Method and system for administering a secure data repository
    21.
    发明授权
    Method and system for administering a secure data repository 有权
    用于管理安全数据存储库的方法和系统

    公开(公告)号:US09536109B2

    公开(公告)日:2017-01-03

    申请号:US12887123

    申请日:2010-09-21

    IPC分类号: G06F21/64

    CPC分类号: G06F21/64

    摘要: A method, system and computer program product for administering a secure data repository. Rather than using a specific database, an application may use an existing hierarchical file structure, such as provided by conventional operating systems, to store structured data in a number of files. To detect unauthorized, malicious or inadvertent changes to these files, either within one or more files, or by deletion, replacement or movement of files in their entirety, each file incorporates a last change timestamp and the contents of the file are digitally signed. Furthermore, every file in the secure repository is logged in an index file together with its respective change date stamp, and the index file as a whole is also digitally signed. Unauthorized changes can be identified by comparison of the file date stamps with the content of the index as well as verifying the validity of each digital signature.

    摘要翻译: 一种用于管理安全数据存储库的方法,系统和计算机程序产品。 应用程序可以使用诸如由常规操作系统提供的分层文件结构来存储多个文件中的结构化数据而不是使用特定的数据库。 为了在一个或多个文件内检测到这些文件的未经授权的,恶意的或无意的更改,或者通过全文删除,替换或移动文件,每个文件都包含最后一个更改时间戳,并且该文件的内容被数字签名。 此外,安全存储库中的每个文件都与其各自的更改日期戳记一起登录到索引文件中,并且索引文件作为整体也被数字签名。 可以通过比较文件日期戳与索引的内容以及验证每个数字签名的有效性来识别未经授权的更改。

    Managing Pre-Requisite of a Software Product Virtual Image
    22.
    发明申请
    Managing Pre-Requisite of a Software Product Virtual Image 有权
    管理软件产品虚拟映像的先决条件

    公开(公告)号:US20130263113A1

    公开(公告)日:2013-10-03

    申请号:US13880891

    申请日:2011-11-03

    IPC分类号: G06F9/445

    摘要: A mechanism is provided for managing pre-requisite software components of a software product distributed on a virtual machine. A list of pre-requisite software components for the software product provided in the software product virtual image distribution package of the software product virtual image is read. A test is performed as to whether each pre-requisite software component in the list of prerequisite software components is not installed in the virtual machine. If the prerequisite software component is not installed, the pre-requisite software component is retrieved. License text of the retrieved pre-requisite software component is read and displayed to a user. Upon approval of the license text by the user, the retrieved pre-requisite software component is installed. The process is repeated until all the pre-requisite software components are installed.

    摘要翻译: 提供了一种用于管理分布在虚拟机上的软件产品的必备软件组件的机制。 阅读软件产品虚拟映像的软件产品虚拟映像分发软件包中提供的软件产品的必备软件组件列表。 执行测试是否在先决条件软件组件列表中的每个必备软件组件是否未安装在虚拟机中。 如果未安装必备软件组件,则检索先决软件组件。 检索到的先决条件软件组件的许可证文本被读取并显示给用户。 在用户批准许可证文本后,安装检索到的必备软件组件。 重复该过程,直到安装所有必需的软件组件。

    Detection and Management of Dynamic Migration of Virtual Environments
    23.
    发明申请
    Detection and Management of Dynamic Migration of Virtual Environments 有权
    虚拟环境的动态迁移检测与管理

    公开(公告)号:US20120174101A1

    公开(公告)日:2012-07-05

    申请号:US13418677

    申请日:2012-03-13

    IPC分类号: G06F9/455

    摘要: A mechanism is provided to detect that a dynamic migration of a virtual environment is in progress or has been executed during a hardware or software scan without requiring instrumentation of applications running within the virtual machine. The mechanism relies on a particular sequencing and usage of application programming interfaces and commands that scanning technology provides, associated with the modularity of the scans and on the external virtual machine enabler component running on the host. The mechanism may detect a dynamic migration and take proper actions based on the system configuration. The actions may include discarding the output of the scan executed across a dynamic migration and repeat the scan. The actions may also include notifying the initialization subsystem of the non-migration-safe application to execute a script or program to address migration safety issues. One particular program or script may be an agent ID regeneration program or script.

    摘要翻译: 提供了一种机制来检测在硬件或软件扫描期间虚拟环境的动态迁移正在进行或已被执行,而不需要在虚拟机内运行的应用程序的仪器。 该机制依赖于扫描技术提供的应用程序编程接口和命令的特定排序和使用,与扫描的模块化和主机上运行的外部虚拟机启用程序组件相关联。 该机制可以检测动态迁移,并根据系统配置采取适当的动作。 这些动作可能包括丢弃通过动态迁移执行的扫描的输出并重复扫描。 这些动作还可以包括通知初始化子系统非迁移安全应用程序来执行脚本或程序来解决迁移安全问题。 一个特定的程序或脚本可以是代理ID再生程序或脚本。

    Method and system for dynamic virtual environment migration
    25.
    发明授权
    Method and system for dynamic virtual environment migration 有权
    动态虚拟环境迁移的方法和系统

    公开(公告)号:US08122109B2

    公开(公告)日:2012-02-21

    申请号:US12365632

    申请日:2009-02-04

    IPC分类号: G06F15/177

    摘要: An incompatibility problem during a virtual environment migration from a first host to a second host can be addressed by changing a configuration of the virtual environment and/or by migrating the virtual environment to a host other than the second host. A migration advisor module is configured to take such action automatically upon detection of the incompatibility problem. Alternatively, the migration advisor module may take such action with assistance and/or input from an operator. The migration advisor module can change the configuration of the virtual environment by removing unnecessary components of the virtual environment and causing the reconfigured virtual environment to be migrated to the second host. Alternatively, the migration advisor module can cause the virtual environment to be migrated to a third host with sufficient physical system resources to meet the requirements of the virtual environment.

    摘要翻译: 可以通过改变虚拟环境的配置和/或通过将虚拟环境迁移到除第二主机之外的主机来解决在从第一主机到第二主机的虚拟环境迁移期间的不兼容性问题。 迁移顾问模块被配置为在检测到不兼容性问题时自动执行此类操作。 或者,迁移顾问模块可以通过来自操作者的帮助和/或输入来采取这样的动作。 迁移顾问程序模块可以通过删除虚拟环境的不必要组件并使重新配置的虚拟环境迁移到第二个主机来更改虚拟环境的配置。 或者,迁移顾问模块可以使虚拟环境被迁移到具有足够物理系统资源的第三主机以满足虚拟环境的需求。

    Managing software content in virtual desktop environments
    26.
    发明授权
    Managing software content in virtual desktop environments 有权
    在虚拟桌面环境中管理软件内容

    公开(公告)号:US08972987B2

    公开(公告)日:2015-03-03

    申请号:US13492719

    申请日:2012-06-08

    IPC分类号: G06F9/455

    CPC分类号: G06F9/45533

    摘要: Software is managed in a virtual desktop environment by discovering virtual appliances contained in the virtual desktop environment, and for each virtual appliance discovering the virtual machines belonging to the virtual appliance. Software is further managed by discovering the standalone virtual machines comprised in the virtual desktop environment, and for each discovered virtual machine, introspecting each virtual machine to detect non-virtual applications and virtualized applications running in the virtual machine. For each detected application, identification is made of the operating system on which the application is running.

    摘要翻译: 通过发现虚拟桌面环境中包含的虚拟设备以及发现属于虚拟设备的虚拟机的每个虚拟设备,可以在虚拟桌面环境中管理软件。 通过发现虚拟桌面环境中包含的独立虚拟机,并针对每个发现的虚拟机,对每个虚拟机进行内部检测,以检测在虚拟机中运行的非虚拟应用程序和虚拟化应用程序,进一步管理软件。 对于每个检测到的应用程序,标识应用程序正在运行的操作系统。

    Method, System, and Computer Program for Implementing a Customizable Virtual Appliance
    27.
    发明申请
    Method, System, and Computer Program for Implementing a Customizable Virtual Appliance 审中-公开
    用于实现可定制的虚拟设备的方法,系统和计算机程序

    公开(公告)号:US20130074068A1

    公开(公告)日:2013-03-21

    申请号:US13617696

    申请日:2012-09-14

    IPC分类号: G06F9/455

    CPC分类号: G06F8/63 G06F9/44505

    摘要: A method for managing a virtual image in a cloud environment by implementing a customizable virtual image deployment may be provided. The method may comprise generating a virtual image and a set of configuration parameters related to specific parts of the virtual image, and assigning a set of values to the configuration parameters. Furthermore, the method may comprise deploying the virtual image using the set of values assigned to the parameters, such that parts of the virtual image may be deployed as a customized virtual image depending on the set of values of the parameters.

    摘要翻译: 可以提供通过实现可定制的虚拟映像部署来管理云环境中的虚拟映像的方法。 该方法可以包括生成与虚拟图像的特定部分相关的虚拟图像和一组配置参数,以及将一组值分配给配置参数。 此外,该方法可以包括使用分配给参数的值集来部署虚拟图像,使得可以根据参数的值的集合将虚拟图像的部分部署为定制的虚像。

    Detection and management of dynamic migration of virtual environments
    28.
    发明授权
    Detection and management of dynamic migration of virtual environments 有权
    虚拟环境的动态迁移检测与管理

    公开(公告)号:US08402462B2

    公开(公告)日:2013-03-19

    申请号:US13418677

    申请日:2012-03-13

    IPC分类号: G06F13/00

    摘要: A mechanism is provided to detect that a dynamic migration of a virtual environment is in progress or has been executed during a hardware or software scan without requiring instrumentation of applications running within the virtual machine. The mechanism relies on a particular sequencing and usage of application programming interfaces and commands that scanning technology provides, associated with the modularity of the scans and on the external virtual machine enabler component running on the host. The mechanism may detect a dynamic migration and take proper actions based on the system configuration. The actions may include discarding the output of the scan executed across a dynamic migration and repeat the scan. The actions may also include notifying the initialization subsystem of the non-migration-safe application to execute a script or program to address migration safety issues. One particular program or script may be an agent ID regeneration program or script.

    摘要翻译: 提供了一种机制来检测在硬件或软件扫描期间虚拟环境的动态迁移正在进行或已被执行,而不需要在虚拟机内运行的应用程序的仪器。 该机制依赖于扫描技术提供的应用程序编程接口和命令的特定排序和使用,与扫描的模块化和主机上运行的外部虚拟机启用程序组件相关联。 该机制可以检测动态迁移,并根据系统配置采取适当的动作。 这些动作可能包括丢弃通过动态迁移执行的扫描的输出并重复扫描。 这些动作还可以包括通知初始化子系统非迁移安全应用程序来执行脚本或程序来解决迁移安全问题。 一个特定的程序或脚本可以是代理ID再生程序或脚本。

    METHOD AND SYSTEM FOR ADMINISTERING A SECURE DATA REPOSITORY
    29.
    发明申请
    METHOD AND SYSTEM FOR ADMINISTERING A SECURE DATA REPOSITORY 有权
    用于管理安全数据记录的方法和系统

    公开(公告)号:US20110093957A1

    公开(公告)日:2011-04-21

    申请号:US12887123

    申请日:2010-09-21

    IPC分类号: G06F21/00

    CPC分类号: G06F21/64

    摘要: A method, system and computer program product for administering a secure data repository. Rather than using a specific database, an application may use an existing hierarchical file structure, such as provided by conventional operating systems, to store structured data in a number of files. To detect unauthorized, malicious or inadvertent changes to these files, either within one or more files, or by deletion, replacement or movement of files in their entirety, each file incorporates a last change timestamp and the contents of the file are digitally signed. Furthermore, every file in the secure repository is logged in an index file together with its respective change date stamp, and the index file as a whole is also digitally signed. Unauthorized changes can be identified by comparison of the file date stamps with the content of the index as well as verifying the validity of each digital signature.

    摘要翻译: 一种用于管理安全数据存储库的方法,系统和计算机程序产品。 应用程序可以使用诸如由常规操作系统提供的分层文件结构来存储多个文件中的结构化数据而不是使用特定的数据库。 为了在一个或多个文件内检测到这些文件的未经授权的,恶意的或无意的更改,或者通过全文删除,替换或移动文件,每个文件都包含最后一个更改时间戳,并且该文件的内容被数字签名。 此外,安全存储库中的每个文件都与其各自的更改日期戳记一起登录到索引文件中,并且索引文件作为整体也被数字签名。 可以通过比较文件日期戳与索引的内容以及验证每个数字签名的有效性来识别未经授权的更改。

    Efficient monitoring of heterogeneous applications
    30.
    发明授权
    Efficient monitoring of heterogeneous applications 失效
    有效监控异构应用程序

    公开(公告)号:US07930381B2

    公开(公告)日:2011-04-19

    申请号:US12325222

    申请日:2008-11-30

    IPC分类号: G06F15/173

    摘要: A heterogeneous environment having applications and application enablers operating on application servers organized as a cluster is managed. The application servers are managed by a cluster management application. A system management application permits access to computing performance data provided by an operating system and reported to the system management application. Performance data of the applications and application enablers is collected from an application agent through the application servers. Topology information regarding the application servers is collected via the cluster management application. The performance data and the topology information are retrieved and sent to the system management application. Access to the performance data via the system management application is permitted. The system management application links to the computing performance data using the topology information.

    摘要翻译: 管理具有在组织为集群的应用服务器上运行的应用程序和应用程序使能器的异构环境。 应用服务器由集群管理应用程序管理。 系统管理应用程序允许访问由操作系统提供的计算性能数据并向系统管理应用程序报告。 通过应用服务器从应用程序代理收集应用程序和应用程序使能器的性能数据。 通过集群管理应用程序收集有关应用服务器的拓扑信息。 性能数据和拓扑信息被检索并发送到系统管理应用程序。 允许通过系统管理应用访问性能数据。 系统管理应用程序使用拓扑信息链接到计算性能数据。