A kind of gate control system of triple-authentication and control method
Technical field
The present invention relates to a kind of access control system and control method, particularly a kind of triple-authentication gate control system and control method that is used for the unmanned power distribution room.
Background technology
At present, be used for limiting the gate control system that unauthorized person passes through, the general gate inhibition's technology that adopts has technology such as password, IC/ID card, bar code, bio-identification.Along with development of science and technology, the technology that these are single or be easy to be cracked, or be not suitable for actual use the in remote unmanned electricity room.
For example, adopt single password, in the input password, seen password by other people easily; Adopt the IC/ID card technique, the IC/ID card itself is stolen easily or duplicates; Adopting barcode technology, is that papery bar code or other forms of bar code all are copied easily or duplicate; Adopt biological identification technology (no matter being identification fingerprint, palmmprint or iris), these equipment are very expensive and be not suitable for using in this remote wilderness on the one hand.The discrimination of these technology is lower on the other hand, and the workmen of electric room or machine room is long-term and cable, copper wire, iron wire or netting twine are come into contacts with, scratch finger or palm especially easily and often stay up late, these all can cause the percent of pass of fingerprint recognition, palmmprint identification and iris recognition to become very low and cause not opening the gate inhibition.
In sum, present gate control system or authentication mode be single to be stolen easily or to duplicate, or technology elder generation and then cause discrimination low and equipment cost is very expensive too, and is not suitable for large-scale promotion application in unmanned electricity room.
Summary of the invention
The objective of the invention is to have proposed a kind of gate control system and control method of triple-authentication in view of the single gate control system of tradition.
In order to realize the present invention, be achieved through the following technical solutions:
A kind of gate control system of triple-authentication comprises image capture module, card reader module, local controller module, gate inhibition's output module, mobile phone, system management module and database module.
Described image capture module links to each other with the local controller module, and major function is to obtain visitor's image, uploads to system management module through the local controller module.
Described card reader module links to each other with the local controller module, integrated I.D. and two kinds of recognition technologies of two-dimension code, and major function is after obtaining I.D. card number and 2 D code information, uploads to the local controller module and makes a decision.
Described local controller module links to each other with server by 3G/GPRS, major function is to be responsible for handling information acquisition, the logic determines of front-end equipment, and carry out data communication with system management module, comprise card number contrast, two-dimension code contrast, timestamp contrast, judge output, image acquisition and 3G/GRPS network communication module.
Described gate inhibition's output module links to each other with the local controller module, and major function is that the order of accepting the local controller module is opened the door.
Described mobile phone is connected with system management module, card reader module, and major function is to accept the two-dimension code that system management module sends in the multimedia message mode, and by card reader module two-dimension code is scanned in the local controller module.
Described system management module is connected with database module with the local controller module, major function is the connection of authentication local controller module and accepts cardholder information in its data communication and the Query Database, and generates two-dimension code at random and send it to holder's mobile phone and local controller module.
Described database module links to each other with system management module by LAN (Local Area Network), major function be all holders' of record information, local controller information, image information, open the door, all incidents and facility information such as warning.
A kind of access control method of triple-authentication, it comprises that step is:
S1): the visitor takes the ID card to swipe the card at card reader module;
S2):, forward step S4 to), if this I.D. forwards step S3 to not through authorizing (at this moment, the card reader module blinking red lamp)) if this I.D. is authorized (at this moment, the flicker of card reader module green light);
S3): the local controller module is directly sent out alarm message to the operator on duty, notifies the operator on duty to pay close attention to;
S4): the local controller module is from the GPRS/3G network that is dynamically connected, and the I.D. card number is uploaded to system management module;
S5): the logging request of system management module authentication local controller module, if the local controller module begins communication so by authentication, otherwise the refusal login connects and the SMS notification operator on duty pays close attention to;
S6): system management module receives the I.D. card number that the local controller module is uploaded, and directly searches corresponding holder's cell-phone number in database, generates the two-dimension code at random of a band timestamp (being effective in certain period) simultaneously.After generating at random two-dimension code, directly send multimedia message to holder's mobile phone, download this 2 D code information by the GPRS/3G network to the local controller module simultaneously by system management module.
S7): holder's mobile phone is received multimedia message, opens multimedia message and just can see two-dimension code.Mobile phone is pressed close to card reader module, utilize the two-dimension code reading device scanning two-dimension code in the card reader module;
S8): the local controller module obtains the 2 D code information A that card reader module reads;
S9): the local controller module is received the 2 D code information B that system management module issues;
S10): whether local control contrast 2 D code information A is identical with B, if the identical step S11 that then forwards to), otherwise forward step S3 to);
S11): whether the timestamp of two-dimension code is effective, and (promptly distance is brushed the time of I.D. the first time whether in the scope that this timestamp is represented) then forwards S12 to if effectively), otherwise forward S3 to);
S12): local controller module output command starts image capture module collection visitor's image simultaneously to gate inhibition's output module (promptly opening the door);
S13): will the open the door image uploading of information and collection of local controller module is preserved to system management module and in database module;
Good effect of the present invention is:
1, the equipment (the two-in-one card reader module of I.D./two-dimension code, local controller module) that adopts of the present invention all be routine and proven technique and equipment, relatively is adapted at use on a large scale in the unmanned electricity room of electric system.
2, the present invention has superiority in remote suburb or mountain area very much, can utilize the GPRS/3G network to transmit data and internetwork connection mode is trigger-type.Promptly have when authorizing I.D. to swipe the card just to connect network, treat that the event handling back automatic cutout network that finishes connects, data traffic is considerably less, so communication cost is very cheap.
3, the present invention will be at random two-dimension code authentication and timestamp authentication combine, be the bright spot of uniqueness of the present invention, its sound assurance the high security that is not cracked of system, and keep on file to guarantee to have good grounds by image acquisition afterwards.
4, ripe gate inhibition's recognition technology such as I.D., two-dimension code is adopted in the authentication of the present invention's employing, guarantees the accuracy rate height that the time of passing through that authenticates is short, authenticate.
Description of drawings
Fig. 1 is a system construction drawing of the present invention;
Fig. 2 is a workflow block diagram of the invention process;
Embodiment
Below in conjunction with accompanying drawing the specific embodiment of the invention is elaborated.
The gate control system of described a kind of triple-authentication comprises I.D., two-dimension code, timestamp triple-authentication at random.
As shown in Figure 1, a kind of gate control system of triple-authentication comprises image capture module, card reader module, local controller module, gate inhibition's output module, mobile phone, system management module, database module.
Described image capture module links to each other with the local controller module, obtains visitor's image, and uploads to system management module by the local controller module.
Described card reader module links to each other with the local controller module, and integrated I.D. and two kinds of recognition technologies of two-dimension code behind reading identity card card number and the 2 D code information, upload to the local controller module and make a decision.
Described local controller module links to each other with server by 3G/GPRS, be responsible for handling information acquisition, the logic determines of front-end equipment, carry out data communication with system management module, comprise card number contrast, two-dimension code contrast, timestamp contrast, judge output, image acquisition and 3G/GRPS network communication module.As shown in Figure 1, receive the valid data of card reader module, judge that by card number contrast module triggering the 3G/GPRS network communication module connects Internet, accept the two-dimension code data of the band timestamp that system management module issues then, and with this two-dimension code, timestamp by two-dimension code contrast module, timestamp contrast module compares, judge after output module is judged the result is outputed to gate inhibition's output module and triggers the image capture module images acquired, upload to system management module by the 3G/GPRS network communication module after the image capture module images acquired.
Described gate inhibition's output module links to each other with the local controller module, is responsible for accepting the order of local controller module and opens the door.
Described mobile phone is connected with system management module, card reader module, accepts the two-dimension code that system management module sends in the multimedia message mode, and by card reader module two-dimension code is scanned in the local controller module.
The connection of described system management module authentication local controller module is also accepted cardholder information in its data communication and the Query Database, and generates two-dimension code at random and send it to holder's mobile phone and local controller module.
Described database module links to each other with system management module by LAN (Local Area Network), write down all holders' information, local controller information, image information, open the door, all incidents and facility information such as warning.
As shown in Figure 2, a kind of access control method of triple-authentication, comprise: whether the legal local controller module that triggers is connected to Internet by 3G/GPRS by I.D., after system management module is accepted the logging request of local controller, generate two-dimension code and timestamp at random and be issued in mobile phone and the local controller module by multimedia message and network.Local controller again by card reader module obtain two-dimension code and with download the two-dimension code contrast of getting off from system management module by the 3G/GPRS network, carry out the contrast of timestamp again, judge at last whether all authentications are legal, if legal just opening the door and images acquired.
Its concrete workflow is:
S1): the visitor takes the ID card to swipe the card at card reader module.
S2):, forward step S4 to) if this I.D. is authorized (at this moment, the flicker of card reader module green light).If this I.D. through authorizing (at this moment, the card reader module blinking red lamp), does not forward step S3 to).
S3): the local controller module is directly sent out alarm message to the operator on duty, notifies the operator on duty to pay close attention to.
S4): the local controller module is from the GPRS/3G network that is dynamically connected, and the I.D. card number is uploaded to system management module.
S5): the logging request of system management module authentication local controller module, if the local controller module begins communication so by authentication, otherwise the refusal login connects and the SMS notification operator on duty pays close attention to.
S6): system management module receives the I.D. card number that the local controller module is uploaded, and directly searches corresponding holder's cell-phone number in database, generates the two-dimension code at random of a band timestamp (being effective in certain period) simultaneously.After generating at random two-dimension code, directly send multimedia message to holder's mobile phone, download this 2 D code information by the GPRS/3G network to the local controller module simultaneously by system management module.
S7): holder's mobile phone is received multimedia message, opens multimedia message and just can see two-dimension code.Mobile phone is pressed close to card reader module, utilize the two-dimension code reading device scanning two-dimension code in the card reader module.
S8): the local controller module obtains the 2 D code information A that card reader module reads.
S9): the local controller module is received the 2 D code information B that system management module issues.
S10): whether local control contrast 2 D code information A is identical with B, if the identical step S11 that then forwards to), otherwise forward step S3 to).
S11): whether the timestamp of two-dimension code is effective, and (promptly distance is brushed the time of I.D. the first time whether in the scope that this timestamp is represented) then forwards S12 to if effectively), otherwise forward S3 to);
S12): local controller module output command starts image capture module collection visitor's image simultaneously to gate inhibition's output module (promptly opening the door).
S13): will the open the door image uploading of information and collection of local controller module is preserved to system management module and in database module.