Method and Apparatus for Providing Centralized User Authorization to Allow Secure Sign-On to a Computer System
    84.
    发明申请
    Method and Apparatus for Providing Centralized User Authorization to Allow Secure Sign-On to a Computer System 有权
    提供集中用户授权以允许安全登录到计算机系统的方法和装置

    公开(公告)号:US20080148389A1

    公开(公告)日:2008-06-19

    申请号:US11612092

    申请日:2006-12-18

    IPC分类号: G06F7/04

    CPC分类号: G06F21/575

    摘要: A method for providing centralized user authorization to allow secure sign-on to a computer system is disclosed. In response to a user attempting to boot up a computer system, a message is sent to a trusted server by a hypervisor within the computer to request a new hard drive password for the computer system. If the user is not authorized to access the computer system, a packet is sent by the trusted server to instruct the hypervisor to stop any boot process on the computer system. If the user is authorized to access the computer system, a packet containing a partial hard drive password is sent by the trusted server to the computer system. The packet is then encrypted with a system public key by the computer system to yield the partial hard drive password. The computer system subsequently combines the partial hard drive password with a user password to generate a new complete hard drive password to continue with the boot process.

    摘要翻译: 公开了一种用于提供集中式用户授权以允许对计算机系统进行安全登录的方法。 响应于尝试启动计算机系统的用户,由计算机内的虚拟机管理程序向可信服务器发送消息,以请求计算机系统的新的硬盘驱动器密码。 如果用户没有权限访问计算机系统,则可信服务器发送一个数据包,以指示管理程序停止计算机系统上的任何引导过程。 如果用户被授权访问计算机系统,则包含部分硬盘驱动器密码的分组由可信服务器发送到计算机系统。 然后,计算机系统使用系统公钥对数据包进行加密,以产生部分硬盘驱动器密码。 计算机系统随后将部分硬盘驱动器密码与用户密码相结合,以生成新的完整硬盘驱动器密码,以继续引导过程。

    System and Method for Virtualized Hypervisor to Detect Insertion of Removable Media
    86.
    发明申请
    System and Method for Virtualized Hypervisor to Detect Insertion of Removable Media 有权
    虚拟化管理程序的系统和方法,用于检测可移动介质的插入

    公开(公告)号:US20080127309A1

    公开(公告)日:2008-05-29

    申请号:US11564832

    申请日:2006-11-29

    IPC分类号: G06F21/20

    摘要: A system and method for using a client-side hypervisor in conjunction with a secure network-side monitoring mechanism to detect removable media insertions since a client's last network session with the secure network is presented. The hypervisor uses a “client-side insertion value” to track the number of times that a user inserts removable media into a socket located on the client. When the client is connected to the secure network, the client's hypervisor notifies the secure network of each insertion and the secure network increments a “secure network-side tracker value.” For each login request, the client includes the client-side insertion value, which the secure network compares against its secure network-side tracker value. When the two values are different, the secure network sends an action request to the client, such as a request to perform a full system scan. Once the client performs the action, the client's hypervisor resets its client-side insertion value and attempts to logon to the secure network again.

    摘要翻译: 提出了客户端管理程序与安全网络侧监视机制结合使用以检测可移动介质插入的系统和方法,因为客户端与安全网络的最后一次网络会话。 管理程序使用“客户端插入值”来跟踪用户将可移动媒体插入位于客户端上的套接字的次数。 当客户端连接到安全网络时,客户端的管理程序会将安全网络通知每个插入,并且安全网络会增加“安全网络侧跟踪器值”。 对于每个登录请求,客户端包括客户端插入值,安全网络与安全网络侧跟踪器值进行比较。 当两个值不同时,安全网络向客户端发送动作请求,例如执行完整系统扫描的请求。 一旦客户端执行操作,客户端的管理程序将重置其客户端插入值,并尝试再次登录到安全网络。

    Method and Apparatus for Preventing Unauthorized Modifications to Rental Computer Systems
    87.
    发明申请
    Method and Apparatus for Preventing Unauthorized Modifications to Rental Computer Systems 有权
    防止未经授权修改租用计算机系统的方法和装置

    公开(公告)号:US20080077785A1

    公开(公告)日:2008-03-27

    申请号:US11535538

    申请日:2006-09-27

    IPC分类号: G06F15/177 G06F9/00

    摘要: A method for preventing unauthorized modifications to a rental computer system is disclosed. During boot up of the rental computer system, a determination is made whether or not a time-day card is bound to the rental computer system. If the time-day card is bound to the rental computer system, another determination is made whether or not a time/date value on the time-day card is less than a secure time/date value stored in a secure storage location during the most recent power down. If the time/date value on the time-day card is not less than the secure time/date value, yet another determination is made whether or not the time/date value is less than an end time/date rental value. If the time/date value is less than the end time/date rental value, the rental computer system continues to boot.

    摘要翻译: 公开了一种防止对租赁计算机系统的未经授权的修改的方法。 在租赁计算机系统的引导期间,确定时间日卡是否绑定到租赁计算机系统。 如果时间日卡被绑定到租赁计算机系统,则另外确定时间日卡上的时间/日期值是否小于最多存储在安全存储位置中的安全时间/日期值 最近掉电。 如果时间日卡上的时间/日期值不小于安全时间/日期值,则另外确定时间/日期值是否小于结束时间/日期租赁值。 如果时间/日期值小于结束时间/日期租金值,则租用计算机系统将继续启动。

    Methods and apparatus for maintaining network addresses
    88.
    发明申请
    Methods and apparatus for maintaining network addresses 有权
    用于维护网络地址的方法和设备

    公开(公告)号:US20070294421A1

    公开(公告)日:2007-12-20

    申请号:US11472492

    申请日:2006-06-20

    IPC分类号: G06F15/16

    摘要: This present invention relates to a method for using hypervisors to enable stable wireless network connections. The crux of the invention involves pushing the control of the networking devices from the Operating System level down to a networking front end hypervisor level. The hypervisor will control all networking devices, the authentication for these devices, and the selection of which connection to use. The hypervisor will also perform Network Address Translation (NAT) to the Operating System. Thus, the Operating System will receive a single, private IP address for use with the Operating System's applications. The hypervisor will handle the change of the IP address when roaming between networks and hide it from the Operating System through the use of the NAT.

    摘要翻译: 本发明涉及一种使用管理程序来实现稳定的无线网络连接的方法。 本发明的关键在于将网络设备的控制从操作系统级别推到网络前端管理程序级别。 管理程序将控制所有网络设备,这些设备的身份验证,以及选择要使用的连接。 管理程序还将对操作系统执行网络地址转换(NAT)。 因此,操作系统将接收一个专用的IP地址,以便与操作系统的应用程序一起使用。 管理程序将在网络之间漫游时处理IP地址的更改,并通过使用NAT将其从操作系统中隐藏起来。

    Minimization of in-band noise in a WLAN network
    89.
    发明申请
    Minimization of in-band noise in a WLAN network 审中-公开
    WLAN网络中带内噪声的最小化

    公开(公告)号:US20070230392A1

    公开(公告)日:2007-10-04

    申请号:US11395780

    申请日:2006-03-31

    IPC分类号: H04Q7/24 H04B7/185

    摘要: A method, apparatus and computer-usable medium for minimizing in-band noise in a WLAN network is presented. The method includes the steps of detecting, at a first wireless client device that communicates with a Wireless Local Area Network (WLAN) via a first access point, a signal interference that is caused by a second wireless client device that communicates with the WLAN via a second access point; and minimizing the signal interference by sending an instruction to the second wireless access device to reduce a transmission power level of the second wireless device.

    摘要翻译: 提出了一种用于最小化WLAN网络中的带内噪声的方法,装置和计算机可用介质。 该方法包括以下步骤:在经由第一接入点与无线局域网(WLAN)通信的第一无线客户端设备中检测由第二无线客户端设备引起的信号干扰,所述第二无线客户端设备经由 第二接入点; 以及通过向所述第二无线接入设备发送指令来降低所述第二无线设备的发射功率电平来最小化所述信号干扰。