Discovery and Capability Exchange Management in a Virtualized Computing Platform
    22.
    发明申请
    Discovery and Capability Exchange Management in a Virtualized Computing Platform 有权
    虚拟化计算平台中的发现和能力交换管理

    公开(公告)号:US20120188870A1

    公开(公告)日:2012-07-26

    申请号:US13438450

    申请日:2012-04-03

    IPC分类号: H04L12/22

    摘要: In various embodiments a traffic class manager is a resource within a virtualized computer systems trusted entity (e.g. a hypervisor, trusted partition, etc.) that maps requirements from a platform management and associated network capabilities onto an adapter (e.g. SR-IOV adapter, etc.) in order to appropriately allocate adapter and network resources to virtualized computer partitions. In various embodiments the traffic class manager defines network traffic classes that meet the objectives of a platform administrator based on the capabilities of the adapter and the network attached to the adapter ports. Once the traffic classes are defined, in various embodiments, the traffic class manager enforces the assignment of a traffic class to a virtual interface queue pair within a partition.

    摘要翻译: 在各种实施例中,业务类别管理器是将需求从平台管理和相关网络能力映射到适配器(例如,SR-IOV适配器等)的虚拟化计算机系统可信实体(例如,管理程序,可信分区等)内的资源 ),以便将适配器和网络资源适当地分配给虚拟化的计算机分区。 在各种实施例中,业务类管理器基于适配器和连接到适配器端口的网络的能力来定义满足平台管理员的目标的网络业务类别。 一旦定义了流量类,在各种实施例中,流量类别管理器将流量类别的分配强制执行到分区内的虚拟接口队列对。

    Wireless local area network (WLAN) and channel selection method of WLAN station
    23.
    发明授权
    Wireless local area network (WLAN) and channel selection method of WLAN station 有权
    无线局域网(WLAN)和WLAN站的通道选择方法

    公开(公告)号:US07848286B2

    公开(公告)日:2010-12-07

    申请号:US11544642

    申请日:2006-10-10

    IPC分类号: H04L12/22 H04L12/28 H04L12/56

    CPC分类号: H04W72/10 H04W28/08 H04W84/12

    摘要: In a wireless local area network (WLAN) and a channel selection method of a WLAN station, a station newly entering the WLAN captures packets from WLAN service channels, which packets are provided by at least one access point (AP) for a predetermined measuring time. The WLAN calculates, from the captured packets, busy factors indicative of the load on each WLAN service channel so as to confer a priority between WLAN service channels. The WLAN selects channels according to the conferred priority.

    摘要翻译: 在无线局域网(WLAN)和WLAN站的信道选择方法中,新进入WLAN的站从WLAN业务信道捕获分组,由至少一个接入点(AP)提供预定测量时间的分组 。 WLAN从捕获的分组中计算指示每个WLAN服务信道上的负载的繁忙因子,以便在WLAN服务信道之间赋予优先级。 WLAN根据优先级选择信道。

    Enabling clean file cache persistence using dual-boot detection
    24.
    发明授权
    Enabling clean file cache persistence using dual-boot detection 有权
    使用双引导检测启用干净的文件缓存持久性

    公开(公告)号:US07739738B1

    公开(公告)日:2010-06-15

    申请号:US11376770

    申请日:2006-03-15

    IPC分类号: G06F11/30 G06F12/14 H04L12/22

    摘要: A robust and reliable mechanism is disclosed for detecting whether a system has (or may have) been booted into a compromised or otherwise unprotected environment, so that a persisted clean file cache can be used across boots when appropriate. As such security scanning of files. A clean file cache can be maintained and used by a security application to avoid unnecessarily re-scanning a file that has not been modified since last being scanned and determined clean. Unnecessary scans are therefore avoided.

    摘要翻译: 公开了一种用于检测系统是否已经(或可能已经)被引导到受损或以其他不受保护的环境中的鲁棒且可靠的机制,使得在适当的情况下可以跨引导使用持久的干净文件高速缓存。 作为文件的安全扫描。 安全应用程序可以维护和使用干净的文件缓存,以避免不必要地重新扫描自上次被扫描并确定干净以来未被修改的文件。 因此避免了不必要的扫描。

    Method And A Device For Improved Service Authorization
    25.
    发明申请
    Method And A Device For Improved Service Authorization 审中-公开
    方法和改进服务授权的设备

    公开(公告)号:US20100146596A1

    公开(公告)日:2010-06-10

    申请号:US12597833

    申请日:2007-04-27

    IPC分类号: H04L29/06 H04L12/22 G06F21/22

    摘要: A method (300) for a wireless telecommunication system (200) with user equipment, UE (110), and a first node (120) to which a UE may send a request for access to a service, and a control function (160) with information about the access rights to specific services for UEs in the system. The system (200) comprises an interface (150) between said first node (120) and the control function (160), and the method (300) comprises the step (3) of letting said first node receive information about a UE's access rights from said control function, and letting said first node handle access requests to a service from a UE using the access rights information from said control function. The method additionally comprises the step (3) of letting the access rights information from said control function to said first node comprise a code (X, Y, Z) regarding services to which the UE is denied access.

    摘要翻译: 一种用于具有用户设备,UE(110)和UE可以向其发送访问服务的请求的第一节点(120)的无线电信系统(200)的方法(300),以及控制功能(160) 具有关于系统中的UE的特定服务的访问权限的信息。 系统(200)包括在所述第一节点(120)和控制功能(160)之间的接口(150),并且所述方法(300)包括使所述第一节点接收关于UE的访问权限的信息的步骤(3) 并且使得所述第一节点使用来自所述控制功能的访问权限信息来处理对来自UE的服务的请求。 该方法还包括将来自所述控制功能的访问权限信息发送到所述第一节点的步骤(3)包括关于被拒绝接入的服务的代码(X,Y,Z)。

    NETWORK SECURITY PROCESSING METHOD AND SYSTEM FOR SELECTING ONE OF SOFTWARE AND HARDWARE CRYPTOGRAPHIC MODULES BY MEANS OF MULTIMEDIA SESSION INFORMATION
    26.
    发明申请
    NETWORK SECURITY PROCESSING METHOD AND SYSTEM FOR SELECTING ONE OF SOFTWARE AND HARDWARE CRYPTOGRAPHIC MODULES BY MEANS OF MULTIMEDIA SESSION INFORMATION 有权
    网络安全处理方法和系统,用于通过多媒体会议信息选择软件和硬件结构模块之一

    公开(公告)号:US20090327697A1

    公开(公告)日:2009-12-31

    申请号:US12375772

    申请日:2007-10-15

    申请人: Hsueh-Teng Liu

    发明人: Hsueh-Teng Liu

    IPC分类号: H04L29/06 H04L12/22

    摘要: In a network security processing method and system for selecting one of software and hardware cryptographic modules by means of multimedia session information, the method includes the following steps: subjecting a plurality of packets of a multimedia session to signaling processing so as to obtain multimedia session information contained in the multimedia session, subjecting the multimedia session to a key authentication negotiation and according to the multimedia session information, making a determination to activate one of the software cryptographic module and the hardware cryptographic module. If the hardware cryptographic module is activated, the hardware cryptographic module performs network security processing of the packets of the multimedia session. If the software cryptographic module is activated, the software cryptographic module performs the network security processing of the packets of the multimedia session.

    摘要翻译: 在通过多媒体会话信息选择软件和硬件加密模块之一的网络安全处理方法和系统中,该方法包括以下步骤:对多媒体会话的多个分组进行信令处理,以获得多媒体会话信息 包含在多媒体会话中,对多媒体会话进行密钥认证协商,并根据多媒体会话信息,确定激活软件加密模块和硬件加密模块之一。 如果硬件加密模块被激活,则硬件加密模块执行多媒体会话的分组的网络安全处理。 如果软件加密模块被激活,则软件加密模块执行多媒体会话的分组的网络安全处理。

    Storage partitioning
    27.
    发明授权
    Storage partitioning 有权
    存储分区

    公开(公告)号:US07617400B2

    公开(公告)日:2009-11-10

    申请号:US11071663

    申请日:2005-03-02

    IPC分类号: G06F21/00 H04L12/22

    摘要: In one embodiment, a method is provided that may include one or more operations. One of these operations may include partitioning, in response at least in part to a request from a remote authority, at least a portion of storage into partitions. The partitions may be in accordance, at least in part, with partitioning information from the remote authority. The partitioning information may associate sessions with the partitions. Many modifications, variations, and alternatives are possible without departing from this embodiment.

    摘要翻译: 在一个实施例中,提供了可以包括一个或多个操作的方法。 这些操作之一可以包括至少部分地响应来自远程机构的请求的至少一部分存储到分区中的划分。 该分区可以至少部分地与来自远程机构的分区信息相一致。 分区信息可以将会话与分区相关联。 在不脱离本实施例的情况下,可以进行许多修改,变型和替换。

    Preventing unauthorized loading of late binding code into a process
    28.
    发明授权
    Preventing unauthorized loading of late binding code into a process 有权
    防止未经授权的将后期绑定代码加载到进程中

    公开(公告)号:US07565686B1

    公开(公告)日:2009-07-21

    申请号:US10983374

    申请日:2004-11-08

    IPC分类号: G06F11/30 G06F12/14 H04L12/22

    摘要: A late binding code manager prevents the unauthorized loading of late binding code into a process. The late binding code manager detects an attempt to load late binding code into a process's address space. Subsequently, the late binding code manager determines whether a detected attempt to load late binding code into a process's address space is permitted. Responsive to the results of a determination as to whether an attempt to load late binding code into a process's address space is permitted, the late binding code manager executes at least one additional step affecting the loading of the late binding code into the process's address space. Such a step can comprise permitting, blocking or modifying the attempt to load the late binding code.

    摘要翻译: 后期绑定代码管理器防止未经授权的后期绑定代码加载到进程中。 后期绑定代码管理器检测到将晚期绑定代码加载到进程的地址空间中的尝试。 随后,后期绑定代码管理器确定是否允许检测到将后期绑定代码加载到进程的地址空间中的尝试。 响应于确定是否允许将晚期绑定代码加载到进程的地址空间的结果,后期绑定代码管理器执行影响后期绑定代码加载到进程的地址空间中的至少一个附加步骤。 这样的步骤可以包括允许,阻止或修改加载后期绑定码的尝试。

    Electrical Transmission System in Secret Environment Between Virtual Disks and Electrical Transmission Method Thereof
    30.
    发明申请
    Electrical Transmission System in Secret Environment Between Virtual Disks and Electrical Transmission Method Thereof 有权
    虚拟磁盘之间的秘密环境中的电气传输系统及其传输方法

    公开(公告)号:US20080229041A1

    公开(公告)日:2008-09-18

    申请号:US11720306

    申请日:2005-11-24

    IPC分类号: H04L12/22

    摘要: The present invention relates to a secure transmission system and secure transmission method that securely transmit data stored in a computer to different computers via a Local Area Network or the Internet. The secure transmission system includes a virtual disk, configured to allow only an authorized application program module to gain an access and read, write and edit information data; and a secure communication application module including a user information generation means for generating intrinsic user information at the time of setting up the virtual disk, a user information storage means for storing the generated user information, an outgoing file management means for searching the virtual disk for information data to be sent and compressing the found information data, generating the header information of the information data in which user information about a sender and/or a recipient is contained, and adding the generated header information to the user information, an incoming file management means for reading the header information of received information data, decompressing compressed information data, and storing the decompressed information data on the virtual disk, and a file security means for encrypting and decrypting information data to be sent or received information data.

    摘要翻译: 本发明涉及一种安全传输系统和安全传输方法,其通过局域网或因特网将存储在计算机中的数据安全地发送到不同的计算机。 安全传输系统包括虚拟磁盘,用于仅允许授权的应用程序模块获取和读取,写入和编辑信息数据; 以及安全通信应用模块,包括用于在建立虚拟磁盘时产生固有用户信息的用户信息产生装置,用于存储所生成的用户信息的用户信息存储装置,用于在虚拟磁盘中搜索虚拟磁盘的出站文件管理装置 要发送的信息数据并压缩所发现的信息数据,生成其中包含关于发送者和/或接收者的用户信息的信息数据的标题信息,并将所生成的报头信息添加到用户信息中,传入文件管理 用于读取接收到的信息数据的标题信息,解压缩信息数据以及将解压缩的信息数据存储在虚拟盘上的装置,以及用于加密和解密要发送或接收的信息数据的信息数据的文件安全装置。