Techniques for non repudiation of storage in cloud or shared storage environments
    11.
    发明授权
    Techniques for non repudiation of storage in cloud or shared storage environments 有权
    在云或共享存储环境中不可否认存储的技术

    公开(公告)号:US08544070B2

    公开(公告)日:2013-09-24

    申请号:US13108094

    申请日:2011-05-16

    IPC分类号: G06F7/04

    摘要: Techniques for non-repudiation of storage in cloud or shared storage environments are provided. A unique signature is generated within a cloud or shared storage environment for each file of the storage tenant that accesses the cloud or shared storage environment. Each signature is stored as part of the file system and every time a file is accessed that signature is verified. When a file is updated, the signature is updated as well to reflect the file update.

    摘要翻译: 提供了在云或共享存储环境中不可否认存储的技术。 在云或共享存储环境中为访问云或共享存储环境的存储租户的每个文件生成唯一的签名。 每个签名作为文件系统的一部分存储,并且每次访问该文件时,签名都被验证。 更新文件时,还会更新签名以反映文件更新。

    Techniques for local personalization of content
    12.
    发明授权
    Techniques for local personalization of content 有权
    本地个性化内容的技术

    公开(公告)号:US08490198B2

    公开(公告)日:2013-07-16

    申请号:US11750791

    申请日:2007-05-18

    IPC分类号: G06F3/00 H04L9/32

    摘要: Techniques for the local personalization of content are presented. A content personalization service is dynamically pushed from a server environment to a client processing environment associated with a principal on demand. The content personalization service interjects itself between content that the principal attempts to view and access within the client processing environment and modifies and personalizes that content on behalf of the principal before the principal can view or access the content.

    摘要翻译: 介绍了本地个性化内容的技术。 将内容个性化服务从服务器环境动态推送到与主服务器相关联的客户端处理环境。 内容个性化服务在客户端处理环境中试图查看和访问的内容之间插入内容,并在主体可以查看或访问内容之前代表主体修改和个性化该内容。

    Dynamic service access
    13.
    发明授权
    Dynamic service access 失效
    动态服务访问

    公开(公告)号:US08474009B2

    公开(公告)日:2013-06-25

    申请号:US12787727

    申请日:2010-05-26

    IPC分类号: H04L29/06

    摘要: Apparatus, systems, and methods may operate to authenticate a desktop client to an identity service (IS), to receive a request, from an application, at the IS via the desktop client for a virtual service internet protocol (IP) address associated with a service. The IS may operate to build a routing token that includes an original physical IP address associated with the service when a policy associated with the IS permits access to the service by a user identity associated with the desktop client. After the routing token is validated, the application may be connected to the service via the desktop client. The application may comprise an e-mail application or a remote control application, such as a virtual network computing (VNC) application. Additional apparatus, systems, and methods are disclosed.

    摘要翻译: 装置,系统和方法可以操作以将身份服务(IS)的桌面客户端认证为从IS应用程序经由桌面客户端接收与一个虚拟服务网际协议(IP)地址相关联的虚拟服务网际协议(IP)地址的请求 服务。 当与IS相关联的策略允许通过与桌面客户端相关联的用户身份访问服务时,IS可以操作以构建包括与服务相关联的原始物理IP地址的路由令牌。 在验证路由令牌之后,应用程序可能通过桌面客户端连接到服务。 应用可以包括电子邮件应用或诸如虚拟网络计算(VNC)应用的远程控制应用。 公开了附加装置,系统和方法。

    FEDERATION CREDENTIAL RESET
    15.
    发明申请
    FEDERATION CREDENTIAL RESET 审中-公开
    联邦资格重置

    公开(公告)号:US20120084844A1

    公开(公告)日:2012-04-05

    申请号:US12895047

    申请日:2010-09-30

    IPC分类号: G06F21/00

    CPC分类号: G06F21/34 G06F2221/2131

    摘要: Techniques for federated credential reset are presented. A principal requests a credential reset with a first service. The first service provides a link to a third party service previously selected by the principal. The principal separately authenticates to the third party service and cause the third party service to send a federated token to the first service. When the federated token is received by the first service, the first service permits the principal to reset an original credential to a new credential for purposes of accessing the first service.

    摘要翻译: 介绍了联合凭证复位技术。 委托人要求使用第一个服务重置凭据。 第一个服务提供一个链接到以前由主体选择的第三方服务。 主体分别对第三方服务进行身份验证,并使第三方服务向第一个服务发送联合令牌。 当联合令牌由第一服务接收时,为了访问第一服务,第一服务允许主体将原始证书重置为新证书。

    Techniques for recognizing multiple patterns within a string
    16.
    发明授权
    Techniques for recognizing multiple patterns within a string 有权
    用于识别字符串中的多个模式的技术

    公开(公告)号:US08131758B2

    公开(公告)日:2012-03-06

    申请号:US11964163

    申请日:2007-12-26

    IPC分类号: G06F7/00

    摘要: Techniques for recognizing multiple patterns within a string of characters are presented. A dictionary is hierarchically organized, such that leaf nodes within the dictionary represents words defined in the dictionary. A string of characters are received. Each character within the string is traversed by attempting to match it with a character defined in the dictionary. As long as a match continues with the dictionary the characters within the string are traversed. Once a longest possible match to a word within the dictionary is found, the next character following the last matched character for the string is processed.

    摘要翻译: 提出了识别字符串中多个模式的技术。 字典被分层组织,使得字典中的叶节点表示字典中定义的单词。 收到一串字符。 尝试将字符串中的每个字符与字典中定义的字符进行匹配。 只要匹配继续使用字典,字符串中的字符将被遍历。 一旦找到与字典中的单词最长可能的匹配,则处理字符串最后匹配字符后的下一个字符。

    REPRESENTING EXTENSIBLE MARKUP LANGUAGE (XML) AS AN EXECUTABLE HAVING CONDITIONAL AUTHENTICATION OR POLICY LOGIC
    18.
    发明申请
    REPRESENTING EXTENSIBLE MARKUP LANGUAGE (XML) AS AN EXECUTABLE HAVING CONDITIONAL AUTHENTICATION OR POLICY LOGIC 有权
    将可扩展的标记语言(XML)作为可执行的条件认证或政策逻辑

    公开(公告)号:US20120042355A1

    公开(公告)日:2012-02-16

    申请号:US13278899

    申请日:2011-10-21

    IPC分类号: G06F21/00

    摘要: Techniques for representing extensible markup language (XML) in an executable format are presented. An XML document is parsed into its components and content. The components and content are packaged as an executable. Some portions of the executable include authentication logic or policy logic that is subsequently enforced when the executable is processed. The executable is subsequently distributed to recipient machines. The machines process the executable and produce memory loaded versions of the components and content representing the XML document on the machines. The memory loaded versions of the components and content include conditionally added authentication logic of policy logic.

    摘要翻译: 介绍了以可执行格式表示可扩展标记语言(XML)的技术。 将XML文档解析成其组件和内容。 组件和内容打包为可执行文件。 可执行文件的一些部分包括当处理可执行文件时随后强制执行的认证逻辑或策略逻辑。 该可执行文件随后分发给接收机。 机器处理可执行文件,并在机器上生成表示XML文档的组件和内容的加载版本。 内存加载的组件和内容版本包括有条件地添加的策略逻辑的认证逻辑。

    Identity based network mapping
    19.
    发明授权
    Identity based network mapping 有权
    基于身份的网络映射

    公开(公告)号:US08091119B2

    公开(公告)日:2012-01-03

    申请号:US11843008

    申请日:2007-08-22

    摘要: Techniques for identity-based network mapping are provided. A principal is associated with a resource identifier via a mapping. Conditions of a network are dynamically evaluated in response to policy and actions taken against a resource associated with the resource identifier of the mapping. The principal and the hardware resource of a machine are associated with two different types of resources and the mapping is used to manage security and maintenance associated with a network for shutting down the principal from accessing the network when an issue is detected with the hardware resource and the hardware resource is shut down when the issue is with the principal.

    摘要翻译: 提供了基于身份的网络映射技术。 主体通过映射与资源标识符相关联。 响应于针对与映射的资源标识符相关联的资源采取的策略和动作来动态地评估网络的条件。 机器的主体和硬件资源与两种不同类型的资源相关联,并且映射用于管理与网络相关联的安全性和维护,以便在用硬件资源检测到问题时关闭主体访问网络; 硬件资源在问题出现时与主体关闭。

    Identity validation
    20.
    发明授权
    Identity validation 有权
    身份验证

    公开(公告)号:US08069476B2

    公开(公告)日:2011-11-29

    申请号:US11444945

    申请日:2006-06-01

    IPC分类号: G06F7/04 H04L9/06

    CPC分类号: G06F21/31

    摘要: Techniques for validating identities are provided. A sign-on request is authenticated for a given principal. Attributes associated with that principal are acquired from an identity service and compared against local maintained attributes for that principal. If the identity-service acquired attributes match the local attributes, then the principal is validated for access. During principal access, selective events drive updates to the identity-service acquired attributes, and the comparison with the local attributes is performed again to determine whether the validated principal is to be invalidated or is to remain validated.

    摘要翻译: 提供验证身份的技术。 给定的主体验证登录请求。 与该主体相关联的属性从身份服务获取,并与该主体的本地维护属性进行比较。 如果身份服务获取的属性与本地属性相匹配,则主体将被验证进行访问。 在主要访问期间,选择性事件驱动对所获取的身份服务的属性的更新,并再次执行与本地属性的比较,以确定验证的主体是否被无效或将被保持有效。