NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM
    21.
    发明申请
    NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM 有权
    网络监控设备,网络监控方法和网络监控程序

    公开(公告)号:US20100061257A1

    公开(公告)日:2010-03-11

    申请号:US12486419

    申请日:2009-06-17

    IPC分类号: H04L12/26

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part of a network monitoring device receives a destination IP address designated by a user as an object of monitoring. When the input of the destination IP address is received, the path information generation part uses configuration information tables, which store configuration information of a device on a network being monitoring, to identify IP addresses of networks to which a plurality of terminals belong, as branch IP addresses. Further, the path information generation part uses the configuration information tables and transfer destination information tables which store a routing table of a router on the network, in order to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 网络监视装置的路径信息生成部接收由用户指定的作为监视对象的目的地IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用存储被监视的网络上的设备的配置信息的配置信息表来识别多个终端所属的网络的IP地址作为分支 IP地址。 此外,路径信息生成部使用在网络上存储路由器的路由表的配置信息表和传送目的地信息表,以便识别指定的目的地IP地址和所识别的分支IP地址之间的路由器的连接顺序 ,以生成路径信息。

    Network measurement controlling system apparatus and method
    22.
    发明授权
    Network measurement controlling system apparatus and method 失效
    网络测控系统设备及方法

    公开(公告)号:US07142512B1

    公开(公告)日:2006-11-28

    申请号:US09571003

    申请日:2000-05-15

    IPC分类号: H04J1/16 H04J3/14

    摘要: According to the invention, techniques for controlling the quality of each communication service in a network automatically according to measured information of network traffic are provided. In a representative embodiment, a network measurement controlling system is provided according to the present invention, which comprises a control server, a router, and a meter connected to a network. The meter receives packets from a network and measures the number of packets, and the like, according to preset measurement rules, and transfers measured data to a control server. The control server holds control rules including its control policy for assuring the quality of each communication service, analyzes measured data transferred from the meter, and transmits control commands. The router controls the QoS automatically in real time according to the status of the network by receiving control commands and controlling communication service quality.

    摘要翻译: 根据本发明,提供了根据网络流量的测量信息自动控制网络中的每个通信服务的质量的技术。 在代表性实施例中,根据本发明提供了一种网络测量控制系统,其包括控制服务器,路由器和连接到网络的仪表。 仪表从网络接收数据包,并根据预设的测量规则测量数据包等,并将测量数据传输到控制服务器。 控制服务器保持控制规则,包括用于确保每个通信服务质量的控制策略,分析从仪表传输的测量数据,并发送控制命令。 路由器通过接收控制命令并控制通信服务质量,根据网络的状态实时自动控制QoS。

    Access control service and control server
    23.
    发明申请
    Access control service and control server 审中-公开
    访问控制服务和控制服务器

    公开(公告)号:US20060224897A1

    公开(公告)日:2006-10-05

    申请号:US11363508

    申请日:2006-02-28

    摘要: To provide an access control service and control server for protecting a computer from an Illegal access such as a password cracking, in a terminal service and other related services. An access server 3 includes an authentication manager 7 for authenticating a user to operate a terminal, and an ACE manager 9 for setting a network link that enables communication between a terminal 1 that the user operates and a specific computer unit 2, to a hub 4 in accordance with a result of the authentication. Information on each user and information on the specific computer unit 2 that the each user can use are associated with each other and registered in the ACE manager 9.

    摘要翻译: 提供一种访问控制服务和控制服务器,用于保护计算机免受诸如密码破解,终端服务和其他相关服务之类的非法访问。 访问服务器3包括用于认证用户操作终端的认证管理器7和用于设置使得用户操作的终端1与特定计算机单元2之间能够进行通信的网络链路的ACE管理器9到集线器4 根据认证的结果。 每个用户的信息和每个用户可以使用的特定计算机单元2上的信息彼此相关联并在ACE管理器9中注册。

    COMPUTER SYSTEM AND SECURITY MANAGEMENT METHOD
    24.
    发明申请
    COMPUTER SYSTEM AND SECURITY MANAGEMENT METHOD 审中-公开
    计算机系统与安全管理方法

    公开(公告)号:US20130263222A1

    公开(公告)日:2013-10-03

    申请号:US13574160

    申请日:2012-03-27

    IPC分类号: G06F21/00

    CPC分类号: H04L63/105 G06F21/60

    摘要: With a plurality of computer apparatuses connected to a network, operation log information, including an operation type and an output destination of a file, and acquisition source information indicating an acquisition source of the file are recorded based on a user's input/output operation; the acquisition source information is managed by relating it with an access authority over the acquisition source of the file; when the operation log information for the user's output operation exists in the operation log information, a range of the access authority over the acquisition source of an output target file, which is a target of the user's output operation, and an addressee user who can access an output destination of the output target file are specified; whether or not the addressee user belongs to the range of the access authority over the acquisition source of the output target file is judged; and if a negative judgment result is obtained, risk information indicating that the user's output operation is an output outside the range of the access authority.

    摘要翻译: 利用连接到网络的多个计算机设备,基于用户的输入/输出操作来记录包括文件的操作类型和输出目的地的操作日志信息以及指示文件的获取源的获取源信息; 通过将文件与获取源的访问权限相关联来管理采集源信息; 当在操作日志信息中存在用户输出操作的操作日志信息时,作为用户输出操作的目标的输出目标文件的获取源的访问权限范围和可以访问的收件人用户 指定输出目标文件的输出目的地; 判断接收者用户是否属于输出目标文件的获取源的访问权限的范围; 并且如果获得否定的判断结果,则指示用户的输出操作是访问权限的范围之外的输出的风险信息。

    Remote access providing computer system and method for managing same
    25.
    发明授权
    Remote access providing computer system and method for managing same 有权
    远程访问提供计算机系统和管理方法

    公开(公告)号:US08271632B2

    公开(公告)日:2012-09-18

    申请号:US11607317

    申请日:2006-11-30

    摘要: A computer system for providing a remote access service includes a unit for acquiring information on a relation between a terminal and a user using the terminal, a unit for acquiring network information about the terminal, a unit for acquiring network information about a blade that the terminal will access, a unit for acquiring information on a relation between the blade and a storage area, and a management server for extracting information on the user and its usage information and providing these information in real time. The management server also has a unit for permitting an administrator of the management server, persons other than the user and a management program to use the blade.

    摘要翻译: 用于提供远程访问服务的计算机系统包括用于获取关于终端和使用终端的用户之间的关系的信息的单元,用于获取关于终端的网络信息的单元,用于获取关于该终端的网络信息的单元 将访问用于获取关于刀片与存储区域之间的关系的信息的单元,以及用于提取关于用户的信息及其使用信息并且实时提供这些信息的管理服务器。 管理服务器还具有允许管理服务器的管理员,用户以外的人员和管理程序来使用刀片的单元。

    Network monitoring device, network monitoring method, and network monitoring program
    26.
    发明授权
    Network monitoring device, network monitoring method, and network monitoring program 有权
    网络监控设备,网络监控方式和网络监控程序

    公开(公告)号:US08203962B2

    公开(公告)日:2012-06-19

    申请号:US12486419

    申请日:2009-06-17

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part receives a destination IP address designated by a user, through an input receiving part. When the input of the destination IP address is received, the path information generation part uses configuration information tables, each of which stores configuration information of a device on a network, to identify IP addresses of networks each having a plurality of terminals, as branch IP addresses. The path information generation part uses the configuration information tables and transfer destination information tables each storing a routing table of a router, to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 路径信息生成部通过输入接收部接收用户指定的目的IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用配置信息表,每个配置信息表存储网络上的设备的配置信息,以识别具有多个终端的网络的IP地址作为分支IP 地址 路径信息生成部使用存储路由器的路由表的配置信息表和传送目的地信息表,来识别指定的目的地IP地址和识别的分支IP地址之间的路由器的连接顺序,以生成路径信息。

    Computer resource allocation system and method thereof
    28.
    发明申请
    Computer resource allocation system and method thereof 审中-公开
    计算机资源分配系统及其方法

    公开(公告)号:US20070160080A1

    公开(公告)日:2007-07-12

    申请号:US11431829

    申请日:2006-05-11

    IPC分类号: H04J3/22 H04L12/56

    摘要: To effectively allocate a computer resource in an environment where the number of computer resources is smaller than the number of users. It is provided with a section for monitoring the utilization state of the computer resources and a section for registering the condition of the possibility of release depending on the user attributes and the computer resource attributes, where when a new allocation request comes up in the state where all the computer resources are allocated, the unused computer resource is identified, released and allocated depending on the utilization state and the condition of the possibility of release.

    摘要翻译: 在计算机资源数量小于用户数的环境中有效分配计算机资源。 具有用于监视计算机资源的利用状态的部分和用于根据用户属性和计算机资源属性注册释放可能性的条件的部分,其中在新的分配请求出现的状态下, 所有的计算机资源被分配,根据使用状态和释放可能性的条件来识别,释放和分配未使用的计算机资源。

    IP multicast communication system
    29.
    发明申请
    IP multicast communication system 审中-公开
    IP组播通信系统

    公开(公告)号:US20050111474A1

    公开(公告)日:2005-05-26

    申请号:US11024494

    申请日:2004-12-30

    申请人: Emiko Kobayashi

    发明人: Emiko Kobayashi

    摘要: An IP multicast communication system includes a layer-2 switch for accommodating a plurality of recipients dynamically joining or not joining a multicast group, a layer-3 switch adapted to a subnet for receiving IP multicast data sent from a sender via an IP network and distributing the received IP multicast data to authorized recipients joining the multicast group via the layer-2 switch under control, and a controller for collectively managing recipient management information for authentication of the recipients obtained according to an Internet Group Management Protocol IGMP. The layer-3 switch authenticates the recipients according to the recipient management information adapted to its subnetwork among the recipient management information collectively managed by the controller. The layer-2 switch stops transmission of the IP multicast data or thins the IP multicast data sent to recipients that are determined to have made unauthorized accesses by the layer-3 switch.

    摘要翻译: IP组播通信系统包括用于容纳动态加入或不加入组播组的多个接收者的二层交换机,适于子网的第三层交换机,用于接收经由IP网络从发送方发送的IP组播数据,并分发 接收到的IP组播数据经由被控制的第二层交换机加入组播组的授权接收者,以及用于共同管理用于根据因特网组管理协议IGMP获得的接收方的认证的接收者管理信息的控制器。 第3层交换机根据由控制器共同管理的接收者管理信息中的适合其子网的接收者管理信息来认证接收者。 二层交换机停止IP组播数据的传输,或者将发送给确定已通过第三层交换机进行未授权访问的接收者的IP组播数据丢弃。

    Network monitoring device, network monitoring method, and network monitoring program
    30.
    发明授权
    Network monitoring device, network monitoring method, and network monitoring program 有权
    网络监控设备,网络监控方式和网络监控程序

    公开(公告)号:US08830850B2

    公开(公告)日:2014-09-09

    申请号:US13086426

    申请日:2011-04-14

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part receives a destination IP address designated by a user, through an input receiving part. When the input of the destination IP address is received, the path information generation part uses configuration information tables, each of which stores configuration information of a device on a network, to identify IP addresses of networks each having a plurality of terminals, as branch IP addresses. The path information generation part uses the configuration information tables and transfer destination information tables each storing a routing table of a router, to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 路径信息生成部通过输入接收部接收用户指定的目的IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用配置信息表,每个配置信息表存储网络上的设备的配置信息,以识别具有多个终端的网络的IP地址作为分支IP 地址 路径信息生成部使用存储路由器的路由表的配置信息表和传送目的地信息表,来识别指定的目的地IP地址和识别的分支IP地址之间的路由器的连接顺序,以生成路径信息。