Secure access to a virtual machine
    1.
    发明授权
    Secure access to a virtual machine 有权
    安全访问虚拟机

    公开(公告)号:US09443078B2

    公开(公告)日:2016-09-13

    申请号:US12763748

    申请日:2010-04-20

    IPC分类号: G06F21/53

    摘要: A management appliance includes at least one processor; and a memory communicatively coupled to the at least one processor. The memory comprising executable code stored thereon such that the at least one processor, upon executing the executable code, is configured to: dispense an image corresponding to a virtual machine to a distributed computing system comprising a plurality of interconnected computing devices, such that at least one of the computing devices implements the virtual machine; establish a trusted relationship with the virtual machine; and provide an authenticated user with access to the virtual machine without further authentication credentials from the user.

    摘要翻译: 管理设备包括至少一个处理器; 以及通信地耦合到所述至少一个处理器的存储器。 所述存储器包括存储在其上的可执行代码,使得所述至少一个处理器在执行所述可执行代码时被配置为:将与虚拟机对应的图像分配给包括多个互连的计算设备的分布式计算系统,使得至少 其中一个计算设备实现虚拟机; 与虚拟机建立信任关系; 并且向认证用户提供对虚拟机的访问,而没有来自用户的进一步的认证证书。

    USER ESTABLISHED GROUP-BASED SECURITY FOR USER CREATED RESTFUL RESOURCES
    2.
    发明申请
    USER ESTABLISHED GROUP-BASED SECURITY FOR USER CREATED RESTFUL RESOURCES 审中-公开
    用户为用户创建的恢复资源建立了基于组的安全性

    公开(公告)号:US20090328205A1

    公开(公告)日:2009-12-31

    申请号:US12110751

    申请日:2008-04-28

    IPC分类号: G06F21/00 G06F11/00

    CPC分类号: G06Q10/10 G06F21/6245

    摘要: A system for securing user created Web resources that includes a data store and a URI security engine. The data store can store digitally encoded content comprising a set of user created, URI identified resources. The URI security engine can provide declarative instance based URI access control to the user created URI identified resources. The URI security engine can apply semantics of user/group control for accessing the URI identified resource. These controls can be group controlled based upon deployer (creator) established privileges rather than being based upon an explicit developer established privileges, which may not be possible since the resources can be deployer (end-user) created resources not existing at development time.

    摘要翻译: 用于保护包含数据存储和URI安全引擎的用户创建的Web资源的系统。 数据存储可以存储包括一组用户创建的URI识别资源的数字编码内容。 URI安全引擎可以向用户创建的URI标识资源提供基于声明实例的URI访问控制。 URI安全引擎可以应用用户/组控制的语义来访问URI标识的资源。 这些控件可以基于部署者(创建者)已建立的权限进行组控制,而不是基于显式开发人员已建立的权限,这可能是不可能的,因为资源可以部署者(最终用户)创建的资源在开发时不存在。

    Exploiting entity relationships in proximity-based scheduling applications
    3.
    发明申请
    Exploiting entity relationships in proximity-based scheduling applications 审中-公开
    利用基于邻近程序的调度应用程序中的实体关系

    公开(公告)号:US20060288347A1

    公开(公告)日:2006-12-21

    申请号:US11156783

    申请日:2005-06-20

    IPC分类号: G06F9/46

    CPC分类号: G06Q10/109

    摘要: Entity relationships are created, discovered, and applied in proximity-based scheduling applications. When a signal is received from an entity in proximity to a user of a data processing system, the signal is compared against previously recorded signals. If a signal match is found, the entity generating the signal is identified using the entity definition associated with the previously recorded signal. Entities associated with the entity generating the signal are also identified. A reminder is provided to the user to perform tasks associated with the entity and tasks associated with the others entities while the user is in proximity to the entity. If a signal match is not found, and if the user has performed a task with an unassociated entity, a relationship may be created between the entity associated with the performed task and the unassociated entity, either automatically or upon prompting the user.

    摘要翻译: 在基于邻近的调度应用程序中创建,发现和应用实体关系。 当从靠近数据处理系统的用户的实体接收到信号时,将该信号与先前记录的信号进行比较。 如果发现信号匹配,则使用与先前记录的信号相关联的实体定义来识别生成信号的实体。 与生成信号的实体相关联的实体也被识别。 当用户处于实体附近时,向用户提供提醒以执行与实体相关联的任务以及与其他实体相关联的任务。 如果没有找到信号匹配,并且如果用户已经执行了与非关联实体的任务,则可以在与所执行的任务相关联的实体与未关联的实体之间自动地或在提示用户时创建关系。

    Script generation engine and mapping semantic models for target platform
    4.
    发明授权
    Script generation engine and mapping semantic models for target platform 有权
    脚本生成引擎和目标平台的映射语义模型

    公开(公告)号:US08381207B2

    公开(公告)日:2013-02-19

    申请号:US10725728

    申请日:2003-12-02

    IPC分类号: G06F9/45

    摘要: The present invention is an installation script generation engine. An application component distribution system can include a repository of semantic models for interdependent ones of application components. A mapping of individual listings in the semantic models to target platform specific installation instructions further can be included. Finally, a script generation engine can be configured to produce a target specific set of instructions for a specified application component based upon a mapping of at least one of the semantic models in the repository. Notably, each of the semantic models can include a listing of component relationships, target platform requirements and platform neutral installation instructions. Moreover, the component relationships can include at least one component relationship selected from the group consisting of a containment relationship, a usage relationship, a contradiction relationship, and an equivalence relationship. Finally, a Web services interface to the repository can be configured to permit remote access to the repository.

    摘要翻译: 本发明是安装脚本生成引擎。 应用程序组件分发系统可以包括用于相互依赖的应用组件的语义模型的存储库。 可以包括进一步将语义模型中的单个列表映射到目标平台特定的安装指令。 最后,脚本生成引擎可以被配置为基于存储库中的至少一个语义模型的映射来产生针对指定应用程序组件的目标特定指令集。 值得注意的是,每个语义模型可以包括组件关系,目标平台要求和平台中立安装指令的列表。 此外,组件关系可以包括从包含关系,使用关系,矛盾关系和等价关系组成的组中选择的至少一个组件关系。 最后,可以将存储库的Web服务接口配置为允许远程访问存储库。

    Autonomic rollback
    5.
    发明授权
    Autonomic rollback 失效
    自动回滚

    公开(公告)号:US07080279B2

    公开(公告)日:2006-07-18

    申请号:US10727011

    申请日:2003-12-03

    IPC分类号: G06F11/00

    CPC分类号: G06F11/1433 G06F8/62

    摘要: An autonomic rollback system. An autonomic rollback system can include a registry configured to store meta-data specifying a contemporary state of a system of components. The system also can include a backup location configured to store a backup copy of the meta-data in the registry specifying a past state of the system of components prior to installing a new component. A monitor can be programmed to compare the operation of the system of components with a policy defining a nominal state of operation for the system of components. Finally, a rollback processor can be coupled to the registry and the backup location. Responsive to the monitor, the rollback processor can restore the registry to the past state when the monitor determines that the operation of the system of components falls outside the nominal state defined within the policy. Importantly, the system of components can reside within an application server.

    摘要翻译: 自主回滚系统。 自动回滚系统可以包括配置为存储指定组件系统的当代状态的元数据的注册表。 系统还可以包括备份位置,该备份位置被配置为在注册表中存储元数据的备份副本,指定在安装新组件之前组件系统的过去状态。 可以对监视器进行编程,以将组件系统的操作与定义组件系统的标称运行状态的策略进行比较。 最后,回滚处理器可以耦合到注册表和备份位置。 响应于监视器,当监视器确定组件系统的操作不在策略内定义的标称状态时,回滚处理器可以将注册表恢复到过去状态。 重要的是,组件系统可以驻留在应用程序服务器中。

    Secure access to a virtual machine
    6.
    发明授权
    Secure access to a virtual machine 有权
    安全访问虚拟机

    公开(公告)号:US09471774B2

    公开(公告)日:2016-10-18

    申请号:US13420102

    申请日:2012-03-14

    IPC分类号: H04L9/30 G06F21/53

    摘要: A method for providing secure access to a virtual machine includes dispensing an image corresponding to a virtual machine from a management appliance to a distributed computing system such that the virtual machine is implemented by at least one of a plurality of interconnected physical computing devices in the distributed computing system; establishing a trusted relationship between the management appliance and the virtual machine; and providing a user with access to the virtual machine from the management appliance without further authentication credentials from the user.

    摘要翻译: 用于提供对虚拟机的安全访问的方法包括将与虚拟机相对应的图像从管理设备分配到分布式计算系统,使得虚拟机由分布式的多个互连物理计算设备中的至少一个实现 计算系统; 建立管理设备与虚拟机之间的信任关系; 以及向用户提供来自管理设备的对虚拟机的访问,而没有来自用户的进一步的认证凭证。

    Secure Access to a Virtual Machine
    7.
    发明申请
    Secure Access to a Virtual Machine 有权
    安全访问虚拟机

    公开(公告)号:US20120173872A1

    公开(公告)日:2012-07-05

    申请号:US13420102

    申请日:2012-03-14

    IPC分类号: H04L9/30 G06F21/00

    摘要: A method for providing secure access to a virtual machine includes dispensing an image corresponding to a virtual machine from a management appliance to a distributed computing system such that the virtual machine is implemented by at least one of a plurality of interconnected physical computing devices in the distributed computing system; establishing a trusted relationship between the management appliance and the virtual machine; and providing a user with access to the virtual machine from the management appliance without further authentication credentials from the user.

    摘要翻译: 用于提供对虚拟机的安全访问的方法包括将与虚拟机相对应的图像从管理设备分配到分布式计算系统,使得虚拟机由分布式的多个互连物理计算设备中的至少一个实现 计算系统; 建立管理设备与虚拟机之间的信任关系; 以及向用户提供来自管理设备的对虚拟机的访问,而没有来自用户的进一步的认证凭证。

    Secure Access to a Virtual Machine
    8.
    发明申请
    Secure Access to a Virtual Machine 有权
    安全访问虚拟机

    公开(公告)号:US20110258441A1

    公开(公告)日:2011-10-20

    申请号:US12763748

    申请日:2010-04-20

    IPC分类号: H04L9/32 H04L29/06

    摘要: A method for providing secure access to a virtual machine includes dispensing an image corresponding to a virtual machine from a management appliance to a distributed computing system such that the virtual machine is implemented by at least one of a plurality of interconnected physical computing devices in the distributed computing system; establishing a trusted relationship between the management appliance and the virtual machine; and providing a user with access to the virtual machine from the management appliance without further authentication credentials from the user.

    摘要翻译: 用于提供对虚拟机的安全访问的方法包括将与虚拟机相对应的图像从管理设备分配到分布式计算系统,使得虚拟机由分布式的多个互连物理计算设备中的至少一个实现 计算系统; 建立管理设备与虚拟机之间的信任关系; 以及向用户提供来自管理设备的对虚拟机的访问,而没有来自用户的进一步的认证凭证。