Dynamically extending a plurality of manageability capabilities of it resources through the use of manageability aspects
    11.
    发明授权
    Dynamically extending a plurality of manageability capabilities of it resources through the use of manageability aspects 有权
    通过使用可管理性方面动态地扩展其资源的多个可管理性能力

    公开(公告)号:US08583610B2

    公开(公告)日:2013-11-12

    申请号:US12041696

    申请日:2008-03-04

    IPC分类号: G06F7/00 G06F17/00

    摘要: Extending a plurality of manageability capabilities of manageable information technology (IT) resources utilize an “aspect of” association for describing a relationship between a first object representing a manageable resource playing a role of a subject and one or more additional objects each playing a role of an aspect. The “aspect of” association establishes an overall manageability function for the first object representing a manageable resource and the one or more additional objects as a logical composition of a plurality of manageability capabilities. The manageability capabilities are provided using distinct implementation classes for supporting a specific role, and for supporting management-discipline related aspects and behaviors needed by each of a plurality of resource management applications for managing the manageable resource. The one or more additional objects have an aspect life cycle that is bounded maximally by a subject lifecycle of the first manageable resource.

    摘要翻译: 扩展可管理信息技术(IT)资源的多个可管理性能力利用“关联方面”来描述表示可管理资源的第一对象之间的关系,所述可管理资源扮演主题的角色,以及每个扮演角色的一个或多个附加对象 一方面。 “方面”关联建立了表示可管理资源的第一对象的总体可管理性功能,以及一个或多个附加对象作为多个可管理性能力的逻辑组合。 通过用于支持特定角色的不同实现类提供可管理性能力,并且用于支持用于管理可管理资源的多个资源管理应用程序中的每一个所需的与管理相关的方面和行为。 一个或多个附加对象具有由第一可管理资源的主题生命周期最大限度地限定的纵横生命周期。

    METHOD, HARDWARE PRODUCT, AND COMPUTER PROGRAM PRODUCT FOR OPTIMIZING SECURITY IN THE CONTEXT OF CREDENTIAL TRANSFORMATION SERVICES
    13.
    发明申请
    METHOD, HARDWARE PRODUCT, AND COMPUTER PROGRAM PRODUCT FOR OPTIMIZING SECURITY IN THE CONTEXT OF CREDENTIAL TRANSFORMATION SERVICES 有权
    方法,硬件产品和计算机程序产品,用于在证书转换服务的背景下优化安全性

    公开(公告)号:US20100122328A1

    公开(公告)日:2010-05-13

    申请号:US12269343

    申请日:2008-11-12

    IPC分类号: H04L9/32 G06F21/00

    摘要: Security is optimized in the context of a credential transformation service (CTS) by utilizing a web services client runtime to gather information for determining whether or not a target web service is hosted in a security domain used by a client application and for determining whether or not the target web service uses an authentication mechanism substantially identical to that used by the client application. The gathered information is carried in an endpoint reference (EPR) of the target web service. In response to the client receiving the EPR, the client applies an optimization process to eliminate a possible unnecessary invocation of the CTS, wherein the target web service is an authoritative manageable resource having minimal or no responsibility for providing its identity, and having minimal or no responsibility for advertising any creation and destruction lifecycle related events.

    摘要翻译: 安全性在证书转换服务(CTS)的上下文中通过利用Web服务客户机运行时间来收集用于确定目标Web服务是否托管在客户端应用程序使用的安全域中的信息并用于确定是否进行 目标Web服务使用与客户端应用程序基本相同的认证机制。 所收集的信息在目标web服务的端点参考(EPR)中携带。 响应于客户端接收EPR,客户端应用优化过程以消除CTS的可能的不必要的调用,其中目标Web服务是权威可管理的资源,对于提供其身份具有最小或无责任,并且具有最小或无 任何创建和销毁生命周期相关事件的责任。

    Method and system for providing a program call to a dispatchable unit's
base space
    15.
    发明授权
    Method and system for providing a program call to a dispatchable unit's base space 失效
    用于向可分派单元的基础空间提供程序调用的方法和系统

    公开(公告)号:US5493661A

    公开(公告)日:1996-02-20

    申请号:US847555

    申请日:1992-03-06

    CPC分类号: G06F12/109

    摘要: A method and system for providing a PROGRAM CALL to a dispatchable unit's base space is described herein. A program call to a dispatchable unit's (PC to DU) base space bit is added to each entry-table entry in order to determine whether a PROGRAM CALL to a base space is to be made. Should the bit indicate that a PROGRAM CALL to a dispatchable unit's base space is to be made, then in one embodiment, the base address space number-second-table entry origin (BASTEO) and base address space number (BASN) stored in the dispatchable unit control table (DUCT) are used in identifying the base space and accessing associated control information for the identified base space. In another embodiment, the BASN stored in the DUCT is used in ASN translation to identify the base space and access the associated control information for the base space.

    摘要翻译: 本文描述了一种用于向可分派单元的基础空间提供PROGRAM CALL的方法和系统。 为了确定是否对基本空间进行PROGRAM CALL,将向可分派单元(PC到DU)基地址位的程序调用被添加到每个条目表条目。 如果该位指示对可调度单元的基本空间进行PROGRAM呼叫,则在一个实施例中,存储在可分发单元的基址空间中的基地址空间号码 - 第二表入口源(BASTEO)和基地址空间号(BASN) 单位控制表(DUCT)用于识别基础空间并访问所识别的基础空间的相关控制信息。 在另一个实施例中,存储在DUCT中的BASN用于ASN转换,以识别基本空间并访问相关联的基本空间的控制信息。

    Management of data objects used intain state information for shared data
at a local complex
    16.
    发明授权
    Management of data objects used intain state information for shared data at a local complex 失效
    管理数据对象,用于在本地组合中共享数据的状态信息

    公开(公告)号:US5388266A

    公开(公告)日:1995-02-07

    申请号:US860797

    申请日:1992-03-30

    IPC分类号: G06F15/17 G06F17/30 G06F12/08

    CPC分类号: G06F17/30952

    摘要: Method and apparatus for creating and accessing data objects stored in a portion of the main memory of a data processing system which is inaccessible to programs. The data processing system includes a central processor for executing programs for processing data and a main memory for storing data and programs. The main memory is divided into a program accessible portion and a program inaccessible portion. Vector control objects and vector entries are stored in the program inaccessible portion of the main memory, with each vector entry having states the meaning of which are program defined. Tokens are generated to locate vector control objects in the program inaccessible portion of the main memory. Each vector control object includes a field for pointing to a vector entry for accessing and making observable to the central processor, the contents of a vector entry for indicating the status therein. The present invention also provides for the serialization of access to stored data objects such that the data objects may be released and reused without the possibility of a latent access to an object which is being reused.

    摘要翻译: 用于创建和访问存储在程序不可访问的数据处理系统的主存储器的一部分中的数据对象的方法和装置。 数据处理系统包括用于执行用于处理数据的程序的中央处理器和用于存储数据和程序的主存储器。 主存储器被分为程序可访问部分和程序不可访问部分。 向量控制对象和向量条目存储在主存储器的程序不可访问部分中,每个向量条目具有其程序定义的含义的状态。 生成令牌以在主存储器的程序不可访问部分中定位矢量控制对象。 每个矢量控制对象包括用于指向用于访问并使其可观察到中央处理器的向量条目的字段,用于指示其中的状态的向量条目的内容。 本发明还提供对存储的数据对象的访问的序列化,使得数据对象可以被释放和重用,而没有潜在访问被重用的对象的可能性。

    Integrity of data objects used to maintain state information for shared
data at a local complex
    17.
    发明授权
    Integrity of data objects used to maintain state information for shared data at a local complex 失效
    用于在本地组合中维护共享数据的状态信息的数据对象的完整性

    公开(公告)号:US5331673A

    公开(公告)日:1994-07-19

    申请号:US860800

    申请日:1992-03-30

    摘要: Apparatus and method insuring that data objects used to maintain state information for shared data at a local central processing complex (CPC) are coherent with respect to state information maintained at a structured external storage facility (SES) over a link is valid. An error detector is attached to the CPC side of the link for detecting errors on the link, and, when an error is detected, setting a error state pending (ESP) latch to indicate that the link has failed and that the shared data in the local data object may be invalid because a message invalidating the data may not have been received by the CPC. In data processing operations, the ESP latch is interrogated by a central processor in the CPC to determine the health of the message path to the SES facility. A local cache vector reflecting the validity of the shared data in the local cache may then be interrogated to determine if the shared data in the local cache is valid. If a healthy path has continuously existed and the vector indicates that the local cache data is valid, the integrity of the data can be relied on.

    摘要翻译: 确保用于维护在本地中央处理复合体(CPC)上的共享数据的状态信息的数据对象相对于通过链路在结构化外部存储设施(SES)上维护的状态信息是一致的装置和方法是有效的。 一个错误检测器被连接到链路的CPC侧,用于检测链路上的错误,并且当检测到错误时,设置错误状态挂起(ESP)锁存器以指示链路已经失败,并且共享数据在 本地数据对象可能无效,因为CPC可能未收到使数据无效的消息。 在数据处理操作中,由CPC中的中央处理器询问ESP锁存器,以确定到SES设备的消息路径的健康状况。 然后可以询问反映本地高速缓存中的共享数据的有效性的本地缓存向量,以确定本地高速缓存中的共享数据是否有效。 如果健康路径不断存在,并且向量表示本地缓存数据有效,则可以依赖数据的完整性。

    Discovering and identifying manageable information technology resources
    18.
    发明授权
    Discovering and identifying manageable information technology resources 失效
    发现和识别可管理的信息技术资源

    公开(公告)号:US08407349B2

    公开(公告)日:2013-03-26

    申请号:US13447682

    申请日:2012-04-16

    IPC分类号: G06F15/173

    CPC分类号: G06F9/50 G06F2209/508

    摘要: A computer-executable method for allocating resource discovery and identification processes among a plurality of management tools and resources in a distributed and heterogeneous IT management system includes providing at least one authoritative manageable resource having minimal or no responsibility for reporting its identity, minimal or no responsibility for advertising any lifecycle-related creation event for the resource, and minimal or no responsibility for advertising any lifecycle-related destruction event for the resource; using a service oriented architecture (SOA) to define one or more services needed to manage the resource within the management system; and using a component model to define one or more interfaces and one or more interactions to be implemented by the manageable resource within the management system.

    摘要翻译: 一种用于在分布式和异构IT管理系统中的多个管理工具和资源之间分配资源发现和识别过程的计算机可执行方法包括提供至少一个权威可管理的资源,对报告其身份,最小或没有责任至少或不负责任 用于为资源广告任何与生命周期相关的创建事件,并且对资源的任何与生命周期相关的销毁事件进行广告宣传也不承担任何责任; 使用面向服务架构(SOA)来定义在管理系统内管理资源所需的一个或多个服务; 以及使用组件模型来定义要由管理系统内的可管理资源实现的一个或多个接口和一个或多个交互。

    DISCOVERING AND IDENTIFYING MANAGEABLE INFORMATION TECHNOLOGY RESOURCES
    19.
    发明申请
    DISCOVERING AND IDENTIFYING MANAGEABLE INFORMATION TECHNOLOGY RESOURCES 失效
    发现和识别可管理的信息技术资源

    公开(公告)号:US20120233330A1

    公开(公告)日:2012-09-13

    申请号:US13447682

    申请日:2012-04-16

    IPC分类号: G06F15/173

    CPC分类号: G06F9/50 G06F2209/508

    摘要: A computer-executable method for allocating resource discovery and identification processes among a plurality of management tools and resources in a distributed and heterogeneous IT management system includes providing at least one authoritative manageable resource having minimal or no responsibility for reporting its identity, minimal or no responsibility for advertising any lifecycle-related creation event for the resource, and minimal or no responsibility for advertising any lifecycle-related destruction event for the resource; using a service oriented architecture (SOA) to define one or more services needed to manage the resource within the management system; and using a component model to define one or more interfaces and one or more interactions to be implemented by the manageable resource within the management system.

    摘要翻译: 一种用于在分布式和异构IT管理系统中的多个管理工具和资源之间分配资源发现和识别过程的计算机可执行方法包括提供至少一个权威可管理的资源,对报告其身份,最小或没有责任至少或不负责任 用于为资源广告任何与生命周期相关的创建事件,并且对资源的任何与生命周期相关的销毁事件进行广告宣传也不承担任何责任; 使用面向服务架构(SOA)来定义在管理系统内管理资源所需的一个或多个服务; 以及使用组件模型来定义要由管理系统内的可管理资源实现的一个或多个接口和一个或多个交互。