WO2011143805A1 - 连接可携式储存媒体的非内建资料保密装置 - Google Patents

连接可携式储存媒体的非内建资料保密装置 Download PDF

Info

Publication number
WO2011143805A1
WO2011143805A1 PCT/CN2010/072846 CN2010072846W WO2011143805A1 WO 2011143805 A1 WO2011143805 A1 WO 2011143805A1 CN 2010072846 W CN2010072846 W CN 2010072846W WO 2011143805 A1 WO2011143805 A1 WO 2011143805A1
Authority
WO
WIPO (PCT)
Prior art keywords
encryption
decryption
portable storage
data
radio frequency
Prior art date
Application number
PCT/CN2010/072846
Other languages
English (en)
French (fr)
Inventor
何天华
Original Assignee
云文平
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 云文平 filed Critical 云文平
Priority to PCT/CN2010/072846 priority Critical patent/WO2011143805A1/zh
Publication of WO2011143805A1 publication Critical patent/WO2011143805A1/zh

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/71Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
    • G06F21/72Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information in cryptographic circuits

Definitions

  • Non-built-in data security device for connecting portable storage media
  • the present invention relates to a data security device, and more particularly to a non-built-in data security device for connecting and storing data to a portable storage medium. Background technique
  • Portable storage media refers to small information hardware that does not have computing functions but can store large amounts of data, such as external hard drives, flash drives, external optical disc burners, memory cards, and MP3 players. Portable storage media are widely used by ordinary individuals and businesses because of their small size, light weight, and portability; but because of their portability, they are at risk of being lost or stolen. Most of the information stored in portable storage media is important or confidential, and the value of the assets is high; in case of loss or theft, it will cause great losses to the holder.
  • USB flash drives that can be hot-swapped on the Universal Serial Bus (USB) have their capacity Mega has grown to hundreds of Gigas today. Users of USB flash drives may need to frequently purchase larger capacity pen drives in order to meet the needs of their stored data.
  • the object of the present invention is to provide a non-built-in data security device, which can be connected to a general non-encrypted portable storage medium, and encrypts data stored in the non-encrypted portable storage medium, and the encrypted data is encrypted. Then it needs to be decrypted by the non-built-in data security device before it can be read effectively.
  • Another object of the present invention is to provide a non-built-in data security device, wherein the user only needs to purchase a general non-encrypted portable storage medium that is relatively inexpensive, and then connects the non-built-in data provided by the present invention.
  • the security device that is, the function of providing confidentiality of data, can reduce the economic burden of repurchasing the portable storage medium for users who have the need for redemption.
  • Another object of the present invention is to provide a non-built-in data security device for connecting a portable storage medium, which uses wireless frequency identification (RFID) technology to perform wireless identification and decryption without requiring a user to input a password or fingerprint.
  • RFID wireless frequency identification
  • the non-built-in data security device for connecting the portable storage medium comprising: an encryption and decryption body, having a first data transmission interface for connecting to a computer device, and a connection for portable a second data transmission interface of the storage medium, a pair of encryption/decryption chips encrypted and decrypted by the data transmitted between the first and second data transmission interfaces, a processor connected to the encryption/decryption chip, and a connection to the a processor's wireless RF transceiver and a memory configured to store a key template;
  • a radio frequency identification tag which is provided with a radio frequency transceiver connected to each other and a memory configured to store an electronic key;
  • the processor starts the wireless RF transceiver of the encryption and decryption body, and sends a radio wave that unlocks the required signal to touch the RFID tag in a sensing range.
  • the electronic key is transmitted back to the encryption and decryption body by an electromagnetic wave, and the received electronic key is compared with the key template by the processor of the encryption and decryption body, and the encryption/decryption chip is matched by the matching.
  • the encryption/decryption action is performed on the transmission data, otherwise the transmission data is interrupted.
  • the encryption and decryption body further includes an alerting unit that sends a warning signal when the wireless radio frequency identification tag is out of the sensing range or the returned electronic key does not match.
  • the RFID tag is further provided with a battery for supplying a working power source.
  • the RFID tag further includes an alerting unit, and the alerting unit of the RFID tag sends an alert when the RFID tag is out of the sensing range. Signal.
  • the encryption and decryption body is further provided with a battery for supplying a working power source.
  • the RFID tag and the encryption/decryption body can be combined with each other and detached.
  • the non-built-in data security device provided by the present invention can be connected to a general non-encrypted portable storage medium, and encrypts data stored in the non-encrypted portable storage medium, and the encrypted data needs to pass through the Non-built-in data security devices can be decrypted only after they have been decrypted.
  • the non-built-in data security device can be applied to various types of non-encrypted portable storage media.
  • FIG. 1 is a circuit structural diagram of a first embodiment of a non-built-in data security device for connecting a portable storage medium according to the present invention
  • FIG. 2 is a circuit structural diagram of a second embodiment of a non-built-in data security device for connecting a portable storage medium according to the present invention
  • Figure 3 is a perspective exploded view showing the appearance of the non-built-in data security device
  • Figure 4 is a perspective exploded view showing the appearance of the non-built-in data security device in cooperation with a portable storage medium
  • FIG. 5 is a schematic diagram showing the appearance of the non-built-in data security device connected to the portable storage medium when it is inserted into a computer device.
  • a first embodiment of a non-built-in data security device for connecting a portable storage medium includes: an encryption and decryption body 10 connectable to a portable storage medium 40, and a location awareness.
  • Radio Frequency Identification Tag (RFID Tag) 20 When the data of the portable storage medium 40 needs to be accessed, the encryption and decryption body 10 sends a radio wave A that unlocks the demand signal, and touches the radio frequency identification tag 20 in a sensing range to generate current through electromagnetic induction.
  • the wireless radio frequency identification tag 20 is supplied with the power required for operation.
  • an electronic key is transmitted back to the encryption and decryption body 10 by an electromagnetic wave for comparison by the encryption/decryption body 10, and the comparison is performed.
  • An encryption/decryption chip 11 of the encryption/decryption body 10 encrypts and decrypts the transmission data, otherwise the data is interrupted.
  • the cryptographic body 10 includes a first data transmission interface 12 for connecting to a computer device 30 and a second data transmission interface 13 for connecting to the portable storage medium 40.
  • the first and second data transmission interfaces 12, 13 are used to transfer data between the computer device 30 and the portable storage medium 40.
  • the first and second data transmission interfaces 12 and 13 can be a USB interface, an RS232 interface or a wireless transmission interface, and the connected portable storage medium 40 can be a non-encrypted USB flash drive or an external hard disk. Disc, external CD burner, memory card or MP3 player.
  • the encryption and decryption body 10 can use the first data transmission interface 12 to obtain the power required for the operation from the connected computer device 30.
  • the second data transmission interface 13 can also supply power to the connected portable storage medium. 40.
  • the encryption and decryption body 10 further includes an encryption/decryption chip 11 connected to the first and second data transmission interfaces 12, 13 and a processor 14.
  • the processor 14 is further connected to a radio frequency transceiver (hereinafter referred to as a radio frequency transceiver).
  • the RF transceiver 15 The RF transceiver 15), a memory 16 configured to store a key template, and an alert unit 17 that can emit an alert light or sound.
  • the location-aware radio frequency identification tag 20 is provided with a radio frequency transceiver (hereinafter referred to as an RF transceiver 21) connected to each other, a memory 22 configured to store an electronic key, and a processor 23.
  • a radio frequency transceiver hereinafter referred to as an RF transceiver 21
  • the RF transceiver 21, the memory 22, and the processor 23 can be integrated into a single chip through a systemized chip (SOC) design architecture.
  • the memory 16 and 22 are a non-volatile memory.
  • the memory is an Erasable Programmable Read-Only Memory (EPROM). Programmatic read-only memory (PROM) or read-only memory (ROM).
  • the processor 14 activates the RF transceiver 15 to emit a radio wave A that unlocks the demand signal to touch the sensing range.
  • the RFID tag 20 generates a current through electromagnetic induction to supply a power required for the operation of the RFID tag 20; when the RFID tag 20 is activated, the processor 23 obtains an electronic key from the memory 22 and utilizes The RF transceiver 21 is transmitted back to the RF transceiver 15 of the encryption and decryption body 10 by an electromagnetic wave.
  • the processor 14 of the encryption and decryption body 10 then receives the electronic key and the memory 16 stored in the encryption and decryption body 10.
  • the processor 14 commands the encryption/decryption chip 11 to perform an encryption/decryption operation on the transmission data, otherwise the transmission data is interrupted.
  • the encryption and decryption body 10 further includes a warning unit 17 for interrupting the transmission of the data or the encryption of the processor 14 of the encryption/decryption body 10 when the RFID tag 20 is out of the sensing range or the electronic key returned thereto does not match.
  • the decryption chip 11 does not perform the decryption operation, but also causes the warning unit 17 to immediately emit an alarm signal such as a light or a sound to alert the user.
  • the second embodiment of the non-built-in data security device for connecting a portable storage medium provided by the present invention is substantially the same as the first embodiment shown in FIG. 1, and the same is not described.
  • the main difference of the second embodiment is that the passive radio frequency identification tag 20 in the first embodiment is replaced with an active radio frequency identification tag 20, and the radio frequency identification tag 20 is provided with a working power supply.
  • the radio frequency identification tag 20' which is powered by the battery 25, can extend its sensing range. Meanwhile, if the radio frequency identification tag 20 is out of the sensing range, the processor 23 can cause the warning unit 24 to immediately emit a light or a sound.
  • the alarm signal alerts the user to the attention.
  • the encryption/decryption body 10 in the second embodiment may also be provided with a battery 18 for supplying a working power source so that it does not need to obtain power from the computer device 30.
  • the second data transmission interface 13 can be a USB slot
  • the portable storage medium 40 can be a USB flash drive with a USB male plug 41.
  • the USB male plug 41 can be inserted.
  • the second data transmission interface 13 of the USB slot forms an electrical connection.
  • the first data transmission interface 12 can be a USB male plug that can be inserted into a USB slot of the computer device 30 to form an electrical connection.
  • the RFID tag 20 can be designed to be combined with the encryption and decryption body 10
  • the detachable cover body is provided with a buckle 26, and the user can use the buckle 26 to hang the non-built-in data security device of the present invention together with the key ring or directly hang on the waist belt.
  • the cryptographic body 10 is detached, it is placed on the portable storage medium 40, and then inserted into the computer device 30 through the cryptographic body 10. If the RFID tag 20 is not separated from the sensing range, The transmitted data is automatically encrypted and decrypted, and the data can be accessed correctly.
  • the encryption and decryption body 10 If the user leaves the seat, causing the radio frequency identification tag 20 carried between the portable radio frequency identification tag 20 and the encryption/decryption body 10 inserted in the computer device 30 to exceed a set sensing range (eg, three meters or more), the encryption and decryption body 10 is The warning unit 17 immediately emits an alarm light or sound to remind the user to simultaneously interrupt the data transmission.
  • a set sensing range eg, three meters or more
  • the encrypted data stored in the portable storage medium 40 must be decrypted and correctly read using the original encryption/decryption body 10 in conjunction with the radio frequency identification tag 20 that transmits the correct electronic key. Therefore, if the portable storage medium is lost or stolen, its internal encrypted information will not be effectively read by an outsider, which can effectively prevent confidential information from being leaked or stolen.
  • the non-built-in data security device provided by the present invention can be connected to a general non-encrypted portable storage medium, and encrypts data stored in the non-encrypted portable storage medium, and the encrypted data needs to pass through the Non-built-in data security devices can be decrypted only after they have been decrypted.
  • the non-built-in data security device can be applied to various types of non-encrypted portable storage media.

Landscapes

  • Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Theoretical Computer Science (AREA)
  • Mathematical Physics (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Storage Device Security (AREA)

Description

连接可携式储存媒体的非内建资料保密装置 技术领域
本发明涉及一种资料保密装置, 特别是指一种用以连接可携式储存媒体并 对之进行资料保密的非内建式资料保密装置。 背景技术
可携式储存媒体泛指一般不具运算功能但可储存大量资料的小型资讯硬 件, 例如: 外接式硬碟、 随身碟、 外接式光碟烧录机、 记忆卡、 MP3 player等。 由于可携式储存媒体的体积小、 重量轻以及携带方便性等优点, 被一般个人及 企业所广泛使用; 但是也因为其轻便性, 而有易于遗失或遭窃的风险。 储存于 可携式储存媒体内的资料, 多数为重要或具机密性的资料, 资产价值较高; 万 一遗失或遭窃, 将造成持有者的极大损失。
为防止储存于可携式储存媒体内的机密资料遗失或遭窃, 已有多家企业推 出例如密码碟、 姆指碟等加密型可携式储存媒体, 使用者必须输入密码或以例 如指紋感测等生物辨识功能, 才能存取被储存于该加密型可携式储存媒体内的 资料。
目前已知的现有加密型可携式储存媒体, 均是将加解密晶片、 密码输入装 置或指紋辨识装置等, 直接内建于该可携式储存媒体内, 使其售价远高于相同 容量的非加密型可携式储存媒体。 由于电脑科技发展迅速, 对于可携式储存媒 体的容量要求也随之快速成长; 例如可于通用序列汇流排 (Universal Serial Bus, USB)上热插拔的 USB 随身碟, 其容量已由早期的数 Mega发展至现今的数百 Giga。 USB 随身碟的使用者可能需要经常换购更大容量的随身碟, 才能符合其 储存资料的需求, 至于使用者原先拥有的低容量高售价加密型可携式储存媒体, 因不符合需求将被弃置不用, 其内建的资料保密装置也将随之被丟弃, 造成资 源的双重浪费, 且售价偏高的加密型随身碟, 也会造成换购族经济上的一定负 担。 发明内容
本发明的目的在于提供一种非内建资料保密装置, 其可连接一般非加密型 可携式储存媒体, 对存入该非加密型可携式储存媒体的资料进行加密, 被加密 后的资料则需经由该非内建资料保密装置予以解密后, 才能有效读取。
本发明的又一目的在于提供一种非内建资料保密装置, 使用者仅需选购售 价较为低廉的一般非加密型可携式储存媒体, 再将其连接本发明提供的非内建 资料保密装置, 即能提供资料保密的功能, 对于具有换购需求的使用者, 可减 轻其换购可携式储存媒体的经济负担。
本发明的另一目的在于提供一种连接可携式储存媒体的非内建资料保密装 置, 利用无线射频辨识 (Radio Frequency Identification, RFID)技术, 进行无线辨 识解密, 不需要使用者输入密码或指紋辨识, 操作上更为简便迅速。
可实现上述发明目的连接可携式储存媒体的非内建资料保密装置, 包括有: 一加解密本体, 其具有一用以连接一电脑设备的第一资料传输介面、 一用 以连接可携式储存媒体的第二资料传输介面、 一对通过该第一及第二资料传输 介面间传输的资料进行加解密的加密 /解密晶片、 一连接至该加密 /解密晶片 的处理器、 一连接至该处理器的无线射频收发器及一经组态储存一密钥样板的 记忆体; 以及
一无线射频辨识标签, 其设有相互连接的一无线射频收发器及一经组态储 存一电子密钥的记忆体;
其中, 当该加解密本体进行资料传输时, 由该处理器起动该加解密本体的 无线射频收发器, 发出一解锁需求讯号的无线电波, 以触动在一感应范围内的 该无线射频辨识标签, 将该电子密钥以一电磁波回传至该加解密本体, 经由该 加解密本体的处理器将接收的电子密钥与该密钥样板进行比对, 比对相符时, 由该加密 /解密晶片对该传输资料执行加密 /解密动作, 否则中断该传输资料。
在一较佳实施例中, 该加解密本体还包括有一警示单元, 当该无线射频辨 识标签脱离该感应范围或其回传的电子密钥不符时, 该警示单元发出一警 4艮信 号。
在一较佳实施例中, 该无线射频辨识标签内还设有一供应工作电源的电池。 在一较佳实施例中, 该无线射频辨识标签还包括有一警示单元, 当该无线 射频辨识标签脱离该感应范围时, 该无线射频辨识标签的警示单元发出一警报 信号。
在一较佳实施例中, 该加解密本体内还设有一供应工作电源的电池。
在一较佳实施例中, 该无线射频辨识标签与该加解密本体可相互组合及拆 卸分离。
本发明提供的非内建资料保密装置, 其可连接一般非加密型可携式储存媒 体, 对存入该非加密型可携式储存媒体的资料进行加密, 被加密后的资料则需 通过该非内建资料保密装置予以解密后, 才能有效读取。 使该非内建资料保密 装置可被应用于各种型式的非加密型可携式储存媒体。 附图说明
图 1 为本发明连接可携式储存媒体的非内建资料保密装置第一实施例的 电路结构图;
图 2 为本发明连接可携式储存媒体的非内建资料保密装置第二实施例的 电路结构图;
图 3 为该非内建资料保密装置的外观立体分解视图;
图 4 近似于图 3 , 为该非内建资料保密装置与一可携式储存媒体配合使 用时的外观立体分解视图;
图 5 为该连接可携式储存媒体的非内建资料保密装置插置于一电脑设备 时的外观示意图。
【主要元件符号说明】
10 加解密本体 10, 加解密本体
11 加密 /解密晶片 12 第一资料传输介面
13 第二资料传输介面 14 处理器
15 RF收发器 16 记忆体
17 警示单元 18 电池
20 无线射频辨识标签 20' 无线射频辨识标签
21 RF收发器 22 记忆体
23 处理器 24 警示单元
25 电池 26 环扣
30 电脑设备 40 可携式储存媒体 41 USB公插头 具体实施方式
为使本发明的目的、 技术方案和优点更加清楚, 下面将结合附图对本发明 实施方式作进一步地详细描述。
请参见图 1 , 本发明所提供的连接可携式储存媒体的非内建资料保密装置 第一实施例, 包括有: 一可连接一可携式储存媒体 40的加解密本体 10 以及一 位置感知的无线射频辨识标签 (RFID Tag)20。 当需要存取该可携式储存媒体 40 的资料时, 由该加解密本体 10发出一解锁需求讯号的无线电波 A, 触动在一感 应范围内的无线射频辨识标签 20, 通过电磁感应产生电流, 供应无线射频辨识 标签 20运作所需电源, 该无线射频辨识标签 20被触动时, 将一电子密钥以一 电磁波回传至加解密本体 10, 供加解密本体 10进行比对, 比对相符时, 加解密 本体 10的一加密 /解密晶片 11对传输资料进行加解密动作, 否则中断传输资 料。
该加解密本体 10包括有一用以连接一电脑设备 30的第一资料传输介面 12 以及一用以连接该可携式储存媒体 40的第二资料传输介面 13。利用该第一及第 二资料传输介面 12、 13 , 使该电脑设备 30与该可携式储存媒体 40间可相互传 输资料。 该第一及第二资料传输介面 12、 13可为一 USB介面、 一 RS232介面 或一无线传输介面等, 而其连接的可携式储存媒体 40可为非加密型 USB随身 碟、 外接式硬碟、 外接式光碟烧录机、 记忆卡或 MP3 player等。 该加解密本体 10可利用该第一资料传输介面 12, 自连接的电脑设备 30获得工作所需电源; 同理, 该第二资料传输介面 13也可供应电源至其连接的可携式储存媒体 40。
该加解密本体 10还包括有连接于该第一及第二资料传输介面 12、 13 间的 一加密 /解密晶片 11及一处理器 14, 该处理器 14进一步连接一无线射频收发 器 (下称 RF收发器 15)、 一经组态储存一密钥样板的记忆体 16以及一可发出警 示灯光或声音的警示单元 17。
该位置感知的无线射频辨识标签 20 , 则设有相互连接的一无线射频收发器 (下称 RF收发器 21)、 一经组态储存一电子密钥的记忆体 22以及一处理器 23。 在一较佳实施例中, 该 RF收发器 21、 记忆体 22及处理器 23等装置, 还可以 通过系统化晶片(SOC)设计架构下, 将之整合为单一晶片。 上述的记忆体 16、 22为一非挥发性记忆体, 在一较佳实施例中, 其为一可 抹除程式化只读记忆体 (Erasable Programmable Read-Only Memory, EPROM) , 也 可为一程式化只读记忆体 (PROM)或者是只读记忆体 (ROM)等。
当该第一及第二资料传输介面 12、 13 间进行资料传输时, 由该处理器 14 起动该 RF收发器 15, 发出一解锁需求讯号的无线电波 A, 以触动在一感应范 围内的该无线射频辨识标签 20, 通过电磁感应产生电流, 供应无线射频辨识标 签 20运作所需电源; 该无线射频辨识标签 20被触动时, 其处理器 23 自该记忆 体 22取得一电子密钥, 并利用该 RF收发器 21 以一电磁波回传至加解密本体 10的 RF收发器 15 , 该加解密本体 10的处理器 14随即将接收的电子密钥与储 存于加解密本体 10的记忆体 16 内的密钥样板进行比对, 比对相符时, 由该处 理器 14命令该加密 /解密晶片 11对该传输资料进行加密 /解密动作, 否则即 中断该传输资料。
该加解密本体 10还包括有一警示单元 17, 当该无线射频辨识标签 20脱离 感应范围或其回传的电子密钥不符时, 该加解密本体 10的处理器 14除中断该 传输资料或使加密 /解密晶片 11不进行解密动作之外,还同时令该警示单元 17 立即发出灯光或声音等警报信号, 提醒使用者注意。
请参见图 2 , 本发明所提供的连接可携式储存媒体的非内建资料保密装置 第二实施例,其主要构成与图 1 所示第一实施例大致相同,其相同处不另说明。 第二实施例的主要不同处, 是将第一实施例中的被动式无线射频辨识标签 20置 换为一主动式无线射频辨识标签 20,, 在该无线射频辨识标签 20,内设有一供应 工作电源的电池 25以及一可发出警 ^艮灯光或声音的警示单元 24。 由电池 25供 应主动电源的无线射频辨识标签 20'可延伸其感应范围, 同时, 如果该无线射频 辨识标签 20,脱离感应范围时, 其处理器 23可令该警示单元 24立即发出灯光或 声音等警报信号, 提醒使用者注意。 另外, 第二实施例中的加解密本体 10,, 也 可加装一供应工作电源的电池 18, 使其不需要自该电脑设备 30获得电源。
如图 3 至图 5 所示, 该第二资料传输介面 13可为一 USB插槽, 而可携 式储存媒体 40可为一具有一 USB公插头 41的 USB随身碟, 将 USB公插头 41 插入该 USB 插槽的第二资料传输介面 13 , 形成电连接。 该第一资料传输介面 12可为一 USB公插头, 使其可插入电脑设备 30的一 USB插槽, 形成电连接。
该无线射频辨识标签 20在外形上可设计成一可与该加解密本体 10结合的 可拆装式盖体, 并且设有一环扣 26, 使用者可利用该环扣 26将本发明的非内建 资料保密装置, 与随身钥匙圈一同悬挂或直接悬挂于腰带上。 使用时只要将加 解密本体 10卸下, 套在可携式储存媒体 40上, 再透过加解密本体 10插入电脑 设备 30, 如果随身携带的无线射频辨识标签 20未脱离其感应范围时, 则传输的 资料自动加解密, 并能正确存取资料。 如果使用者离开座位, 致使随身携带的 无线射频辨识标签 20与插置于电脑设备 30上的加解密本体 10间距离超过一设 定的感应范围(如三公尺以上),则加解密本体 10上的警示单元 17立即发出警报 灯光或声音, 提醒使用者注意, 同时中断资料传输。
该可携式储存媒体 40中所储存的经加密后的资料, 必须使用原始的加解密 本体 10, 配合发送正确电子密钥的无线射频辨识标签 20, 才能被解密及正确读 取。 因此, 如果该可携式储存媒体 40万一遗失或遭窃时, 其内部经加密后的资 料不会被外人有效读取, 可有效避免机密资料泄漏或被窃取。
本发明提供的非内建资料保密装置, 其可连接一般非加密型可携式储存媒 体, 对存入该非加密型可携式储存媒体的资料进行加密, 被加密后的资料则需 通过该非内建资料保密装置予以解密后, 才能有效读取。 使该非内建资料保密 装置可被应用于各种型式的非加密型可携式储存媒体。
以上所述仅为本发明的较佳实施例, 并不用以限制本发明, 凡在本发明的 精神和原则的内, 所作的任何修改、 等同替换、 改进等, 均应包含在本发明的 保护范围的内。

Claims

权 利 要 求 书
1、 一种连接可携式储存媒体的非内建资料保密装置, 其特征在于, 包括: 一加解密本体, 其具有一用以连接一电脑设备的第一资料传输介面、 一用 以连接可携式储存媒体的第二资料传输介面、 一对通过该第一及第二资料传输 介面间传输的资料进行加解密的加密 /解密晶片、 一连接至该加密 /解密晶片 的处理器、 一连接至该处理器的无线射频收发器及一经组态储存一密钥样板的 记忆体; 以及
一无线射频辨识标签, 其设有相互连接的一无线射频收发器及一组态储存 一电子密钥的记忆体;
其中, 当该加解密本体进行资料传输时, 由该处理器起动该加解密本体的 无线射频收发器, 发出一解锁需求讯号的无线电波, 以触动在一感应范围内的 该无线射频辨识标签, 将该电子密钥以一电磁波回传至该加解密本体, 通过该 加解密本体的处理器将接收的电子密钥与该密钥样板进行比对, 比对相符时, 由该加密 /解密晶片对该传输资料执行加密 /解密动作, 否则中断该传输资料。
2、 根据权利要求 1所述的连接可携式储存媒体的非内建资料保密装置, 其 特征在于, 其中该加解密本体还包括有一警示单元, 当该无线射频辨识标签脱 离该感应范围或其回传的电子密钥不符时, 该警示单元发出一警 信号。
3、 根据权利要求 1所述的连接可携式储存媒体的非内建资料保密装置, 其 特征在于, 其中该无线射频辨识标签内还设有一供应工作电源的电池。
4、 根据权利要求 3所述的连接可携式储存媒体的非内建资料保密装置, 其 特征在于, 其中该无线射频辨识标签还包括有一警示单元, 当该无线射频辨识 标签脱离该感应范围时, 该无线射频辨识标签的警示单元发出一警 ^艮信号。
5、 根据权利要求 1所述的连接可携式储存媒体的非内建资料保密装置, 其 特征在于, 其中该加解密本体内还设有一供应工作电源的电池。
6、 根据权利要求 1所述的连接可携式储存媒体的非内建资料保密装置, 其 特征在于, 其中该无线射频辨识标签与该加解密本体可相互组合及拆卸分离。
PCT/CN2010/072846 2010-05-17 2010-05-17 连接可携式储存媒体的非内建资料保密装置 WO2011143805A1 (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
PCT/CN2010/072846 WO2011143805A1 (zh) 2010-05-17 2010-05-17 连接可携式储存媒体的非内建资料保密装置

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2010/072846 WO2011143805A1 (zh) 2010-05-17 2010-05-17 连接可携式储存媒体的非内建资料保密装置

Publications (1)

Publication Number Publication Date
WO2011143805A1 true WO2011143805A1 (zh) 2011-11-24

Family

ID=44991152

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2010/072846 WO2011143805A1 (zh) 2010-05-17 2010-05-17 连接可携式储存媒体的非内建资料保密装置

Country Status (1)

Country Link
WO (1) WO2011143805A1 (zh)

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1858771A (zh) * 2005-04-30 2006-11-08 仁宝电脑工业股份有限公司 射频识别保密系统及方法
JP2009245020A (ja) * 2008-03-28 2009-10-22 Ikutoku Gakuen Kanagawa Koka Daigaku Usb接続による暗号化装置

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1858771A (zh) * 2005-04-30 2006-11-08 仁宝电脑工业股份有限公司 射频识别保密系统及方法
JP2009245020A (ja) * 2008-03-28 2009-10-22 Ikutoku Gakuen Kanagawa Koka Daigaku Usb接続による暗号化装置

Similar Documents

Publication Publication Date Title
TWI338849B (zh)
CN103366797B (zh) 用无线认证终端授权认证及加解密的安全u盘设计方法
US20180165465A1 (en) Mass storage device memory encryption methods, systems, and apparatus
CN103930893B (zh) 利用了指纹识别的便携式存储装置及其控制方法
TWI537732B (zh) 加密之資料保全系統
US11310048B2 (en) Portable storage device with internal secure controller that performs self-verification and self-generates encryption key(s) without using host or memory controller and that securely sends encryption keys(s) via side channel
CN103390125B (zh) 用无线终端授权及加解密的安全移动存储控制器设计方法
CN101562040B (zh) 高安全性移动存储器的数据处理方法
TWI424321B (zh) 雲端儲存系統及方法
WO2013073260A1 (ja) 記憶装置
CN103415846B (zh) 便携式计算系统和适用于其的便携式计算机
CN114341907A (zh) 体域网辅助认证或支付授权
CN201185082Y (zh) 高安全性移动存储器
CN102662874B (zh) 双界面加密存储卡及其中的数据管理方法和系统
JPWO2018051817A1 (ja) アダプタ装置および処理方法
KR20110105447A (ko) 지문인증 기능과 무선보안 기능을 가진 유에스비 저장장치
WO2011143805A1 (zh) 连接可携式储存媒体的非内建资料保密装置
EP2071486A1 (en) Method and arrangement for managing sensitive personal data
CN103456340A (zh) 一种安全移动硬盘及其应用方法
CN206400550U (zh) 一种基于智能终端的身份认证设备
CN206402241U (zh) 基于智能终端的身份认证设备
CN106446644A (zh) 一种计算机的加解密装置及方法
JP2004021581A (ja) フラッシュメモリーシステムのガイド装置とガイド方法
TWI651624B (zh) 智慧型硬體安全載具
TW201140368A (en) Non-embedded data encryption device connected with portable storage medium

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 10851564

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 10851564

Country of ref document: EP

Kind code of ref document: A1