SECURITY MONITORING APPARATUS, SECURITY MONITORING METHOD, AND SECURITY MONITORING PROGRAM BASED ON A SECURITY POLICY
    21.
    发明申请
    SECURITY MONITORING APPARATUS, SECURITY MONITORING METHOD, AND SECURITY MONITORING PROGRAM BASED ON A SECURITY POLICY 失效
    安全监察装置,安全监察方法和基于安全政策的安全监察方案

    公开(公告)号:US20120102542A1

    公开(公告)日:2012-04-26

    申请号:US13058122

    申请日:2010-11-19

    IPC分类号: G06F21/00

    CPC分类号: G06Q10/0635

    摘要: A management server monitors even the occurrence of items, which are not targets of security policies, evaluates a change of the monitoring result, and implements specific output when necessary. Particularly, also regarding items which are considered to be non-targets of the security policies in management based on the security policies, the occurrence of such items is also monitored and the monitoring result is appropriately reported to an administrator so that the administrator can recognize a threat and takes necessary countermeasure at appropriate timing.

    摘要翻译: 管理服务器甚至监视不是安全策略目标的项目的发生,评估监视结果的变化,并在必要时实现特定的输出。 特别地,对于被认为是基于安全策略的管理安全策略的非目标的项目,也监视这些项目的发生,并将监视结果适当地报告给管理员,以便管理员能够识别 威胁并在适当的时机采取必要的对策。

    COMPUTER SYSTEM, RESOURCE MANAGEMENT SERVER FOR COMPUTER SYSTEM, AND RESOURCE MANAGEMENT METHOD FOR COMPUTER SYSTEM
    22.
    发明申请
    COMPUTER SYSTEM, RESOURCE MANAGEMENT SERVER FOR COMPUTER SYSTEM, AND RESOURCE MANAGEMENT METHOD FOR COMPUTER SYSTEM 审中-公开
    计算机系统,计算机系统资源管理服务器,计算机系统资源管理方法

    公开(公告)号:US20110196968A1

    公开(公告)日:2011-08-11

    申请号:US12526946

    申请日:2009-03-25

    IPC分类号: G06F15/173

    摘要: A computer system that achieves effective utilization of physical servers' resources in a virtual client system is provided.In the virtual client system, the present invention obtains operation information about virtual machines, obtains access information indicating whether a user has logged on to the virtual machines or not, judges from connection information whether the user is using the virtual machines or not, calculates the capacity of the virtual machine(s) which are active, but is not accessed by the user, based on the capacity of resources used by the virtual machine(s), and then identifies the virtual machine(s) used by users from those not used by the users.

    摘要翻译: 提供了一种在虚拟客户端系统中实现物理服务器资源的有效利用的计算机系统。 在虚拟客户端系统中,本发明获得关于虚拟机的操作信息,获取表示用户是否登录到虚拟机的访问信息,从连接信息判断用户是否正在使用虚拟机, 基于虚拟机使用的资源的容量,然后识别用户使用的虚拟机的虚拟机的活动的容量,但是不被用户访问的虚拟机的容量 由用户使用

    NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM
    23.
    发明申请
    NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM 有权
    网络监控设备,网络监控方法和网络监控程序

    公开(公告)号:US20100061257A1

    公开(公告)日:2010-03-11

    申请号:US12486419

    申请日:2009-06-17

    IPC分类号: H04L12/26

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part of a network monitoring device receives a destination IP address designated by a user as an object of monitoring. When the input of the destination IP address is received, the path information generation part uses configuration information tables, which store configuration information of a device on a network being monitoring, to identify IP addresses of networks to which a plurality of terminals belong, as branch IP addresses. Further, the path information generation part uses the configuration information tables and transfer destination information tables which store a routing table of a router on the network, in order to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 网络监视装置的路径信息生成部接收由用户指定的作为监视对象的目的地IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用存储被监视的网络上的设备的配置信息的配置信息表来识别多个终端所属的网络的IP地址作为分支 IP地址。 此外,路径信息生成部使用在网络上存储路由器的路由表的配置信息表和传送目的地信息表,以便识别指定的目的地IP地址和所识别的分支IP地址之间的路由器的连接顺序 ,以生成路径信息。

    Network monitoring device, network monitoring method, and network monitoring program
    24.
    发明授权
    Network monitoring device, network monitoring method, and network monitoring program 有权
    网络监控设备,网络监控方式和网络监控程序

    公开(公告)号:US08830850B2

    公开(公告)日:2014-09-09

    申请号:US13086426

    申请日:2011-04-14

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part receives a destination IP address designated by a user, through an input receiving part. When the input of the destination IP address is received, the path information generation part uses configuration information tables, each of which stores configuration information of a device on a network, to identify IP addresses of networks each having a plurality of terminals, as branch IP addresses. The path information generation part uses the configuration information tables and transfer destination information tables each storing a routing table of a router, to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 路径信息生成部通过输入接收部接收用户指定的目的IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用配置信息表,每个配置信息表存储网络上的设备的配置信息,以识别具有多个终端的网络的IP地址作为分支IP 地址 路径信息生成部使用存储路由器的路由表的配置信息表和传送目的地信息表,来识别指定的目的地IP地址和识别的分支IP地址之间的路由器的连接顺序,以生成路径信息。

    NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM
    25.
    发明申请
    NETWORK MONITORING DEVICE, NETWORK MONITORING METHOD, AND NETWORK MONITORING PROGRAM 有权
    网络监控设备,网络监控方法和网络监控程序

    公开(公告)号:US20110188400A1

    公开(公告)日:2011-08-04

    申请号:US13086426

    申请日:2011-04-14

    IPC分类号: H04L12/26

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part receives a destination IP address designated by a user, through an input receiving part. When the input of the destination IP address is received, the path information generation part uses configuration information tables, each of which stores configuration information of a device on a network, to identify IP addresses of networks each having a plurality of terminals, as branch IP addresses. The path information generation part uses the configuration information tables and transfer destination information tables each storing a routing table of a router, to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 路径信息生成部通过输入接收部接收用户指定的目的IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用配置信息表,每个配置信息表存储网络上的设备的配置信息,以识别具有多个终端的网络的IP地址作为分支IP 地址 路径信息生成部使用存储路由器的路由表的配置信息表和传送目的地信息表,来识别指定的目的地IP地址和识别的分支IP地址之间的路由器的连接顺序,以生成路径信息。

    Network monitoring device, network monitoring method, and network monitoring program
    26.
    发明授权
    Network monitoring device, network monitoring method, and network monitoring program 有权
    网络监控设备,网络监控方式和网络监控程序

    公开(公告)号:US08203962B2

    公开(公告)日:2012-06-19

    申请号:US12486419

    申请日:2009-06-17

    摘要: Information on a communication relation or communication path to be monitored is automatically generated to reduce load of a user. A path information generation part receives a destination IP address designated by a user, through an input receiving part. When the input of the destination IP address is received, the path information generation part uses configuration information tables, each of which stores configuration information of a device on a network, to identify IP addresses of networks each having a plurality of terminals, as branch IP addresses. The path information generation part uses the configuration information tables and transfer destination information tables each storing a routing table of a router, to identify the connection order of routers between the designated destination IP address and the identified branch IP addresses, to generate path information.

    摘要翻译: 将自动生成要监视的通信关系或通信路径的信息,以减少用户的负载。 路径信息生成部通过输入接收部接收用户指定的目的IP地址。 当接收到目的地IP地址的输入时,路径信息生成部使用配置信息表,每个配置信息表存储网络上的设备的配置信息,以识别具有多个终端的网络的IP地址作为分支IP 地址 路径信息生成部使用存储路由器的路由表的配置信息表和传送目的地信息表,来识别指定的目的地IP地址和识别的分支IP地址之间的路由器的连接顺序,以生成路径信息。

    Computer resource allocation system and method thereof
    28.
    发明申请
    Computer resource allocation system and method thereof 审中-公开
    计算机资源分配系统及其方法

    公开(公告)号:US20070160080A1

    公开(公告)日:2007-07-12

    申请号:US11431829

    申请日:2006-05-11

    IPC分类号: H04J3/22 H04L12/56

    摘要: To effectively allocate a computer resource in an environment where the number of computer resources is smaller than the number of users. It is provided with a section for monitoring the utilization state of the computer resources and a section for registering the condition of the possibility of release depending on the user attributes and the computer resource attributes, where when a new allocation request comes up in the state where all the computer resources are allocated, the unused computer resource is identified, released and allocated depending on the utilization state and the condition of the possibility of release.

    摘要翻译: 在计算机资源数量小于用户数的环境中有效分配计算机资源。 具有用于监视计算机资源的利用状态的部分和用于根据用户属性和计算机资源属性注册释放可能性的条件的部分,其中在新的分配请求出现的状态下, 所有的计算机资源被分配,根据使用状态和释放可能性的条件来识别,释放和分配未使用的计算机资源。

    METHOD AND APPARATUS FOR CAUSE ANALYSIS CONFIGURATION CHANGE
    29.
    发明申请
    METHOD AND APPARATUS FOR CAUSE ANALYSIS CONFIGURATION CHANGE 审中-公开
    引起分析配置变更的方法和装置

    公开(公告)号:US20110314138A1

    公开(公告)日:2011-12-22

    申请号:US12988105

    申请日:2010-07-07

    IPC分类号: G06F15/177

    摘要: In a computer system that comprises multiple target computers and an analysis computer, one or more first target computers, in which a predetermined application has been installed and invoked, send a log comprising information of multiple configuration changes that have been made prior to invoking the predetermined application to the analysis computer, and the analysis computer receives the log and computes, for each type of configuration change and based on the log, an invocation failure rate which is a percentage at which the invocation of the predetermined application fails subsequent to the configuration change. Then, a second target computer receives, from the analysis computer, first information comprising an invocation failure rate for each type of configuration change related to the predetermined application, and based on the invocation failure rate, displays the type of configuration change that is the cause of the failure of the predetermined application invocation.

    摘要翻译: 在包括多个目标计算机和分析计算机的计算机系统中,在其中安装和调用了预定应用的一个或多个第一目标计算机发送包括在调用预定的应用程序之前已经进行的多个配置更改的信息的日志 应用于分析计算机,并且分析计算机接收日志并针对每种类型的配置更改并且基于日志计算调用失败率,该调用失败率是在配置改变之后调用预定应用程序失败的百分比 。 然后,第二目标计算机从分析计算机接收包括与预定应用相关的每种类型的配置改变的调用失败率的第一信息,并且基于调用失败率,显示作为原因的配置改变的类型 的预定应用程序调用失败。