Computing with policy engine for multiple virtual machines
    2.
    发明授权
    Computing with policy engine for multiple virtual machines 有权
    使用多个虚拟机的策略引擎进行计算

    公开(公告)号:US08683548B1

    公开(公告)日:2014-03-25

    申请号:US13249484

    申请日:2011-09-30

    IPC分类号: G06F17/00

    CPC分类号: G06F21/57

    摘要: An improved technique for delegating computing actions among different machines includes a policy engine that receives inputs specifying computing actions to be performed and automatically selects a virtual machine to perform each action. Machine selection is based on a policy, which recognizes multiple categories of computing actions, classifies each input as belonging to one of the categories, and directs each computing action to a virtual machine designated for performing only that one category of computing actions.

    摘要翻译: 用于在不同机器之间委派计算动作的改进技术包括策略引擎,其接收指定要执行的计算动作的输入,并自动选择虚拟机以执行每个动作。 机器选择基于一种策略,该策略识别多种类型的计算动作,将每个输入分类为属于其中一个类别,并将每个计算动作定向到指定用于仅执行该类别计算动作的虚拟机。

    Authentication using dynamic, client information based PIN
    3.
    发明授权
    Authentication using dynamic, client information based PIN 有权
    使用动态,基于客户端信息的PIN验证

    公开(公告)号:US08650405B1

    公开(公告)日:2014-02-11

    申请号:US13173607

    申请日:2011-06-30

    IPC分类号: G06F21/00

    CPC分类号: G06F21/31

    摘要: An improved PIN-based authentication technique for authenticating the user of a client machine to a server automatically generates a personal identification number (PIN) for the user based on user-specific authentication information, such as encrypted cookie information. The server provides user-specific authentication information to a client machine. When the user submits an authentication request, user-specific authentication information is collected and uploaded to the server. The user-specific authentication information is processed to form a PIN, and authentication of the user proceeds based on the PIN and any other authentication factors provided. Since the disclosed techniques compute PINs automatically based on information exchanged between a client machine and a server, the user is relieved of any burden associated with registering and remembering a PIN.

    摘要翻译: 改进的基于PIN的认证技术用于向服务器认证客户端机器的用户,基于用户特定的认证信息(例如加密的cookie信息)自动生成用户的个人识别号码(PIN)。 服务器向客户机提供用户特定的认证信息。 当用户提交认证请求时,收集用户特定的身份验证信息并将其上传到服务器。 处理用户特定认证信息以形成PIN,并且用户的认证基于PIN和提供的任何其他认证因素而进行。 由于所公开的技术基于在客户机和服务器之间交换的信息自动计算PIN,所以用户免除与注册和记住PIN相关联的任何负担。

    Computing with presentation layer for multiple virtual machines
    4.
    发明授权
    Computing with presentation layer for multiple virtual machines 有权
    使用多个虚拟机的表示层进行计算

    公开(公告)号:US08726337B1

    公开(公告)日:2014-05-13

    申请号:US13249481

    申请日:2011-09-30

    IPC分类号: H04L29/06

    摘要: An improved technique for managing multiple virtual machines includes a presentation layer that receives user input for multiple virtual machines and renders output from the virtual machines in a unified presentation, which can be displayed to a user. In certain examples, Red/Green security is implemented by designating one virtual machine as a Green virtual machine and another as a Red virtual machine. Although different virtual machines are used, the presentation layer unifies the user's interaction with the virtual machines and reduces the need for the user to keep track of different virtual machines or to switch manually between them.

    摘要翻译: 用于管理多个虚拟机的改进的技术包括呈现层,其接收多个虚拟机的用户输入并且以可以向用户显示的统一呈现来呈现来自虚拟机的输出。 在某些示例中,通过将一个虚拟机指定为绿色虚拟机,另一个虚拟机作为红色虚拟机实现红色/绿色安全。 虽然使用了不同的虚拟机,但是表示层将用户与虚拟机的交互结合在一起,减少了用户跟踪不同虚拟机或者在其间手动切换的需要。

    Authentication broker service
    5.
    发明申请
    Authentication broker service 有权
    验证代理服务

    公开(公告)号:US20050223217A1

    公开(公告)日:2005-10-06

    申请号:US10817154

    申请日:2004-04-01

    IPC分类号: G06F21/00 H04L9/00 H04L29/06

    摘要: A user is authenticated for a relying computing entity (e.g., an enterprise) through an authentication broker service, wherein a trust relationship exists between the relying computing entity and the authentication broker service. The authentication broker service has a trust relationship with the relying computing entity and the authentication service that issued the identity of the user. The relying computing entity asks the authentication broker service to authenticate the identity of the user. The authentication broker service captures the user's credential (or directs the authentication service to do so) and sends an authentication response (e.g., a token) to the relying computing entity in order to authenticate the identity of the user to the relying computing entity. The relying computing entity verifies the authentication response based on the trust relationship between the relying computing entity and the authentication broker service.

    摘要翻译: 用户通过认证代理服务为依赖计算实体(例如,企业)进行认证,其中在依赖计算实体和认证代理服务之间存在信任关系。 认证代理服务与依赖计算实体和颁发用户身份的认证服务具有信任关系。 依赖计算实体请求认证代理服务验证用户的身份。 认证代理服务捕获用户的凭证(或指示认证服务来执行),并将认证响应(例如,令牌)发送到依赖计算实体,以便向依赖计算实体认证用户的身份。 依赖计算实体根据依赖计算实体和认证代理服务之间的信任关系来验证认证响应。