AUTOMATING INTERNET OF THINGS SECURITY PROVISIONING
    41.
    发明申请
    AUTOMATING INTERNET OF THINGS SECURITY PROVISIONING 审中-公开
    自动化网络安全安全

    公开(公告)号:US20160248746A1

    公开(公告)日:2016-08-25

    申请号:US15052751

    申请日:2016-02-24

    申请人: Verisign, Inc.

    IPC分类号: H04L29/06 G06F21/45 H04L9/32

    摘要: In one embodiment, a security provisioning service automatically establishes trust in a device. Upon receiving a provisioning request, a security provisioning service identifies a verification item that is associated with the provisioning request. The security provisioning service performs one or more verification operations based on the provisioning request to determine whether the provisioning request is authorized. If the provisioning request is authorized, then the provisioning service establishes a verifiable identification for the device that is assured by the secure provisioning service and then executes the provisioning request. By automatically performing the verification operations to establish trust in the device, the provisioning service eliminates manual identification assurance operations that are performed as part of a conventional security provisioning process. Reducing the time and effort required to perform security provisioning increases the number of devices likely to implement security processes that increase the overall security of interacting using the Internet.

    摘要翻译: 在一个实施例中,安全提供服务自动建立设备中的信任。 在接收到供应请求时,安全性供应服务识别与供应请求相关联的验证项​​目。 安全提供服务基于供应请求执行一个或多个验证操作,以确定供应请求是否被授权。 如果供应请求被授权,则供应服务为安全供应服务确保的设备建立可验证的标识,然后执行供应请求。 通过自动执行验证操作以在设备中建立信任,供应服务消除了作为常规安全提供过程的一部分执行的手动识别保证操作。 减少执行安全性配置所需的时间和精力增加了可能实施安全过程的设备数量,从而增加了使用Internet进行互动的整体安全性。

    Content delivery methods and systems
    42.
    发明授权
    Content delivery methods and systems 有权
    内容交付方式和系统

    公开(公告)号:US09391847B2

    公开(公告)日:2016-07-12

    申请号:US14454615

    申请日:2014-08-07

    摘要: Aspects of the present disclosure involve provisioning customers of an aggregator, such as a reseller, of a content delivery network (CDN). In one aspect, content requests to the CDN are processed in accordance with the virtual IP (VIP) address at which the request was received, according to a property template bound to the VIP where the template is selected by the customer and only involves discrete parameters for the reseller. In another aspect, cache fills of the network are processed without direct knowledge of the customer origin through a combination of some request attribute, e.g., alias host of the customer, and an attribute of the reseller to make a DNS request to a name server outside the CDN. Another aspect involves receiving a property template selection, an origin and an alias from a customer of the reseller, and providing appropriate DNS entries to validate the customer and provide origin information to the CDN.

    摘要翻译: 本公开的方面涉及为内容传送网络(CDN)的聚合器(例如经销商)提供客户。 在一个方面,根据绑定到VIP的属性模板,根据客户选择模板的属性模板,根据接收到请求的虚拟IP(VIP)地址处理对CDN的内容请求,并且仅涉及离散参数 为经销商。 在另一方面,网络的高速缓存填充通过某些请求属性(例如,客户的别名主机)的组合以及经销商的属性来处理客户来源的直接知识,以向外部的名称服务器发出DNS请求 CDN。 另一方面涉及从经销商的客户接收属性模板选择,来源和别名,并提供适当的DNS条目以验证客户并向CDN提供原始信息。

    Internet infrastructure survey
    43.
    发明授权
    Internet infrastructure survey 有权
    互联网基础设施调查

    公开(公告)号:US09385988B2

    公开(公告)日:2016-07-05

    申请号:US13502106

    申请日:2010-11-02

    申请人: Martin Kagan

    发明人: Martin Kagan

    IPC分类号: H04L29/12 H04L29/08 G06F17/30

    摘要: A system for surveying Internet access quality includes a nameserver, registered to be authoritative for a domain name and configured to receive a DNS query to resolve a pseudo-hostname and to extract from the pseudo-hostname an access quality indicator, and a web portal configured to transmit a data survey code to a web browser, the data survey code being configured to access a resource, to determine the access quality indicator responsively to the resource access, to generate the pseudo-hostname including the access quality indicator and the domain name, and to initiate the DNS query.

    摘要翻译: 用于测量因特网访问质量的系统包括登记为对域名具有权威性并被配置为接收DNS查询以解析伪主机名并从伪主机名中提取访问质量指示符的名称服务器,以及配置的网络门户 将数据调查代码传送到网络浏览器,数据调查代码被配置为访问资源,以响应于资源访问来确定访问质量指示符,以生成包括访问质量指示符和域名的伪主机名, 并启动DNS查询。

    Apparatus and method for processing HTTP message
    44.
    发明授权
    Apparatus and method for processing HTTP message 有权
    用于处理HTTP消息的装置和方法

    公开(公告)号:US09288255B2

    公开(公告)日:2016-03-15

    申请号:US14063484

    申请日:2013-10-25

    IPC分类号: H04L29/08 G06F17/30 H04L29/12

    摘要: A method and an apparatus of processing HyperText Transfer Protocol (HTTP) message for facilitating download of user-intended information from a web server are provided. The method includes detecting a Uniform Resource Locator (URL) entry, transmitting, when at least one predictive URL corresponding to the URL entry exists in a redirect history database (DB), to the network first request messages including the respective URL entry and the at least one predictive URL, receiving first response messages from the network in response to the first request messages, determining whether a success message is valid among the first response messages, and determining, when the success message is valid, data carried in the success message as a resource to be presented to a user.

    摘要翻译: 提供了一种处理超文本传输​​协议(HTTP)消息以便于从web服务器下载用户想要的信息的方法和装置。 该方法包括检测统一资源定位符(URL)条目,当在重定向历史数据库(DB)中存在与URL条目相对应的至少一个预测URL时,向网络发送包括相应URL条目和at 至少一个预测URL,响应于第一请求消息从网络接收第一响应消息,确定成功消息在第一响应消息中是否有效,以及当成功消息何时有效时,成功消息中携带的数据为 要呈现给用户的资源。

    Method and Server of Remote Information Query
    46.
    发明申请
    Method and Server of Remote Information Query 审中-公开
    远程信息查询的方法和服务器

    公开(公告)号:US20160021114A1

    公开(公告)日:2016-01-21

    申请号:US14801224

    申请日:2015-07-16

    发明人: Kun Lu

    IPC分类号: H04L29/06 H04L29/12

    摘要: A method and a server of remote information query are disclosed. The method includes receiving a query request sent by a client side and acquiring content of a type field of the query request; acquiring a type of the query request based on the content of the type field; adding a type identifier corresponding to the type and a domain name of a preset authorized DNS (Domain Name System) to the query request to acquire a target query request; and sending the target query request to a local DNS to enable the local DNS to send the target query request to the preset authorized DNS according to the domain name of the preset authorized DNS in the target query request, and receiving a response message corresponding to the type of the query request from the preset authorized DNS. Thus, a simpler and highly efficient recognition of user security can be realized.

    摘要翻译: 公开了远程信息查询的方法和服务器。 该方法包括接收由客户端发送的查询请求并获取查询请求的类型字段的内容; 基于类型字段的内容获取查询请求的类型; 向所述查询请求添加对应于类型的类型标识符和预设的授权DNS(域名系统)的域名以获取目标查询请求; 并将目标查询请求发送到本地DNS,以使本地DNS根据目标查询请求中的预设授权DNS的域名将目标查询请求发送到预设授权DNS,并且接收对应于 来自预设授权DNS的查询请求的类型。 因此,可以实现对用户安全性的更简单和高效的识别。

    SYSTEM AND METHOD FOR DYNAMICALLY CONFIGURING A DNS SERVER IN A VIRTUAL NETWORK ENVIRONMENT
    48.
    发明申请
    SYSTEM AND METHOD FOR DYNAMICALLY CONFIGURING A DNS SERVER IN A VIRTUAL NETWORK ENVIRONMENT 有权
    在虚拟网络环境中动态配置DNS服务器的系统和方法

    公开(公告)号:US20150215276A1

    公开(公告)日:2015-07-30

    申请号:US14207853

    申请日:2014-03-13

    申请人: VMWARE, INC.

    IPC分类号: H04L29/12

    摘要: Techniques for dynamic configuration of a domain name system (DNS) server in a virtual network environment are described. In one example embodiment, DNS rules are configured using virtual machine (VM) inventory objects and associated DNS names. Further, the configured DNS rules are transformed by replacing the VM inventory objects in the configured DNS rules with associated Internet protocol (IP) addresses using an IP address management (IPAM) table or a network address translation (NAT) table and the DNS names in the configured DNS rules with modified DNS names using a zone table and a view table. Furthermore, the transformed DNS rules are sent to the DNS server for performing domain name resolutions associated with multiple VMs running on a plurality of host computing systems in a computing network.

    摘要翻译: 描述了在虚拟网络环境中动态配置域名系统(DNS)服务器的技术。 在一个示例实施例中,使用虚拟机(VM)清单对象和相关联的DNS名称来配置DNS规则。 此外,通过使用IP地址管理(IPAM)表或网络地址转换(NAT)表将DNS配置的DNS名称替换为配置的DNS规则中的VM Inventory对象,并使用相关的Internet协议(IP)地址进行转换, 配置的DNS规则与修改的DNS名称使用区域表和视图表。 此外,转换的DNS规则被发送到DNS服务器,用于执行与在计算网络中的多个主机计算系统上运行的多个VM相关联的域名解析。

    SURROGATE NAME DELIVERY NETWORK
    49.
    发明申请

    公开(公告)号:US20150215267A1

    公开(公告)日:2015-07-30

    申请号:US13882153

    申请日:2011-10-25

    申请人: Martin Kagan

    发明人: Martin Kagan

    IPC分类号: H04L29/12 G06F17/30

    摘要: A method for providing access to an Internet resource includes registering a surrogate nameserver to be an authoritative nameserver in a DNS network, receiving at the surrogate nameserver a DNS query, maintaining at the surrogate nameserver a cache that includes a resolution of the DNS query, and executing at the surrogate nameserver a policy code to make a determination of validity of one or more of the DNS query and the cached resolution.

    摘要翻译: 提供对因特网资源的访问的方法包括将代理名称服务器注册为DNS网络中的权威名称服务器,在代理名称服务器处接收DNS查询,在替代名称服务器处维护包括DNS查询的分辨率的缓存,以及 在代理域名服务器上执行策略代码以确定一个或多个DNS查询和缓存解决方案的有效性。

    METHOD FOR OBTAINING SERVING GATEWAY, MOBILITY MANAGEMENT NODE, DATA GATEWAY, AND SYSTEM
    50.
    发明申请
    METHOD FOR OBTAINING SERVING GATEWAY, MOBILITY MANAGEMENT NODE, DATA GATEWAY, AND SYSTEM 有权
    获取网关,移动管理节点,数据网关和系统的方法

    公开(公告)号:US20150085828A1

    公开(公告)日:2015-03-26

    申请号:US14562548

    申请日:2014-12-05

    发明人: Jing Chen

    IPC分类号: H04W36/00 H04W8/02

    摘要: The present invention provides a method for obtaining a serving gateway, a mobility management node, a data gateway, and a system. A method for obtaining a serving gateway according to an embodiment of the present invention includes: when a UE is switched from an old-side mobility management node to a new-side mobility management node, sending, by the new-side mobility management node, a domain name resolution request to a domain name system DNS server according to access information of the UE; receiving a hostname of a device returned, according to the domain name resolution request, by the DNS server; obtaining a hostname of a new-side available S-GW; and selecting the new-side available S-GW closest to the device on geographic topology as a new-side S-GW. User service data transmission time delay can be reduced through the method.

    摘要翻译: 本发明提供一种获取服务网关,移动性管理节点,数据网关和系统的方法。 根据本发明实施例的用于获取服务网关的方法包括:当UE从旧侧移动性管理节点切换到新侧移动性管理节点时,由新侧移动性管理节点发送, 根据UE的接入信息对域名系统DNS服务器进行域名解析请求; 根据域名解析请求,由DNS服务器接收返回的设备的主机名; 获取新一侧可用S-GW的主机名; 并选择最接近地理拓扑上的设备的新一侧可用S-GW作为新一侧的S-GW。 可以通过该方法减少用户服务数据传输的时延。