CLOUD COMPUTING DATA CENTER MACHINE MONITOR AND CONTROL
    21.
    发明申请
    CLOUD COMPUTING DATA CENTER MACHINE MONITOR AND CONTROL 有权
    云计算数据中心机监控与控制

    公开(公告)号:US20130311632A1

    公开(公告)日:2013-11-21

    申请号:US13476795

    申请日:2012-05-21

    IPC分类号: G06F15/173

    摘要: Systems, methods and computer-readable media provide for identifying a physical machine corresponding to a virtual machine. A system assigns a data center machine identifier to a physical computing device in a data center, along with a physical location for the physical computing system. In response to creating a virtual machine on the physical computing device, the system creates a mapping from a virtual machine identifier for the virtual machine to the data center machine identifier for the physical computing system.

    摘要翻译: 系统,方法和计算机可读介质提供用于识别对应于虚拟机的物理机。 系统将数据中心机器标识符与物理计算系统的物理位置一起分配给数据中心中的物理计算设备。 响应于在物理计算设备上创建虚拟机,系统创建从虚拟机的虚拟机标识符到用于物理计算系统的数据中心机器标识符的映射。

    Interactive physical mail content management
    22.
    发明授权
    Interactive physical mail content management 有权
    交互式物理邮件内容管理

    公开(公告)号:US07731089B2

    公开(公告)日:2010-06-08

    申请号:US11463089

    申请日:2006-08-08

    摘要: A computer implemented method, apparatus, and computer usable program code for interactive mail management of physical mail. Physical mail is received in a mailbox. An identifier is read in response to receiving the physical mail in the mailbox. The physical mail contains the identifier. Information contained in the identifier is sent to the mail recipient. The mail recipient is able to identify instructions for communicating with a sender associated with the physical mail based on the information from the identifier.

    摘要翻译: 用于物理邮件的交互式邮件管理的计算机实现的方法,装置和计算机可用程序代码。 在邮箱中收到物理邮件。 响应于在邮箱中接收到物理邮件而读取标识符。 物理邮件包含标识符。 标识符中包含的信息被发送到邮件收件人。 邮件收件人能够基于来自标识符的信息来识别与与物理邮件相关联的发送者进行通信的指令。

    Time sensitive electronic mail
    23.
    发明授权
    Time sensitive electronic mail 有权
    时间敏感的电子邮件

    公开(公告)号:US07539728B2

    公开(公告)日:2009-05-26

    申请号:US10637026

    申请日:2003-08-07

    CPC分类号: G06Q10/107 G06Q30/0255

    摘要: Delivering time sensitive email including creating an email message for time-sensitive delivery to a multiplicity of addressees' mailboxes on email servers, including inserting in the email message a data element identifying the message as a message for time-sensitive delivery; assigning delivery time constraints to the message; delivering the message, in accordance with the time constraints and for temporary storage outside the mailboxes, to email servers having addressees' mailboxes; and instructing the servers to place the message in all addressees' mailboxes at approximately the same time.

    摘要翻译: 提供时间敏感的电子邮件,包括创建一个电子邮件消息,以便对电子邮件服务器上的多个收件人的邮箱进行时间敏感的传送,包括将电子邮件中的数据元素标识为消息以便进行时间敏感的传送; 为消息分配传递时间约束; 根据时间限制和邮箱外的临时存储,将消息传递给具有收件人邮箱的电子邮件服务器; 并指示服务器大致在同一时间将邮件放在所有收件人的邮箱中。

    NOTIFICATION OF MAIL DELIVERIES IN REMOTE POST OFFICE MAILBOXES
    24.
    发明申请
    NOTIFICATION OF MAIL DELIVERIES IN REMOTE POST OFFICE MAILBOXES 审中-公开
    在远程办公室邮箱中发送邮件通知

    公开(公告)号:US20080040243A1

    公开(公告)日:2008-02-14

    申请号:US11463102

    申请日:2006-08-08

    IPC分类号: G06Q10/00

    摘要: A computer implemented method, apparatus, and computer usable program code for mail notification. Physical mail is received in a mailbox. The physical mail includes an identifier indicating information about the physical mail. A presence of the physical mail is detected in the mailbox. The identifier is read in response to detecting the presence of the physical mail. A notification is sent to a mail recipient including the information in response to reading the identifier.

    摘要翻译: 用于邮件通知的计算机实现的方法,装置和计算机可用程序代码。 在邮箱中收到物理邮件。 物理邮件包括指示关于物理邮件的信息的标识符。 在邮箱中检测到物理邮件的存在。 响应于检测到物理邮件的存在而读取标识符。 响应于读取标识符,将通知发送到邮件收件人,包括信息。

    Extensible role based authorization for manageable resources
    25.
    发明申请
    Extensible role based authorization for manageable resources 审中-公开
    可管理资源的可扩展角色授权

    公开(公告)号:US20070185875A1

    公开(公告)日:2007-08-09

    申请号:US11351035

    申请日:2006-02-09

    IPC分类号: G06F17/30

    CPC分类号: G06F21/604 G06F21/6218

    摘要: Methods and systems are provided for dynamically altering the access capabilities to the data resources for users of a computer based application. The access capabilities are defined by a dynamic role that specifies which of the resources a user may access, and a set of permissions associated with the dynamic role to define. New dynamic roles may be created when additional resources and components are added to an application. Methods and systems are provided for creating new dynamic roles to temporarily access resources, and for deleting a dynamic role after it is no longer needed.

    摘要翻译: 提供了方法和系统,用于动态地改变对基于计算机的应用的用户的数据资源的访问能力。 访问功能由动态角色定义,该角色指定用户可以访问哪些资源,以及与要定义的动态角色相关联的一组权限。 当将额外的资源和组件添加到应用程序时,可能会创建新的动态角色。 提供了方法和系统,用于创建新的动态角色来临时访问资源,以及在不再需要动态角色后删除动态角色。

    Fine-grained authorization by authorization table associated with a resource
    26.
    发明申请
    Fine-grained authorization by authorization table associated with a resource 有权
    与资源关联的授权表进行细粒度授权

    公开(公告)号:US20050132220A1

    公开(公告)日:2005-06-16

    申请号:US10732628

    申请日:2003-12-10

    IPC分类号: G06F21/00 H04L9/00 H04L29/06

    CPC分类号: H04L63/101 G06F21/6218

    摘要: Methods, systems, and media are disclosed for determining access rights to a resource managed by an application. One embodiment includes receiving a request by the application, wherein the request comprises an action a user seeks to perform on the resource. Further, the embodiment includes locating, based on the request, the resource in a structure having groupings of resources, wherein the groupings include a grouping having the resource. Typically the groupings comprise files having mappings of resources to assigned groups, and each group has an associated authorization table mapping roles or policies to users. Further still, the embodiment includes reading an authorization table associated with the grouping having the resource, and determining whether to grant the access rights for performing the action on the resource.

    摘要翻译: 公开了用于确定对由应用程序管理的资源的访问权限的方法,系统和媒体。 一个实施例包括接收应用的请求,其中所述请求包括用户寻求对资源执行的动作。 此外,实施例包括基于请求定位具有资源分组的结构中的资源,其中分组包括具有资源的分组。 通常,分组包括具有分配组的资源映射的文件,并且每个组具有将角色或策略映射到用户的相关联的授权表。 此外,实施例包括读取与具有资源的分组相关联的授权表,以及确定是否授予对资源执行动作的访问权限。

    Authentication and authorization methods for cloud computing security
    27.
    发明授权
    Authentication and authorization methods for cloud computing security 有权
    云计算安全的认证和授权方法

    公开(公告)号:US08769622B2

    公开(公告)日:2014-07-01

    申请号:US13173563

    申请日:2011-06-30

    IPC分类号: H04L9/08

    摘要: An authentication and authorization plug-in model for a cloud computing environment enables cloud customers to retain control over their enterprise information when their applications are deployed in the cloud. The cloud service provider provides a pluggable interface for customer security modules. When a customer deploys an application, the cloud environment administrator allocates a resource group (e.g., processors, storage, and memory) for the customer's application and data. The customer registers its own authentication and authorization security module with the cloud security service, and that security module is then used to control what persons or entities can access information associated with the deployed application. The cloud environment administrator, however, typically is not registered (as a permitted user) within the customer's security module; thus, the cloud environment administrator is not able to access (or release to others, or to the cloud's general resource pool) the resources assigned to the cloud customer (even though the administrator itself assigned those resources) or the associated business information. To further balance the rights of the various parties, a third party notary service protects the privacy and the access right of the customer when its application and information are deployed in the cloud.

    摘要翻译: 云计算环境的认证和授权插件模型使云客户在将应用程序部署在云中时能够保留对其企业信息的控制。 云服务提供商为客户安全模块提供可插拔的界面。 当客户部署应用程序时,云环境管理员为客户的应用程序和数据分配资源组(例如,处理器,存储和内存)。 客户将其自己的认证和授权安全模块注册到云安全服务,然后该安全模块用于控制哪些人员或实体可以访问与部署的应用程序相关的信息。 然而,云环境管理员通常没有在客户的安全模块中注册(作为允许的用户); 因此,云环境管理员无法访问(或向其他人或云的一般资源池)访问分配给云客户的资源(即使管理员自己分配了这些资源)或相关联的业务信息。 为了进一步平衡各方的权利,第三方公证服务在将应用程序和信息部署在云中时保护客户的隐私和访问权限。

    Dynamically configuring extensible role based manageable resources
    28.
    发明授权
    Dynamically configuring extensible role based manageable resources 失效
    动态配置基于可扩展角色的可管理资源

    公开(公告)号:US07874008B2

    公开(公告)日:2011-01-18

    申请号:US11468067

    申请日:2006-08-29

    IPC分类号: G06F7/04 G06F17/30 H04N7/16

    CPC分类号: G06F12/1458

    摘要: Methods and systems are provided for dynamically altering the capabilities of a software application in response to a request from a user to perform an action in the application. Based on the user's security role, the software application is reconfigured by either granting access to the user to an existing component of the application, or if no suitable component is available, adding an external vendor component to the software application which is suitable for performing the requested action.

    摘要翻译: 提供的方法和系统用于响应于来自用户的请求来执行应用中的动作来动态地改变软件应用的能力。 基于用户的安全角色,通过向用户授予对应用的现有组件的访问,或者如果没有适当的组件可用,则将软件应用程序重新配置,向外部供应商组件添加适合于执行 要求采取行动。

    Automatic Wireless Network Password Update
    29.
    发明申请
    Automatic Wireless Network Password Update 失效
    自动无线网络密码更新

    公开(公告)号:US20080159536A1

    公开(公告)日:2008-07-03

    申请号:US12049294

    申请日:2008-03-15

    IPC分类号: H04L9/32 H04K1/00

    摘要: An approach is provided that allows an administrator to set a new password at a wireless access point, such as a traditional WAP or a wireless router. The wireless access point creates a message that includes the new password. The message is encrypted using the old password that was previously set for the wireless network. The encrypted message is wirelessly transmitted from the wireless access point to the active client devices (those clients currently accessing the wireless network). The clients decrypt the message using the old password that was previously provided to the clients. The clients retrieve the new password from the message. The clients construct a new message that is encrypted using the new password. The new message is wirelessly transmitted from the clients to the wireless access device and serves as an acknowledgement.

    摘要翻译: 提供了一种允许管理员在无线接入点(例如传统WAP或无线路由器)设置新密码的方法。 无线接入点创建一个包含新密码的消息。 该消息是使用之前为无线网络设置的旧密码加密的。 加密的消息从无线接入点无线地发送到活动客户端设备(当前正在接入无线网络的那些客户端)。 客户端使用之前提供给客户端的旧密码解密邮件。 客户端从邮件中检索新密码。 客户端构造使用新密码加密的新消息。 新消息从客户端无线传输到无线接入设备,并作为确认。

    Method and system for dynamic client authentication in support of JAAS programming model
    30.
    发明授权
    Method and system for dynamic client authentication in support of JAAS programming model 失效
    支持JAAS编程模型的动态客户端认证的方法和系统

    公开(公告)号:US07363487B2

    公开(公告)日:2008-04-22

    申请号:US10611022

    申请日:2003-07-01

    IPC分类号: H04L9/00

    摘要: Authentication operations are performed within a CORBA-compliant environment with client applications using the JAAS programming model. A client application obtains an interoperable object reference (IOR) for a target object on a remote server that is protected within a security domain. After the client application invokes the target object, an object request is generated, and a request-level interceptor obtains the IOR for the target object and extracts an identifier for the security domain from the IOR. If a credential for the security domain is not in the current execution context of the client application, i.e., the current JAAS subject in the JAAS programming model, then the request-level interceptor performs an authentication operation with the security domain on behalf of the client application, receives an authentication credential, and places the authentication credential into the execution context of the client application. The object request is further processed in association with the obtained credential.

    摘要翻译: 使用JAAS编程模型的客户端应用程序在符合CORBA的环境中执行身份验证操作。 客户端应用程序获取在安全域内受保护的远程服务器上的目标对象的可互操作对象引用(IOR)。 客户端应用程序调用目标对象后,生成对象请求,请求级拦截器获取目标对象的IOR,并从IOR中提取安全域的标识符。 如果安全域的凭证不在客户端应用程序的当前执行上下文中,即JAAS编程模型中的当前JAAS主题,则请求级拦截器代表客户机与安全域执行身份验证操作 应用程序,接收认证凭证,并将认证凭证放入客户端应用程序的执行上下文中。 与所获得的证书相关联地进一步处理对象请求。