Dynamic access management for network security
    4.
    发明授权
    Dynamic access management for network security 有权
    网络安全的动态访问管理

    公开(公告)号:US08601102B1

    公开(公告)日:2013-12-03

    申请号:US11421294

    申请日:2006-05-31

    IPC分类号: G06F15/173 G06F15/16

    摘要: A method for managing access to network resources by a first network device may include establishing a communication session with the first network device. The method may also include receiving information from the first network device during the communication session, the information indicating that the first network device is not in compliance with at least one security-related rule. The method may further include determining whether to modify access by the first network device to at least one of the network resources based on the received information.

    摘要翻译: 用于管理由第一网络设备访问网络资源的方法可以包括建立与第一网络设备的通信会话。 该方法还可以包括在通信会话期间从第一网络设备接收信息,指示第一网络设备不符合至少一个安全相关规则的信息。 该方法还可以包括基于所接收的信息来确定是否修改由第一网络设备访问至少一个网络资源的接入。

    Proxy system
    5.
    发明授权
    Proxy system 有权
    代理系统

    公开(公告)号:US07380008B2

    公开(公告)日:2008-05-27

    申请号:US09998916

    申请日:2001-11-30

    IPC分类号: G06F15/16

    摘要: The present invention is directed to technology for using a proxy in an Identity System. When a first entity is on vacation, on a business trip or otherwise unavailable to perform certain actions on an Identity System, a second entity can act as a proxy for the first entity. The Identity System will provide the second entity, acting as a proxy, with the privileges, access and rights of the first entity. In one embodiment, Identity System is part of an integrated Identity and Access System, and the second entity is a proxy in the Identity System but not in the Access System.

    摘要翻译: 本发明涉及用于在身份系统中使用代理的技术。 当第一个实体在休假,出差或其他方式不能在身份系统上执行某些操作时,第二个实体可以充当第一个实体的代理。 身份识别系统将为第二个实体提供第一个实体的特权,访问权限和权限。 在一个实施例中,身份系统是集成的身份和访问系统的一部分,并且第二实体是身份系统中的代理,但不在访问系统中。

    Employing wrapper profiles
    6.
    发明授权
    Employing wrapper profiles 有权
    采用包装材料

    公开(公告)号:US08375113B2

    公开(公告)日:2013-02-12

    申请号:US10325438

    申请日:2002-12-20

    摘要: Technology is disclosed for controlling access to data store information among multiple entities. A corresponding wrapper is created for information that may be subject to simultaneous access attempts. The wrapper includes an attribute that identifies the accessibility of the information—indicating whether the information is locked from further access, shareable among multiple entities, or not restricted at all. Before accessing information in the data store, an entity looks at the wrapper associated with the information to determine the type of access allowed, if any. An Identity, Access, or integrated Identity/Access System may maintain the wrappers as objects in the data store, with each wrapper object controlling another object containing information. Wrappers can be utilized when multiple provisioning applications are employed to provision resources. Each user and their corresponding resources are represented as objects with corresponding wrappers. Each provisioning application employs the wrappers to ensure that it has exclusive ownership of selected user and resource objects when provisioning resources to the selected user.

    摘要翻译: 公开了用于控制多个实体之间对数据存储信息的访问的技术。 为可能需要同时访问尝试的信息创建相应的包装器。 包装器包括标识信息的可访问性的属性,指示信息是否被锁定进一步访问,在多个实体之间可共享,或者根本不受限制。 在访问数据存储中的信息之前,实体会查看与信息相关联的包装器,以确定允许的访问类型(如果有的话)。 身份,访问或集成的身份/访问系统可以将包装器维护为数据存储中的对象,每个包装对象控制另一个包含信息的对象。 当采用多个配置应用来提供资源时,可以使用包装器。 每个用户及其相应的资源都被表示为具有相应包装器的对象。 每个配置应用程序使用包装器来确保在为所选用户提供资源时,所选择的用户和资源对象具有独占所有权。

    Support for multiple data stores
    7.
    发明授权
    Support for multiple data stores 有权
    支持多个数据存储

    公开(公告)号:US07711818B2

    公开(公告)日:2010-05-04

    申请号:US09998908

    申请日:2001-11-30

    IPC分类号: G06F15/173

    摘要: Technology is disclosed for supporting multiple data stores. The set of data stores can be of a uniform type, or the various data stores can be different types (e.g. Lightweight Directory Access Protocol (LDAP), Structured Query Language (SQL), etc.). One implementation of the disclosed technology is with an Identity System. Another implementation is with an integrated Identity System and Access System. Various embodiments of the present invention utilize different means to separate the business logic of a system from the data access logic so that different types of data stores can be used without changing the business logic.

    摘要翻译: 披露技术来支持多个数据存储。 该组数据存储可以是统一类型,或者各种数据存储可以是不同类型(例如,轻量级目录访问协议(LDAP),结构化查询语言(SQL)等))。 所公开技术的一个实现是使用身份系统。 另一个实现是集成了身份系统和访问系统。 本发明的各种实施例利用不同的方式将系统的业务逻辑与数据访问逻辑分离,使得可以使用不同类型的数据存储而不改变业务逻辑。

    Blocking cache flush requests until completing current pending requests in a local server and remote server
    9.
    发明授权
    Blocking cache flush requests until completing current pending requests in a local server and remote server 有权
    阻止缓存刷新请求,直到完成本地服务器和远程服务器中的当前待处理请求

    公开(公告)号:US07213249B2

    公开(公告)日:2007-05-01

    申请号:US09997408

    申请日:2001-11-30

    IPC分类号: G06F13/00

    摘要: Identity Servers issue and respond to requests for performing remote operations. A local Identity Server receives a request to perform a remote operation. The local Identity Server identifies and executes any required local operations. After completing the local operations, the local Identity Server forwards the remote request to a remote Identity Server, which executes the remote operation. An Identity Server includes a management service, management registry, and request handler. The management service identifies and issues remote request to other servers. The request handler receives remote requests from other servers. The management registry maintains an index of function modules for performing local operations.

    摘要翻译: 身份服务器发出并响应执行远程操作的请求。 本地身份服务器接收执行远程操作的请求。 本地身份服务器识别并执行任何所需的本地操作。 完成本地操作后,本地Identity Server会将远程请求转发到远程执行远程操作的Identity Server。 身份服务器包括管理服务,管理注册表和请求处理程序。 管理服务识别并向其他服务器发出远程请求。 请求处理程序从其他服务器接收远程请求。 管理注册表维护执行本地操作的功能模块的索引。

    Wireless handfree headset device for a helmet
    10.
    发明申请
    Wireless handfree headset device for a helmet 审中-公开
    头盔无线免提耳机设备

    公开(公告)号:US20060121950A1

    公开(公告)日:2006-06-08

    申请号:US11003345

    申请日:2004-12-06

    申请人: Chi-Cheng Lee

    发明人: Chi-Cheng Lee

    IPC分类号: H04M1/00

    CPC分类号: H04M1/6066 A42B3/30 H04M1/05

    摘要: A communication device includes a first low frequency transmission/receiver module and a second low frequency transmission/receiver module configured on a helmet and a portable communication device respectively. A sounder device and a receiver device are configured on the helmet so as to correspond to position of the ear and the mouth of a wearer of the helmet respectively, and which are mutually connected to the first low frequency transmission/receiver module. Wireless transmission signals between the second low frequency transmission/receiver module of the portable communication device and the first low frequency transmission/receiver module configurationally connected to the sounder device and the receiver device of the helmet thereby enable the wearer of the helmet to directly utilize the receiver device and the sounder device of the helmet to carry out a conversation with an incoming caller.

    摘要翻译: 通信装置包括分别配置在头盔和便携式通信装置上的第一低频发送/接收模块和第二低频发送/接收模块。 头盔上配置有发声装置和接收装置,以分别对应于头盔佩戴者的耳朵和嘴部的位置,并相互连接到第一低频发送/接收模块。 在便携式通信设备的第二低频发送/接收模块与构成与发声装置和头盔接收装置相连的第一低频发射/接收模块之间的无线传输信号使得头盔的穿戴者能直接利用 接收机设备和头盔的发声器设备进行与来话呼叫者的对话。