Method and system for monitoring and controlling network access
    44.
    发明授权
    Method and system for monitoring and controlling network access 有权
    用于监控和控制网络访问的方法和系统

    公开(公告)号:US06219786B1

    公开(公告)日:2001-04-17

    申请号:US09150264

    申请日:1998-09-09

    IPC分类号: G06F1300

    摘要: A method and system for monitoring and controlling network access includes non-intrusively monitoring network traffic and assembling data packets that are specific to individual node-to-node transmissions in order to manage network access both inside and outside of a network. A rules base is generated to apply at either or both of the connection time and the time subsequent to connection. With regard to a particular node-to-node transmission, the data packets are assembled to identify the source and destination nodes, as well as contextual information (i.e., ISO Layer 7 information). The access rules are applied in a sequential order to determine whether the transmission is a restricted transmission. The rules are maintained in a single rules base for the entire network and are distributed to each monitoring node. Any of the protocols in the suite of TCP/IP protocols can be managed. The result of an analysis against the rules base causes a connection attempt to be completed or denied, a previously established connection to be broken, logging to occur, or a combination of these and other actions. Data collected during connection attempts or during a connection's lifetime may be passed to a third-party hardware or software component in order for independent validation to take place. Traffic monitoring and access management can be executed at a node other than a choke point of the network.

    摘要翻译: 用于监测和控制网络访问的方法和系统包括非侵入性监视网络流量和组合专用于各个节点到节点传输的数据分组,以便管理网络内部和外部的网络访问。 生成规则库以在连接时间和连接之后的时间中的任一个或两者应用。 对于特定的节点到节点传输,数据分组被组合以识别源节点和目的节点以及上下文信息(即,ISO层7信息)。 访问规则以顺序的顺序应用,以确定传输是否是有限的传输。 规则在整个网络的单一规则库中进行维护,并分发给每个监控节点。 可以管理TCP / IP协议套件中的任何协议。 对规则库分析的结果导致连接尝试被完成或被拒绝,先前建立的连接被破坏,记录发生,或这些和其他动作的组合。 在连接尝试期间或连接期间收集的数据可能会传递到第三方硬件或软件组件,以进行独立验证。 流量监控和访问管理可以在网络阻塞点以外的节点执行。

    System and method for delivering a graphical user interface of remote applications over a thin bandwidth connection
    49.
    发明授权
    System and method for delivering a graphical user interface of remote applications over a thin bandwidth connection 有权
    通过薄带宽连接传送远程应用程序的图形用户界面的系统和方法

    公开(公告)号:US06687745B1

    公开(公告)日:2004-02-03

    申请号:US09599382

    申请日:2000-06-22

    IPC分类号: G06F1516

    摘要: A method and system are disclosed for delivering interactive links for presenting applications and second information at a client computer from remote sources in a network-configured computer processing system. In one embodiment, the method includes retrieving over a first communication connection, in response to a request of a client computer, informational content having computer program code embedded therein, and executing the embedded computer program code for establishing a second communication connection to an application server. The method further includes retrieving over the second communication connection first information including presentational information for presenting the application and the second information. The method also includes presenting the application and the second information based upon the presentational information, and storing on the client computer an interactive link for selectively re-establishing the second communication connection to the application server for retrieving the first information and presenting the application and the second information on an as-needed basis. Preferably, the storing of the interactive link includes downloading a graphical representation of the interactive link and storing a file containing information representing an operating environment of the client computer and a network address of the application server.

    摘要翻译: 公开了一种方法和系统,用于在网络配置的计算机处理系统中从远程源提供用于在客户端计算机上呈现应用和第二信息的交互式链接。 在一个实施例中,该方法包括响应于客户端计算机的请求检索第一通信连接,其中嵌入有计算机程序代码的信息内容,以及执行用于建立到应用服务器的第二通信连接的嵌入式计算机程序代码 。 该方法还包括通过第二通信连接检索第一信息,包括用于呈现应用程序的显示信息和第二信息。 该方法还包括基于该展示信息呈现应用程序和第二信息,并在客户端计算机上存储交互式链接,用于选择性地重新建立到应用服务器的第二通信连接,用于检索第一信息并呈现应用程序和 根据需要提供第二个信息。 优选地,交互式链接的存储包括下载交互式链接的图形表示,并且存储包含表示客户端计算机的操作环境的信息的文件和应用服务器的网络地址。