Summary of the invention
The object of the present invention is to provide a kind of portable readable and writable memory with USB interface, memory space is big, memory reliability is high, volume is easy to carry, plug and play, not only can the integrated RF recognition means, perhaps the wireless receiving assembly becomes the peripheral communication interface of PC, and can also be as the person identification device.
Secondary objective of the present invention is to provide a kind of portable readable and writable memory with USB interface, and it not only can realize the encryption of data preferably, and can realize the management to the data read-write by the switching of physics.
Another purpose of the present invention is to provide a kind of data managing method with portable readable and writable memory of USB interface, not only can be with it as the P (boot disk of machine, and manage by memory block to flash memory, as the computing machine electronic lock, safe and secret qualification is carried out in the use of computing machine.
The object of the present invention is achieved like this:
A kind of portable readable and writable memory with USB interface, it comprises outside housing and the control circuit in the housing, wherein said control circuit comprises USB interface, flash memory, CPU, buffer; Wherein CPU finishes address strobe and digital-to-analog conversion, and its port connects USB, flash memory, buffer, and described CPU is connected to the storer of placing electronic lock password or boot.
Described control circuit also comprises read-write control switch, a termination cpu port of read-write control switch, and the other end selects to connect high level or ground connection.
The described read-write control switch portion of controlling is arranged on hull outside portion.
Described be arranged on hull outside portion read-write control switch for the slide switch that can move along guide groove push reset switch or can about remove the switch that sticks up.
Described cpu port also is connected to radio receiver.
Described radio receiver can be infrared module or has the radio frequency identification module of induction antenna.
A kind of data managing method with portable readable and writable memory of USB interface, wherein: with the data separation of storer is public data area and closed security zone, the license key of reading and writing data is arranged in the closed security zone, perhaps the data field of storer also being divided has the password storage area, and password setting is arranged in the password storage area; Setting can require the execute file of password check in the public area, after carrying out this document and importing proper password, read and leave password storage area in password area or the closed security zone in, compared, if password conforms to, then open closed security zone uses another drive to the user is provided, and then the user only can use the public area if not, and the prompt cipher mistake.
When not plugging portable readable and writable memory with USB interface, PC can't start or part software and program can't be carried out, plug portable readable and writable memory with USB interface after, PC communicates by letter with this portable readable and writable memory, carry out grant decision, to obtain the PC rights of using.
The described grant decision of carrying out is carried out for cooperating with the BI0S of PC: the memory block includes two groups of passwords, fixed password and can change password, BI0S reads PID and VID by the standard device agreement behind POST, after BIOS bist data storehouse was consistent, PC is the bootable normal boot-strap program that enters; Can change password: the user is in the closed security zone or the password area stored password, and after PC power source was opened, BI0S required the user to input password automatically, after being proved to be successful, entered the normal boot-strap program, and the user can change password by BIOS interface or built-in application program.
The described grant decision of carrying out is carried out separately for this device: use this machine for the first time, enter the closed security zone by data security function, install driver (or from network download driver), after driver is installed, input computer lock cipher, to obtain this machine rights of using, whether PC checks USB electronic disk to insert before each action, and the password of inputing whether identical with computer lock cipher in the USB electronic disk, then open if yes user's rights of using, if otherwise forbidding that the user continues to use this machine, the mode of forbidding can be again and cuts off all communication port functions, this machine user of cancellation logins.
The described grant decision of carrying out also comprises separately for this device: installed at this machine and overdrived, behind each os starting, system can access password window automatically, the input password, and check whether USB electronic disk exists and compare password, and whether password is identical with computer lock cipher in the USB electronic disk, then open if yes user's rights of using, if otherwise forbidding that the user continues to use this machine, the mode of forbidding can be again and cuts off all communication port functions, this machine user of cancellation logins.
The present invention has tangible advantage:
1, the present invention is compact, and is big or small as pen, and can provide greater than tens of times of floppy drives even hundreds of times of storage areas; Between storage data safety, be not easy this physical damage.
2, easy to use, need not take cabinet apart, need only can use by a USB device interface, no separate type driver and disk, easy to use, and existing all PC types all possess USB interface, so there is not the supportive problem of system.
3, except moving the purpose that stores, maneuverability height of the present invention, low cost, high power capacity, the more important thing is not to have reaching the purpose of guiding in the presence of the operating system.
4, data storage fiduciary level height; because the storage medium of flash memory is an electronic media, the affected by environment easily and physics strength destruction unlike other magnetic disc type products, fiduciary level is higher; preservation for capsule information provides bigger protectiveness, and the user can be at mobile data more relievedly.
5, data confidentiality, except electric board than the reliable data storage, the present invention provides data security function on the electric board in addition, the user must confirm user's identity by the input validation password when each use is of the present invention, can guarantee that so electric board can be not stolen under situation without permission, in addition and can prevent the user to lose behind the electric board data and be picked up to obtain and read, so can prevent the loss of confidential data fully.
6, aspect computing machine defendance lock; when personal informationization is high more; people are just high more to the dependency degree of information products such as PC class; also just therefore more and more personal information are stored among the PC; people also improve the guard consciousness of PC; therefore except the data in the electric board are protected, can be used as the PC electronic lock.
7, aspect identification, because the modern is to the raising of personal information privacy's demand, the computing machine environment for use demand of safety is also just more and more higher, so the present invention adds the part of RFID (radio frequency identification) transmitting terminal (TAG) in equipment, by the product (as keyboard) of RFID receiving end, can reach the purpose of computer security guard again.
8, the identification on PC, the present invention also can cooperate the radio-frequency (RF) identification gate control system, and identification card (TAG) in company's row number is in the present invention integrated, can replace existingly to carry identification card, and the employee individual is provided mobile data storage; Also can use active transmission cards to strengthen the identification security in addition, range of application such as automobile anti-theft lock, so, effect of the present invention not just is confined to around the PC, also can be applicable in the life products, and more can bring into play the maneuverability of mobile storage, even can be guided out the range of application of mobile authentication.
Embodiment
Below in conjunction with the drawings and specific embodiments the present invention is done detailed description further.
As shown in Figure 1, 2, 3, the present invention is a kind of portable readable and writable memory with USB interface, and it comprises outside housing and the control circuit in the housing, and wherein said control circuit comprises USB interface, flash memory, CPU, buffer; Wherein CPU finishes address strobe and digital-to-analog conversion, and its port connects USB, flash memory, buffer.
Offer window 2 on the housing 1, be provided with read-write control switch 3 in the window 2, the read-write control mouthful line of the cpu port of a termination control circuit of switch control end, an end ground connection.Read-write control switch 3 portions of controlling are arranged on housing 1 outside portion.And read-write control switch 3 slide switch, or push reset switch for moving along guide groove, or can about remove the switch that sticks up.
Have, CPU is connected to the storer of placing electronic lock password or boot, and radio receiver again.
As moving the device that stores, the present invention uses flash memory as storing media, and capacity decides according to use flash memory size, removable data or the exchanges data of carrying larger capacity of user, and the flash memory of can connecting comes the increase capacity.
Equipment uses USB interface to link up with PC, must not hang in addition to drive in newer operating system, but plug and play can be given full play to the advantage that stores that moves.
Particular circuit configurations is shown in Fig. 4,5, and this equipment is data storage device, can carry out data transmission between the USB mouth by DP, DN two pins and mainboard, with the data in the hard disk therewith the data in the flash memory of equipment carry out being convenient to carrying of data to passing.
The USB input voltage is DC 5V, and the operating voltage of IC is 3.3V, and therefore, circuit has adopted direct current 5V to change the circuit of 3.3V.U1 is USB IC, is connected with the USB mouth by DATA+, DATA-pin, and it has 15 address wires, 2 groups of data lines, and 32 I/O mouths, and RD, WR pin are arranged, carry out the reading and writing operation of data.U3 is a flash memory, can with and hard disk between the deposit data transmitted portion within it, after power down, can not lose.U4 is an impact damper, and 15 address wire A0-A15 are arranged, and 1 group of data line I01/I08 is the place of temporary transient store data.U6 is connected with main IC by SDA, SCL pin for placing the storer of password, is used for the fetch equipment description, thus the type of identification equipment.Equipment is inserted mainboard USB mouth, by network DN, DP data transmission is arrived master chip U1, IC from Serial EEPROM U6 sense data, sends reset command after handling simultaneously, and with device reset, this moment, equipment entered normal operating conditions.Read-write switch SW 1 meets the WP A2 of CPU, and its control termination high level can be permitted read-write; Or, can only read by resistance R 3 ground connection.
After the system reset, begin to carry out data transmission procedure, main frame can be given an order, open sheet choosing end, start control signals such as RD or WR, the data that will read in from hard disk/go out are by its address of address wire gating, by data line transmission data, and deposit it among U4 SRAM or deposit in the U3 flash memory.Wherein CMOS SRAM is equivalent to the effect of buffer memory, and when power down, data wherein can be lost, and the data in the flash memory then can not lost, and therefore, final data all can be placed among the U3 flash memory MEMORY and preserve, so that carry at any time.
In USB electronic disk, wireless equipment antenna (receiving end) is inserted, because most at present unlimited equipment all need extra receiving equipment to be connected with PC or notebook by PORT COM, and increasing unlimited equipment uses USB port to be used as transmit port, under the limited situation of USB port on the PC, the wireless device receiving antenna is integrated into the practicality that can increase USB electronic disk in the USB electronic disk, and the increase that reduces because of wireless device causes USB mouth deficiency.Physical circuit as shown in Figure 5, wireless device can be infrared ray (Ir) equipment, radio-frequency apparatus (RF), and RFID, outside data message be by the TAG_DATA wireless path, the induced signal of antenna for example, or the infrared device of accepting enters receiving element.After data enter receiving element, be forwarded to transmitting element, data be sent among the CPU of Fig. 4 by TX-PW pin in the transmitting element, among Fig. 4 CPU by SDA and, the SCL pin accepts data, and gives PC by the USB oral instructions.
Mainly based on radio frequency (RF) radio transmission apparatus and the unlimited transmission equipment of infrared ray (Ir), can decide transmission mode and transmission frequency in the wireless device according to the arrange in pairs or groups wireless device that uses.Any use RF transmission and product that receiving end is integrated in the USB electronic disk all meet design concept of the present invention in the RF wireless device, as RFID (radio frequency identification) receiving end.
In controller hardware, different Data Sources is distributed to output port, be sent to PC.The wireless device receiver receives the signal of wireless device emission, and this signal is converted to interface format such as USB/PS-2/1394 by controller and import computer into.
Read: the DATE of NAND-TYPE is reached Buffer (SRAM) earlier, with these data by controller convert USB, PS/2 to, interface formats such as 1394 import computer into; Write: the data that computer will be imported into flash memory are imported into earlier in the impact damper, import these data into flash memory again behind the buffer full.
Use USB Hub to realize using USB Hub to be distinguished at two data sources.Add transmitting terminal function (TAG) in the radio-frequency (RF) identification (RFID) in the present invention, these parts can be replaced employed TAG according to different gate control systems, the TAG part is if cooperate other gate control systems then to be provided by the gate control system merchant, be integrated in the equipment, or in PC, add RFID receiving end part, can use the present invention to carry out the identification of PC end, TAG and provides identification software by our company's self design in the PC recognition system.
In the use kind of TAG, divide into active and two kinds of passive types, passive type can be used in the identity identification of fixed position, active can be used for, need be recognized product at a distance, because of the need user come button or initiatively print and distribute to debate tentatively be, so and can prevent unconscious debating tentative to be, reach safer identity authentication function, after USB flash memory Disk adds RFID TAG, for mobile office and the mobile meaning that stores bigger extension has been arranged, mobile storage not just can use on PC, and in general life, USB flash memory Disk can be used as electronic identity authentication center, as gate control system, automobile anti-theft lock ... etc.
Method of the present invention is based on the content shown in Fig. 6,7,8, and wherein data confidentiality provides the local store files of storage facilities to maintain secrecy and encryption function.
Because current storage facilities such as hard disk, when being used as the system disk guiding, after operating system was written into, storage facilities was in open read-write state, use district's authority except the part operation system can specify each user's hard disk, operating system that the general user uses does not have security mechanism more and uses for the client; In addition on mobile storage, part district data is encrypted more fractal key, the mobile subscriber is high for data confidentiality demand degree more than the general user, and existing data security function that mobile storage provides is very limited, and versatility is not good, only can realize on unit, has limited to the maneuverability of mobile storage, purpose of the present invention is for providing storage facilities Local data confidentiality mechanism, and is not subjected to the PC environmental impact.
External device hardware realizes that the zoning branch carries out the zoning branch with storage facilities, can divide several districts, distinguishes as follows:
A) public area: the public area can provide user one open writable area, the action that any user that can use this equipment all can read and write subregion; The user haves no right to read the drive that also can't see the closed security zone in the public area.
B) closed security zone: all operations is general with general hard disk in the closed security zone, is positioned at the public area executable file but must carry out one, and behind the input proper password, just can carries out reading of data, otherwise can't see and read content in the closed security zone.
C) password area: executable file requires the user to input password in the public area, and can read and leave password storage area in password area or the closed security zone in, compared, if password conforms to, then open closed security zone uses another drive to the user is provided, then the user only can use the public area if not, and the prompt cipher mistake.Password area act as prefecture stored user password and modify feature is provided, and can guarantee that so user cipher can not cause password to run off because of user's faulty operation or leaks outside; Password in can being placed on the password area prefecture, if system design oversimplify to reduce complicacy, also password can be stored in that exclusive archives call comparison for specific program in the closed security zone.
The disposal route of computer lock aspect is:
Be inserted in USB mouth characteristic when using for a long time by the present invention, the present invention can be added computer guard lock function by the programming of hardware or the loading of driver, the user is not when plugging this device, PC can't start or part software and program can't be carried out, other people enter the computer system user without permission except the prevention of performance computer guard lock, also can be used as the computer service recorder, the everything after an available recording user is logined.
Implementation can be divided into two kinds according to different stratum:
Be used with BIOS: equipment includes two groups of passwords, and these two groups of passwords can use simultaneously or choose it wantonly
Fixed password: be equipment PID and VID, BIOS reads PID of the present invention and VID by the standard device agreement behind POST, and the just bootable normal boot-strap program that enters of back PC is consistent with BIOS bist data storehouse.
Can change password: the user can store the password of liking in the present invention, storing media can be EEPROM, or the subregion in the flash memory (being Security Area or Password Area), after PC power source is opened, BIOS can require the user to input password automatically, enter the normal boot-strap program after being proved to be successful, the user can change password by BIOS interface or built-in application program.
Equipment uses separately: when equipment does not use with the BIOS collocation, then need cooperate driver under operating system, to realize the computer lock function, the computer lock cipher then is stored in password area or the closed security zone, after operating system is loaded, the user uses this machine for the first time, enter closed security zone install driver (or from network download driver) by data security function, driver can require the user to import the computer lock cipher to obtain this machine rights of using after installing, PC each the action before all can check USB electronic disk whether to insert and the password of inputing whether identical with computer lock cipher in the USB electronic disk, then open if yes user's rights of using, if otherwise forbid that the user continues to use this machine again, the mode of forbidding can be: cut off all communication port functions, ex.Serial port, the USB mouth, the PS/2 mouth, Parallel Port...; This machine user of cancellation logins, the user if desire to login once more need the correct Windows of input to access to your password and insert USB flash memory Disk after the input proper password obtain to use right.
If the user has installed at this machine and has overdrived, behind each os starting, system can access password window automatically, allows the user input password and checks whether USB electronic disk exists and compare password, whether password is identical with computer lock cipher in the USB electronic disk, then open if yes user's rights of using, if otherwise forbid that the user continues to use this machine, the mode of forbidding can be again and cuts off all communication port functions, ex.Serialport, the USB mouth, PS/2 mouth, Parallel Port...; This machine user of cancellation logins, the user if desire to login once more need the correct Windows of input to access to your password and insert USB electronic disk after the input proper password obtain to use right.
This device is supported under the USB device guiding at the PC mainboard BIOS during as the PC boot disk, can be realized the floppy drive function basically, and bigger storage volume, read or write speed faster are provided as the PC guiding device after inserting the USB slot.