Propeller gearbox
    11.
    发明授权
    Propeller gearbox 有权
    螺旋桨变速箱

    公开(公告)号:US06264138B1

    公开(公告)日:2001-07-24

    申请号:US09650378

    申请日:2000-08-29

    申请人: John M. Hawkins

    发明人: John M. Hawkins

    IPC分类号: B64D3508

    摘要: An aircraft (10) having turboprop propulsion has a plurality of gas turbine engines (11), each with a two stage reduction gearbox (30,41) with the engine output shaft (17,17A) inline with the propeller drive output shaft (19,51) to drive a propeller (12) in front of the engine in a tractor mode of propulsion. The input gear reduction stage (20) and output gear reduction stage (21) share a plurality layshafts (22,38) mounted in fixed circularly-spaced relation to each other about the axis of the output shafts in the mechanical housing in the aircraft. Each layshaft of said plurality of layshafts has a layshaft first end toward the rear, input end of the gearbox, and a layshaft second end toward the output, front end of the gearbox. The layshaft gears are arranged to avoid any net thrust loading of the layshafts. Spur (26) and double helical (27) are used in FIG. 4, while spur gears 37 and 48 are used in FIG. 6 with suitable helix settings to neutralize end thrust on layshaft 38. Cantilever layshaft input gear (37) mounting in rear bearings (39) enables it to share some layshaft output gear 48 load sharing with the front bearing (40). A torquemeter (61) is conveniently situated at the gearbox input end. The engine output gear (25,36) and gearbox output gear (28,49), and propeller (12) all have colinear rotational axes.

    摘要翻译: 具有涡轮螺旋桨推进器的飞机(10)具有多个燃气涡轮发动机(11),每个燃气涡轮发动机具有两级减速齿轮箱(30,41),发动机输出轴(17,17A)与螺旋桨传动输出轴(19)成一直线 ,51)以拖拉机的推进方式驱动发动机前方的螺旋桨(12)。 输入齿轮减速平台(20)和输出齿轮减速平台(21)共享多个副轴(22,38),其绕飞机中的机械壳体中的输出轴的轴线彼此以固定的圆形间隔的关系安装。 所述多个副轴的每个副轴具有朝向后方的副轴第一端,变速箱的输入端,以及朝向变速箱的输出前端的副轴第二端。 副轴齿轮布置成避免了副轴的任何净推力负载。 图26中使用了正齿(26)和双螺旋(27)。 在图4中使用正齿轮37和48。 6具有合适的螺旋设置以中和副轴38上的末端推力。安装在后轴承(39)中的悬臂副轴输入齿轮(37)使其能够与前轴承(40)共享一些副轴输出齿轮48负载共享。 扭矩计(61)位于变速箱输入端。 发动机输出齿轮(25,36)和齿轮箱输出齿轮(28,49)和螺旋桨(12)都具有共线旋转轴。

    Evidence-based application security
    12.
    发明授权
    Evidence-based application security 有权
    循证应用安全

    公开(公告)号:US07669238B2

    公开(公告)日:2010-02-23

    申请号:US10705756

    申请日:2003-11-10

    IPC分类号: H04L9/00

    CPC分类号: G06F21/51 G06F21/53

    摘要: Evidence-based application security may be implemented at the application and/or application group levels. A manifest may be provided defining at least one trust condition for the application or application group. A policy manager evaluates application evidence (e.g., an XrML license) for an application or group of applications relative to the manifest. The application is only granted permissions on the computer system if the application evidence indicates that the application is trusted. Similarly, a group of applications are only granted permissions on the computer system if the evidence indicates that the group of applications is trusted. If the application evidence satisfies the at least one trust condition defined by the manifest, the policy manager generates a permission grant set for each code assembly that is a member of the at least one application. Evidence may be further evaluated for code assemblies that are members of the trusted application or application group.

    摘要翻译: 基于证据的应用程序安全性可以在应用程序和/或应用程序组级别实现。 可以提供清单来为应用或应用组定义至少一个信任条件。 策略管理员针对相对于清单的应用程序或应用程序组来评估应用程序证据(例如,XrML许可证)。 如果应用程序的证据表明应用程序是可信任的,则该应用程序仅被授予计算机系统的权限。 类似地,如果证据表明应用程序组是可信任的,则一组应用程序仅被授予计算机系统的权限。 如果应用证据满足由清单定义的至少一个信任条件,则策略管理器为作为至少一个应用的成员的每个代码集合生成许可授权集合。 可以对作为可信应用程序或应用程序组成员的代码程序集进一步评估证据。

    Method and system of integrating third party authentication into internet browser code
    13.
    发明授权
    Method and system of integrating third party authentication into internet browser code 有权
    将第三方认证整合到互联网浏览器代码中的方法和系统

    公开(公告)号:US07191467B1

    公开(公告)日:2007-03-13

    申请号:US10099403

    申请日:2002-03-15

    摘要: A method and system for using an Internet client's local authentication mechanism in systems having updated browser code, so as to enable third party authentication according to an authentication scheme specified by a participating server on clients with updated browser code, while not breaking clients with legacy browser code. A redirect response from a server has authentication data added thereto such that updated browser code can detect the data's presence and enable the use of local security mechanisms for authentication purposes with the server-specified authentication scheme, including local credential entry for verification at a third party login server. At the same time, if such a redirect response is received by prior browser code, the added data is ignored while conventional redirection occurs, such that third party authentication may be performed via redirection to a third party's Internet page that provides a form for credential entry.

    摘要翻译: 一种用于在具有更新的浏览器代码的系统中使用因特网客户端的本地认证机制的方法和系统,以便根据由具有更新的浏览器代码的客户端上的参与服务器指定的认证方案来启用第三方认证,同时不使用传统浏览器来破坏客户端 码。 来自服务器的重定向响应添加了认证数据,使得更新的浏览器代码可以检测数据的存在并且能够使用本地安全机制进行身份验证目的,其中包括服务器指定的验证方案,包括用于第三方验证的本地证书条目 登录服务器。 同时,如果通过先前的浏览器代码接收到这样的重定向响应,则在常规重定向发生时忽略添加的数据,使得可以通过重定向到提供用于凭证输入的表单的第三方的因特网页面来执行第三方认证 。

    Epicyclic face gear reduction gearbox particularly for a gas turbine engine
    14.
    发明授权
    Epicyclic face gear reduction gearbox particularly for a gas turbine engine 失效
    行星齿轮减速齿轮箱,特别适用于燃气轮机

    公开(公告)号:US06183388B2

    公开(公告)日:2001-02-06

    申请号:US08614238

    申请日:1996-03-12

    申请人: John M. Hawkins

    发明人: John M. Hawkins

    IPC分类号: F16H130

    摘要: A gear reduction gearbox connected to a gas turbine engine to reduce the shaft speed and increase the output torque. In one form of the present invention an input shaft and an output shaft are rotatable within a mechanical housing. A face gear set connects between the shafts for changing the speed of the output shaft relative to the input shaft. The present invention, in one embodiment includes load sharing wherein a plurality of pinion gear assemblies distribute the load transmitted through the gearbox.

    摘要翻译: 连接到燃气涡轮发动机的齿轮减速齿轮箱以减小轴速度并增加输出扭矩。 在本发明的一种形式中,输入轴和输出轴可以在机械壳体内旋转。 平面齿轮组连接在轴之间,用于改变输出轴相对于输入轴的速度。 本发明在一个实施例中包括负载共享,其中多个小齿轮组件分配通过齿轮箱传递的负载。

    Resource based dynamic security authorization
    16.
    发明授权
    Resource based dynamic security authorization 有权
    基于资源的动态安全授权

    公开(公告)号:US08245270B2

    公开(公告)日:2012-08-14

    申请号:US11217748

    申请日:2005-09-01

    IPC分类号: G06F21/00

    CPC分类号: G06F21/53

    摘要: Access to a resource by sandboxed code is dynamically authorized by a client security system based on a resource based policy. A sandboxed application running on a client is granted access to a resource based on a resource based policy despite denial of the access based on a static policy associated with the client security system. The granting of access coincides with the determination that the threat to a user or the user's information is not increased should the access be granted.

    摘要翻译: 通过沙盒代码访问资源由客户端安全系统基于资源的策略动态授权。 在客户机上运行的沙盒应用程序被授予对基于资源的策略的资源访问,尽管基于与客户端安全系统相关联的静态策略拒绝访问。 准予访问与确定对用户的威胁或用户的信息没有增加的确定是一致的。

    Method and system of integrating third party authentication into internet browser code
    17.
    发明授权
    Method and system of integrating third party authentication into internet browser code 失效
    将第三方认证整合到互联网浏览器代码中的方法和系统

    公开(公告)号:US07698735B2

    公开(公告)日:2010-04-13

    申请号:US11380002

    申请日:2006-04-24

    摘要: A method and system for using an Internet client's local authentication mechanism in systems having updated browser code, so as to enable third party authentication according to an authentication scheme specified by a participating server on clients with updated browser code, while not breaking clients with legacy browser code. A redirect response from a server has authentication data added thereto such that updated browser code can detect the data's presence and enable the use of local security mechanisms for authentication purposes with the server-specified authentication scheme, including local credential entry for verification at a third party login server. At the same time, if such a redirect response is received by prior browser code, the added data is ignored while conventional redirection occurs, such that third party authentication may be performed via redirection to a third party's Internet page that provides a form for credential entry.

    摘要翻译: 一种用于在具有更新的浏览器代码的系统中使用因特网客户端的本地认证机制的方法和系统,以便根据由具有更新的浏览器代码的客户端上的参与服务器指定的认证方案来启用第三方认证,同时不使用传统浏览器来破坏客户端 码。 来自服务器的重定向响应添加了认证数据,使得更新的浏览器代码可以检测数据的存在并且能够使用本地安全机制进行身份验证目的,其中包括服务器指定的验证方案,包括用于第三方验证的本地证书条目 登录服务器。 同时,如果通过先前的浏览器代码接收到这样的重定向响应,则在常规重定向发生时忽略添加的数据,使得可以通过重定向到提供用于凭证输入的表单的第三方的因特网页面来执行第三方认证 。

    Method and system for ensuring that computer programs are trustworthy
    18.
    发明授权
    Method and system for ensuring that computer programs are trustworthy 有权
    确保计算机程序值得信赖的方法和系统

    公开(公告)号:US07516477B2

    公开(公告)日:2009-04-07

    申请号:US10971499

    申请日:2004-10-21

    IPC分类号: H04L9/00

    CPC分类号: G06F21/51

    摘要: Described is a system and method by which an application program is evaluated for trustworthiness based on the permissions and/or privileges it requests relative to a program category. The program describes the permissions needed to operate, and identifies itself as belonging to a particular category. Security components compare the requested permission set against the permissions that programs of that category actually need in order to operate properly. Programs requesting more permissions than needed are deemed untrustworthy. For example, screen saver application programs need only a limited permission set to operate properly, including full screen access and the ability to read files, but do not need network access permissions or write access to files. Any screensaver application that requests only the needed permission set is deemed trustworthy, while others that request permissions beyond what is actually needed are not deemed trustworthy, and a user or automated policy process may then intervene.

    摘要翻译: 描述了一种系统和方法,通过该系统和方法,基于其相对于节目类别请求的许可和/或特权来评估应用程序的可信度。 该程序描述了操作所需的权限,并将其标识为属于特定类别。 安全组件将请求的权限集与该类别的程序实际需要的权限进行比较,以便正常运行。 需要更多权限的程序被认为是不可信赖的。 例如,屏幕保护程序应用程序只需要有限的权限集来正常运行,包括全屏访问和读取文件的能力,但不需要网络访问权限或写入对文件的访问权限。 任何只要求所需权限集的屏保应用程序都被认为是可信赖的,而其他请求权限超出实际需要的则不被认为是可信赖的,用户或自动化策略进程可能会进行干预。

    Credential management
    19.
    发明授权
    Credential management 有权
    凭证管理

    公开(公告)号:US07210167B2

    公开(公告)日:2007-04-24

    申请号:US09757058

    申请日:2001-01-08

    IPC分类号: G06F3/00

    摘要: Described herein is an implementation of a technology for managing credentials. With an implementation, a credential manager is domain-authentication aware and concurrent authentications with multiple independent networks (e.g., domains) may be established and maintained. Moreover, a credential manager provides a credential model retrofit for legacy applications that only understand the password model. The manager provides a mechanism where the application is only a “blind courier” of credentials between the trusted part of the OS to the network and/or network resource. The manager fully insulates the application from “read” access to the credentials. This abstract itself is not intended to limit the scope of this patent. The scope of the present invention is pointed out in the appending claims.

    摘要翻译: 这里描述了用于管理凭证的技术的实现。 通过实现,凭证管理器是域认证感知的,并且可以建立和维护具有多个独立网络(例如域)的并发验证。 此外,凭证管理器为只能理解密码模型的遗留应用程序提供证书模型改造。 管理员提供了一种机制,其中应用程序只是操作系统的受信任部分与网络和/或网络资源之间的凭据的“盲快递”。 管理员完全将应用程序从“读取”访问权限隔离到凭据。 本摘要本身并不旨在限制本专利的范围。 在所附权利要求中指出了本发明的范围。