HOMEPAGE RE-ASSIGNMENT
    121.
    发明申请
    HOMEPAGE RE-ASSIGNMENT 有权
    主要重新分配

    公开(公告)号:US20120311466A1

    公开(公告)日:2012-12-06

    申请号:US13151884

    申请日:2011-06-02

    IPC分类号: G06F3/01

    摘要: Systems, methods and products are described that provide homepage re-assignment. One aspect includes displaying a default homepage desktop view from among a plurality of scrollable desktop views; receiving user input via a user input device; opening a homepage re-assignment utility responsive to receiving said user input, said homepage re-assignment utility including a display indicating one or more desktop views selectable as a new homepage; and responsive to receiving a user input indicating a selection of a desktop view as a new homepage, changing a default homepage setting to a desktop view selected as a new homepage. Other embodiments are described.

    摘要翻译: 描述了提供主页重新分配的系统,方法和产品。 一个方面包括从多个可滚动桌面视图中显示默认主页桌面视图; 经由用户输入设备接收用户输入; 响应于接收到所述用户输入打开主页重新分配实用程序,所述主页重新分配实用程序包括指示可选择为新主页的一个或多个桌面视图的显示器; 并且响应于接收到指示桌面视图的选择的用户输入作为新主页,将默认主页设置改变为被选择为新主页的桌面视图。 描述其他实施例。

    High-speed recovery for computing systems
    122.
    发明授权
    High-speed recovery for computing systems 有权
    计算系统的高速恢复

    公开(公告)号:US08225138B2

    公开(公告)日:2012-07-17

    申请号:US12415056

    申请日:2009-03-31

    IPC分类号: G06F11/00

    摘要: The invention broadly contemplates a computing system that offers high-speed recovery. The system is configured to offer such a high-speed solution via an instant roll back scheme. The system utilizes a virtualization to handle the system state and provide a rescue and recovery like solution without requiring a full system reboot. The system is configured to utilize virtualization, e.g. through the use of a hypervisor to track the fundamental system components. This enables the system to very quickly back the system up on a rolling basis via tracking atomic changes and offering the instant rollback at essentially any point following an atomic change, should common system difficulties be encountered.

    摘要翻译: 本发明广泛地考虑了提供高速恢复的计算系统。 该系统被配置为通过即时回滚方案提供这样的高速解决方案。 该系统利用虚拟化来处理系统状态,并提供诸如解决方案的救援和恢复,而不需要全面的系统重新启动。 该系统被配置为利用虚拟化。 通过使用管理程序来跟踪基本系统组件。 这使得系统能够通过跟踪原子变化来迅速地回滚系统,并在原子变化之后的基本任何点提供即时回滚,如果遇到常见的系统困难。

    Method for preventing malicious software from execution within a computer system
    123.
    发明授权
    Method for preventing malicious software from execution within a computer system 有权
    防止在计算机系统内执行恶意软件的方法

    公开(公告)号:US08041958B2

    公开(公告)日:2011-10-18

    申请号:US11353896

    申请日:2006-02-14

    IPC分类号: G06F12/14

    CPC分类号: G06F21/567 G06F21/125

    摘要: A method for preventing malicious software from execution within a computer system is disclosed. A permutation is performed on a subset of instructions within an application program to yield a permuted sequence of instructions before any actual execution of the application program on the computer system. A permutation sequence number of the permuted sequence of instructions is stored in a permuted instruction pointer table. The permuted sequence of instructions is executed in an execution module that is capable of translating the permuted sequence of instructions to an actual machine code of a processor within the computer system according to the permutation sequence number of the permuted sequence of instructions stored in the permuted instruction pointer table.

    摘要翻译: 公开了一种防止在计算机系统内执行恶意软件的方法。 在应用程序中的指令子集上执行排列,以在计算机系统上的应用程序的任何实际执行之前产生置换的指令序列。 置换的指令序列的置换序列号存储在置换的指令指针表中。 指令的置换序列在执行模块中执行,该执行模块能够根据存储在置换指令中的置换的指令序列的置换序列号,将置换的指令序列转换为计算机系统内的处理器的实际机器码 指针表。

    HOME IMAGE CONTENT SECURELY ISOLATED FROM CORPORATE IT
    125.
    发明申请
    HOME IMAGE CONTENT SECURELY ISOLATED FROM CORPORATE IT 有权
    家庭图像内容安全从企业分离

    公开(公告)号:US20110088082A1

    公开(公告)日:2011-04-14

    申请号:US12578462

    申请日:2009-10-13

    IPC分类号: H04L29/06 G06F9/00 G06F15/177

    CPC分类号: G06F21/575 G06F21/53

    摘要: An exemplary apparatus includes one or more processors, volatile memory, a storage drive and circuitry configured to establish a network connection and to attempt to send credentials via an established network connection. Such an apparatus further includes circuitry configured, responsive to authentication failure after an attempt to send credentials, to release an implemented security policy and load an operating system stored on the storage drive, and, responsive to an attempt to send credentials, to maintain an implemented security policy and to use an operating system exposed via an established network connection and associated with the sent credentials Such an apparatus optionally includes circuitry configured to implement a security policy that isolates at least a portion of a local storage drive. Various other apparatuses, systems, methods, etc., are also disclosed.

    摘要翻译: 示例性设备包括一个或多个处理器,易失性存储器,存储驱动器和被配置为建立网络连接并且尝试经由建立的网络连接发送凭证的电路。 这样的装置还包括:在尝试发送凭证之后,响应于认证失败,释放所实施的安全策略并加载存储在存储驱动器上的操作系统,以及响应于尝试发送凭证来维护实现的电路 安全策略,并且使用通过建立的网络连接公开并与所发送的证书相关联的操作系统。这种装置可选地包括被配置为实现隔离本地存储驱动器的至少一部分的安全策略的电路。 还公开了各种其它装置,系统,方法等。

    APPARATUS, SYSTEM, AND METHOD FOR IMPROVING USER BOOT VIA A STORAGE AREA NETWORK
    126.
    发明申请
    APPARATUS, SYSTEM, AND METHOD FOR IMPROVING USER BOOT VIA A STORAGE AREA NETWORK 有权
    用于通过存储区域网络改进用户引导的装置,系统和方法

    公开(公告)号:US20100191946A1

    公开(公告)日:2010-07-29

    申请号:US12361529

    申请日:2009-01-28

    IPC分类号: G06F15/177

    摘要: An apparatus, system, and method are disclosed for remotely booting a client from a storage area network (“SAN”). A connection module enables a client, such as a diskless client, to connect to two or more storage area networks (“SANs”), the SANs belonging to a group of redundant SANs, each SAN in the group redundantly storing at least a portion of substantially identical operating system data for the client. The boot module enables the client to remotely boot an operating system from the two or more redundant SANs. The boot module makes at least one read request to each of the two or more connected SANs, each read request configured to retrieve a disparate portion of the operating system data for loading the operating system onto the client. The boot module loads the operating system onto the client using a combination of data retrieved from the two or more connected SANs.

    摘要翻译: 公开了用于从存储区域网络(“SAN”)远程引导客户端的装置,系统和方法。 连接模块使诸如无盘客户端之类的客户端能够连接到两个或多个存储区域网络(“SAN”),属于一组冗余SAN的SAN,该组中的每个SAN冗余地存储至少一部分 基本上相同的操作系统数据为客户端。 引导模块使客户端能够从两个或多个冗余SAN远程引导操作系统。 引导模块对两个或多个连接的SAN中的每一个进行至少一个读取请求,每个读取请求被配置为检索用于将操作系统加载到客户端上的操作系统数据的不同部分。 引导模块使用从两个或多个连接的SAN检索的数据的组合将操作系统加载到客户端上。

    Method and apparatus for providing centralized user authorization to allow secure sign-on to a computer system
    127.
    发明授权
    Method and apparatus for providing centralized user authorization to allow secure sign-on to a computer system 有权
    用于提供集中式用户授权以允许安全地登录到计算机系统的方法和装置

    公开(公告)号:US07765407B2

    公开(公告)日:2010-07-27

    申请号:US11612092

    申请日:2006-12-18

    IPC分类号: G06F21/00

    CPC分类号: G06F21/575

    摘要: A method for providing centralized user authorization to allow secure sign-on to a computer system is disclosed. In response to a user attempting to boot up a computer system, a message is sent to a trusted server by a hypervisor within the computer to request a new hard drive password for the computer system. If the user is not authorized to access the computer system, a packet is sent by the trusted server to instruct the hypervisor to stop any boot process on the computer system. If the user is authorized to access the computer system, a packet containing a partial hard drive password is sent by the trusted server to the computer system. The packet is then encrypted with a system public key by the computer system to yield the partial hard drive password. The computer system subsequently combines the partial hard drive password with a user password to generate a new complete hard drive password to continue with the boot process.

    摘要翻译: 公开了一种用于提供集中式用户授权以允许对计算机系统进行安全登录的方法。 响应于尝试启动计算机系统的用户,由计算机内的虚拟机管理程序向可信服务器发送消息,以请求计算机系统的新的硬盘驱动器密码。 如果用户没有权限访问计算机系统,则可信服务器发送一个数据包,以指示管理程序停止计算机系统上的任何引导过程。 如果用户被授权访问计算机系统,则包含部分硬盘驱动器密码的分组由可信服务器发送到计算机系统。 然后,计算机系统使用系统公钥对数据包进行加密,以产生部分硬盘驱动器密码。 计算机系统随后将部分硬盘驱动器密码与用户密码相结合,以生成新的完整硬盘驱动器密码,以继续引导过程。

    Techniques for Booting a Stateless Client
    128.
    发明申请
    Techniques for Booting a Stateless Client 有权
    引导无状态客户端的技术

    公开(公告)号:US20100058042A1

    公开(公告)日:2010-03-04

    申请号:US12200401

    申请日:2008-08-28

    IPC分类号: G06F15/177 G06F9/455

    CPC分类号: G06F9/4416 G06F9/45533

    摘要: A technique for booting a stateless client includes booting a virtual machine (VM) monitor on the client. The VM monitor is stored in a non-volatile memory area of a memory subsystem (of the client) and a first portion of an operating system (which does not include any state information for the operating system) is stored in the non-volatile memory area of the client. Booting of the operating system for the client is initiated and a remote storage (that stores a second portion of the operating system that includes state information for the operating system) is accessed via a communication link. Booting of the operating system for the client is completed using the second portion of the operating system.

    摘要翻译: 用于引导无状态客户端的技术包括在客户机上引导虚拟机(VM)监视器。 VM监视器存储在客户端的存储器子系统的非易失性存储器区域中,并且操作系统的第一部分(其不包括用于操作系统的任何状态信息)存储在非易失性存储器中 客户区域。 启动用于客户端的操作系统的启动,并且经由通信链路访问远程存储(存储操作系统的第二部分,其包括操作系统的状态信息)。 使用操作系统的第二部分完成客户端操作系统的引导。

    APPARATUS, SYSTEM, AND METHOD FOR MANAGING NETWORK BANDWIDTH
    129.
    发明申请
    APPARATUS, SYSTEM, AND METHOD FOR MANAGING NETWORK BANDWIDTH 有权
    用于管理网络带宽的装置,系统和方法

    公开(公告)号:US20090245111A1

    公开(公告)日:2009-10-01

    申请号:US12059872

    申请日:2008-03-31

    IPC分类号: G08C15/00

    摘要: An apparatus, system, and method are disclosed for managing network bandwidth. A monitor module monitors traffic of a plurality of peer computers over a Transmission Control Protocol/Internet Protocol (TCP/IP) network. A detection module detects traffic exceeding a traffic threshold for the network. A delay module delays issuing each TCP/IP acknowledge signal for a specified delay interval in response to detecting the traffic exceeding the traffic threshold.

    摘要翻译: 公开了一种用于管理网络带宽的装置,系统和方法。 监视器模块通过传输控制协议/因特网协议(TCP / IP)网络监视多个对等计算机的业务。 检测模块检测超过网络流量阈值的流量。 响应于检测到超过流量阈值的流量,延迟模块延迟以指定的延迟间隔发布每个TCP / IP确认信号。

    System and Method for Securely Updating Firmware Devices by Using a Hypervisor
    130.
    发明申请
    System and Method for Securely Updating Firmware Devices by Using a Hypervisor 审中-公开
    使用管理程序安全更新固件设备的系统和方法

    公开(公告)号:US20080244553A1

    公开(公告)日:2008-10-02

    申请号:US11692283

    申请日:2007-03-28

    IPC分类号: G06F9/44

    CPC分类号: G06F21/572

    摘要: A system, method, and program product is provided that receives and processes a firmware update at a computer system. The computer system is executing a hypervisor and one or more guest operating systems, and the firmware update corresponds to a hardware device accessible by the computer system. The hardware device is a type that is programmed using an updateable firmware. The hypervisor operating in the computer system processes the received firmware update by first inhibiting use of the device by each of the guest operating systems. After the guest operating systems have been inhibited from using the device, the firmware in the device is upgraded by the hypervisor using the received firmware update. After the firmware has been upgraded, each of the guest operating systems is allowed use of the device.

    摘要翻译: 提供了一种在计算机系统接收和处理固件更新的系统,方法和程序产品。 计算机系统正在执行管理程序和一个或多个客户操作系统,并且固件更新对应于计算机系统可访问的硬件设备。 硬件设备是使用可更新固件编程的类型。 在计算机系统中操作的管理程序通过首先禁止每个客户操作系统使用该设备来处理所接收的固件更新。 在客户机操作系统被禁止使用设备之后,设备中的固件由管理程序使用接收到的固件更新进行升级。 在升级固件之后,允许每个客户机操作系统使用该设备。