Feature Based Data Management
    1.
    发明申请
    Feature Based Data Management 有权
    基于特征的数据管理

    公开(公告)号:US20100023519A1

    公开(公告)日:2010-01-28

    申请号:US12178783

    申请日:2008-07-24

    IPC分类号: G06F17/30

    CPC分类号: H04L63/10 G06F9/466 G06F9/52

    摘要: Methods, systems, and apparatus, including computer program products, for data structure locking. In one aspect, a proper subset of variables of a set of variables in a data structure are received. An access privilege to modify variables in the data structure to administrator accounts is assigned. A first administrator access request to modify a variable in the proper subset of variables is received, and the access privilege to modify the variable in the proper subset of variables for the first administrator account. A second administrator access request to modify the variable in the proper subset of variables is received, and an access timer that expires after a time period is initiated; the access privilege is disabled for the first administrator account in response to expiration of the access timer; and the access privilege for the second administrator account is enabled in response to expiration of the access timer.

    摘要翻译: 方法,系统和设备,包括用于数据结构锁定的计算机程序产品。 在一个方面,接收数据结构中的一组变量的适当的变量子集。 分配将数据结构中的变量修改为管理员帐户的访问权限。 接收到修改变量子集中的变量的第一个管理员访问请求,以及修改第一个管理员帐户变量子集中的变量的访问权限。 接收到修改变量的正确子集中的变量的第二管理员访问请求,并且启动了一段时间后到期的访问定时器; 第一个管理员帐户的访问权限被禁用以响应访问定时器的到期; 并且响应于访问定时器的到期,启用第二管理员帐户的访问权限。

    Cumulative Login Credit
    2.
    发明申请
    Cumulative Login Credit 有权
    累积登录信用

    公开(公告)号:US20090260065A1

    公开(公告)日:2009-10-15

    申请号:US12100168

    申请日:2008-04-09

    IPC分类号: G06F21/00

    CPC分类号: H04L63/083 G06F21/316

    摘要: Login credit is monitored over a credit time period. Continuous invalid login attempts decrease the login credit for the duration of the credit time period. Login credit accumulates with time. If the login credit is less than a credit threshold, login processing is precluded. A common invalid login notification for presentation to a user is generated if login processing is precluded or if login processing indicates that the login credentials are invalid.

    摘要翻译: 在信用时间段内监控登录信用。 持续的无效登录尝试在信用时间段内减少登录信用。 登录积分随时间累积。 如果登录信用度低于信用阈值,则不能进行登录处理。 如果登录处理被阻止或登录处理指示登录凭据无效,则生成用于呈现给用户的常见的无效登录通知。

    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT
    3.
    发明申请
    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT 有权
    HTTP认证和授权管理

    公开(公告)号:US20100024006A1

    公开(公告)日:2010-01-28

    申请号:US12179403

    申请日:2008-07-24

    IPC分类号: H04L9/32

    摘要: Systems, methods and apparatus for a distributed security that provides authentication and authorization management. The system can include a state manager that is used to identify and maintain the source associated with a client browser that submits requests to the state manager. The state manager can allow requests that are authorized and request authorization for requests that are not. The state manager can maintain the states associated with each domain to reduce the number of transaction needed to authenticate and/or authorize subsequent requests to the same domain or to different domains.

    摘要翻译: 用于提供认证和授权管理的分布式安全性的系统,方法和设备。 该系统可以包括状态管理器,其用于识别和维护与向国家管理器提交请求的客户端浏览器相关联的源。 状态管理器可以允许被授权的请求,并请求不是请求的请求。 状态管理器可以维护与每个域相关联的状态,以减少对同一域或不同域进行认证和/或授权后续请求所需的事务数量。

    Global Network Monitoring
    4.
    发明申请
    Global Network Monitoring 有权
    全球网络监控

    公开(公告)号:US20100020700A1

    公开(公告)日:2010-01-28

    申请号:US12178911

    申请日:2008-07-24

    IPC分类号: G06F11/30

    CPC分类号: H04L63/1425 H04L43/00

    摘要: Systems, methods and apparatus monitor networks to identify when the networks are not operating normally, for instance, because of malware. During a sample interval sample data is collected that corresponds to a plurality of system activities, the sample data collected from a plurality of monitored networks and representing normal operations of the plurality of monitored networks. Subsequent to the sample interval, observed data is collected from the plurality of monitored networks, the observed data corresponding to at least some of the system activities. A determination is made whether the observed data represents the normal operation of the monitored networks, and an alert is generated if the observed data does not represent the normal operation of the monitored networks.

    摘要翻译: 系统,方法和设备监控网络,以确定网络何时不正常运行,例如恶意软件。 在样本间隔期间,采集对应于多个系统活动的样本数据,从多个被监测网络收集的样本数据,并表示多个被监测网络的正常操作。 在采样间隔之后,从多个被监测网络收集观测数据,所观察到的数据对应于至少一些系统活动。 确定观察到的数据是否表示所监视的网络的正常操作,并且如果观察到的数据不表示所监视的网络的正常操作,则产生警报。

    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT
    5.
    发明申请
    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT 有权
    HTTP认证和授权管理

    公开(公告)号:US20100024014A1

    公开(公告)日:2010-01-28

    申请号:US12179492

    申请日:2008-07-24

    IPC分类号: H04L9/32

    摘要: Systems, methods and apparatus for a distributed security that provides authentication and authorization management. The system can include a source processor that is used to identify the source associated with a request for authentication or authorization. The source processor can maintain the initial source associated with the request through the use of an association token. The associate token can be transmitted with each subsequent request that includes authentication or authorization data. The source processor can use the associate token to verify that the source associated with the initial request is the same as the source associated with subsequent authentication and authorization requests.

    摘要翻译: 用于提供认证和授权管理的分布式安全性的系统,方法和设备。 该系统可以包括用于标识与认证或授权请求相关联的源的源处理器。 源处理器可以通过使用关联令牌来维护与请求相关联的初始源。 每个后续请求可以发送关联令牌,其中包括认证或授权数据。 源处理器可以使用关联令牌来验证与初始请求相关联的源与与后续认证和授权请求相关联的源相同。

    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT
    6.
    发明申请
    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT 有权
    HTTP认证和授权管理

    公开(公告)号:US20100023762A1

    公开(公告)日:2010-01-28

    申请号:US12179377

    申请日:2008-07-24

    IPC分类号: H04L9/06

    摘要: Systems, methods and apparatus for a distributed security that provides authentication and authorization management. The system can include an epoch processor that is used to validate authentication and authorization data that is valid only for an epoch. The epoch processor can maintain a public key that can be used to decrypt the authentication and authorization data during the epoch that the key is valid. The epoch processor can receive a new public key during each epoch. The epoch processor can also determine if the authentication or authorization data was fraudulently generated based on the contents of the data, and verifying whether the data is valid for the epoch in which it was decrypted.

    摘要翻译: 用于提供认证和授权管理的分布式安全性的系统,方法和设备。 该系统可以包括用于验证仅对于时代有效的认证和授权数据的时期处理器。 纪元处理器可以维护公钥,该密钥可用于在密钥有效的时期期间解密认证和授权数据。 时代处理器可以在每个时期接收新的公钥。 时标处理器还可以基于数据的内容来确定认证或授权数据是否被欺诈地生成,并且验证数据是否对于其被解密的时期有效。

    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT
    7.
    发明申请
    HTTP AUTHENTICATION AND AUTHORIZATION MANAGEMENT 有权
    HTTP认证和授权管理

    公开(公告)号:US20100020967A1

    公开(公告)日:2010-01-28

    申请号:US12179441

    申请日:2008-07-24

    IPC分类号: H04L9/14 H04L9/00

    摘要: Systems, methods and apparatus for a distributed security that provides authentication and authorization management. The system can include an epoch manager that is used to generate authentication and authorization data that remain valid only for an epoch. The epoch manager can generate an epoch key pair that can be used to encrypt and decrypt the authentication and authorization data during the epoch that the key is valid. The epoch manager can also associate the contents of the data with the epoch in which it was created, so that at decrypting the epoch that the data was generated in can be identified.

    摘要翻译: 用于提供认证和授权管理的分布式安全性的系统,方法和设备。 该系统可以包括一个历元管理器,用于生成仅在一个时期保持有效的认证和授权数据。 历元管理器可以生成一个时期密钥对,可以用于在密钥有效的时期期间加密和解密认证和授权数据。 纪元管理器还可以将数据的内容与其创建的时期相关联,以便在解密生成数据的时代可以被识别。

    SECURITY MESSAGE PROCESSING
    8.
    发明申请
    SECURITY MESSAGE PROCESSING 有权
    安全信息处理

    公开(公告)号:US20090300730A1

    公开(公告)日:2009-12-03

    申请号:US12128391

    申请日:2008-05-28

    IPC分类号: G06F21/00 H04L9/32

    CPC分类号: H04L63/1408 H04L63/1441

    摘要: Systems, methods and apparatus for handling security messages in a distributed security system. Requests, replies, and/or updates have varying time constraints. Processing node managers and authority node managers determine the best transmission times and/or the ignoring of such data to maximize information value.

    摘要翻译: 用于在分布式安全系统中处理安全消息的系统,方法和装置。 请求,回复和/或更新具有不同的时间限制。 处理节点管理器和权限节点管理器确定最佳传输时间和/或忽略这些数据以最大化信息值。