Systems and methods for providing single sign on access to enterprise SAAS and cloud hosted applications
    52.
    发明授权
    Systems and methods for providing single sign on access to enterprise SAAS and cloud hosted applications 有权
    提供单一登录访问企业SAAS和云托管应用程序的系统和方法

    公开(公告)号:US09282097B2

    公开(公告)日:2016-03-08

    申请号:US13102902

    申请日:2011-05-06

    摘要: The solution of the present application addresses the problem of authentication across disparately hosted systems by providing a single authentication domain across SaaS and cloud hosted applications as well as traditional enterprise hosted applications. An application delivery controller intermediary to a plurality of clients and the disparately hosted applications providing single sign on management, integration and control. A user may log in via an interface provided, controlled or managed by the ADC, which in turns, authenticates the user to the application in accordance with policy and the host of the application. As such, the user may login once to gain access to a plurality of disparately hosted applications. From the user's perspective, the user seamlessly and transparently gains access to different hosted systems with different passwords and authentication via the remote access provided by the system of the present solution.

    摘要翻译: 本应用程序的解决方案通过在SaaS和云托管应用程序以及传统的企业托管应用程序之间提供单个身份验证域来解决跨不同托管系统的身份验证问题。 多个客户端的应用交付控制器中介,以及提供单一登录管理,集成和控制的不同托管的应用。 用户可以通过由ADC提供,控制或管理的接口登录,该接口根据策略和应用的主机向用户认证用户。 因此,用户可以登录一次以访问多个不同的托管的应用。 从用户的角度来看,用户通过本解决方案的系统提供的远程访问,无缝和透明地访问具有不同密码和身份验证的不同托管系统。

    System for performing data cut-through
    53.
    发明授权
    System for performing data cut-through 有权
    执行数据切换的系统

    公开(公告)号:US08989037B2

    公开(公告)日:2015-03-24

    申请号:US13610165

    申请日:2012-09-11

    摘要: A system transfers data. The system includes an ingress node transferring data at a determined bandwidth. The ingress node includes a buffer and operates based on a monitored node parameter. The system includes a controller in communication with the ingress node. The controller is configured to allocate, based on the monitored node parameter, an amount of the determined bandwidth for directly transferring data to bypass the buffer of the ingress node.

    摘要翻译: 系统传输数据。 该系统包括以确定的带宽传送数据的入口节点。 入口节点包括缓冲器并且基于被监视的节点参数进行操作。 该系统包括与入口节点通信的控制器。 控制器被配置为基于所监视的节点参数来分配用于直接传送数据以绕过入口节点的缓冲器的确定带宽的量。

    Scaling output-buffered switches
    54.
    发明授权
    Scaling output-buffered switches 有权
    缩放输出缓冲开关

    公开(公告)号:US08885472B2

    公开(公告)日:2014-11-11

    申请号:US13523931

    申请日:2012-06-15

    摘要: The systems and methods described herein allow for the scaling of output-buffered switches by decoupling the data path from the control path. Some embodiment of the invention include a switch with a memory management unit (MMU), in which the MMU enqueues data packets to an egress queue at a rate that is less than the maximum ingress rate of the switch. Other embodiments include switches that employ pre-enqueue work queues, with an arbiter that selects a data packet for forwarding from one of the pre-enqueue work queues to an egress queue.

    摘要翻译: 本文描述的系统和方法允许通过将数据路径与控制路径相分离来缩放输出缓冲交换机。 本发明的一些实施例包括具有存储器管理单元(MMU)的交换机,其中MMU以低于交换机的最大进入速率的速率将数据分组排入到出口队列。 其他实施例包括采用预排队工作队列的交换机,仲裁器选择用于从一个入队前工作队列转发到出站队列的数据分组。

    Systems and methods for using end point auditing in connection with traffic management
    55.
    发明授权
    Systems and methods for using end point auditing in connection with traffic management 有权
    使用端点审计与流量管理相关的系统和方法

    公开(公告)号:US08844040B2

    公开(公告)日:2014-09-23

    申请号:US12409322

    申请日:2009-03-23

    IPC分类号: H04L29/06

    摘要: The present invention provides a system and method of managing traffic traversing an intermediary based on a result of end point auditing. An authentication virtual server of an intermediary may determine a result of an end point analysis scan of a client. Responsive to the determination, the traffic management virtual server can obtain the result from the authentication virtual server. Further, the traffic management virtual server may apply the result in one or more traffic management policies to manage network traffic of a connection of the client traversing the intermediary. In some embodiments, the authentication virtual server may receive one or more expressions evaluated by the client. The one or more expressions identifies one or more attributes of the client. The traffic management virtual server can also determine a type of compression or encryption for the connection based on applying the one or more traffic management policies using the result.

    摘要翻译: 本发明提供了一种基于终端审计结果来管理遍历中间人的流量的系统和方法。 中介的认证虚拟服务器可以确定客户端的终点分析扫描的结果。 响应确定,流量管理虚拟服务器可以从认证虚拟服务器获取结果。 此外,流量管理虚拟服务器可以将结果应用于一个或多个流量管理策略中,以管理遍历中间件的客户端的连接的网络流量。 在一些实施例中,认证虚拟服务器可以接收由客户端评估的一个或多个表达式。 一个或多个表达式标识客户端的一个或多个属性。 流量管理虚拟服务器还可以基于使用结果应用一个或多个流量管理策略来确定连接的压缩或加密的类型。

    Method and system of frame forwarding with link aggregation in distributed ethernet bridges
    56.
    发明授权
    Method and system of frame forwarding with link aggregation in distributed ethernet bridges 有权
    分布式以太网桥中链路聚合的帧转发方法与系统

    公开(公告)号:US08798064B2

    公开(公告)日:2014-08-05

    申请号:US13337774

    申请日:2011-12-27

    IPC分类号: H04L12/28

    摘要: Embodiments relate to forwarding of packets in link aggregation environments. A method for forwarding a packet through an extended switch including a first port extender and a second port extender directly or indirectly communicatively coupled to respectively a first interface and a second interface of a controlling bridge includes, associating a first port extender interface of the first port extender with a global namespace or an interface-specific namespace. The method further includes receiving a packet through the first port extender interface, marking the received packet with an indication of the namespace configuration of the first port extender interface, processing the marked packet in the controlling bridge based at least in part upon the indication, and transmitting the processed packet out of the controlling bridge.

    摘要翻译: 实施例涉及在链路聚合环境中转发分组。 一种用于通过包括直接或间接地通信地耦合到控制桥的第一接口和第二接口的第一端口扩展器和第二端口扩展器的扩展交换机来转发分组的方法包括:将第一端口的第一端口扩展器接口 扩展器具有全局命名空间或特定于接口的命名空间。 该方法还包括通过第一端口扩展器接口接收分组,用接收到的分组标记第一端口扩展器接口的命名空间配置的指示,至少部分地基于该指示来处理控制桥中的标记分组;以及 将处理的分组从控制桥传送出去。

    Fatigue monitoring
    58.
    发明授权
    Fatigue monitoring 有权
    疲劳监测

    公开(公告)号:US08725429B2

    公开(公告)日:2014-05-13

    申请号:US13221665

    申请日:2011-08-30

    IPC分类号: G06F19/00 E21B47/00

    CPC分类号: E21B47/0001 E21B17/01

    摘要: A method and system are provided to reconstruct vibration responses such as stress and fatigue damage at desired locations in a structure from a limited number of vibration measurements at a few locations in the structure. Vibration response measurements can be of any type, e.g. acceleration, angular velocity, strain, etc. The desired locations can be anywhere within the domain of the structure and may include the entire structural domain. Measured vibration responses may be of uniform type or combinations of different types.

    摘要翻译: 提供了一种方法和系统,用于在结构中的几个位置处的有限数量的振动测量结构中重建振动响应,例如在结构中的期望位置处的应力和疲劳损伤。 振动响应测量可以是任何类型,例如, 加速度,角速度,应变等。期望的位置可以是结构域内的任何地方,并且可以包括整个结构域。 测量的振动响应可以是均匀的类型或不同类型的组合。

    SCALABLE EGRESS PARTITIONED SHARED MEMORY ARCHITECTURE
    59.
    发明申请
    SCALABLE EGRESS PARTITIONED SHARED MEMORY ARCHITECTURE 有权
    可分级回收分配的共享存储器架构

    公开(公告)号:US20140086262A1

    公开(公告)日:2014-03-27

    申请号:US13628751

    申请日:2012-09-27

    IPC分类号: H04L12/54

    CPC分类号: H04L47/621 H04L49/9047

    摘要: Disclosed are various embodiments that provide an architecture of memory buffers for a network component configured to process packets. A network component may receive a packet, the packet being associated with a control structure and packet data, an input port set and an output port set. The network component determines one of a plurality of control structure memory partitions for writing the control structure, the one of the plurality of control structure memory partitions being determined based at least upon the input port set and the output port set; and determines one of a plurality of packet data memory partitions for writing the packet data, the one of the plurality of packet data memory partitions being determined independently of the input port set.

    摘要翻译: 公开了提供用于处理分组的网络组件的存储器缓冲器的架构的各种实施例。 网络组件可以接收分组,分组与控制结构和分组数据相关联,输入端口集合和输出端口集合。 网络组件确定用于写入控制结构的多个控制结构存储器分区之一,至少基于输入端口组和输出端口组确定多个控制结构存储器分区中的一个; 并且确定用于写入分组数据的多个分组数据存储器分区中的一个,所述多个分组数据存储器分区之一独立于所述输入端口集合来确定。

    Systems and methods for configuration driven rewrite of SSL VPN clientless sessions
    60.
    发明授权
    Systems and methods for configuration driven rewrite of SSL VPN clientless sessions 有权
    用于配置驱动重写SSL VPN无客户端会话的系统和方法

    公开(公告)号:US08667146B2

    公开(公告)日:2014-03-04

    申请号:US12359998

    申请日:2009-01-26

    IPC分类号: G06F15/16

    摘要: The present disclosure provides solutions for an enterprise providing services to a variety of clients to enable the client to use the resources provided by the enterprise by modifying URLs received and the URLs from the responses from the servers to the client's requests before forwarding the requests and the responses to the intended destinations. An intermediary may identify an access profile for a clients' request to access a server via a clientless SSL VPN session. The intermediary may detect one or more URLs in content served by the server in response to the request using one or more regular expressions of the access profile. The intermediary may rewrite or modify, responsive to detecting, the one or more detected URLs in accordance with a URL transformation specified by one or more rewrite policies of the access profile. The response with modified URLs may be forwarded to the client.

    摘要翻译: 本公开提供了向各种客户端提供服务的企业的解决方案,以使得客户端能够在转发请求之前,通过修改从服务器的响应到客户端请求的接收到的URL和URL来使用企业提供的资源,并且 对预期目的地的回应。 中介可以识别客户端通过无客户端SSL VPN会话访问服务器的请求的访问配置文件。 响应于使用访问简档的一个或多个正则表达式的请求,中介可以检测服务器所服务的内容中的一个或多个URL。 根据由访问简档的一个或多个重写策略指定的URL变换,中介可以响应于检测到一个或多个检测到的URL来重写或修改。 具有修改的URL的响应可以转发给客户端。