Controlling administration rights

    公开(公告)号:US09608994B2

    公开(公告)日:2017-03-28

    申请号:US14521131

    申请日:2014-10-22

    申请人: 1E Limited

    发明人: Richard Threlkeld

    IPC分类号: H04L29/06 G06F21/00 G06F21/60

    摘要: A computer in a network has an operating system. The operating system is configured to prevent running of software not identified in a list of approved software referred to as a white list. Software absent from the list is prevented from running by the operating system. The network has a server which determines, for each item of software on the white list, the administration rights of the users of computers having that item of software. If a white listed software item is present on one or more computers used by users without admin rights, then the admin rights of any user of other computers having the same white listed software item are withdrawn by instructions sent by the server to the computer.

    COMMUNICATION OF VIRTUAL MACHINE DATA
    2.
    发明申请
    COMMUNICATION OF VIRTUAL MACHINE DATA 有权
    虚拟机数据通信

    公开(公告)号:US20140372553A1

    公开(公告)日:2014-12-18

    申请号:US13918036

    申请日:2013-06-14

    申请人: 1E Limited

    IPC分类号: H04L29/08

    摘要: At least one of a method, a client computing device, and a server computing device for communicating data associated with a virtual machine are described. In one example, a client computing device is communicatively coupled to a network. A first set of data representative of at least a portion of a virtual machine disk image accessible on the network is determined, the first set of data comprising data arranged in a first sequence. From this first set of data, a second set of data is determined for communication to the client computing device over the network, the second set of data comprising at least a portion of the first set of data arranged in a second sequence, the second sequence being different from the first sequence.

    摘要翻译: 描述了用于传送与虚拟机相关联的数据的方法,客户端计算设备和服务器计算设备中的至少一个。 在一个示例中,客户端计算设备通信地耦合到网络。 确定表示在网络上可访问的虚拟机磁盘映像的至少一部分的第一组数据,所述第一组数据包括以第一序列排列的数据。 根据该第一组数据,确定第二组数据用于通过网络与客户端计算设备通信,第二组数据包括以第二序列排列的第一组数据的至少一部分,第二序列 与第一序列不同。

    COMPUTER SECURITY PROFILING
    3.
    发明申请

    公开(公告)号:US20180089430A1

    公开(公告)日:2018-03-29

    申请号:US15711395

    申请日:2017-09-21

    申请人: 1E Limited

    发明人: Andrew MAYO

    IPC分类号: G06F21/56 G06F21/57 G06F21/55

    摘要: Certain examples described herein relate to security profiling files on a computer system, including determining a similarity between two executable program files. Byte samples are obtained from each executable program file, respective distributions of byte values are determined, and a difference metric between said distributions is determined, for example by a byte sampler. Responsive to the difference metric indicating a similarity, file import sections of the executable program files are processed to determine a set of application programming interface references for each executable program file. A similarity metric is determined as a function of a number of matching entries in the sets of application programming interface references, and responsive to the similarity metric indicating a similarity between the application programming interface references, an indication is made to a computer security utility that the executable program files are similar.

    Obtaining program data over a network

    公开(公告)号:US09639339B2

    公开(公告)日:2017-05-02

    申请号:US14811167

    申请日:2015-07-28

    申请人: 1e LIMITED

    IPC分类号: G06F9/445 H04L29/08

    CPC分类号: G06F8/60 G06F8/61 H04L67/10

    摘要: A network comprises a data store storing for computing devices connectable to the network i) identification data, associated with the computing devices and ii) source data identifying one or more sources of program data for the devices. The network also has one or more sources of program data associated with the identification data; and a plurality of computing devices. The computing devices each include a communications program configured to communicate with the data store, provide the identification data associated with the computing device and obtain from the data store the source data, and, having obtained the source data from the data store, communicate with the identified source to obtain program data from the identified source.

    Backing-up user data
    5.
    发明授权
    Backing-up user data 有权
    备份用户数据

    公开(公告)号:US09389966B2

    公开(公告)日:2016-07-12

    申请号:US13712769

    申请日:2012-12-12

    申请人: 1e Limited

    IPC分类号: G06F17/30 G06F11/14

    摘要: User data stored on a first computer in a network is backed up to a computer which is one of a plurality of other computers in the network. The user data may be backed-up because a new operating system is to be installed. A request message indicating that the user data needs to be backed up is transmitted from the first computer to the network and is received at the other computers. One of the other computers is selected based on data indicating the extent to which each of the replying computers complies with one or more selection criteria. The first computer then transmits the user date to the selected computer with an identifier identifying the user data. The user data is stored in storage associated with the selected computer. The first and other computers may be in the same sub-network. The selection may be made by the first computer.

    摘要翻译: 存储在网络中的第一计算机上的用户数据被备份到网络中的多个其他计算机之一的计算机。 可以备份用户数据,因为要安装新的操作系统。 指示用户数据需要备份的请求消息从第一计算机发送到网络并且在其他计算机处被接收。 基于指示每个应答计算机符合一个或多个选择标准的程度的数据来选择其中一个计算机。 然后,第一台计算机将标识用户数据的标识符发送给所选择的计算机用户日期。 用户数据存储在与所选计算机相关联的存储器中。 第一台和其他电脑可能在同一子网中。 该选择可以由第一台计算机进行。

    Communication of virtual machine data

    公开(公告)号:US09813485B2

    公开(公告)日:2017-11-07

    申请号:US13918036

    申请日:2013-06-14

    申请人: 1E Limited

    摘要: At least one of a method, a client computing device, and a server computing device for communicating data associated with a virtual machine are described. In one example, a client computing device is communicatively coupled to a network. A first set of data representative of at least a portion of a virtual machine disk image accessible on the network is determined, the first set of data comprising data arranged in a first sequence. From this first set of data, a second set of data is determined for communication to the client computing device over the network, the second set of data comprising at least a portion of the first set of data arranged in a second sequence, the second sequence being different from the first sequence.

    DYNAMIC BUFFER ALLOCATION
    7.
    发明申请

    公开(公告)号:US20170244651A1

    公开(公告)日:2017-08-24

    申请号:US15438509

    申请日:2017-02-21

    申请人: 1E LIMITED

    发明人: Mick SAXTON

    IPC分类号: H04L12/861 H04L12/24

    摘要: The present disclosure relates to a switch for a network, and specifically the dynamic allocation of buffer memory within the switch. A communication channel is established between the switch and a network device. The switch configures and allocates a portion of memory to a receive socket buffer for the established channel. Upon receipt of a signal from the network device, the switch allocates a second portion of memory to the receive socket buffer.

    Deploying software in a computer network

    公开(公告)号:US09720670B2

    公开(公告)日:2017-08-01

    申请号:US14738267

    申请日:2015-06-12

    申请人: 1E Limited

    IPC分类号: H04W4/20 G06F9/445 G06F1/32

    摘要: A central server in a network stores, or has access to, data relating to software stored on computers in subnets of the network. The central server is able to designate a computer in each subnet as a wake-up master for that subnet. The wake up master maintains an awoken state and is able to issue a wakeup signal to any computer designated by the central server in the subnet. A computer in a subnet requesting software from another computer in the subnet, but unable to find it because the other computer may not be awake, issues a request to the central server. The central server identifies a computer in the subnet likely to have the software and causes the wake-up master of the subnet to wake up the identified computer so the requesting computer can communicate with, and download, the requested software from the identified computer.

    Configuration of network devices
    9.
    发明授权
    Configuration of network devices 有权
    配置网络设备

    公开(公告)号:US09548891B2

    公开(公告)日:2017-01-17

    申请号:US14527510

    申请日:2014-10-29

    申请人: 1E Limited

    IPC分类号: H04L29/06 H04L12/24 G06F9/445

    摘要: According to examples described herein computer devices coupled to a network can be automatically configured. Systems information is gathered from a plurality of computer devices by way of one or more of an agent and a scout. This information is standardized and stored in one or more databases. A program function is determined from the standardized information. This program function is used to identify two different sets of computer programs installed on a set of networked computer devices. This configuration is then replaced by a configuration where only a single common computer program is used to perform the program function.

    摘要翻译: 根据本文所述的示例,可以自动配置耦合到网络的计算机设备。 通过代理和侦察兵中的一个或多个从多个计算机设备收集系统信息。 该信息被标准化并存储在一个或多个数据库中。 从标准化信息确定程序功能。 该程序功能用于识别安装在一组联网计算机设备上的两组不同的计算机程序。 然后,该配置被替换为仅使用单个公共计算机程序来执行程序功能的配置。

    COMPUTING DEVICE MONITORING
    10.
    发明申请

    公开(公告)号:US20210263825A1

    公开(公告)日:2021-08-26

    申请号:US17180372

    申请日:2021-02-19

    申请人: 1E Limited

    发明人: Andrew MAYO

    IPC分类号: G06F11/32 G06F11/30 G06F11/07

    摘要: A method of monitoring an operating state of a computing device includes running a system agent on the computing device. An introduced process is executed on the computing device, and a captured parameter relating to at least one of the system agent and the introduced process is captured. The captured parameter is compared to at least one pre-determined parameter. Where the captured parameter differs from the pre-determined parameter by more than a pre-determined threshold, a signal indicative of a change in operating state of the computing device is output.