Path analysis tool and method in a data transmission network including several internet autonomous systems
    11.
    发明申请
    Path analysis tool and method in a data transmission network including several internet autonomous systems 审中-公开
    包括几个互联网自主系统在内的数据传输网络中的路径分析工具和方法

    公开(公告)号:US20050283639A1

    公开(公告)日:2005-12-22

    申请号:US10638445

    申请日:2003-08-11

    IPC分类号: H04L12/24 G06F11/00

    CPC分类号: H04L41/00

    摘要: Method for performing the analysis of the characteristics of a data path from a first data processing device to a second data processing device through a network comprising at least an autonomous system consisting in defining a scenario file the scenario to be used, such a scenario including the actions to be used, building a parameter file defining the parameters to be used in the actions, running at least one analysis module based upon the actions of the scenario file and the parameters of the parameter file, the analysis module calling at least a predefined information requesting procedure, and storing in at least an output file the data resulting from the running of the analysis modules

    摘要翻译: 用于通过网络执行从第一数据处理设备到第二数据处理设备的数据路径的特性的分析的方法,所述网络包括至少包括将待使用的场景定义为场景文件的自治系统, 要使用的动作,构建定义要在动作中使用的参数的参数文件,基于脚本文件的动作和参数文件的参数运行至少一个分析模块,分析模块至少调用预定义的信息 请求过程,并且至少在输出文件中存储由分析模块运行产生的数据

    Method for transmitting high-priority packets in an IP transmission network
    12.
    发明申请
    Method for transmitting high-priority packets in an IP transmission network 有权
    用于在IP传输网络中传输高优先级分组的方法

    公开(公告)号:US20050175013A1

    公开(公告)日:2005-08-11

    申请号:US10638898

    申请日:2003-08-11

    摘要: Method for transmitting high-priority packets in an IP transmission network based upon the Internet Protocol (IP) wherein low-priority packets or fragments of packets are transmitted between a sender and a receiver and at least a high-priority packet can be transmitted from the sender to the receiver by pre-emption of a low-priority packet or a fragment of packet. The method comprises in the sender, the steps of determining whether a low-priority packet or fragment of packet is being transmitted from the sender to the receiver when a high-priority packet has to be transmitted, setting to 1 a reserved bit within the IP header of the high-priority packet used as a pre-emption indicator if a low-priority packet or fragment of packet is currently transmitted, transmitting the high-priority packet with the pre-emption indicator set to 1 from the sender to the receiver, and resuming the transmission of the low-priority packet or fragment of packet at the end of transmission of the high-priority packet.

    摘要翻译: 基于互联网协议(IP)在IP传输网络中发送高优先级分组的方法,其中低优先级分组或分组在发送方和接收方之间传送,并且至少高优先级分组可以从 发送方通过优先级低优先级的数据包或数据包的片段来发送给接收方。 该方法包括在发送方中,当必须发送高优先级的分组时,确定低优先级分组或分组是否正在从发送方发送到接收方,设置为1内的保留位 如果当前正在发送低优先级分组或分组片段,则用作优先级指示符的高优先级分组的报头,将优先级分组以从发送方设置为1的优先级分组发送到接收方, 并且在高优先级分组的传输结束时恢复低优先级分组或分组分段的传输。

    Method and system for controlling and filtering files using a virus-free certificate
    13.
    发明授权
    Method and system for controlling and filtering files using a virus-free certificate 有权
    使用无病毒证书控制和过滤文件的方法和系统

    公开(公告)号:US06986051B2

    公开(公告)日:2006-01-10

    申请号:US09753773

    申请日:2001-01-02

    摘要: The present invention is directed to computer viruses and more particularly to a method and system for use in a virus-free certificate firewall, of controlling and filtering files using a virus-free certificate. An example embodiment of the method comprises the steps of: receiving a file; if a virus-free certificate (200) is required for the file: determining whether the a virus-free certificate is already associated with the file; if a virus-free certificate is already associated with the file: authenticating the associated virus-free certificate, said virus-free certificate comprising a certificate signature; if the virus-free certificate is authenticated, determining whether the file is virus-free or not; if the file is virus-free, forwarding the file with the associated virus-free certificate; if the virus-free certificate is not authenticated or if no virus-free, certificate is associated with the file; determining whether the file is virus-free or not, if the file is virus-free, associating with the file a new virus-free certificate; and forwarding the file with the new virus-free certificate.

    摘要翻译: 本发明涉及计算机病毒,更具体地说,涉及一种无病毒证书防火墙中使用无病毒证书来控制和过滤文件的方法和系统。 该方法的示例实施例包括以下步骤:接收文件; 如果文件需要无病毒证书(200):确定无病毒证书是否已经与文件相关联; 如果无病毒证书已经与文件相关联:认证相关的无病毒证书,则所述无病毒证书包括证书签名; 如果无病毒证书被认证,确定文件是否无病毒; 如果该文件是无病毒的,转发该文件与相关的无病毒证书; 如果无病毒证书未通过身份验证,或者如果没有病毒,证书与该文件相关联; 确定文件是否无病毒,如果该文件是无病毒的,则与该文件相关联的新的无病毒证书; 并使用新的无病毒证书转发文件。

    ICMP PROXY DEVICE
    14.
    发明申请
    ICMP PROXY DEVICE 审中-公开
    ICMP代理设备

    公开(公告)号:US20110072129A1

    公开(公告)日:2011-03-24

    申请号:US12613692

    申请日:2009-11-06

    IPC分类号: G06F15/173

    摘要: Provided are an ICMP proxy device, system and method of proxying. The ICMP proxy device includes a receive module, a protection determination module and a response module. The receive module is configured to receive a direct availability request addressed to a server from a host. The protection determination module is configured to determine whether the server is available. The response module configured to respond to the host with an availability response based the determination, such that the availability response is addressed from the server to the host.

    摘要翻译: 提供了一种ICMP代理设备,系统和代理方法。 ICMP代理设备包括接收模块,保护确定模块和响应模块。 接收模块被配置为从主机接收寻址到服务器的直接可用性请求。 保护确定模块被配置为确定服务器是否可用。 所述响应模块被配置为基于所述确定来响应具有可用性响应的所述主机,使得所述可用性响应从所述服务器寻址到所述主机。

    Method and system for retrieving an anti-virus signature from one or a plurality of virus-free certificate authorities
    15.
    发明授权
    Method and system for retrieving an anti-virus signature from one or a plurality of virus-free certificate authorities 有权
    从一个或多个无病毒证书机构检索防病毒签名的方法和系统

    公开(公告)号:US06976271B1

    公开(公告)日:2005-12-13

    申请号:US09665524

    申请日:2000-09-19

    摘要: A method and system as disclosed for use in a virus-free certificate proxy (107, 801), of retrieving from one or a plurality of virus-free certificate authorities (104, 804) a virus-free certificate (200) certifying that a file is virus-free. The method includes the steps of: receiving (1001) virus-free certificate request for a file; selecting a virus-free certificate authority (104, 804) having authority to generate a virus-free certificate (200) for the file; requesting (1003 . . . 1007) the virus-free certificate to the selected virus-free certificate authority (104, 804); receiving (1003 . . . 1007) from the selected virus-free certificate authority the generated virus-free certificate; sending back (1005) in response to the virus-free certificate request the received virus-free certificate.

    摘要翻译: 公开了用于无病毒证书代理(107,801)中的方法和系统,从一个或多个无病毒证书颁发机构(104,804)检索无病毒证书(200),证明该证书 文件是无病毒的。 该方法包括以下步骤:接收(1001)无病毒证书请求文件; 选择具有为文件生成无病毒证书(200)的权限的无病毒证书颁发机构(104,804); 向所选择的无病毒证书颁发机构(104,804)请求(1003 ... 1007)无病毒证书; 从选定的无病毒认证机构接收(1003 ... 1007)生成的无病毒证书; 发回(1005)回应无病毒证书请求收到的无病毒证书。

    Virtual private network crossovers based on certificates
    16.
    发明授权
    Virtual private network crossovers based on certificates 有权
    基于证书的虚拟专用网络交换机

    公开(公告)号:US07574738B2

    公开(公告)日:2009-08-11

    申请号:US10288574

    申请日:2002-11-06

    IPC分类号: G06F15/16

    摘要: A method and system for enabling interconnection of VPNs is disclosed. An interconnection device manages an interconnection process at one or more facilities including, for example, a gateway device. The gateway device has information relating to a plurality of VPNs, and may facilitate interconnection between devices on at least two of the VPNs by determining that one device is in fact a member of a first one of the VPNs, and by forwarding connection parameters of the first VPN to the second VPN on an as-needed basis. In this way, the gateway allows interconnection without the need for a completely centralized decision-making process, and does so independently of the type of device and/or VPN(s) being used. Moreover, the gateway may implement only those VPN parameters needed by both VPNs to communicate with one another with a desired level of security, thereby simplifying the routing and forwarding processes associated with the actual communication occurring via the interconnection. The information related to the plurality of VPNs and their respective member devices may be stored in a mapping table at the gateway, and identification parameters of a device seeking interconnection and/or associated VPN parameters may be verified by the use of digital certificates.

    摘要翻译: 公开了一种实现VPN互连的方法和系统。 互连设备管理包括例如网关设备在内的一个或多个设施的互连处理。 网关设备具有与多个VPN相关的信息,并且可以通过确定一个设备实际上是VPN中的第一个的成员,并且通过转发所述VPN中的第一个VPN的连接参数来促进至少两个VPN中的设备之间的互连 第一个VPN到第二个VPN根据需要。 以这种方式,网关允许互连,而不需要完全集中的决策过程,并且独立于正在使用的设备和/或VPN的类型。 此外,网关可以仅实现两个VPN所需的VPN参数,以便以期望的安全级别彼此通信,从而简化与通过互连发生的实际通信相关联的路由和转发过程。 与多个VPN及其各自的成员设备相关的信息可以存储在网关的映射表中,并且可以通过使用数字证书来验证寻求互连和/或相关VPN参数的设备的识别参数。

    Method and system for caching virus-free file certificates
    17.
    发明授权
    Method and system for caching virus-free file certificates 有权
    用于缓存无病毒文件证书的方法和系统

    公开(公告)号:US06892303B2

    公开(公告)日:2005-05-10

    申请号:US09728989

    申请日:2000-12-04

    摘要: The present invention relates to computer viruses and more particularly to a method and system for caching anti-virus file certificates. Each anti-virus certificate associated with a file comprises a file signature. The file signature is generated by a virus-free certificate authority, which avoids the system, which receives the file to check this file for all existing viruses. The virus-free certificate authority validates the file against all known viruses, using one or several anti-virus checkers. In case of new viruses, only the virus-free certificate authority is changed and the only process performed by the system receiving the file is to verify the file against the file signature included in the virus-free certificate, and to filter the file according predetermined rules. The present invention drastically simplifies the computing resources for detecting viruses on network devices such as IP Routers and Firewalls.

    摘要翻译: 本发明涉及计算机病毒,更具体地说,涉及用于缓存反病毒文件证书的方法和系统。 与文件相关联的每个防病毒证书包括文件签名。 文件签名是由无病毒的证书颁发机构生成的,它避免了系统,该系统收到该文件以检查此文件是否存在所有现有的病毒。 无病毒证书颁发机构使用一个或多个防病毒检查程序对所有已知病毒验证文件。 在新病毒的情况下,只有无病毒的证书颁发机构被更改,接收文件的系统执行的唯一过程是根据无病毒证书中包含的文件签名来验证文件,并根据预定的过滤文件 规则。 本发明大大简化了用于检测诸如IP路由器和防火墙的网络设备上的病毒的计算资源。

    Method and system for gateway selection in inter-region communication on IP networks
    18.
    发明申请
    Method and system for gateway selection in inter-region communication on IP networks 有权
    IP网络区域间通信网关选择方法及系统

    公开(公告)号:US20070011351A1

    公开(公告)日:2007-01-11

    申请号:US11482866

    申请日:2006-07-07

    IPC分类号: G06F15/173

    摘要: A method including formatting an advertisement message having a dedicated preferred route to one of a first physical entity and a first logical entity of a first autonomous system (“AS”), the dedicated preferred route being based on at least two routing attributes, and transmitting the advertisement message from the first AS to a second AS. A routing device including a formatting module formatting an advertisement message having a dedicated preferred route to one of a first physical entity and a first logical entity of a first autonomous system (“AS”), the dedicated preferred route being based on at least two routing attributes, and a transmitting module transmitting the advertisement message from the first AS to a second AS.

    摘要翻译: 一种方法,包括将具有专用优选路由的广告消息格式化为第一自主系统(“AS”)的第一物理实体和第一逻辑实体之一,所述专用优选路由基于至少两个路由属性,并且发送 从第一AS到第二AS的广告消息。 一种路由设备,包括格式化模块,格式化具有专用优选路由到第一自主系统(“AS”)的第一物理实体和第一逻辑实体之一的广告消息,所述专用优选路由基于至少两个路由 属性,以及将所述广告消息从所述第一AS发送到第二AS的发送模块。

    Method and system for managing the exchange of files attached to electronic mails
    20.
    发明申请
    Method and system for managing the exchange of files attached to electronic mails 审中-公开
    管理电子邮件附件文件交换的方法和系统

    公开(公告)号:US20050076082A1

    公开(公告)日:2005-04-07

    申请号:US10638861

    申请日:2003-08-11

    摘要: Method of managing the exchange of a file from a sender (13) to a receiver (12, 15) in a data transmission network (10, 11) wherein any user amongst a plurality of users can send an electronic mail with at least an attached file to at least another user. The method comprises the following steps: the original file corresponding to the file to be sent as an attachment to the electronic mail is forwarded by the sender to a file server (14), a substitute file including at least data identifying the original file is sent by the file server back to the sender upon receiving the original file, the substitute file is attached to the electronic mail before sending this one by the sender to the receiver, and the receiver gets, at anytime, the original file from the file server by providing the file server with the parameters of the substitute file.

    摘要翻译: 管理从数据传输网络(10,11)中的发送器(13)到接收器(12,15)的文件的交换的方法,其中多个用户中的任何用户可以发送至少附着的电子邮件 文件至少另一个用户。 该方法包括以下步骤:将作为电子邮件的附件发送的文件的原始文件由发送方转发到文件服务器(14),至少包含标识原始文件的数据的替代文件被发送 由文件服务器在接收到原始文件时返回发送方,将发送者发送给接收者之前的替代文件附加到电子邮件,并且接收者随时从文件服务器获取原始文件 为文件服务器提供替代文件的参数。