Dual physical isolation data one-way transmission system and method

A technology of physical isolation and data transmission, which is applied in the field of information transmission, can solve the problems of untrustworthy optical gates to identify and filter data packets, destroy the security policy of the internal terminal, and bypass the security protection mechanism, so as to save manpower and realize automatic operation , easy to manage the effect

Active Publication Date: 2021-03-09
ZHONGTIE XINAN BEIJING INFORMATION SECURITY TECH
View PDF7 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] In actual work, there are many data output requirements between network information systems. One-way shutters have the following risks in this scenario: the risk of covert channels for active transmission. In order to maintain a ready transmission channel, the sending end of the shutter must actively send The underlying synchronous frame and the upper-layer heartbeat packet become the carrier for constructing a time-based covert channel to encode and transmit sensitive information; the information leakage risk of passive escape cannot be trusted. The internal end of the optical gate can logically identify and filter all covert transmissions based on security policies data packets (otherwise the one-way shutter itself does not need to exist)
And these passively escaped data packets themselves can be highly sensitive information; the security bypass risk of structural defects, the internal terminal of the one-way optical gate is accessible to the internal network, and the attacker may destroy the security policy of the internal terminal, resulting in a security protection mechanism. bypassed

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Dual physical isolation data one-way transmission system and method
  • Dual physical isolation data one-way transmission system and method
  • Dual physical isolation data one-way transmission system and method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0046] Refer below Figure 1 to Figure 2A double physical isolation data unidirectional transmission system of this embodiment will be described.

[0047] Such as figure 1 , 2 As shown, the double physically isolated data unidirectional transmission system includes a chassis 100 , a sending end 200 , an arbitration end 300 , a receiving end 400 , a first isolation device 500 , a second isolation device 600 and a sensor 700 .

[0048] The sending end 200, the arbitration end 300, the receiving end 400, the first isolating device 500, the second isolating device 600, and the sensor 700 are all arranged in the chassis 100, and the chassis 100 supports each component, which can better protect the components of the system, and at the same time , is also easy to transport.

[0049] The sending end 200 is connected to a first network device, such as an intranet, and the receiving end 400 is connected to a second network device, such as an external network. According to the data t...

Embodiment 2

[0062] This embodiment provides a double physical isolation data unidirectional transmission method utilizing the system of Embodiment 1, such as image 3 shown, including the following steps:

[0063] S1, after the transmitter 210 receives the data sent by the first network device, the transmitter 210 sends a first isolation door opening instruction to the transmitter controller 220, and the transmitter controller 220 controls the first isolation gate 510 to open.

[0064] Specifically, in this embodiment, the first network device sends a data transmission application to the sender 210, and after the sender 210 accepts the application and feeds back the feedback information of accepting the application to the first network device, the first network device sends the data to the sender 210. Machine 210. After receiving the data, the transmitter 210 sends an instruction to open the first isolation door to the transmitter controller 220, and the transmitter controller 220 contro...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention provides a dual physical isolation data one-way transmission system and a dual physical isolation data one-way transmission method. The system comprises a sending end,an arbitration end, a receiving end, a first isolation device, a second isolation device and a sensor. The method comprises the steps that a sending end controls a first isolation door to be opened; the arbitration end controls the second isolation door to be opened according to the first isolation door opening signal; the sending end transmits the data to the arbitration end; the sending end controls the first isolation door to be closed after data transmission is completed; the arbitration end controls the second isolation door to be closed according to the first isolation door closing signal; the arbitration end controls a third isolation door to open; the arbitration end transmits the data to the receiving end; after data transmission is finished, the arbitration end controls the thirdisolation door to be closed; and the receiving end sends the received data to the second network device. Double physical isolation of an internal network and an external network can be achieved, safety of high-safety industry internal network information is guaranteed, all components are automatically operated, manual intervention is not needed, and manpower is saved.

Description

technical field [0001] Embodiments of the present invention generally relate to the technical field of information transmission, and more specifically, relate to a system and method for one-way transmission of double physically isolated data. Background technique [0002] The rapid development of information communication technology and Internet technology has changed our life and work style and improved our work efficiency, but it has also brought many security problems, such as network information leakage, viruses and so on. These problems seriously threaten the information security of various enterprises and institutions. However, traditional information security protection technology only detects and controls data transmission at the software level, which cannot meet the requirements for physical isolation between classified networks and external unsafe networks. [0003] Physical isolation means that the internal network must not be directly or indirectly connected to ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/0209
Inventor 杨勇王瑞红王晓辉
Owner ZHONGTIE XINAN BEIJING INFORMATION SECURITY TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products