METHOD AND SYSTEM FOR MANAGING COMPUTATIONAL RESOURCES
    1.
    发明公开
    METHOD AND SYSTEM FOR MANAGING COMPUTATIONAL RESOURCES 有权
    用于管理计算机资源的方法

    公开(公告)号:EP2002616A2

    公开(公告)日:2008-12-17

    申请号:EP07754910.3

    申请日:2007-04-03

    发明人: WORLEY, John, S.

    IPC分类号: H04L12/56

    摘要: A method and system for managing a pool of computational resources from a resource pool, used for a period of time and eventually returned to the resource pool and a method and system for efficiently managing ephemeral ports used for short-duration communications connections. In one embodiment, an array of port tables is employed to store and manage a large space of ephemeral protocol ports, including circular buffer port tables. Port table entries uniquely identify a communications port and include a sequence number that allows the port to be immediately reallocated, a non-local port- number portion of a connection address may be hashed to generate a numerical reference to a particular port table within the list of port tables. Ephemeral ports for the non-local- port-number portion of a connection address are allocated from, and deallocated and returned to, the numerically identified port table.

    SECURE VIRTUAL-MACHINE MONITOR
    2.
    发明公开
    SECURE VIRTUAL-MACHINE MONITOR 审中-公开
    SAFE虚拟计算机控制装置

    公开(公告)号:EP1955154A2

    公开(公告)日:2008-08-13

    申请号:EP06826781.4

    申请日:2006-10-25

    IPC分类号: G06F9/455

    摘要: Embodiments of the present invention provide secure virtual-machine monitors and secure, base-level operating systems that, in turn, provide secure execution environments for guest operating systems and certain special functions that can interface directly to base-level operating systems. Security is accomplished by employing a small, verifiable component of a secure foundation that executes at highest privilege between the hardware interface and the virtual-machine monitor. The virtual-machine monitor and secure foundation employ virtual-machine-monitor-resident guest-operating-system monitors, memory compartmentalization, and authenticated calls to securely isolate computational entities from one another within the computer system.

    CUSTOMIZED EXECUTION ENVIRONMENT AND OPERATING SYSTEM CAPABLE OF SUPPORTING SAME
    3.
    发明公开
    CUSTOMIZED EXECUTION ENVIRONMENT AND OPERATING SYSTEM CAPABLE OF SUPPORTING SAME 审中-公开
    改编执行环境和操作系统WITH THE能力帮助

    公开(公告)号:EP1599800A2

    公开(公告)日:2005-11-30

    申请号:EP04717471.9

    申请日:2004-03-04

    IPC分类号: G06F9/50

    摘要: Methods and techniques for implementing a custom execution environment (CE2) a related loader, and an operating system for supporting CE2s are provided. According to one embodiment, a determination is made with respect to which system resources of a computer system, if any, are to remain under control of a resident operating system of the computer system and which of the system resources are to be placed under control of on or more CE2s. The system resources are then partitioned among the resident operating system and the one or more CE2s by associating one or more partitions of the system resources with the one or more CE2s. According to one embodiment, a CE2 includes code and data sections of an application and code and data sections of a set of system services. The set of system services has direct and full control of a set of hardware resources of a computer system containing one or more processors implementing a parallel protected architecture.

    QUEUED, ASYNCHRONOUS COMMUNICATION ARCHITECTURE INTERFACE
    4.
    发明公开
    QUEUED, ASYNCHRONOUS COMMUNICATION ARCHITECTURE INTERFACE 审中-公开
    与队列工作异步通信接口架构

    公开(公告)号:EP1813067A2

    公开(公告)日:2007-08-01

    申请号:EP05851751.7

    申请日:2005-11-16

    IPC分类号: H04L12/56

    摘要: Methods and techniques are provided for implementing a queued, asynchronous application programming interface (API) for network communications (595). According to one embodiment, the API provides (i) a system abstraction representing a connection between a local machine and a remote machine, and (ii) multiple routines accessible to applications for operating on connections. The connection instantiated by applications based upon the system abstraction are capable of providing full duplex communication channels between their respective local machines and remote machines. The routine define operations and parameters to establish, accept, read, write and close the connections (515).