Rapid virus scan using file signature created during file write
    21.
    发明授权
    Rapid virus scan using file signature created during file write 有权
    使用在文件写入期间创建的文件签名进行快速病毒扫描

    公开(公告)号:US07752667B2

    公开(公告)日:2010-07-06

    申请号:US11024914

    申请日:2004-12-28

    IPC分类号: G06F11/04 G06F12/14 G06F12/16

    CPC分类号: G06F21/565 G06F2221/2151

    摘要: A procedure and implementations thereof are disclosed that significantly reduce the amount of time necessary to perform a virus scan. A file signature is created each time a file is modified (i.e., with each “file write” to that file). The file signature is inserted, with a date stamp, into the file attributes. The virus scan program checks the previously-created file signature against the virus signature file instead of creating the file signature for every file during the virus scan. Checks to ensure that the file signature is secure, and is valid and up to date, are also implemented. Only if the file signature is not valid and up-to-date does the virus scan program create a new file signature at the time of the running of the virus scan.

    摘要翻译: 公开了显着地减少进行病毒扫描所需的时间量的过程和实施方式。 每次修改文件(即每个“文件写入”文件)时都会创建文件签名。 将文件签名带有日期戳插入到文件属性中。 病毒扫描程序根据病毒签名文件检查先前创建的文件签名,而不是在病毒扫描期间为每个文件创建文件签名。 检查以确保文件签名是安全的,并且是有效的和最新的,也被实现。 只有当病毒扫描程序在病毒扫描运行时病毒扫描程序创建新的文件签名时,文件签名无效并且是最新的。

    Theft deterrence using trusted platform module authorization
    22.
    发明授权
    Theft deterrence using trusted platform module authorization 有权
    使用可信平台模块授权的盗窃威慑

    公开(公告)号:US07600134B2

    公开(公告)日:2009-10-06

    申请号:US10984400

    申请日:2004-11-08

    CPC分类号: G06F21/57 G06F21/88

    摘要: A method for theft deterrence of a computer system is disclosed. The computer system includes a trusted platform module (TPM) and storage medium. The method comprises providing a binding key in the TPM; and providing an encrypted symmetric key in the storage medium. The method further includes providing an unbind command to the TPM based upon an authorization to provide a decrypted symmetric key; and providing the decrypted symmetric key to the secure storage device to allow for use of the computer system. Accordingly, by utilizing a secure hard disk drive (HDD) that requires a decrypted key to function in conjunction with a TPM, a computer if stolen is virtually unusable by the thief. In so doing, the risk of theft of the computer is significantly reduced.

    摘要翻译: 公开了一种用于计算机系统的盗窃威慑的方法。 计算机系统包括可信平台模块(TPM)和存储介质。 该方法包括在TPM中提供绑定密钥; 以及在所述存储介质中提供加密的对称密钥。 该方法还包括:基于提供解密对称密钥的授权向TPM提供解除绑定命令; 以及将解密的对称密钥提供给所述安全存储设备以允许所述计算机系统的使用。 因此,通过使用需要解密密钥与TPM一起工作的安全硬盘驱动器(HDD),如果窃取的计算机实际上不能被小偷使用。 在这样做时,盗窃计算机的风险显着降低。

    REMOTE DISABLEMENT OF A COMPUTER SYSTEM
    23.
    发明申请
    REMOTE DISABLEMENT OF A COMPUTER SYSTEM 有权
    计算机系统的远程禁用

    公开(公告)号:US20090222889A1

    公开(公告)日:2009-09-03

    申请号:US12040821

    申请日:2008-02-29

    IPC分类号: G06F21/00

    CPC分类号: G06F21/88 G06F2221/2143

    摘要: Methods and arrangements for ensuring that, when a computer system is stolen or otherwise misplaced, the system is rendered unusable (i.e., locked down). Conventional solutions have required software running on the system to perform the lockdown action, but in accordance with at least one preferred embodiment of the present invention is the linkage of TPM (Trusted Platform Module) and AMT (Active Management Technology) solutions whereby an AMT arrangement can remove secure data or identifiers so that any encrypted data present on the system will become unusable.

    摘要翻译: 确保当计算机系统被盗或以其他方式错位时,系统变得无法使用(即锁定)的方法和装置。 常规解决方案需要在系统上运行的软件来执行锁定动作,但是根据本发明的至少一个优选实施例是TPM(可信平台模块)和AMT(主动管理技术)解决方案的联动,由此AMT布置 可以删除安全数据或标识符,使系统上存在的任何加密数据变得不可用。

    Techniques for Providing Software Patches to a Computer System
    24.
    发明申请
    Techniques for Providing Software Patches to a Computer System 有权
    为计算机系统提供软件补丁的技术

    公开(公告)号:US20090138868A1

    公开(公告)日:2009-05-28

    申请号:US11944887

    申请日:2007-11-26

    IPC分类号: G06F9/44

    CPC分类号: G06F8/65

    摘要: A technique for providing a software patch to an associated computer system includes receiving, at a wireless communication device, a communication. Next, it is determined, at the wireless communication device, whether the communication is associated with a software patch available for the associated computer system. When the communication is associated with the software patch, a notification is sent from the wireless communication device to the associated computer system that the software patch is available.

    摘要翻译: 用于向相关联的计算机系统提供软件补丁的技术包括在无线通信设备处接收通信。 接下来,在无线通信设备处确定通信是否与可用于相关联的计算机系统的软件补丁相关联。 当通信与软件补丁相关联时,从无线通信设备向相关联的计算机系统发送通知,使软件补丁可用。

    DISKLESS CLIENT USING A HYPERVISOR
    25.
    发明申请
    DISKLESS CLIENT USING A HYPERVISOR 有权
    使用超高分子的无限客户端

    公开(公告)号:US20080244096A1

    公开(公告)日:2008-10-02

    申请号:US11693515

    申请日:2007-03-29

    IPC分类号: G06F3/00

    CPC分类号: G06F9/4416

    摘要: An arrangement for facilitating remote booting in diskless client systems as just described. To this end, there is broadly contemplated herein the employment of a hypervisor that can freely accommodate a variety of booting arrangements for a given OS. This then ensures that few if any modifications, especially costly ones, would need to be made to the OS to ensure greater versatility.

    摘要翻译: 一种用于在无盘客户端系统中进行远程启动的方案,如上所述。 为此,在这里广泛考虑到使用可以自由地适应给定OS的各种启动布置的管理程序。 这样就可以确保很少如果需要对操作系统进行任何修改,特别是昂贵的修改,以确保更多的通用性。

    Desktop computer blade fault identification system and method
    26.
    发明授权
    Desktop computer blade fault identification system and method 失效
    台式电脑刀片故障识别系统及方法

    公开(公告)号:US07370227B2

    公开(公告)日:2008-05-06

    申请号:US11044433

    申请日:2005-01-27

    IPC分类号: G06F11/00

    CPC分类号: H04L41/00 G01R31/08

    摘要: A method and system for remotely isolating faults in computer network devices coupled to a computer network. A plurality of first computer units are coupled to the computer network. The plurality of first computer units are located on a user side of the computer network. A plurality of second computer units are coupled to the computer network. The plurality of second computer units are located on a service provider side of the network. One of the plurality of second computer units is designated to provide computing services to one of the plurality of first computer units. One of the plurality of first computer units experiencing a fault communicating with its designated second computer unit uses another of the plurality of first computer units as a proxy computer unit to remotely isolate the fault.

    摘要翻译: 一种用于远程隔离耦合到计算机网络的计算机网络设备中的故障的方法和系统。 多个第一计算机单元耦合到计算机网络。 多个第一计算机单元位于计算机网络的用户侧。 多个第二计算机单元耦合到计算机网络。 多个第二计算机单元位于网络的服务提供方侧。 多个第二计算机单元中的一个被指定为向多个第一计算机单元之一提供计算服务。 经历与其指定的第二计算机单元通信的故障的多个第一计算机单元中的一个使用多个第一计算机单元中的另一个作为代理计算机单元远程隔离故障。

    Management of hardware passwords
    27.
    发明授权
    Management of hardware passwords 有权
    管理硬件密码

    公开(公告)号:US08756667B2

    公开(公告)日:2014-06-17

    申请号:US12341512

    申请日:2008-12-22

    IPC分类号: H04L9/32

    CPC分类号: G06F21/34

    摘要: In the context of computer systems, the generation of preboot passwords at a server instead of at a client. Preferably, preboot passwords generated at the server are distributed to the client, and a process is offered whereby a user can establish his/her own proxy, not known to the server, that can be used to release the stored passwords to the client hardware. Since the passwords are generated at the server, management of the passwords is greatly facilitated since they are generated at the site where they are stored. This also makes it easy to implement management features such as a group policy, since the password generation software will be able to make logical connections between users and hardware.

    摘要翻译: 在计算机系统的上下文中,在服务器而不是在客户端生成预引导密码。 优选地,在服务器处生成的预引导密码被分发给客户端,并且提供一个过程,由此用户可以建立他/她自己的代理(服务器不知道),可以用于将存储的密码释放到客户端硬件。 由于密码是在服务器上生成的,因此密码的管理因其在存储位置生成而大大方便。 这也使得容易实现诸如组策略的管理功能,因为密码生成软件将能够在用户和硬件之间进行逻辑连接。

    Remote disablement of a computer system
    28.
    发明授权
    Remote disablement of a computer system 有权
    远程禁用计算机系统

    公开(公告)号:US08702812B2

    公开(公告)日:2014-04-22

    申请号:US12040821

    申请日:2008-02-29

    IPC分类号: G06F21/00

    CPC分类号: G06F21/88 G06F2221/2143

    摘要: Methods and arrangements for ensuring that, when a computer system is stolen or otherwise misplaced, the system is rendered unusable (i.e., locked down). Conventional solutions have required software running on the system to perform the lockdown action, but in accordance with at least one preferred embodiment of the present invention is the linkage of TPM (Trusted Platform Module) and AMT (Active Management Technology) solutions whereby an AMT arrangement can remove secure data or identifiers so that any encrypted data present on the system will become unusable.

    摘要翻译: 确保当计算机系统被盗或以其他方式错位时,系统变得无法使用(即锁定)的方法和装置。 常规解决方案需要在系统上运行的软件来执行锁定动作,但是根据本发明的至少一个优选实施例是TPM(可信平台模块)和AMT(主动管理技术)解决方案的联动,由此AMT布置 可以删除安全数据或标识符,使系统上存在的任何加密数据变得不可用。

    Apparatus and method for assuring secure disposal of a hard disk drive unit
    29.
    发明授权
    Apparatus and method for assuring secure disposal of a hard disk drive unit 有权
    用于确保硬盘驱动单元的安全处理的装置和方法

    公开(公告)号:US08381304B2

    公开(公告)日:2013-02-19

    申请号:US11493952

    申请日:2006-07-27

    IPC分类号: G06F21/00

    CPC分类号: G06F21/805 G06F2221/2143

    摘要: A hard disk drive unit includes a microprocessor programmed to erase data stored within the drive unit if it is determined that a process potentially leading to a misuse of the data stored within the drive unit, and if secure disposal configuration data stored in nonvolatile storage within the drive indicates that the data is to be erased. Such a process includes initializing the drive unit for operation without providing a password matching a password stored in the drive unit, initializing the drive unit in a system not having CMOS configuration data matching the drive unit, and determining that a failure rate within the drive unit exceeds a threshold level.

    摘要翻译: 如果确定可能导致误用存储在驱动单元内的数据的过程,以及如果存储在驱动单元内的非易失性存储器中的安全处理配置数据,则硬盘驱动器单元包括被编程为擦除存储在驱动单元内的数据的微处理器 驱动器指示要擦除的数据。 这样的处理包括初始化用于操作的驱动单元,而不提供与存储在驱动单元中的密码匹配的密码,在不具有与驱动单元匹配的CMOS配置数据的系统中初始化驱动单元,以及确定驱动单元内的故障率 超过阈值水平。