訊協議經由網路傳送一第二指令420至該中控電腦50。一般而言,實體層所規範的項目有纜線的材料特性、訊號傳輸功率、訊號的邏輯零與邏輯壹如何定義、連接器的接腳數目、每個接腳的功能以及在傳輸線上的編碼/解碼等事項。 Please refer to the second B diagram. For the sake of explanation, this figure only shows one charged. The device 70, but in practice, the number of controlled devices 70 to which the remote management device 10 of the present invention can be connected is not limited to one. The remote management device 10 of the present invention includes at least a first physical layer (Physical Layer) 100, a second physical layer 200, and an application layer (Application Layer) 300. The first physical layer 100 corresponds to the central control computer 50, and receives a first instruction 410 from the central control computer 50 via the network according to a first communication protocol, or via the network according to the first communication protocol. A second command 420 is transmitted to the central control computer 50. In general, the items specified by the physical layer have the material properties of the cable, the signal transmission power, how the logic zero and the logic are defined, the number of pins of the connector, the function of each pin, and the code on the transmission line. / decoding and other matters.

另外,此第一指令410係由中控電腦50之使用者敲擊鍵盤52之按鍵所輸入之一或多個字元(Character)所轉換而來的;或者是,此第一指令410係由中控電腦50之輸入/輸出裝置所提供之一預設選單的某一選項中所選出的;或者是其他任意的適當方式。中控電腦50之作業系統會協調前述之遠端登入程式及中控電腦50之網路卡將此一或多個字元或是預設選單之選項轉換為此第一指令410。另一方面,當中控電腦50之網路卡依據第一通訊協議收到第二指令420後,會經由其作業系統及遠端登入程式控制螢幕51產生適當的反應。舉例而言,當中控電腦50之一使用者陸續敲擊鍵盤52上面的d鍵、i鍵以及r鍵之後,螢幕51上面便會在命令提示符(Prompt)之後依序顯示d-i-r這三個字元。此第一指令410之核心係為一連 串依據美國信息交換標準碼(ASCII;American Standard Code for Information Interchange)所組成之代碼。 In addition, the first instruction 410 is converted by one or more characters input by the user of the central control computer 50 by tapping the button of the keyboard 52; or, the first instruction 410 is The input/output device of the central control computer 50 is selected from one of the options of the preset menu; or any other suitable manner. The operating system of the central control computer 50 coordinates the aforementioned remote login program and the network card of the central control computer 50 to convert the one or more characters or the options of the preset menu into the first instruction 410. On the other hand, after receiving the second command 420 according to the first communication protocol, the network card of the central control computer 50 will generate an appropriate response via the operating system and the remote login program control screen 51. For example, after one of the central control computer 50 taps the d key, the i key, and the r key on the keyboard 52, the screen 51 displays the three words dir sequentially after the command prompt (Prompt). yuan. The core of this first instruction 410 is a company The string is based on the code consisting of the American Standard Code for Information Interchange (ASCII; American Standard Code for Information Interchange).

ASCII碼大致可以分作三部分組成。第一部分由00H到1FH共32個,一般用來通訊或作為控制之用,有些字元可顯示於螢幕,有些則無法顯示在螢幕上,但能看到其效果(例如換行字元、歸位字元)。第二部分是由20H到7FH共96個,這96個字元是用來表示阿拉伯數字、英文字母大小寫和底線、括號等符號,都可以顯示在螢幕上。第三部分由80H到0FFH共128個字元,一般稱為『擴充字元』,這128個擴充字元是由IBM制定的,並非標準的ASCII碼。這些字元是用來表示框線、音標和其他歐洲非英語系的字母。 The ASCII code can be roughly divided into three parts. The first part consists of 32 from 00H to 1FH. It is generally used for communication or control. Some characters can be displayed on the screen, and some can not be displayed on the screen, but can see the effect (such as line break characters, homing Character). The second part is 96 from 20H to 7FH. These 96 characters are used to represent Arabic numerals, English letters, upper and lower lines, brackets and other symbols, which can be displayed on the screen. The third part consists of 80 characters from 80H to 0FFH. It is generally called "extended character". These 128 extended characters are developed by IBM and are not standard ASCII codes. These characters are used to represent lines, phonetic symbols, and other European non-English language letters.

另一方面,當一使用者在中控電腦50面前,欲經由遠端登入程式實際操作被控裝置70時,如果使用者欲輸入一dir指令以觀看被控裝置70之目錄時,必須依序敲擊鍵盤52上面的d鍵、i鍵以及r鍵以分別在命令提示符後面輸入d-i-r這三個字元。同時,被控裝置70在收到這三個字元後也會相對應地藉由該遠端登入程式來控制中控電腦50,使中控電腦50之螢幕51可顯示d-i-r這三個字元。如此中控電腦50之使用者便可與該被控裝置70產生互動。然而,在d-i-r三個字元輸入完畢之後,使用者仍必須輸入一觸發指令,例如一換行指令(Enter Command),否則除了發出終端控制指令使螢幕51在命令提示符後面顯示d-i-r這三個字元外,此被控裝置70本身將不會 繼續產生其他反應,亦即使用者還是無法在螢幕51上看到被控裝置70之目錄。因此該換行指令實際上係為一可觸發被控裝置70執行由多個字元所構成之完整指令的觸發指令。此換行指令所對應之ASCII碼(十六進位)係為0AH、0DH或是0AH加上0DH。一般而言,0AH代表換行(Line Feed;LF);0DH代表游標回到最左邊(Carriage Return;CR)。 On the other hand, when a user wants to actually operate the controlled device 70 via the remote login program in front of the central control computer 50, if the user wants to input a dir command to view the directory of the controlled device 70, it must be sequentially Tap the d key, i key, and r key on the keyboard 52 to enter the three characters dir at the command prompt. At the same time, after receiving the three characters, the controlled device 70 correspondingly controls the central control computer 50 by the remote login program, so that the screen 51 of the central control computer 50 can display the three characters of dir. . The user of the central control computer 50 can interact with the controlled device 70. However, after the three characters of dir are input, the user still has to input a trigger command, such as a line command (Enter Command). Otherwise, in addition to issuing the terminal control command, the screen 51 displays the words dir after the command prompt. Outside the yuan, this controlled device 70 itself will not Other reactions continue to occur, i.e., the user is still unable to see the directory of the controlled device 70 on the screen 51. Therefore, the line feed instruction is actually a trigger instruction that can trigger the controlled device 70 to execute a complete instruction composed of a plurality of characters. The ASCII code (hexadecimal) corresponding to this line feed instruction is 0AH, 0DH or 0AH plus 0DH. In general, 0AH stands for Line Feed (LF); 0DH stands for the cursor to the far left (Carriage Return; CR).

另外,該第二實體層200係對應於該被控裝置70,並依據一第二通訊協議傳送一第三指令430至該被控裝置70,或依據該第二通訊協議自該被控裝置70接收一第四指令440。其中,該第二通訊協議可相同或不同於該第一通訊協議。該第四指令440係對應於該第二指令420,且該第三指令430係對應於該第一指令410。亦即,該應用層(Application Layer)300係對應於該第一實體層100及該第二實體層200,用以在該第一實體層100及該第二實體層200之間進行指令的轉換。 In addition, the second physical layer 200 corresponds to the controlled device 70, and transmits a third command 430 to the controlled device 70 according to a second communication protocol, or from the controlled device 70 according to the second communication protocol. A fourth instruction 440 is received. The second communication protocol may be the same or different from the first communication protocol. The fourth instruction 440 corresponds to the second instruction 420, and the third instruction 430 corresponds to the first instruction 410. That is, the application layer 300 corresponds to the first physical layer 100 and the second physical layer 200 for performing instruction conversion between the first physical layer 100 and the second physical layer 200. .

請同時參閱第二B圖及第三A圖,該應用層300會使該第一指令410被轉換為該第三指令430;或是使第四指令440被轉換為該第二指令420。更詳細地說,該應用層300會因應於該第一指令410進而使該第二實體200層產生該第三指令430,或因應於該第四指令440進而使該第一實體層100依據一第三通訊協議產生該第二指令420,然後再依據第一通訊協議將該第二指令420送至該中控電腦50,以控制該中控電腦50之螢幕52或是控制其他部分產生回應,例如使螢幕51顯 示之前由鍵盤52所輸入之字元。對於該應用層300而言,該第一指令410係與該第三指令430具有相同的意義,只是該第一指令410係與該第三指令430係由不同的實體層所接收或傳送出去,換句話說,該第一指令410與該第三指令430係由不同的電氣特性所表現出來的;或是不同的傳輸介質所承載的。同理,對於該應用層300而言該第四指令440係與該第二指令420具有相同的意義。 Please refer to FIG. 2B and FIG. 3A simultaneously. The application layer 300 causes the first instruction 410 to be converted into the third instruction 430; or the fourth instruction 440 is converted into the second instruction 420. In more detail, the application layer 300 may cause the second entity 200 to generate the third instruction 430 according to the first instruction 410, or corresponding to the fourth instruction 440 to further enable the first physical layer 100 according to the first instruction 410. The third communication protocol generates the second instruction 420, and then sends the second instruction 420 to the central control computer 50 according to the first communication protocol to control the screen 52 of the central control computer 50 or control other parts to generate a response. For example, make the screen 51 The characters previously input by the keyboard 52 are shown. For the application layer 300, the first instruction 410 has the same meaning as the third instruction 430, except that the first instruction 410 and the third instruction 430 are received or transmitted by different physical layers. In other words, the first instruction 410 and the third instruction 430 are represented by different electrical characteristics; or are carried by different transmission media. Similarly, the fourth instruction 440 has the same meaning as the second instruction 420 for the application layer 300.

在一較佳實施例中,遠端管理裝置10耦接至至少兩個被控裝置70。舉例而言,若遠端管理裝置10是耦接於兩個被控裝置70,如一第一被控裝置及一第二被控裝置,在中控電腦50傳輸第一指令410至遠端管理裝置10時,在本實施例中第一指令410更包含一目的埠編號,以使應用層300可依據該目的埠編號將第三指令430路由至第一被控裝置或第二被控裝置。換言之,中控電腦50可經由遠端管理裝置10切換及控制複數個被控裝置70。該目的埠編號之內容亦使應用層300可識別出中控電腦50之使用者在下達第一指令410時所選擇之應用程式為何。 In a preferred embodiment, the remote management device 10 is coupled to at least two controlled devices 70. For example, if the remote management device 10 is coupled to two controlled devices 70, such as a first controlled device and a second controlled device, the central control computer 50 transmits the first command 410 to the remote management device. At 10 o'clock, in the embodiment, the first instruction 410 further includes a destination number, so that the application layer 300 can route the third instruction 430 to the first controlled device or the second controlled device according to the destination number. In other words, the central control computer 50 can switch and control a plurality of controlled devices 70 via the remote management device 10. The purpose of the object number is also such that the application layer 300 can identify the application selected by the user of the central control computer 50 when the first instruction 410 is issued.

在一較佳實施例中,該第一通訊協議可為乙太網路(Ethernet)協議或是其他任何適當的區域網路協議,該第二通訊協議可為RS-232、RS-422或是RS-485等協議。該第三通訊協議可為TCP/IP協議組合(Protocol Suite)。如此一來,即使中控電腦50與被控裝置70之間的距離遠遠大於 RS-232/RS-422/RS-485等協議可傳遞的範圍;即使中控電腦50並不具有被控裝置70的串列介面;即使被控裝置70並不具有網路介面,中控電腦50仍可經由本發明之遠端管理裝置10與被控裝置70進行通訊以達到前述遠端管理之目的。 In a preferred embodiment, the first communication protocol may be an Ethernet protocol or any other suitable local area network protocol, and the second communication protocol may be RS-232, RS-422 or Protocols such as RS-485. The third communication protocol can be a TCP/IP protocol suite (Protocol Suite). In this way, even if the distance between the central control computer 50 and the controlled device 70 is much larger than The range of protocols such as RS-232/RS-422/RS-485 can be transmitted; even if the central control computer 50 does not have the serial interface of the controlled device 70; even if the controlled device 70 does not have a network interface, the central control computer 50 can still communicate with the controlled device 70 via the remote management device 10 of the present invention to achieve the aforementioned remote management purposes.

仍請參閱第二B圖,應用層300與第一實體層100之間更具有一鏈結層(Link Layer)110、一網路層(Network Layer)120以及一傳輸層(Transport Layer)130。同樣地,在中控電腦50這端亦具有對應之實體層、鏈結層、網路層、傳輸層以及應用層(均未顯示)。其中,遠端管理裝置10之傳輸層130係介於應用層300與網路層120之間,亦即傳輸層130係為應用層300之下層,且傳輸層130係為網路層120之上層。該傳輸層130係依據標準的TCP(Transmission Control Protocol;傳輸控制協議)協議或是UDP(User Datagram Protocol;使用者資料報協議)協議與中控電腦50之傳輸層進行通訊。一般而言,中控電腦50之實體層與鏈結層係由其網路卡所實現;中控電腦50之網路層、傳輸層以及應用層則係由其作業系統及應用程式所實現。 Still referring to the second B diagram, the application layer 300 and the first physical layer 100 further have a link layer 110, a network layer 120, and a transport layer 130. Similarly, the central control computer 50 also has a corresponding physical layer, a link layer, a network layer, a transport layer, and an application layer (none of which are shown). The transport layer 130 of the remote management device 10 is between the application layer 300 and the network layer 120, that is, the transport layer 130 is the lower layer of the application layer 300, and the transport layer 130 is the upper layer of the network layer 120. . The transport layer 130 communicates with the transport layer of the central control computer 50 according to a standard TCP (Transmission Control Protocol) protocol or a UDP (User Datagram Protocol) protocol. Generally speaking, the physical layer and the link layer of the central control computer 50 are implemented by the network card; the network layer, the transport layer and the application layer of the central control computer 50 are implemented by the operating system and the application program.

依據TCP/IP協議組合(Protocol Suite),若進行的是TCP協議,在邏輯上傳送端之傳輸層與接收端之傳輸層係藉由TCP「資料段」(Segment)的交換來進行TCP協議的相關通訊,但實際上這兩個傳輸層之間仍必須透過其下各自的網路層、鏈結層及實體層才能真正的交換TCP資料段。進一步而言,若遠 端管理裝置10為傳送端而中控電腦50為接收端時,遠端管理裝置10之網路層120會將傳輸層130送來之TCP資料段再封裝成為一IP封包(Packet),然後送給更下層的鏈結層110。鏈結層110會將IP封包再封裝成為一「資料框」(Frame)後交由第一實體層100以位元串的方式送到傳輸媒體上。而接收端這邊則會逐層地將資料框、封包及資料段的封裝拆解開來,最後使得接收端之傳輸層可以收到傳送端之傳輸層送出的該TCP資料段。亦即每一層都會將上層傳來的資料當成Payload,封裝成另一個資料。同理,在邏輯上,傳送端之網路層與接收端之網路層係藉由IP封包(Packet)的交換來進行IP協議的相關通訊;傳送端之鏈結層與接收端之鏈結層係藉由「資料框」(Frame)的交換來進行鏈結層協議的相關通訊。前述的OSI模型將上述的「資料段」(Segment)、IP封包(Packet)及「資料框」(Frame)均稱為「協定資料單元」(PDU;Protocol Data Unit)。 According to the TCP/IP protocol suite (Protocol Suite), if the TCP protocol is performed, the transport layer of the transport layer and the receiver end of the logical end is logically exchanged by TCP "Segment" for the TCP protocol. Related communication, but in fact, the two transport layers must still pass through their respective network layer, link layer and physical layer to truly exchange TCP data segments. Further, if far When the end management device 10 is the transmitting end and the central control computer 50 is the receiving end, the network layer 120 of the remote management device 10 repackages the TCP data segment sent from the transport layer 130 into an IP packet, and then sends it. Give the lower layer of the link layer 110. The link layer 110 repackages the IP packet into a "frame" and sends it to the transmission medium by the first entity layer 100 in a bit string. The receiving end side will disassemble the data frame, the packet and the data segment layer by layer. Finally, the transmitting layer of the receiving end can receive the TCP data segment sent by the transmitting layer of the transmitting end. That is to say, each layer will use the data from the upper layer as Payload and package it into another data. Similarly, logically, the network layer of the transmitting end and the network layer of the receiving end perform IP protocol related communication by IP packet exchange; the link layer of the transmitting end and the receiving end are linked. The layer communicates with the link layer protocol through the exchange of the "frame". The aforementioned OSI model refers to the above-mentioned "Segment", IP packet (Packet), and "Frame" as "Protocol Data Unit".

一般而言,一個TCP資料段(Segment)包含來源埠(Source Port)、目的埠(Destination Port)、序號(Sequence Number)、回應號碼(Acknowledge Number)、表頭長度(Header Length)、保留(Reserved)、特殊用途位元(Flags)、視窗大小(Window Size)、簡查碼(Checksum)、緊急資料指標(Urgent Pointer)、選項及填充(Options and Padding)及資料(Data)等欄位。 In general, a TCP data segment includes a Source Port, a Destination Port, a Sequence Number, an Acknowledge Number, a Header Length, and a Reserved (Reserved). ), Special Purposes (Flags), Window Size, Checksum, Urgent Pointer, Options and Padding, and Data.

為便於說明,可將資料(Data)欄位以外的部分視為TCP表 頭(TCP Header),當中控電腦50為傳送端而遠端管理裝置10為接收端時,遠端管理裝置10之傳輸層130可依據TCP表頭當中的目的埠編號(Destination Port Number)欄位,將TCP資料段(TCP Segment)當中的資料(Data)取出後送到應用層300之某一應用程式。反之,當遠端管理裝置10為傳送端而中控電腦50為接收端時,遠端管理裝置10之傳輸層130會將應用層300傳來之資料加以切割及封裝以形成具有上述欄位之TCP資料段(Segment)。傳輸層130為了提供可靠的服務(Reliable Service),傳輸層130會將送出的資料段(Segment)逐一加上序號(Sequence Number),以使接收端可以正確無誤地將先後收到的資料段重新組合成原本的資料。另外,傳輸層130也會透過流量控制(Flow Control)來對資料段的重複傳送與遺失等傳輸錯誤進行更正,所謂的流量控制係指TCP能夠視情況需要,調整資料傳送速度,其主要是靠滑動窗口(Sliding Window)的大小來調整。 For the sake of explanation, the part other than the Data field can be regarded as a TCP table. Header (TCP Header), when the central control computer 50 is the transmitting end and the remote management device 10 is the receiving end, the transport layer 130 of the remote management device 10 can be based on the destination port number field in the TCP header. The data (Data) in the TCP segment is taken out and sent to an application of the application layer 300. On the other hand, when the remote management device 10 is the transmitting end and the central control computer 50 is the receiving end, the transport layer 130 of the remote management device 10 cuts and encapsulates the data transmitted by the application layer 300 to form the above-mentioned field. TCP data segment (Segment). In order to provide a reliable service (Reliable Service), the transport layer 130 adds the sequence number of the sent data segments one by one, so that the receiving end can correctly re-send the data segments received successively. Synthesize the original data. In addition, the transport layer 130 also corrects transmission errors such as repeated transmission and loss of data segments through Flow Control. The so-called flow control means that TCP can adjust the data transmission speed as needed, mainly relying on the flow control. Adjust the size of the sliding window.

在本發明之一較佳實施例中,遠端管理裝置10具有四十八個裝置連接埠,每個裝置連接埠的外觀係為一RJ-45母連接器,因此本發明之遠端管理裝置10最多可以連接四十八個被控裝置70。為實現在多個應用程式之間進行選擇以及在多個不同被控裝置70之間切換的功能,亦即使得中控電腦50之使用者可在多個不同被控裝置70之間進行選擇,當遠端管理裝置10之傳輸層130接收來自中控電腦50之TCP資料段時,或對中控電腦50送出TCP資料段時,必須加上可供應用層300 識別之標記,例如目的/來源埠編號,使得應用層300可依據這些目的/來源埠編號來替TCP資料段安排適當的路徑或是適當的應用程式。各個應用程式的目的/來源埠編號的預設值如下表所示。 In a preferred embodiment of the present invention, the remote management device 10 has forty-eight device ports, and the interface of each device is an RJ-45 female connector, so the remote management device 10 of the present invention has the most Forty-eight controlled devices 70 can be connected. In order to realize the function of selecting between a plurality of applications and switching between a plurality of different controlled devices 70, that is, the user of the central control computer 50 can select between a plurality of different controlled devices 70, When the transport layer 130 of the remote management device 10 receives the TCP data segment from the central control computer 50, or sends the TCP data segment to the central control computer 50, the application layer 300 must be added. The identification tag, such as the destination/source number, allows the application layer 300 to arrange the appropriate path or appropriate application for the TCP data segment based on these destination/source numbers. The default values for the destination/source 各个 number of each application are shown in the table below.

以Telnet伺服器程式為例,50XX表示此資料在應用層300當中係以Telnet伺服器程式為目的地;5001表示此資料在被第二實體層200依據第二通訊協議轉換後,係以遠端管理裝置10之第一裝置連接埠為目的地;5048表示此資料在被第二實體層200依據第二通訊協議轉換後,係以遠端管理裝置10之第四十八個裝置連接埠為目的地。值得注意的是,上述的連接埠編號均可依據使用者的需求進行更改。至於上述各個應用程式的功能將詳述於後。 Taking the Telnet server program as an example, 50XX indicates that the data is destined for the Telnet server program in the application layer 300; 5001 indicates that the data is remotely converted by the second entity layer 200 according to the second communication protocol. The first device port of the management device 10 is a destination; 5048 indicates that the data is connected to the forty-eight device device of the remote management device 10 after being converted by the second entity layer 200 according to the second communication protocol. Ground. It is worth noting that the above port number can be changed according to the needs of the user. The functions of each of the above applications will be detailed later.

遠端管理裝置10之網路層120係依據標準的IP協議(Internet Protocol;網際網路協議)、ARP協議(Address Resolution Protocol;位址解析協議)、ICMP協議(Internet Control Message Protocol;網際網路控制訊息協議)或是OSPF協議(Open Shortest Path First Protocol;優先開放最短路徑協議)與中控電腦50之網路層進行通訊。如前所述,在邏輯上,傳送端之網路層與接收端之網路層係藉由IP封包(Packet)的交換來進行IP協議的相關通訊。 The network layer 120 of the remote management device 10 is based on the standard IP protocol (Internet Protocol; Internet Protocol), ARP protocol (Address Resolution Protocol; Address Resolution Protocol, ICMP Protocol (Internet Control Message Protocol) or OSPF (Open Shortest Path First Protocol) and the network layer of the central computer 50 Communicate. As mentioned above, logically, the network layer of the transmitting end and the network layer of the receiving end perform IP protocol related communication by using IP packet exchange.

另一方面,網路層120係介於傳輸層130與鏈結層110之間。作為接收端時,網路層120主要係用以處理其下層鏈結層110所提供之資料段(Segment);或是作為傳送端時,將由其上層傳輸層130所向下傳送的資料段(Segment)再封裝成資料元(Datagram)。例如,當遠端管理裝置10係作為傳送端時,網路層120會依據目的地(例如中控電腦50)之IP位址將其上層傳輸層130所向下傳送的資料段(Segment)再進一步封裝成一資料元(Datagram)。並且,當遠端管理裝置10係作為傳送端時,網路層120會依據其下層(鏈結層)之最大傳輸單位(Maximum Transmission Unit;MTU)對資料段(Segment)取出之資料進行切割以形成多個資料元(Datagram)。 On the other hand, the network layer 120 is interposed between the transport layer 130 and the link layer 110. As the receiving end, the network layer 120 is mainly used to process the data segment provided by the lower layer link layer 110; or as the data transfer end, the data segment to be transmitted downward by the upper layer transport layer 130 ( Segment) is repackaged into a Datagram. For example, when the remote management device 10 is acting as a transmitting end, the network layer 120 will transmit the data segment (Segment) transmitted by the upper layer transport layer 130 according to the IP address of the destination (for example, the central control computer 50). Further encapsulated into a datagram. Moreover, when the remote management device 10 is used as the transmitting end, the network layer 120 cuts the data extracted from the data segment according to the Maximum Transmission Unit (MTU) of the lower layer (link layer). Form multiple datagrams (Datagrams).

另外,網路層120傳給鏈結層110之資料元(Datagram)除了資料欄位外,更包含版本(Version)、表頭長度(Internet Header Length;IHL)、服務類型(Type of Service)、總長度(Total Length)、識別碼(Identification)、封包切割標示(Flag)、切割重組點(Fragment Offset)、存活時間(Time to Live)、協定 代碼(Protocol Number)、表頭錯誤檢查碼(Header Checksum)、來源IP位址(Source Address)、目的IP位址(Destination Address)及選項及填充(Options and Padding)等多個欄位。前述的資料段係對應於資料欄位。 In addition, the datagram transmitted by the network layer 120 to the link layer 110 includes, in addition to the data field, a version, an Internet Header Length (IHL), a service type (Type of Service), Total Length, Identification, Flag Cutting, Fragment Offset, Time to Live, Agreement Multiple fields such as Protocol Number, Header Checksum, Source Address, Destination Address, and Options and Padding. The aforementioned data segment corresponds to the data field.

在一較佳實施例當中,上述之應用層300、傳輸層130及網路層120係由遠端管理裝置10之中央處理器或控制器等邏輯運算單元及其上的軟體或韌體(Firmware)所共同實現,例如作業系統或是相關的應用程式。但對於本領域具有通知知識之人而言,亦可經由本發明之教導輕易地思及其他等效的實施方式。 In a preferred embodiment, the application layer 300, the transport layer 130, and the network layer 120 are logical units such as a central processing unit or a controller of the remote management device 10, and software or firmware thereon (Firmware). ) Commonly implemented, such as operating systems or related applications. However, other equivalent embodiments can be readily conceived by those of ordinary skill in the art.

鏈結層110介於網路層120與第一實體層100間。若依據TCP/IP協議組合之模型(Model)來描述,本發明之鏈結層110可再細分為MAC(Media Access Control)子層以及LLC(Logical Link Control)子層。 The link layer 110 is interposed between the network layer 120 and the first physical layer 100. The link layer 110 of the present invention can be subdivided into a MAC (Media Access Control) sublayer and an LLC (Logical Link Control) sublayer, as described in terms of a TCP/IP protocol combination model.

當遠端管理裝置10係作為傳送端時,鏈結層110係用以將網路層120所傳來之資料元(Datagram)進一步依據接收端(例如中控電腦50)之MAC地址再封裝成資料框(Frame)。當遠端管理裝置10係作為接收端時,鏈結層110會分析第一實體層100所傳來之資料框的某些欄位,以確認遠端管理裝置10之MAC地址與該資料框當中之目的地之MAC地址是否相符。如果MAC地址相符,則鏈結層110會進一步依據資料框當中 之協定種類(Type)欄位將該資料框當中之資料(Data)取出後上傳給網路層120。如果MAC地址不相符,則鏈結層110會將該資料框丟棄。另外,此鏈結層110亦會檢查該資料框當中之長度及CRC值。如果該資料框的長度小於64個位元組或是該資料框的長度大於1518個位元組,鏈結層110都會將此資料框丟棄(不再處理)。如果經由CRC值的判斷可以得知此資料框已經發生損毀,鏈結層110也會將此資料框丟棄(不再處理)。在一較佳實施例當中,鏈結層110及第一實體層100主要係由遠端管理裝置10之一網路控制器所實現。 When the remote management device 10 is used as the transmitting end, the link layer 110 is used to further repackage the datagram transmitted by the network layer 120 according to the MAC address of the receiving end (for example, the central control computer 50). Frame. When the remote management device 10 is acting as the receiving end, the link layer 110 analyzes certain fields of the data frame transmitted by the first physical layer 100 to confirm the MAC address of the remote management device 10 and the data frame. Whether the MAC address of the destination matches. If the MAC addresses match, the link layer 110 will further depend on the data frame. The Type field of the agreement takes out the data (Data) in the data frame and uploads it to the network layer 120. If the MAC addresses do not match, the link layer 110 will discard the data frame. In addition, the link layer 110 also checks the length and CRC value in the data frame. If the length of the data frame is less than 64 bytes or the length of the data frame is greater than 1518 bytes, the link layer 110 discards the data frame (no longer processing). If it is known through the judgment of the CRC value that the data frame has been damaged, the link layer 110 will also discard the data frame (no longer processed). In a preferred embodiment, the link layer 110 and the first physical layer 100 are primarily implemented by a network controller of the remote management device 10.

仍請參閱第二B圖,本發明之應用層300更包含Telnet伺服器程式(Telnet Server)310、SSH伺服器程式(SSH Server)320、終端機指令分析程式(Terminal Analyzer)330、TCP路由程式(TCP Router)340、UDP路由程式(UDP Router)350、Modbus閘道器程式(Modbus Gateway)360以及其他應用程式370等應用程式,茲說明如下。 Still referring to FIG. 2B, the application layer 300 of the present invention further includes a Telnet server program (Telnet Server) 310, an SSH server program (SSH Server) 320, a terminal program analysis program (Terminal Analyzer) 330, and a TCP routing program. Applications such as (TCP Router) 340, UDP Router (350 Router) 350, Modbus Gateway Program (Modbus Gateway) 360, and other applications 370 are described below.

其中Telnet伺服器程式310係用以對中控電腦50提供Telnet連線服務;SSH伺服器程式320係用以對中控電腦50提供SSH連線服務,且SSH是Secure Shell protocol的簡稱。在一較佳實施例當中,Telnet伺服器程式310所使用的目的埠編號(Destination Port Number)係為50XX;SSH伺服器程式310所使用的目的埠編號(Destination Port Number)係為51XX。而Telnet伺服器程式310或SSH伺服器程式320係透 過行程間通訊(Inter-Process Communication;IPC)方式與終端機指令分析程式330進行通訊。 The Telnet server program 310 is used to provide a Telnet connection service to the central control computer 50. The SSH server program 320 is used to provide an SSH connection service to the central control computer 50, and SSH is an abbreviation of Secure Shell protocol. In a preferred embodiment, the destination port number used by the Telnet server program 310 is 50XX; the destination port number used by the SSH server program 310 is 51XX. The Telnet server program 310 or the SSH server program 320 is transparent. The Inter-Process Communication (IPC) method communicates with the terminal command analysis program 330.

終端機指令分析程式330係用以分析中控電腦50所傳來之指令。經由其分析,如果此指令的目的地是遠端控制裝置10本身,則遠端控制裝置10便會對其做出反應。更詳細地說,中控電腦50之管理者可對此遠端控制裝置10進行設定(Configuration),例如更改此遠端控制裝置10的網路IP位址、更改此遠端控制裝置10之某一裝置連接埠的RS-232傳輸速率(Bit Rate)、更改某一裝置連接埠所對應的應用程式。如果此指令的目的地是某一被控裝置70,遠端控制裝置10之終端機指令分析程式330會將該指令交由第二實體層200,再由第二實體層200依據第二通訊協議轉發給該被控裝置70所對應之裝置連接埠,進而使該被控裝置70可對中控電腦50發出之指令做出反應。 The terminal command analysis program 330 is used to analyze the commands sent from the central control computer 50. Via its analysis, if the destination of this command is the remote control device 10 itself, the remote control device 10 will react to it. In more detail, the administrator of the central control computer 50 can perform configuration on the remote control device 10, for example, changing the network IP address of the remote control device 10, and changing one of the remote control devices 10. The RS-232 rate of a device is connected to the device, and the application corresponding to a device connection is changed. If the destination of the instruction is a controlled device 70, the terminal command analysis program 330 of the remote control device 10 will pass the command to the second entity layer 200, and then the second entity layer 200 according to the second communication protocol. Forwarding to the device port corresponding to the controlled device 70, the controlled device 70 can react to the command issued by the central control computer 50.

TCP路由程式340或UDP路由程式350係在前述之TCP Mode模式或UDP模式下安排傳輸層130所傳來之資料段(Segment)的後續路徑。在本發明中,因為遠端管理裝置10所耦接的被控裝置70可能為複數個,所以需要由傳應用層300之TCP路由程式340或UDP路由程式350依據目的埠編號(Destination Port Number)將來自傳輸層130之資料段(Segment)路由至適當的被控裝置70。例如當目的埠編號被標記為5301時,來自傳輸層130之資料段的資料會被至TCP路 由程式340或UDP路由程式350轉送至第一裝置連接埠所對應之第二實體層200,再由該第二實體層200依據上述的第二通訊協議將該資料段的資料轉換為適當的訊號後傳送給該被控裝置70。例如當目的埠編號被標記為5302時,來自傳輸層130之資料段的資料會被轉送至第二裝置連接埠所對應之第二實體層200,其餘的情況可依此類推。 The TCP routing program 340 or the UDP routing program 350 arranges the subsequent path of the data segment transmitted by the transport layer 130 in the aforementioned TCP Mode mode or UDP mode. In the present invention, because the controlled device 70 coupled to the remote management device 10 may be plural, the TCP routing program 340 or the UDP routing program 350 of the application layer 300 is required to be based on the destination port number. The data segment from the transport layer 130 is routed to the appropriate controlled device 70. For example, when the destination number is marked as 5301, the data from the data segment of the transport layer 130 is sent to the TCP path. Transferred by the program 340 or the UDP routing program 350 to the second physical layer 200 corresponding to the first device connection, and then the second physical layer 200 converts the data of the data segment into an appropriate signal according to the second communication protocol. It is then transmitted to the controlled device 70. For example, when the destination number is marked as 5302, the data from the data segment of the transport layer 130 is forwarded to the second physical layer 200 corresponding to the second device interface, and the rest can be deduced by analogy.

在這種應用下,被控裝置70可能是一台以串列介面與遠端管理裝置10耦接的印表機。所以,應用層300不會對傳輸層130所傳來之資料段(Segment)的資料(Payload)進行解析,應用層300僅係以TCP路由程式340或UDP路由程式350依據表頭之目的埠編號(Destination Port Number)將資料段(Segment)路由至中控電腦50指定之某一裝置連接埠所對應的被控裝置70。如此一來,中控電腦50即可藉由本發明之遠端管理裝置10選擇在多個不同的遠端被控裝置70進行列印。另外,此被控裝置70亦可為條碼讀取器(Barcode Readers)或是自動提款機(Automatic Teller Machine;ATM)。 In this application, the controlled device 70 may be a printer coupled to the remote management device 10 in a serial interface. Therefore, the application layer 300 does not parse the data (Payload) of the data segment transmitted from the transport layer 130. The application layer 300 is only numbered according to the purpose of the header by the TCP routing program 340 or the UDP routing program 350. (Destination Port Number) The data segment is routed to the controlled device 70 corresponding to a certain device connection specified by the central control computer 50. In this way, the central control computer 50 can select to print on a plurality of different remote controlled devices 70 by the remote management device 10 of the present invention. In addition, the controlled device 70 can also be a Barcode Reader or an Automatic Teller Machine (ATM).

其他應用程式370可進一步包含一網頁伺服器程式(Web Server)、一真實通訊埠(Real Com Port)程式及一虛擬數據機(Virtual Modem)程式。其中,網頁伺服器程式(Web Server),使得中控電腦50其上之網頁瀏覽器可認為遠端管理裝置10係為一網頁伺服器,當中控電腦50係以HTTP或HTTPS協議 與與遠端管理裝置10之應用層300進行通訊時,例如中控電腦50係以一網頁瀏覽器所提供之介面對遠端管理裝置10進行設定(Configuration)時,此網頁伺服器程式係用以處理及回應此網頁瀏覽器之需求。 The other application 370 can further include a web server (Web Server), a real communication port (Real Com Port) program, and a virtual modem (Virtual Modem) program. The web server program (Web Server) enables the web browser on the central control computer 50 to consider that the remote management device 10 is a web server, and the central control computer 50 is based on the HTTP or HTTPS protocol. When communicating with the application layer 300 of the remote management device 10, for example, when the central control computer 50 is configured to face the remote management device 10 by a web browser, the web server program is used. To handle and respond to the needs of this web browser.

另外,真實通訊埠程式係與中控電腦50之一驅動程式互相配合,使得中控電腦50之使用者在操作被控設備70時會覺得彷彿是直接操作與中控電腦50實體連接之串列設備一般。虛擬數據機程式使得被控設備70會將此遠端管理裝置10視為一台數據機(Modem),而以標準的數據機通訊與其進行通訊,例如AT指令集(AT Command Set)。當使用虛擬數據機程式時,遠端管理裝置10會將來自被控設備70之數據機資料轉換成網路封包,以便再經由網路傳輸至該中控電腦50。 In addition, the real communication program and the driver of the central control computer 50 cooperate with each other, so that the user of the central control computer 50 feels that it is directly connected with the central computer 50 entity connection when operating the controlled device 70. Equipment is general. The virtual data program causes the controlled device 70 to treat the remote management device 10 as a modem and communicate with it via a standard modem communication, such as an AT Command Set. When the virtual data machine program is used, the remote management device 10 converts the data of the data from the controlled device 70 into a network packet for transmission to the central control computer 50 via the network.

請同時參閱第二B圖及第三A圖,為了在遠端管理裝置10上實現一指令過濾(Command Filter)功能,本發明之應用層300在收到第四指令440之後會先將其暫存,以便可進一步判斷該第四指令440是否為一待過濾指令。若接下來該中控電腦50發出一換行指令(Enter Command)450,則會觸發該遠端管理裝置10進行判斷,若該第四指令440被判斷係為一待過濾指令,則該應用層300會攔截該換行指令450,使得該被控裝置70無法收到該換行指令450,如此該被控裝置70便不會對 之前已經收到的第一指令410產生最終反應。在一較佳實施例中,待過濾指令可包含重新開機(Reboot)、關機(Shutdown)或重設(Reset),該些指令均為Linux作業系統下的標準指令。但是,該待過濾指令亦可為Linux作業系統以外的非標準指令,例如其並非由Linux作業系統所定義之指令。進一步而言,該被控裝置70可能是一台路由器(Router),假設其可經由Setnet這個指令更改其網路IP地址,此遠端管理裝置10之管理者可將此Setnet指令加入到待過濾指令當中,使得權限較低的一般使用者無法再對此路由器下達Setnet指令。本發明更提供一使用者介面,供具有權限的使用者變更或是設定更多的待過濾指令。 Please refer to FIG. 2B and FIG. 3A simultaneously. In order to implement a command filtering function on the remote management device 10, the application layer 300 of the present invention will temporarily suspend the fourth instruction 440 after receiving the fourth command 440. And so as to further determine whether the fourth instruction 440 is a to-be-filtered instruction. If the central control computer 50 issues an enter command 450 (Enter Command) 450, the remote management device 10 is triggered to determine, and if the fourth command 440 is determined to be a pending filter command, the application layer 300 The line feed instruction 450 is intercepted, so that the controlled device 70 cannot receive the line feed instruction 450, so that the controlled device 70 does not The first instruction 410 that has been received previously produces a final response. In a preferred embodiment, the to-be-filtered instructions may include Reboot, Shutdown, or Reset, which are standard instructions under the Linux operating system. However, the to-be-filtered instruction may also be a non-standard instruction other than the Linux operating system, such as an instruction that is not defined by the Linux operating system. Further, the controlled device 70 may be a router. It is assumed that it can change its network IP address via the Setnet command. The administrator of the remote management device 10 can add the Setnet command to the filter to be filtered. Among the commands, the general user with lower privilege can no longer issue Setnet commands to this router. The present invention further provides a user interface for a user with authority to change or set more commands to be filtered.

值得注意的是,以重新開機(Reboot)指令為例,在本發明之一實施例中,雖然被控裝置70仍然可以收到R-e-b-o-o-t這幾個字元,但是因為後續的換行指令450會被本發明之遠端管理裝置10所攔截,所以被控裝置70其實並不會收到此換行指令450,所以被控裝置70最終將不會對重新開機(Reboot)這個完整的指令產生任何反應,亦即被控裝置70並不會重新開機。 It should be noted that, taking the Reboot command as an example, in one embodiment of the present invention, although the controlled device 70 can still receive the characters Reboot, the subsequent line feed command 450 will be The remote management device 10 of the invention intercepts, so the controlled device 70 does not actually receive the line feed command 450, so the controlled device 70 will eventually not react to the complete command of rebooting. That is, the controlled device 70 does not restart.

或者是,本發明之應用層300在收到第一指令410之後會先將其暫存,以便可進一步判斷該第一指令410是否與一待過濾指令匹配,若該第一指令410與一待過濾指令匹配,則該應用層300會攔截後續由該中控電腦50所發出之一觸發指令,例如一換行(Enter Command)450,使得該被控裝置70無法接 收到該換行指令450,如此該被控裝置70本身便不會對之前已經收到的第一指令410產生最終反應。或者是,在另一較佳實施中該遠端管理裝置10可將該第一指令410暫時阻擋下來,若判斷該第一指令410係為待過濾指令,便會將其攔截以使該被控裝置70無法收到該第一指令410。若判斷該第一指令410並非待過濾指令,便會將其放行。 Alternatively, the application layer 300 of the present invention may temporarily store the first instruction 410 after receiving the first instruction 410, so as to further determine whether the first instruction 410 matches a to-be-filtered instruction, if the first instruction 410 If the filtering command is matched, the application layer 300 intercepts one of the trigger commands issued by the central control computer 50, for example, an enter command 450, so that the controlled device 70 cannot be connected. The line feed instruction 450 is received such that the controlled device 70 itself does not ultimately react to the first command 410 that has been received before. Alternatively, in another preferred implementation, the remote management device 10 may temporarily block the first instruction 410. If the first instruction 410 is determined to be an instruction to be filtered, it will be intercepted to enable the control. The device 70 is unable to receive the first command 410. If it is determined that the first instruction 410 is not an instruction to be filtered, it will be released.

請參閱第三B圖,本發明更揭露一種遠端管理方法,該方法至少包含下列步驟。首先,執行步驟510。步驟510包含對該遠端管理裝置10設定一待過濾指令,該待過濾指令係由複數個字元所組成。在本實施例中,構成待過濾指令之該複數個字元係為一連串依據美國信息交換標準碼(ASCII;American Standard Code for Information Interchange)所組成之代碼。在一較佳實施例中,待過濾指令至少包含“關閉回應功能“(Disable Echo),其使螢幕不會顯示鍵盤輸入之字元)。然而,在其他不同實施例中,待過濾指令可更包含重新開機(Reboot)、重設(Reset)或關機(Shutdown)。本發明更提供一使用者介面,供使用者變更或是設定更多的待過濾指令。具體而言,使用本發明之遠端管理裝置10的使用者可分為有管理權限之管理者或是僅有普通權限之一般使用者。在一較佳實施例中,有管理權限之管理者可經由中控電腦50來登入遠端管理裝置10所提供之使用者介面(例如一網頁),並可變更或是設定更多的待過濾指令。在本實施例,使用者介面可由文字畫面及/或圖形化使用者介面(Graphical User Interface;GUI)所 呈現。 Referring to FIG. 3B, the present invention further discloses a remote management method, which includes at least the following steps. First, step 510 is performed. Step 510 includes setting a to-be-filtered instruction to the remote management device 10, the to-be-filtered instruction being composed of a plurality of characters. In this embodiment, the plurality of characters constituting the instruction to be filtered are a series of codes composed of an American Standard Code for Information Interchange (ASCII; American Standard Code for Information Interchange). In a preferred embodiment, the command to be filtered includes at least "Disable Echo", which causes the screen to not display the characters of the keyboard input). However, in other different embodiments, the to-be-filtered instructions may further include Reboot, Reset, or Shutdown. The invention further provides a user interface for the user to change or set more commands to be filtered. Specifically, the user who uses the remote management device 10 of the present invention can be classified into a manager having administrative authority or a general user having only normal authority. In a preferred embodiment, the administrator having the management authority can log in to the user interface (for example, a web page) provided by the remote management device 10 via the central control computer 50, and can change or set more filters to be filtered. instruction. In this embodiment, the user interface can be represented by a text screen and/or a graphical user interface (GUI). Presented.

520及步驟530係在中控電腦50端執行。其中步驟520包含輸入一或多個字元。此步驟520之使用者可能是上述僅有普通權限之一般使用者,因此執行步驟520之中控電腦可能與上述執行步驟510的中控電腦是不同或相同的中控電腦。在本實施例中,該一或多個字元所代表的意義係為一連串的美國信息交換標準碼,並且其係藉由中控電腦50之鍵盤52輸入中控電腦50。然而,在其他不同實施例中,該一或多個字元亦可由其他方式輸入至中控電腦50中,例如具有手寫功能之觸控板。 520 and step 530 are performed on the central control computer 50 side. Wherein step 520 includes inputting one or more characters. The user of the step 520 may be a general user with only normal rights. Therefore, the central control computer of step 520 may be different or the same as the central control computer of step 510. In this embodiment, the meaning represented by the one or more characters is a series of American Standard Code for Information Interchange, and is input to the central control computer 50 by the keyboard 52 of the central control computer 50. However, in other different embodiments, the one or more characters may also be input to the central control computer 50 by other means, such as a touchpad having a handwriting function.

步驟530包含由中控電腦50將該一或多個字元轉換為一或多個網路封包(或稱為「協議資料單元」)後,經由網路傳送至遠端管理裝置10,亦即由中控電腦50發出一前述的第一指令410給遠端管理裝置10。更詳細地說,中控電腦50係藉由其網路卡依據一第一通訊協議與遠端管理裝置10之第一實體層100通訊,使得中控電腦50可透過網路將該一或多個網路封包傳輸至遠端管理裝置10。在一較佳實施例中,第一通訊協議可為乙太網路協議或任何其他適當的區域網路協議,其他的區域網路協議包含Token Ring、FDDI(Fiber Distributed Data Interface)。 Step 530 includes converting the one or more characters into one or more network packets (or "protocol data units" by the central control computer 50, and transmitting them to the remote management device 10 via the network, that is, A first instruction 410 is sent from the central control computer 50 to the remote management device 10. In more detail, the central control computer 50 communicates with the first physical layer 100 of the remote management device 10 according to a first communication protocol by the network card, so that the central control computer 50 can make the one or more through the network. The network packets are transmitted to the remote management device 10. In a preferred embodiment, the first communication protocol may be an Ethernet protocol or any other suitable local area network protocol, and other regional network protocols include Token Ring and FDDI (Fiber Distributed Data Interface).

該中控電腦50將該一或多個字元轉換為一或多個網路封包的過程可能使用到TCP/IP協議組合。依據前述網路模型分 層的概念,此網路封包的最外層係為符合乙太網路協議之資料框(Frame)。此資料框(Frame)的內部更包含中控電腦50之網路層所產生的資料元()資料元()的內部更包含中控電腦50之傳輸層所產生的資料段()。 The process by which the central control computer 50 converts one or more characters into one or more network packets may use a TCP/IP protocol combination. According to the concept of the network model layering mentioned above, the outermost layer of the network packet is a data frame conforming to the Ethernet protocol. The inside of this frame also contains the data elements generated by the network layer of the central control computer 50 ( ) Data element The inside of the system further contains the data segment generated by the transport layer of the central control computer 50 ( ).

接著,在該遠端管理裝置10這端執行步驟540。該遠端管理裝置10在功能上包含前述第二B圖之應用層300、第一實體層100、鏈結層110、網路層120及傳輸層130。步驟540包含將該一或多個網路封包轉換為被控裝置70之可讀指令後傳送至該被控裝置70。亦即,由該遠端管理裝置10發出一第三指令430給該被控裝置70。在該遠端管理裝置10當中,前述第二B圖之應用層300會藉由第一實體層100、鏈結層110、網路層120及傳輸層130逐層拆解該一或多個網路封包後交由第二實體層200產生該可讀指令,並依據前述之第二通訊協議(例如串列通訊協議)將該可讀指令傳送至該被控裝置70。如前所述,該傳輸層130亦可藉由該些網路封包所含之目的埠編號來判斷其傳送端所欲送達之應用程式或對應之裝置連接埠。 Next, step 540 is performed at the end of the remote management device 10. The remote management device 10 functionally includes the application layer 300, the first physical layer 100, the link layer 110, the network layer 120, and the transport layer 130 of the foregoing second B diagram. Step 540 includes converting the one or more network packets into readable instructions of the controlled device 70 and transmitting to the controlled device 70. That is, a third command 430 is issued by the remote management device 10 to the controlled device 70. In the remote management device 10, the application layer 300 of the second B-map disassembles the one or more networks layer by layer through the first physical layer 100, the link layer 110, the network layer 120, and the transport layer 130. The road packet is then passed to the second physical layer 200 to generate the readable command, and the readable command is transmitted to the controlled device 70 in accordance with the aforementioned second communication protocol (eg, a serial communication protocol). As described above, the transport layer 130 can also determine the application or the corresponding device connection to be delivered by the transmitting end by using the destination number contained in the network packets.

仍請參閱第3B圖,在被控裝置70這端執行步驟550及步驟560。其中步驟550包含因應於(In response to)被控裝置70端之可讀指令產生一終端機控制指令,用以控制中控電腦50產生回應(Echo),例如在螢幕上顯示之前由鍵盤所輸入之字元,使得使用者可以確實知道其是否正確地輸入字元。步驟560包含將該終端機控制指令經由該遠端管理裝置70傳給該 中控電腦50。在本實施例中,終端機控制指令係以第二通訊協議(例如前述的串列通訊協議)傳送至遠端管理裝置10,並且經由遠端管理裝置10以第一通訊協議傳送至中控電腦50。 亦即被控裝置70會發出一前述的第四指令440給該遠端管理裝置10,該遠端管理裝置10並會將該轉換為前述之第二指令420。在該遠端管理裝置10這端,步驟570包含將該終端機控制指令進行暫存。較佳的是終端機控制指令係暫存於遠端管理裝置10之殼體內的一儲存裝置中,其中儲存裝置可為非揮發性記憶體、快閃記憶體或硬碟等儲存元件。然而,在其他不同實施例中,儲存裝置亦可為外接式的儲存裝置。 Still referring to FIG. 3B, steps 550 and 560 are performed at the end of the controlled device 70. Step 550 includes generating a terminal control command according to the readable command of the controlled device 70 to control the central computer 50 to generate an echo (Echo), for example, input by the keyboard before being displayed on the screen. The character allows the user to know exactly if they entered the character correctly. Step 560 includes transmitting the terminal control command to the remote control device 70 via the remote management device 70. Central computer 50. In this embodiment, the terminal control command is transmitted to the remote management device 10 by using a second communication protocol (for example, the foregoing serial communication protocol), and is transmitted to the central control computer via the remote management device 10 in the first communication protocol. 50. That is, the controlled device 70 sends a fourth instruction 440 to the remote management device 10, which will convert the second command 420 to the aforementioned second command 420. At the end of the remote management device 10, step 570 includes temporarily storing the terminal control command. Preferably, the terminal control command is temporarily stored in a storage device in the housing of the remote management device 10. The storage device may be a storage component such as a non-volatile memory, a flash memory or a hard disk. However, in other different embodiments, the storage device may also be an external storage device.

之後,在中控電腦50這端執行步驟571。步驟571包含:對該終端機控制指令產生回應。具體而言,終端機控制指令藉由遠端管理裝置10被轉換為第二指令420後,經由第一實體層100依據第一通訊協議傳送至中控電腦50。中控電腦50對於第二指令420(對應於終端機控制指令)所產生的反應係將第一指令410所包含的一或多個字元顯示於螢幕51上。在一較佳實施例中,被控裝置70之終端機控指令所包含的內容係與中控電腦50之前所送出之第一指令410的內容相同。舉例而言,當使用者在中控電腦50所輸入之字元(如前述的d-i-r為例)以第一指令410被傳送至遠端管理裝置10,並被遠端管理裝置10轉換為第三指令430後以第二通訊協議傳送至被控裝置70時,被控裝置70所產生之終端機控制指令的內容也會與第一指令410的內容相同。因此,中控電腦50所產生的反應 則是把終端機控制指令之內容(亦即,d-i-r)顯示在螢幕51上。然而,在不同系統之該被控裝置70下,被控裝置70對於相同之第一指令410所得到的終端機控制指令所產生的反應可能不盡相同,亦即中控電腦50顯示於螢幕51的字元可能不會與使用者所輸入的字元相同。舉例而言,若使用者所輸入的鍵盤按鍵依序為“Rebooo”、退格(backspace)及“t”等字元時,在被控裝置70之系統為Linux的情況下,被控裝置70所產生之終端機控制指令會使得螢幕51顯示“Reboot”。然而,當被控裝置70之系統係為Sun Microsystems時,被控裝置70對此終端機控制指令所產生反應則是使得螢幕51顯示“Rebooo^Ht”。 Thereafter, step 571 is performed at the end of the central control computer 50. Step 571 includes: responding to the terminal control command. Specifically, after the remote management device 10 is converted into the second command 420, the terminal control command is transmitted to the central control computer 50 according to the first communication protocol via the first physical layer 100. The response generated by the central control computer 50 for the second command 420 (corresponding to the terminal control command) displays one or more characters contained in the first command 410 on the screen 51. In a preferred embodiment, the terminal machine control command of the controlled device 70 contains the same content as the first command 410 sent by the central control computer 50. For example, when the character entered by the user in the central control computer 50 (for example, the aforementioned dir is taken as an example) is transmitted to the remote management device 10 by the first instruction 410, and converted to the third by the remote management device 10. When the command 430 is transmitted to the controlled device 70 in the second communication protocol, the content of the terminal control command generated by the controlled device 70 is also the same as the content of the first command 410. Therefore, the reaction generated by the central computer 50 The content of the terminal control command (i.e., d-i-r) is displayed on the screen 51. However, under the controlled device 70 of different systems, the response of the controlled device 70 to the terminal control command obtained by the same first command 410 may be different, that is, the central control computer 50 is displayed on the screen 51. The characters may not be the same as the characters entered by the user. For example, if the keyboard keys input by the user are sequentially "Rebooo", backspace, and "t" characters, when the system of the controlled device 70 is Linux, the controlled device 70 The resulting terminal control command causes screen 51 to display "Reboot". However, when the system of the controlled device 70 is Sun Microsystems, the controlled device 70 reacts to the terminal control command to cause the screen 51 to display "Rebooo^Ht".

接著,在中控電腦50中執行步驟572。步驟572包含輸入該換行指令450。在本實施例中,換行指令450除了“Enter”以外,亦可為其他的觸發指令。之後中控電腦50會將該換行指令450經由網路以第一通訊協議傳送至遠端管理裝置10。 Next, step 572 is performed in the central control computer 50. Step 572 includes entering the line feed instruction 450. In this embodiment, the line feed instruction 450 may be other trigger commands in addition to "Enter". The central control computer 50 then transmits the line feed command 450 to the remote management device 10 via the network in a first communication protocol.

在遠端管理裝置10這端執行步驟580。步驟580包含在收到來自中控電腦50之換行指令450後,依據暫存之該終端機控制指令判斷該一或多個字元之組合是否與該待過濾指令匹配。具體而言,遠端管理裝置10在收到中控電腦50之換行指令450後,會被觸發進行一比較該暫存之終端機控制指令與該待過濾指令之動作。更詳細地說,該暫存之終端機控制指令係對應於螢幕上顯示之最新一個命令提示符(Prompt)與換行指 令之間的字元組合,其會被拿來與該待過濾指令進行比較。若遠端管理裝置10判斷構成該終端機控制指令之該一或多個字元係與待過濾指令不匹配時,遠端管理裝置10則會將該換行指令450以第二通訊協議傳輸至被控裝置70,以使被控裝置70可以進行該第一指令410所欲執行之動作。同時,遠端管理裝置10還可將該終端機控制指令儲存為一「已執行指令」,其目的將說明於後。 Step 580 is performed at the end of the remote management device 10. Step 580 includes, after receiving the line feed instruction 450 from the central control computer 50, determining whether the combination of the one or more characters matches the to-be-filtered instruction based on the temporarily stored terminal control command. Specifically, after receiving the line feed instruction 450 of the central control computer 50, the remote management device 10 is triggered to perform an action of comparing the temporarily stored terminal control command with the to-be-filtered command. In more detail, the temporary terminal control command corresponds to the latest command prompt (Prompt) and line feed indication displayed on the screen. The combination of characters between the commands, which will be compared to the to-be-filtered instruction. If the remote management device 10 determines that the one or more character units constituting the terminal control command do not match the to-be-filtered command, the remote management device 10 transmits the line feed command 450 to the second communication protocol. The device 70 is controlled so that the controlled device 70 can perform the action to be performed by the first command 410. At the same time, the remote management device 10 can also store the terminal control command as an "executed command", the purpose of which will be described later.

若上述步驟580中判斷該終端機控制指令之該一或多個字元係與該待過濾指令匹配時,則執行步驟590。步驟590包含在該遠端管理裝置10端將該換行指令450攔截,使被控裝置70無法收到該換行指令450。詳言之,在本實施例中,當遠端管理裝置10判斷該暫存之終端機控制指令內的字元組合係與待過濾指令匹配時,遠端管理裝置10將會攔截該換行指令450以間接使被控裝置70不會執行其之前已經接收到的指令(亦即第三指令430)。以上述“Rebooo”、退格(backspace)及“t”之組合為使用者輸入之範例而言,當被控裝置70為Linux系統時,遠端管理裝置10所暫存之終端機控制指令將會為“Reboot”。當使用者輸入換行指令450時,由於“Reboot”係列於待過濾指令其中之一,遠端管理裝置10則會判斷該暫存之終端機控制指令之字元組合係與待過濾指令相同,並且會將中控電腦50所傳來之換行指令450攔截而不繼續將該換行指令450轉換為第三指令430。藉此方式,被控裝置70不會接收到換行指令450,當然也不會執行終端機控制指令內之字 元所對應的指令。 If it is determined in the above step 580 that the one or more characters of the terminal control command match the to-be-filtered instruction, step 590 is performed. Step 590 includes intercepting the line feed instruction 450 at the remote management device 10, such that the controlled device 70 cannot receive the line feed command 450. In detail, in the embodiment, when the remote management device 10 determines that the character combination in the temporarily stored terminal control command matches the to-be-filtered command, the remote management device 10 intercepts the newline command 450. Indirectly, the controlled device 70 does not execute the instruction that it has previously received (i.e., the third instruction 430). In the example of the above-mentioned combination of "Rebooo", backspace and "t", when the controlled device 70 is a Linux system, the terminal control command temporarily stored by the remote management device 10 will be Will be "Reboot". When the user inputs the line feed instruction 450, because the "Reboot" series is one of the instructions to be filtered, the remote management device 10 determines that the character combination of the temporary terminal control instruction is the same as the to-be-filtered instruction, and The line feed instruction 450 sent by the central control computer 50 is intercepted without continuing to convert the line feed instruction 450 into the third instruction 430. In this way, the controlled device 70 does not receive the line feed command 450, and of course does not execute the word in the terminal control command. The instruction corresponding to the meta.

然而,即使當被控裝置70之系統為Sun Microsystems時,暫存之終端機控制指令係為“Rebooo^Ht”,遠端管理裝置10仍可判斷終端機控制指令與待過濾指令為匹配,並且將該換行指令轉換為第三指令430以第二通訊協議傳送至被控裝置70,以使被控裝置70再接收到該換行指令450後執行第三指令430。換言之,遠端管理裝置10可針對不同系統之被控裝置70所產生的終端機控制指令來判斷是否需要攔截該換行指令450,以避免被控裝置70執行與待過濾指令實質上相同之指令。藉由此反射式指令過濾功能設計,由於遠端管理裝置10係分析被控裝置70發出之終端機控制指令(第四指令440)而不是中控電腦50發出之第一指令410,因此使用者較難迴避遠端管理裝置10之指令過濾功能,而降低被禁止執行的指令(待過濾指令)於被控裝置70上執行的機率。 However, even when the system of the controlled device 70 is Sun Microsystems, the temporary terminal control command is "Rebooo^Ht", and the remote management device 10 can still judge that the terminal control command matches the to-be-filtered command, and The line feed command is converted into the third command 430 and transmitted to the controlled device 70 in the second communication protocol, so that the controlled device 70 receives the line feed command 450 and executes the third command 430. In other words, the remote management device 10 can determine whether the line feed instruction 450 needs to be intercepted for the terminal control command generated by the controlled device 70 of the different system, so as to prevent the controlled device 70 from executing the instruction substantially the same as the to-be-filtered instruction. By means of the reflective command filtering function, since the remote management device 10 analyzes the terminal control command issued by the controlled device 70 (fourth command 440) instead of the first command 410 issued by the central control computer 50, the user It is difficult to avoid the command filtering function of the remote management device 10, and reduce the probability that the executed instruction (to be filtered) is executed on the controlled device 70.

另外,即使中控電腦50之使用者意圖以前述輸入字元之外之方式來下達指令來迴避使用上的限制,例如使用者並非依序敲擊鍵盤來輸入Reboot、Reset或Shutdown等由多個字元所構成之指令,而係以鍵盤51之上箭頭鍵(Up Arrow Key)、下箭頭鍵(Down Arrow Key)或鍵盤上的其他按鍵來選擇之前已經在被控裝置70上執行過的上述指令,本發明仍可加以阻絕。舉例來說,在步驟540中,若遠端管理裝置10判斷自中控電腦50所接收之第一指令410係為鍵盤51之上箭頭鍵(Up Arrow Key),遠端管理裝置10仍會將其轉換為被控裝置70之可讀指令(第三指令),所以被控裝置70仍會收到此上箭頭鍵對應之可讀指令,所以被控裝置70仍會因應於此可讀指令產生一終端機控制指令(第四指令)而被該遠端管理裝置10所暫存及判斷。因此本發明之遠端管理裝置10在以反射方式實現指令過濾功能時仍可判斷該上箭頭鍵所選定之指令是否為待過濾指令進而加以阻絕。 In addition, even if the user of the central control computer 50 intends to use the above-mentioned input characters to issue an instruction to evade the use restriction, for example, the user does not sequentially press the keyboard to input Reboot, Reset or Shutdown. The instruction formed by the character, and the above-mentioned arrow keys (Up Arrow Key), down arrow key (Down Arrow Key) or other keys on the keyboard are used to select the above-mentioned ones that have been executed on the controlled device 70. The invention can still be blocked by the instructions. For example, in step 540, if the remote management device 10 determines that the first command 410 received from the central control computer 50 is an arrow key on the keyboard 51 (Up) Arrow Key), the remote management device 10 still converts it into a readable command (third instruction) of the controlled device 70, so the controlled device 70 still receives the readable command corresponding to the up arrow key, so The control device 70 will still be temporarily stored and judged by the remote management device 10 in response to the readable command generating a terminal control command (fourth command). Therefore, the remote management device 10 of the present invention can still determine whether the instruction selected by the up arrow key is the instruction to be filtered and then block when the instruction filtering function is implemented in a reflective manner.

第三C圖係以圖式說明本發明之遠端管理裝置10的硬體架構。若以硬體的觀點來描述,本發明之遠端管理裝置10包含一應用程式執行單元600、一網路介面控制器(Network Interface Controller;NIC)610、一或多個通用非同步收發器(UART)620、一或多個RS-232/422/485收發器(Transceiver)630以及一儲存裝置650。在一較佳實施例當中,此應用程式執行單元600係為一中央處理器,前述第二B圖之應用層300、傳輸層130及網路層120係由此中央處理器600及遠端管理裝置10之作業系統所實現。前述第二B圖之第一實體層100或網路介面係由此網路介面控制器610所實現,且此網路介面控制器610係透過第一端10A連接至網路。前述第二B圖之第二實體層200係由此一或多個通用非同步收發器620及RS-232/422/485收發器630所實現,且此一或多個收發器630係透過第二端10B耦接至一或多個被控裝置70。儲存裝置650係用以儲存前述第三B圖之待過濾指令、暫存前述第三B圖之終端機控制指令(亦即第三A圖之第四指令 440)。該遠端管理裝置10之作業系統可為Linux或是其他任何適當的作業系統。 The third C diagram schematically illustrates the hardware architecture of the remote management device 10 of the present invention. The remote management device 10 of the present invention includes an application execution unit 600, a network interface controller (NIC) 610, and one or more universal non-synchronous transceivers (described in terms of a hardware). UART) 620, one or more RS-232/422/485 transceivers (Transceiver) 630, and a storage device 650. In a preferred embodiment, the application execution unit 600 is a central processing unit, and the application layer 300, the transport layer 130, and the network layer 120 of the second B diagram are managed by the central processing unit 600 and the remote end. The operating system of device 10 is implemented. The first physical layer 100 or the network interface of the foregoing second B is implemented by the network interface controller 610, and the network interface controller 610 is connected to the network through the first end 10A. The second physical layer 200 of the second B diagram is implemented by the one or more universal non-synchronous transceivers 620 and the RS-232/422/485 transceiver 630, and the one or more transceivers 630 are transmitted through the first The two ends 10B are coupled to one or more controlled devices 70. The storage device 650 is configured to store the to-be-filtered instruction of the third B-picture, and temporarily store the terminal control instruction of the third B-picture (that is, the fourth instruction of the third A picture) 440). The operating system of the remote management device 10 can be Linux or any other suitable operating system.

此一或多個通用非同步收發器(UART)620主要係將來自中央處理器600之資料由並列傳輸方式轉為串列傳輸方式後送至收發器630;或是將來自收發器630之數據由串列傳輸方式轉為並列傳輸方式後送至中央處理器600。在一較佳實施例中,此一或多個通用非同步收發器(UART)620係由Pericom公司所提供之PI7C9X7958所實現。該收發器630更可包含RS-232收發器以及RS-422/RS-485收發器,並且此RS-232收發器與RS-422/RS-485收發器係位於不同或相同的積體電路封裝當中。另外,當RS-232收發器與RS-422/RS-485收發器係位於不同的積體電路封裝當中時,在每個通用非同步收發器(UART)620與每個收發器630之間更具有一多工器(未顯示),以在不同的串列通訊方式之間進行選擇,例如可選擇RS-232串列通訊方式或是RS-422/RS-485串列通訊方式。上述之通用非同步收發器(UART)620及收發器630可視為前述第二實體層200的一部分。 The one or more universal asynchronous transceivers (UARTs) 620 mainly convert the data from the central processing unit 600 into a serial transmission mode and then send the data to the transceiver 630; or the data from the transceiver 630. The serial transmission mode is converted to the parallel transmission mode and sent to the central processing unit 600. In a preferred embodiment, the one or more universal non-synchronous transceivers (UARTs) 620 are implemented by the PI7C9X7958 provided by Pericom Corporation. The transceiver 630 can further include an RS-232 transceiver and an RS-422/RS-485 transceiver, and the RS-232 transceiver and the RS-422/RS-485 transceiver are in different or identical integrated circuit packages. among. In addition, when the RS-232 transceiver and the RS-422/RS-485 transceiver are located in different integrated circuit packages, between each of the universal asynchronous transceivers (UART) 620 and each transceiver 630 There is a multiplexer (not shown) to select between different serial communication modes, such as RS-232 serial communication or RS-422/RS-485 serial communication. The universal non-synchronous transceiver (UART) 620 and transceiver 630 described above can be considered as part of the aforementioned second physical layer 200.

本發明已由上述相關實施例加以描述,然而上述實施例僅為實施本發明之範圍。必須指出的是,已揭露之實施例並未限制本發明之範圍。相反地,包含於申請專利範圍之精神及範圍之修改及均等設置均包含於本發明之範圍內。 The present invention has been described by the above-described related embodiments, but the above embodiments are only intended to implement the scope of the present invention. It must be noted that the disclosed embodiments do not limit the scope of the invention. On the contrary, modifications and equivalents of the spirit and scope of the invention are included in the scope of the invention.

10‧‧‧遠端管理裝置 10‧‧‧ Remote management device

10A‧‧‧第一端 10A‧‧‧ first end

10B‧‧‧第二端 10B‧‧‧ second end

20‧‧‧纜線 20‧‧‧ cable

50‧‧‧中控電腦 50‧‧‧Central computer

51‧‧‧螢幕 51‧‧‧ screen

52‧‧‧鍵盤 52‧‧‧ keyboard

70‧‧‧被控電腦 70‧‧‧Controlled computer

100‧‧‧第一實體層 100‧‧‧ first physical layer

110‧‧‧鏈結層 110‧‧‧Link layer

120‧‧‧網路層 120‧‧‧Network layer

130‧‧‧傳輸層 130‧‧‧Transport layer

200‧‧‧第二實體層 200‧‧‧Second physical layer

300‧‧‧應用層 300‧‧‧Application layer

310‧‧‧Telnet伺服程式 310‧‧‧Telnet server

320‧‧‧SSH伺服程式 320‧‧‧SSH server

330‧‧‧終端機指令分析程式 330‧‧‧Terminal Instruction Analysis Program

340‧‧‧TCP路由程式 340‧‧‧TCP routing program

350‧‧‧UDP路由程式 350‧‧‧UDP routing program

360‧‧‧Modbus閘道器程式 360‧‧‧Modbus gateway program

370‧‧‧其他應用程式 370‧‧‧Other applications

410‧‧‧第一指令 410‧‧‧First Directive

420‧‧‧第二指令 420‧‧‧ second instruction

430‧‧‧第三指令 430‧‧‧ Third Order

440‧‧‧第四指令 440‧‧‧Fourth Instruction

450‧‧‧換行指令 450‧‧ ‧ new line instruction

600‧‧‧應用程式執行單元 600‧‧‧Application Execution Unit

610‧‧‧網路控制器 610‧‧‧Network Controller

620‧‧‧通用非同步收發器 620‧‧‧Universal asynchronous transceiver

630‧‧‧收發器 630‧‧‧ transceiver

650‧‧‧儲存裝置 650‧‧‧ storage device

第1圖為習知網路模式之示意圖;第2A圖為本發明遠端管理裝置之示意圖;第2B圖為圖2A之另一較佳實施例之示意圖;第3A圖為本發明遠端管理裝置之另一較佳實施例之示意圖;第3B圖為本發明遠端管理裝置之遠端管理流程之示意圖;以及第3C圖為遠端管理裝置之另一較佳實施例之示意圖。 1 is a schematic diagram of a conventional network mode; FIG. 2A is a schematic diagram of a remote management apparatus of the present invention; FIG. 2B is a schematic diagram of another preferred embodiment of FIG. 2A; A schematic diagram of another preferred embodiment of the device; FIG. 3B is a schematic diagram of a remote management process of the remote management device of the present invention; and FIG. 3C is a schematic diagram of another preferred embodiment of the remote management device.

50‧‧‧中控電腦 50‧‧‧Central computer

51‧‧‧螢幕 51‧‧‧ screen

52‧‧‧鍵盤 52‧‧‧ keyboard

70‧‧‧被控電腦 70‧‧‧Controlled computer

100‧‧‧第一實體層 100‧‧‧ first physical layer

110‧‧‧鏈結層 110‧‧‧Link layer

120‧‧‧網路層 120‧‧‧Network layer

130‧‧‧傳輸層 130‧‧‧Transport layer

200‧‧‧第二實體層 200‧‧‧Second physical layer

300‧‧‧應用層 300‧‧‧Application layer

310‧‧‧Telnet伺服程式 310‧‧‧Telnet server

320‧‧‧SSH伺服程式 320‧‧‧SSH server

330‧‧‧終端機指令分析程式 330‧‧‧Terminal Instruction Analysis Program

340‧‧‧TCP路由程式 340‧‧‧TCP routing program

350‧‧‧UDP路由程式 350‧‧‧UDP routing program

360‧‧‧Modbus閘道器程式 360‧‧‧Modbus gateway program

370‧‧‧其他應用程式 370‧‧‧Other applications

410‧‧‧第一指令 410‧‧‧First Directive

420‧‧‧第二指令 420‧‧‧ second instruction

430‧‧‧第三指令 430‧‧‧ Third Order

440‧‧‧第四指令 440‧‧‧Fourth Instruction

Claims (20)

一種遠端管理方法,用於一中控電腦、一遠端管理裝置與一被控裝置之間,該遠端管理裝置之一端經由網路耦接至該中控電腦,該遠端管理裝置之另一端更耦接至該被控裝置,使得該中控電腦可經由該遠端管理裝置控制該被控裝置,該方法至少包含下列步驟:對該遠端管理裝置設定一待過濾指令;在該中控電腦端,輸入一或多個字元;在該中控電腦端,將該一或多個字元轉換為一或多個網路封包後經由網路傳送至該遠端管理裝置;在該遠端管理裝置端,將該一或多個網路封包轉換為該被控裝置端之可讀指令;在該被控裝置端,因應於該被控裝置端之可讀指令產生一終端機控制指令;經由該遠端管理裝置將該終端機控制指令傳給該中控電腦,以使該中控電腦產生回應;在該遠端管理裝置端,將該終端機控制指令進行暫存並在收到來自該中控電腦之一觸發指令後,依據所暫存之該終端機控制指令判斷該一或多個字元與該待過濾指令是否匹配;若是,則在該遠端管理裝置端將該觸發指令攔截,使該被控裝置不會執行該一或多個字元所對應之指令。 A remote management method is used for a central control computer, a remote management device and a controlled device, and one end of the remote management device is coupled to the central control computer via a network, and the remote management device The other end is further coupled to the controlled device, so that the central control computer can control the controlled device via the remote management device, and the method includes at least the following steps: setting a to-be-filtered command to the remote management device; The central control computer inputs one or more characters; on the central control computer, the one or more characters are converted into one or more network packets and transmitted to the remote management device via the network; The remote management device end converts the one or more network packets into readable instructions of the controlled device end; at the controlled device end, generates a terminal device according to the readable instructions of the controlled device terminal Controlling instructions; transmitting, by the remote management device, the terminal control command to the central control computer, so that the central control computer generates a response; and at the remote management device end, the terminal control command is temporarily stored and Received one of the computers from the central control After the command is issued, determining whether the one or more characters match the to-be-filtered instruction according to the temporarily stored terminal control instruction; if yes, intercepting the trigger instruction at the remote management device, so that the controlled The device does not execute the instruction corresponding to the one or more characters. 如專利申請範圍第1項所述之方法,其中若判斷該一或多個字元與該待過濾指令並不匹配,則將該觸發指令傳送給該被控裝置,使該被控裝置可執行該一或多個字元所對應之指令。 The method of claim 1, wherein if the one or more characters are determined to not match the to-be-filtered instruction, the triggering instruction is transmitted to the controlled device, so that the controlled device can be executed. The instruction corresponding to the one or more characters. 如專利申請範圍第1項所述之方法,其中該待過濾指令係由重新開機(Reboot)、重設(Reset)及關機(Shutdown)所組成之族群中所選出。 The method of claim 1, wherein the to-be-filtered command is selected from the group consisting of Reboot, Reset, and Shutdown. 如專利申請範圍第1項所述之方法,其中該被控裝置端之可讀指令係由一ASCII碼(American Standard Code for Information Interchange)所表示。 The method of claim 1, wherein the readable command of the controlled device is represented by an ASCII code (American Standard Code for Information Interchange). 如專利申請範圍第1項所述之方法,其中該被控裝置具有一RS-232/422/485介面。 The method of claim 1, wherein the controlled device has an RS-232/422/485 interface. 如專利申請範圍第1項所述之方法,其中該中控電腦更執行一終端機模擬程式,該終端機模擬程式使得該中控電腦可因應於上述終端機控制指令產生反應。 The method of claim 1, wherein the central control computer further executes a terminal emulation program, and the terminal emulation program enables the central control computer to react to the terminal control command. 一種遠端管理裝置,該遠端管理裝置之一端經由網路耦接至一中控電腦,該遠端管理裝置之另一端更耦接至一被控裝置,使得該中控電腦可經由該遠端管理裝置控制該被控裝置,該遠端管理裝置至少包含:一第一實體層(Physical Layer),對應於該中控電腦,並依據一第一通訊協議自該中控電腦接收一第一指令,或依據該第一通訊協議傳送一第二指令至該中控電腦,且該第一通訊協議至少包含乙太網路(Ethernet)協議;一第二實體層,對應於該被控裝置,並依據一第二通訊協議傳送一第三指令至該被控裝置以控制該被控裝置,或依據該第二通訊協議自該被控裝置接收一第四指令,且該第二通訊協議至少包含一串列通信協議;一應用層(Application Layer),用以執行一或多個應用程式,該應用層對應於該第一實體層及該第二實體層,且該應用層因應於該第一指令進而使該第二實體層產生該第三指令,或因應於該第四指令進而使該第一實體層依據一第三通訊協議產生該第二指令,以控制該中控電腦對該第二指令產生回應;其中該應用層更解析該第四指令,判斷該第四指令是否與一待過濾指令匹配,若該第四指令與該待過濾指令匹配,則該應用層攔截由該中控電腦所發出之一觸發指令,使該被控裝置不會執行該第三指令。 A remote management device, the remote management device is coupled to a central control computer via a network, and the other end of the remote management device is further coupled to a controlled device, so that the central control computer can be remotely The remote management device controls the controlled device, and the remote management device includes: a first physical layer corresponding to the central control computer, and receiving a first from the central control computer according to a first communication protocol Commanding, or transmitting a second instruction to the central control computer according to the first communication protocol, and the first communication protocol at least includes an Ethernet protocol; a second physical layer corresponding to the controlled device, And transmitting a third instruction to the controlled device according to a second communication protocol to control the controlled device, or receiving a fourth instruction from the controlled device according to the second communication protocol, and the second communication protocol at least includes a serial communication protocol; an application layer for executing one or more applications, the application layer corresponding to the first physical layer and the second physical layer, and the application layer is adapted to the first Instruction Having the second entity generate the third instruction, or in response to the fourth instruction, causing the first entity layer to generate the second instruction according to a third communication protocol, to control the central control computer to generate the second instruction Responding; wherein the application layer further parses the fourth instruction to determine whether the fourth instruction matches a to-be-filtered instruction, and if the fourth instruction matches the to-be-filtered instruction, the application layer intercepts the issued by the central control computer One triggers the command so that the controlled device does not execute the third command. 如專利申請範圍第7項所述之裝置,其中該第二通訊協議係由RS-232、RS-422及RS-485所組成之族群中所選出。 The device of claim 7, wherein the second communication protocol is selected from the group consisting of RS-232, RS-422, and RS-485. 如專利申請範圍第7項所述之裝置,其中該應用層更包含一Telnet伺服器程式、一SSH伺服器程式或一終端機(Terminal)伺服器程式。 The device of claim 7, wherein the application layer further comprises a Telnet server program, an SSH server program or a terminal server program. 如專利申請範圍第7項所述之裝置,其中該第一實體層與該應用層之間更包含一鏈結層(Link Layer)、一網路層(Network Layer)以及一傳輸層(Transport Layer)。 The device of claim 7, wherein the first physical layer and the application layer further comprise a link layer, a network layer and a transport layer. ). 如專利申請範圍第7項所述之裝置,其中該第三通訊協議至少包含TCP/IP協議組合(Protocol Suite)。 The device of claim 7, wherein the third communication protocol comprises at least a TCP/IP protocol suite. 如專利申請範圍第7項所述之裝置,其中該待過濾指令係由重新開機(Reboot)、重設(Reset)及關機(Shutdown)所組成之族群中所選出。 The device of claim 7, wherein the to-be-filtered command is selected from the group consisting of Reboot, Reset, and Shutdown. 一種遠端管理裝置,使得一中控電腦可經由該遠端管理裝置與一或多個被控裝置產生互動,該遠端管理裝置至少包含:一網路介面,經由網路耦接至該中控電腦,並依據一區域網路協議自該中控電腦接一第一指令,或依據該區域網路協議傳送一第二指令至該中控電腦;一串列介面,耦接至該被控裝置,並依據一串列通訊協議傳送一第三指令至該被控裝置,或依據該串列通訊協議自該被控裝置接收一第四指令;以及一中央處理器,用以執行一或多個應用程式,中央處理器對應於該網路介面及該串列介面,且該中央處理器可因應於該第一指令改變該遠端管理裝置之設定(Configuration),或因應於該第一指令進而使該串列介面產生該第三指令以控制該被控裝置,或因應於該第四指令依據一TCP/IP協議組合(TCP/IP Protocol Suite)產生該第二指令,以控制該中控電腦產生回應;其中該中央處理器更使該第一指令或該第四指令被判斷 是否與一待過濾指令匹配,若該第一指令或該第四指令與該待過濾指令匹配,則使其後由該中控電腦所發出之一觸發指令被攔截,進而使該被控裝置不會對該第一指令或該第三指令產生反應。 A remote management device, such that a central control computer can interact with one or more controlled devices via the remote management device, where the remote management device includes at least: a network interface coupled to the network via the network Controlling the computer, and receiving a first instruction from the central control computer according to a regional network protocol, or transmitting a second instruction to the central control computer according to the regional network protocol; a serial interface coupled to the controlled And transmitting, by the serial communication protocol, a third instruction to the controlled device, or receiving a fourth instruction from the controlled device according to the serial communication protocol; and a central processing unit for executing one or more An application, the central processing unit corresponds to the network interface and the serial interface, and the central processor can change the configuration of the remote management device according to the first instruction, or according to the first instruction And causing the serial interface to generate the third instruction to control the controlled device, or generating the second instruction according to a TCP/IP protocol suite according to the fourth instruction, to control the central control Computer production Response; wherein the central processor is further such that the first instruction or the fourth instruction is determined Whether it matches with a to-be-filtered instruction, if the first instruction or the fourth instruction matches the to-be-filtered instruction, the triggering instruction sent by the central control computer is intercepted, so that the controlled device does not Will react to the first instruction or the third instruction. 如專利申請範圍第13項所述之遠端管理裝置,其中該第一指令係由該中控電腦依據一輸入裝置所輸入之多個字元(Characters)或一選單之一選項所產生。 The remote management device of claim 13, wherein the first instruction is generated by the central control computer according to a plurality of characters (characters) or a menu option input by an input device. 如專利申請範圍第14項所述之遠端管理裝置,其中該中控電腦更依據該第二指令將該多個字元顯示於一螢幕上。 The remote management device of claim 14, wherein the central control computer further displays the plurality of characters on a screen according to the second instruction. 如專利申請範圍第13項所述之遠端管理裝置,其中該串列介面至少包含一並列/串列轉換器以及一串列收發器(Transceiver)。 The remote management device of claim 13, wherein the serial interface comprises at least one parallel/serial converter and a serial transceiver. 如專利申請範圍第13項所述之遠端管理裝置,其中該待過濾指令係由重新開機(Reboot)、重設(Reset)及關機(Shutdown)所組成之族群中所選出。 The remote management device of claim 13, wherein the to-be-filtered command is selected from the group consisting of Reboot, Reset, and Shutdown. 一種遠端管理裝置,該遠端管理裝置之一端經由網路耦接至一中控電腦,該遠端管理裝置之另一端更耦接至一第一被控裝置及一第二被控裝置,使得該中控電腦可經由該遠端管理裝置切換及控制該些被控裝置,該遠端管理裝置至少包含:一網路介面,對應於該中控電腦,並依據一第一通訊協議經由網路自該中控電腦接收一第一指令,或依據該第一通訊協議經由網路傳送一第二指令至該中控電腦,且該第一通訊協議至少包含乙太網路(Ethernet)協議;一串列介面,對應於該被控裝置,並依據一第二通訊協議傳送一第三指令至該第一被控裝置或該第二被控裝置以控制該些被控裝置,或依據該第二通訊協議自該第一被控裝置或該第二被控裝置接收一第四指令;一應用程式執行單元,用以執行一或多個應用程式,該 應用程式執行單元對應於該網路介面及該串列介面,且該應用程式執行單元因應於該第一指令進而使該串列介面產生該第三指令,或因應於該第四指令進而使該網路介面依據一第三通訊協議產生該第二指令,以控制該中控電腦產生回應;其中該應用程式執行單元更解析該第四指令,判斷該第四指令是否與一待過濾指令匹配,若該第四指令與該待過濾指令匹配,則該應用程式執行單元攔截由該中控電腦所發出之一觸發指令,使該第一被控裝置或該第二被控裝置不會執行該第三指令;其中該第一指令更包含一目的埠編號,以使該應用程式執行單元可依據該目的埠編號將該第三指令路由至該第一被控裝置或該第二被控裝置。 A remote management device, the remote management device is coupled to a central control computer via a network, and the other end of the remote management device is further coupled to a first controlled device and a second controlled device. The remote control device can switch and control the controlled devices through the remote management device. The remote management device includes at least: a network interface corresponding to the central control computer, and is connected to the network according to a first communication protocol. Receiving a first instruction from the central control computer, or transmitting a second instruction to the central control computer via the network according to the first communication protocol, and the first communication protocol at least includes an Ethernet protocol; a serial interface corresponding to the controlled device, and transmitting a third command to the first controlled device or the second controlled device according to a second communication protocol to control the controlled devices, or according to the first The second communication protocol receives a fourth command from the first controlled device or the second controlled device; an application execution unit is configured to execute one or more applications, The application execution unit corresponds to the network interface and the serial interface, and the application execution unit causes the serial interface to generate the third instruction according to the first instruction, or corresponding to the fourth instruction The network interface generates the second instruction according to a third communication protocol to control the central control computer to generate a response; wherein the application execution unit further parses the fourth instruction to determine whether the fourth instruction matches a to-be-filtered instruction. If the fourth instruction matches the to-be-filtered instruction, the application execution unit intercepts one of the trigger commands issued by the central control computer, so that the first controlled device or the second controlled device does not execute the first The third instruction further includes a destination number to enable the application execution unit to route the third instruction to the first controlled device or the second controlled device according to the destination number. 如專利申請範圍第18項所述之遠端管理裝置,其中該待過濾指令係由重新開機(Reboot)、重設(Reset)及關機(Shutdown)所組成之族群中所選出。 The remote management device of claim 18, wherein the to-be-filtered command is selected from the group consisting of Reboot, Reset, and Shutdown. 如專利申請範圍第18項所述之遠端管理裝置,其中該觸發指令至少包含一換行指令(Enter Command)。 The remote management device of claim 18, wherein the triggering instruction comprises at least a line feed instruction (Enter Command).
TW101123910A 2012-07-03 2012-07-03 Remote management method and remote management device thereof TWI504197B (en)

Priority Applications (3)

Application Number Priority Date Filing Date Title
TW101123910A TWI504197B (en) 2012-07-03 2012-07-03 Remote management method and remote management device thereof
KR1020130062883A KR101454017B1 (en) 2012-07-03 2013-05-31 Remote managing method and remote managing device using the method
CN201310270484.7A CN103533019B (en) 2012-07-03 2013-06-28 Remote management method and remote management device using same

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW101123910A TWI504197B (en) 2012-07-03 2012-07-03 Remote management method and remote management device thereof

Publications (2)

Publication Number Publication Date
TW201404072A true TW201404072A (en) 2014-01-16
TWI504197B TWI504197B (en) 2015-10-11

Family

ID=49934687

Family Applications (1)

Application Number Title Priority Date Filing Date
TW101123910A TWI504197B (en) 2012-07-03 2012-07-03 Remote management method and remote management device thereof

Country Status (3)

Country Link
KR (1) KR101454017B1 (en)
CN (1) CN103533019B (en)
TW (1) TWI504197B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI666959B (en) * 2017-05-31 2019-07-21 艾訊股份有限公司 Control system based upon industrial communication protocol
TWI733614B (en) * 2020-10-28 2021-07-11 英業達股份有限公司 Communication interface control system and method thereof

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103957146B (en) * 2014-01-29 2018-06-19 昆山三泰新电子科技有限公司 The network control system of remote equipment
KR101484970B1 (en) * 2014-05-22 2015-01-28 유저스(주) System and Method for Performing Core Analysis Code and Computer-readable Recording Medium Storing the Method
CN105281943A (en) * 2014-07-25 2016-01-27 中兴通讯股份有限公司 Webpage-based remote equipment management method and device
CN106781361A (en) * 2016-11-28 2017-05-31 合肥宝龙达信息技术有限公司 A kind of method that universal remote control is built based on notebook
CN107864081B (en) * 2017-11-09 2020-11-24 北京金自天正智能控制股份有限公司 Synchronous motor data communication system based on ModbusRTU protocol
CN109462655B (en) * 2018-11-30 2021-10-15 奇安信科技集团股份有限公司 Network remote assistance method, system, electronic device and medium
TWI761056B (en) * 2021-02-01 2022-04-11 宏正自動科技股份有限公司 Data transmission method and data transmission device
CN114448965A (en) * 2021-12-22 2022-05-06 天翼云科技有限公司 Method, device and system for managing big data assembly and readable storage medium
CN114500216B (en) * 2022-01-18 2023-09-22 深圳市创智成科技股份有限公司 Device and method for remote management and maintenance through network

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB9805485D0 (en) * 1998-03-13 1998-05-13 Sgs Thomson Microelectronics Microcomputer
JP2003348670A (en) 2002-05-29 2003-12-05 Cdl:Kk Remote control system and its control program
JP2008146527A (en) * 2006-12-13 2008-06-26 Hitachi Kokusai Electric Inc Command processing method
US8811484B2 (en) * 2008-07-07 2014-08-19 Qualcomm Incorporated Video encoding by filter selection
US8824305B2 (en) * 2008-07-09 2014-09-02 Qualcomm Incorporated Paging schemes for local network access
TWI379178B (en) * 2008-11-21 2012-12-11 Moxa Inc Programmable remote control system and method thereof
CN101782886B (en) * 2009-01-21 2012-07-25 佛山市顺德区顺达电脑厂有限公司 Transmission control system and method
CN101963878A (en) * 2009-07-23 2011-02-02 宏正自动科技股份有限公司 Remote management system and remote management method
CN102117124A (en) * 2010-01-06 2011-07-06 宏正自动科技股份有限公司 Remote management system and method thereof
KR101451402B1 (en) * 2010-08-23 2014-10-16 주식회사 케이티 Remote trouble-shooting system
TWI537743B (en) * 2010-12-31 2016-06-11 宏正自動科技股份有限公司 Remote management method and the apparatus thereof

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI666959B (en) * 2017-05-31 2019-07-21 艾訊股份有限公司 Control system based upon industrial communication protocol
TWI733614B (en) * 2020-10-28 2021-07-11 英業達股份有限公司 Communication interface control system and method thereof

Also Published As

Publication number Publication date
CN103533019A (en) 2014-01-22
CN103533019B (en) 2016-09-14
KR101454017B1 (en) 2014-10-22
TWI504197B (en) 2015-10-11
KR20140004567A (en) 2014-01-13

Similar Documents

Publication Publication Date Title
TWI504197B (en) Remote management method and remote management device thereof
US10901470B2 (en) Power distribution unit self-identification
US8634320B2 (en) Method and apparatus for simply configuring a subscriber appliance for performing a service controlled by a separate service provider
US7864691B2 (en) Apparatus and method for performing a loopback test in a communication system
US8949382B2 (en) Systems, devices, and methods for network wizards
US20050271042A1 (en) Internet modem streaming socket method
US20070168499A1 (en) Configurable Modular Networking System and Method Thereof
CN103581265A (en) Remote access method and system
WO2014116610A1 (en) Systems and methods for configuring a network switch appliance
US20120096185A1 (en) Methods, systems, and apparatus for processing messaging data sets using structured data sets
CN103458034A (en) Method for having access to SPICE protocol remote desktop through WEB page
US11743184B2 (en) Message validation using data-link layer fields
US7961614B2 (en) Information processing device, information processing method, and recording medium for reducing consumption of memory capacity
US9203758B2 (en) Network system, packet processing method and recording medium
CN108028779A (en) Wilful damage for link information is grouped
CN103384246A (en) Safety supervision system login assistant method
TWI537743B (en) Remote management method and the apparatus thereof
CN109918029A (en) Method of printing, device and equipment based on block chain
Cisco Release Notes for Cisco 7000 Family for Cisco IOS Release 12.2 DX
Cisco Cisco IOS Terminal Services Command and Reference Release 12.2
Cisco Changing Terminal Parameters
Cisco Protocol Translator Manual
CN117768426A (en) Gateway management method, gateway, electronic equipment and storage medium
CN112565188B (en) Data access method, device, computer equipment and storage medium
CN117938640A (en) Automatic cloud network configuration method and system based on jinja template