Method and system for finding evolving regions in graphs without persistent node identity

    公开(公告)号:US20070016898A1

    公开(公告)日:2007-01-18

    申请号:US11180445

    申请日:2005-07-13

    IPC分类号: G06F9/45

    CPC分类号: G06F11/3604

    摘要: A system, method, and computer program for identifying evolving regions in a graph of interrelated nodes representing a computer system environment. The method includes generating a series of samples (302) of the environment. Each sample includes a plurality of interrelated nodes (502) and at least one edge (504) classified into a plurality of at least one of node type and edge type, respectively. A summary (900) of the plurality of at least one of node type (502) and edge type (504) is created for the series of samples (302). A summary instance (312) of the summary (900) is created for each sample. At least one summary instance (312) is compared to at least one subsequent summary instance (314) and at least one result (318) is stored in memory (106). A successive behavior is characterized for one or more of the at least one of the node type and the edge type.

    Declarative instance based access control for application resources with persisted attributes and state
    12.
    发明授权
    Declarative instance based access control for application resources with persisted attributes and state 有权
    具有持久属性和状态的应用程序资源的基于声明性实例的访问控制

    公开(公告)号:US09292305B2

    公开(公告)日:2016-03-22

    申请号:US12013867

    申请日:2008-01-14

    IPC分类号: G06F9/44

    CPC分类号: G06F9/4435 G06F9/4493

    摘要: Embodiments of the present invention provide a method, system and computer program product for declarative instance based access control for persistent application resources in a multi-tier application. In one embodiment of the invention, a method for instance based access control in a persistent application resource can be provided. The method can include creating one or more instances of an persistent application resource for a particular user or based on attributes of the user, coupling the instance(s) of the persistent application resource to a database implementing row-level access control, initializing access to the database according to a role or attribute for the particular user, and accessing a restricted set of data in the database through the instance(s) of the persistent application resource.

    摘要翻译: 本发明的实施例提供了一种用于在多层应用中用于持久应用资源的基于声明性实例的访问控制的方法,系统和计算机程序产品。 在本发明的一个实施例中,可以提供用于持久应用资源中的基于实例的访问控制的方法。 该方法可以包括为特定用户创建持久性应用资源的一个或多个实例,或者基于用户的属性,将持久应用资源的实例耦合到实现行级访问控制的数据库,初始化对 数据库根据特定用户的角色或属性,以及通过持久性应用程序资源的实例访问数据库中受限制的一组数据。

    Virtual machine disk image installation

    公开(公告)号:US09280336B2

    公开(公告)日:2016-03-08

    申请号:US13460843

    申请日:2012-05-01

    IPC分类号: G06F9/445 G06F9/455

    摘要: A processor copies first and second installable binary files into first and second disk images of first and second virtual machines, respectively, before instantiating the images. The processor can copy first installation parameters and second installation parameters into the first image. The processor copies additional first installation parameters and additional second installation parameters into the second image. The processor at least partially executes a first installation process, based on the first installation parameters, to install the first installable binary files, and a second installation process, based on the additional second installation parameters, to install the second installable binary files. The processor at least partially executes the installation processes in an interleaved manner in relation to one another, based on dependencies. After instantiating the images, the processor can execute scripts based on the second installation parameters and the additional second installation parameters to complete installation.

    Portable virtual systems for composite solutions
    14.
    发明授权
    Portable virtual systems for composite solutions 有权
    复合解决方案的便携式虚拟系统

    公开(公告)号:US09100399B2

    公开(公告)日:2015-08-04

    申请号:US13538164

    申请日:2012-06-29

    IPC分类号: G06F15/173 H04L29/08

    CPC分类号: H04L67/10

    摘要: A mechanism is provided in a data processing system for providing portable composite solutions. The mechanism deploys a set of virtual images for a plurality of components of a composite solution to a build environment to form a set of virtual machines. The mechanism deploys a network virtual image to the build environment to form a network virtual machine. The network virtual machine comprises a router. The mechanism configures the router to create a private subnet with a set of fixed addresses and set of host names for the composite solution. Optionally, the mechanism may discover the fixed addresses during the build phase. The mechanism optionally installs middleware components to the set of virtual machines for the composite solution to form a set of solution virtual machines. The mechanism captures the set of solution virtual machines as a set of solution virtual images as a portable composite solution.

    摘要翻译: 在用于提供便携式复合解决方案的数据处理系统中提供了一种机制。 该机制将组合解决方案的多个组件的一组虚拟映像部署到构建环境以形成一组虚拟机。 该机制将网络虚拟映像部署到构建环境以形成网络虚拟机。 网络虚拟机包括路由器。 该机制配置路由器以创建具有一组固定地址和复合解决方案主机名集的专用子网。 可选地,该机制可以在构建阶段期间发现固定地址。 该机制可选择将中间件组件安装到组合解决方案的一组虚拟机中以形成一组解决方案虚拟机。 该机制将一组解决方案虚拟机作为一组解决方案虚拟映像捕获为便携式复合解决方案。

    Portable Virtual Systems for Composite Solutions
    15.
    发明申请
    Portable Virtual Systems for Composite Solutions 有权
    复合解决方案的便携式虚拟系统

    公开(公告)号:US20140003284A1

    公开(公告)日:2014-01-02

    申请号:US13538164

    申请日:2012-06-29

    IPC分类号: H04L12/28

    CPC分类号: H04L67/10

    摘要: A mechanism is provided in a data processing system for providing portable composite solutions. The mechanism deploys a set of virtual images for a plurality of components of a composite solution to a build environment to form a set of virtual machines. The mechanism deploys a network virtual image to the build environment to form a network virtual machine The network virtual machine comprises a router. The mechanism configures the router to create a private subnet with a set of fixed addresses and set of host names for the composite solution. Optionally, the mechanism may discover the fixed addresses during the build phase. The mechanism optionally installs middleware components to the set of virtual machines for the composite solution to form a set of solution virtual machines. The mechanism captures the set of solution virtual machines as a set of solution virtual images as a portable composite solution.

    摘要翻译: 在用于提供便携式复合解决方案的数据处理系统中提供了一种机制。 该机制将组合解决方案的多个组件的一组虚拟映像部署到构建环境以形成一组虚拟机。 该机制将网络虚拟映像部署到构建环境以形成网络虚拟机。网络虚拟机包括路由器。 该机制配置路由器以创建具有一组固定地址和复合解决方案主机名集的专用子网。 可选地,该机制可以在构建阶段期间发现固定地址。 该机制可选择将中间件组件安装到组合解决方案的一组虚拟机中以形成一组解决方案虚拟机。 该机制将一组解决方案虚拟机作为一组解决方案虚拟映像捕获为便携式复合解决方案。

    Virtual machine disk image installation
    16.
    发明申请
    Virtual machine disk image installation 审中-公开
    虚拟机磁盘映像安装

    公开(公告)号:US20130007739A1

    公开(公告)日:2013-01-03

    申请号:US13460843

    申请日:2012-05-01

    IPC分类号: G06F9/455 G06F9/445

    摘要: A processor copies first and second installable binary files into first and second disk images of first and second virtual machines, respectively, before instantiating the images. The processor can copy first installation parameters and second installation parameters into the first image. The processor copies additional first installation parameters and additional second installation parameters into the second image. The processor at least partially executes a first installation process, based on the first installation parameters, to install the first installable binary files, and a second installation process, based on the additional second installation parameters, to install the second installable binary files. The processor at least partially executes the installation processes in an interleaved manner in relation to one another, based on dependencies. After instantiating the images, the processor can execute scripts based on the second installation parameters and the additional second installation parameters to complete installation.

    摘要翻译: 在实例化图像之前,处理器将第一和第二可安装二进制文件分别复制到第一和第二虚拟机的第一和第二磁盘映像中。 处理器可以将第一个安装参数和第二个安装参数复制到第一个图像中。 处理器将额外的第一安装参数和其他第二安装参数复制到第二个映像中。 处理器至少部分地基于第一安装参数执行安装第一可安装二进制文件的第一安装过程,以及基于附加的第二安装参数的第二安装过程来安装第二可安装的二进制文件。 基于依赖性,处理器至少部分地以相互交错的方式执行安装处理。 在实例化图像之后,处理器可以基于第二个安装参数和附加的第二个安装参数执行脚本来完成安装。

    Method and system for generating messages
    17.
    发明授权
    Method and system for generating messages 失效
    生成消息的方法和系统

    公开(公告)号:US08321500B2

    公开(公告)日:2012-11-27

    申请号:US12277995

    申请日:2008-11-25

    IPC分类号: G06F15/16

    摘要: The present invention discloses a method and system for generating Simple Object Access Protocol (SOAP) message, wherein, at least one first information sets are pre-stored and each of the first information sets contains at least one piece of information. The method comprises: generating a first SOAP message which contains a second information set that contains at least one piece of information; retrieving a first information set that corresponds to the second information set; and generating a second SOAP message using the retrieved first information set and the first SOAP message.

    摘要翻译: 本发明公开了一种用于生成简单对象访问协议(SOAP)消息的方法和系统,其中至少一个第一信息集被预先存储,并且每个第一信息集包含至少一条信息。 该方法包括:生成包含包含至少一条信息的第二信息集的第一SOAP消息; 检索对应于第二信息集的第一信息集; 以及使用所检索的第一信息集和所述第一SOAP消息来生成第二SOAP消息。

    Converting Images in Virtual Environments
    18.
    发明申请
    Converting Images in Virtual Environments 有权
    在虚拟环境中转换图像

    公开(公告)号:US20110307531A1

    公开(公告)日:2011-12-15

    申请号:US12816117

    申请日:2010-06-15

    摘要: The different illustrative embodiments provide a method, computer program product, and apparatus for converting a first image for a virtual machine formatted for a first virtual environment. A second image is created, wherein the second image is non-specific to any virtual environment. A determination is made whether a portion of files to be copied from the first virtual image to the second virtual image should be replaced using a compatibility matrix, wherein the compatibility matrix identifies changes between the first virtual environment and a second virtual environment. A replacement for the portion of the files is copied to the second image using the compatibility matrix responsive to a determination that the portion of the files in the set of files should be replaced. The file is copied to the second image responsive to an absence of a determination that the each file in the set of files should be replaced.

    摘要翻译: 不同的说明性实施例提供了一种用于转换为第一虚拟环境格式化的虚拟机的第一图像的方法,计算机程序产品和装置。 创建第二图像,其中第二图像对于任何虚拟环境都是非特定的。 确定是否应使用兼容性矩阵来替换要从第一虚拟图像复制到第二虚拟图像的文件的一部分,其中兼容性矩阵识别第一虚拟环境和第二虚拟环境之间的变化。 响应于确定应该替换文件集中的文件的一部分,使用兼容性矩阵将部分文件的替换复制到第二图像。 响应于不确定应该替换文件集中的每个文件的确定,该文件被复制到第二图像。

    DATABASE AUTHORIZATION RULES AND COMPONENT LOGIC AUTHORIZATION RULES AGGREGATION
    19.
    发明申请
    DATABASE AUTHORIZATION RULES AND COMPONENT LOGIC AUTHORIZATION RULES AGGREGATION 有权
    数据库授权规则和组件逻辑授权规则聚合

    公开(公告)号:US20090064272A1

    公开(公告)日:2009-03-05

    申请号:US11848405

    申请日:2007-08-31

    IPC分类号: G06F17/00

    CPC分类号: H04L63/105 G06F21/6227

    摘要: Embodiments of the present invention provide a method, system and computer program product for aggregating database and component logic authorization rules in a multi-tier application. In an embodiment of the invention, a method for aggregating database and component logic authorization rules in a multi-tier application system can include aggregating role-based authorization rules for both a persistence layer and a logic layer of a multi-tier application in a unified policy, distributing the unified policy to both the persistence layer and the logic layer of the multi-tier application, transforming the unified policy into respectively a set of role based permissions for the persistence layer and a set of role based permissions for the logic layer, and applying the set of role based permissions for the persistence layer in the persistence layer, and the set of role based permissions for the logic layer in the logic layer of the multi-tier application.

    摘要翻译: 本发明的实施例提供了一种在多层应用中聚合数据库和组件逻辑授权规则的方法,系统和计算机程序产品。 在本发明的一个实施例中,用于在多层应用系统中聚合数据库和组件逻辑授权规则的方法可以包括为统一的多层应用的持久层和逻辑层聚合基于角色的授权规则 策略,将统一策略分发到多层应用的持久层和逻辑层,将统一策略分为一组基于角色的持久层权限和逻辑层的一组基于角色的权限, 并在持久层中为持久层应用一组基于角色的权限,以及在多层应用程序的逻辑层中逻辑层的基于角色的权限集合。

    Method and system for finding evolving regions in graphs without persistent node identity
    20.
    发明授权
    Method and system for finding evolving regions in graphs without persistent node identity 有权
    用于在没有持久节点身份的图形中查找演进区域的方法和系统

    公开(公告)号:US07233733B2

    公开(公告)日:2007-06-19

    申请号:US11180445

    申请日:2005-07-13

    IPC分类号: G02B6/00 G06F9/45

    CPC分类号: G06F11/3604

    摘要: A system, method, and computer program for identifying evolving regions in a graph of interrelated nodes representing a computer system environment. The method includes generating a series of samples (302) of the environment. Each sample includes a plurality of interrelated nodes (502) and at least one edge (504) classified into a plurality of at least one of node type and edge type, respectively. A summary (900) of the plurality of at least one of node type (502) and edge type (504) is created for the series of samples (302). A summary instance (312) of the summary (900) is created for each sample. At least one summary instance (312) is compared to at least one subsequent summary instance (314) and at least one result (318) is stored in memory (106). A successive behavior is characterized for one or more of the at least one of the node type and the edge type.

    摘要翻译: 用于识别表示计算机系统环境的相关节点的图中的演进区域的系统,方法和计算机程序。 该方法包括生成环境的一系列样本(302)。 每个样本分别包括多个相关节点(502)和被分类为多个节点类型和边缘类型中的至少一个的至少一个边缘(504)。 为一系列样本(302)创建节点类型(502)和边缘类型(504)中的多个至少一个的概要(900)。 为每个样本创建摘要(900)的摘要实例(312)。 将至少一个概要实例(312)与至少一个后续摘要实例(314)进行比较,并且至少一个结果(318)被存储在存储器(106)中。 连续行为的特征在于节点类型和边缘类型中的至少一个中的一个或多个。