Method of switching Internet personas based on URL
    2.
    发明授权
    Method of switching Internet personas based on URL 失效
    基于URL切换互联网角色的方法

    公开(公告)号:US08176185B2

    公开(公告)日:2012-05-08

    申请号:US12207494

    申请日:2008-09-09

    IPC分类号: G06F15/16

    摘要: A method of communicating with a remote site on a network by establishing different user personas respectively associated with different remote sites on the network, each user persona containing one or more attributes used in accessing the remote sites, and then accessing a specific one of the remote sites using the attributes in a specific one of the user personas that is associated with the specific remote site. The specific remote site can be associated with the specific user persona by a universal resource locator (URL), e.g., for web sites on the Internet, and the accessing is automatically performed in response to matching of the URL of the specific remote site to the URL associated with the specific user persona. A default persona can be used for any remote site having no specifically associated user persona.

    摘要翻译: 一种通过建立与网络上的不同远程站点分别相关联的不同用户角色来与网络上的远程站点通信的方法,每个用户角色包含用于访问远程站点的一个或多个属性,然后访问远程站点中的特定一个 使用与特定远程站点相关联的特定用户角色中的属性的站点。 特定远程站点可以通过通用资源定位器(URL)与特定用户角色相关联,例如对于因特网上的网站,并且响应于特定远程站点的URL与 与特定用户角色相关联的URL。 默认角色可以用于没有特定关联的用户角色的任何远程站点。

    Write protection of subroutine return addresses
    4.
    发明授权
    Write protection of subroutine return addresses 失效
    写子保护子程序返回地址

    公开(公告)号:US07467272B2

    公开(公告)日:2008-12-16

    申请号:US11014111

    申请日:2004-12-16

    IPC分类号: G06F12/00

    CPC分类号: G06F12/1466

    摘要: Exemplary methods, systems, and products are described that operate generally by moving subroutine return address protection to the processor itself, in effect proving atomic locks for subroutine return addresses stored in a stack, subject to application control. More particularly, exemplary methods, systems, and products are described that write protect subroutine return addresses by calling a subroutine, including storing in a stack memory address a subroutine return address and locking, by a computer processor, the stack memory address against write access. Calling a subroutine may include receiving in the computer processor an instruction to lock the stack memory address. Locking the stack memory address may be carried out by storing the stack memory address in a protected memory lockword. A protected memory lockword may be implemented as a portion of a protected content addressable memory.

    摘要翻译: 描述了通常通过将子程序返回地址保护移动到处理器本身的示例性方法,系统和产品,实际上证明了存储在堆栈中的子程序返回地址的原子锁,在应用程序控制下。 更具体地,描述了示例性方法,系统和产品,其通过调用子程序来写入保护子程序返回地址,包括在堆栈存储器地址中存储地址子程序返回地址并由计算机处理器锁定堆栈存储器地址以防写入访问。 调用子程序可以包括在计算机处理器中接收锁定堆栈存储器地址的指令。 锁定堆栈存储器地址可以通过将堆栈存储器地址存储在受保护的存储器锁定字中来执行。 受保护的存储器锁字可以被实现为受保护内容可寻址存储器的一部分。

    Electronic mail distribution via a network of computer controlled display terminals with interactive display interfaces enabling senders/receivers to view sequences of only text from sequences of E-Mail having same headers
    5.
    发明授权
    Electronic mail distribution via a network of computer controlled display terminals with interactive display interfaces enabling senders/receivers to view sequences of only text from sequences of E-Mail having same headers 有权
    通过具有交互式显示接口的计算机控制显示终端的网络进行电子邮件分发,使得发送者/接收者能够从具有相同标题的电子邮件序列中仅查看文本序列

    公开(公告)号:US07266584B2

    公开(公告)日:2007-09-04

    申请号:US10464896

    申请日:2003-06-19

    IPC分类号: G06F15/16

    CPC分类号: H04L51/34 G06Q10/107

    摘要: A display interface at a sending/receiving display terminal including the conventional implementations for reading and sending E-Mail with an implementation for organizing the text content of a chronological sequence of E-Mail documents having the same subject identifier or header. There is designated a subject identifier of one received electronic mail as a message text sequencer and there is an implementation at a receiving display station for enabling the display of a chronological sequence of the text of said received message and the text of all subsequent messages having said designated subject identifier. The designation of the identifier may automatically designate a subject identifier as a message text sequencer based upon user predetermined attributes. Such an implementation for automatically designating may include the combination of means for counting the number of messages having the same subject identifier within a predetermined period in combination with means for automatically designating the same subject identifier when said counted number reaches a predetermined value. In its simplest application, the predetermined value may be two, e.g. even two consecutive messages.

    摘要翻译: 包括发送/接收显示终端的显示接口,包括用于读取和发送电子邮件的常规实现,用于组织具有相同主题标识符或头部的电子邮件文档的时间顺序的文本内容的实现。 指定一个接收到的电子邮件的主体标识符作为消息文本定序器,并且在接收显示站处有一个实现,用于使得能够显示所述接收到的消息的文本的时间顺序以及具有所述接收消息的所有后续消息的文本 指定主题标识符。 标识符的指定可以基于用户预定的属性自动将主题标识符指定为消息文本定序器。 用于自动指定的这种实现可以包括用于在预定时段内对具有相同主题标识符的消息的数量进行计数的装置的组合以及当所述计数的数量达到预定值时自动指定相同主题标识符的装置的组合。 在其最简单的应用中,预定值可以是两个。 甚至连续两个消息。

    Autonomic peer-to-peer computer software installation
    7.
    发明授权
    Autonomic peer-to-peer computer software installation 有权
    自主的点对点计算机软件安装

    公开(公告)号:US07890952B2

    公开(公告)日:2011-02-15

    申请号:US10960572

    申请日:2004-10-07

    IPC分类号: G06F9/445

    CPC分类号: G06F9/5011 G06F8/61 G06F11/36

    摘要: Methods, systems, and products are provided for peer-to-peer computer software installation. Embodiments include receiving, by an observing install agent running on an observing host from a test install agent running on a test host, performance information describing the performance of software installed on the test host; determining, by the observing install agent, whether the performance information meets performance criteria for the observing host; and if the performance information meets the performance criteria for the observing host, installing the software on the observing host. In some embodiments, determining, by the observing install agent, whether the performance information meets performance criteria for the observing host is carried out by determining, whether the performance information meets performance criteria for the observing host in dependence upon a rule.

    摘要翻译: 为对等计算机软件安装提供了方法,系统和产品。 实施例包括:从在测试主机上运行的测试安装代理在观察主机上运行的观察安装代理接收描述安装在测试主机上的软件的性能的性能信息; 由观察安装代理确定性能信息是否符合观测主机的性能标准; 并且如果性能信息符合观测主机的性能标准,则在观察主机上安装该软件。 在一些实施例中,通过观察安装代理确定性能信息是否符合观测主机的性能标准,通过确定性能信息是否符合观测主机的规则来执行。

    System and Method for Automatically Hiding Sensitive Information Obtainable from a Process Table
    8.
    发明申请
    System and Method for Automatically Hiding Sensitive Information Obtainable from a Process Table 有权
    自动隐藏过程表中可获得的敏感信息的系统和方法

    公开(公告)号:US20090007277A1

    公开(公告)日:2009-01-01

    申请号:US12125732

    申请日:2008-05-22

    IPC分类号: G06F17/30 G06F21/00

    CPC分类号: G06F21/31 G06F21/6245

    摘要: The present invention provides a system and method for automatically hiding sensitive information, obtainable from a process table, from other processes that should not access the sensitive information. The system and method include a sensitive command attribute table that is used by a system administrator to designate the commands and command attributes that will typically be associated with sensitive information. The sensitive command attribute table is used when a command is entered that requests information from the process table to be displayed or output. In response, a search of the process table entries is made to determine if a command and/or its attribute in the process table matches an entry in the sensitive command attribute table. If so, the command, its attributes, and/or its attribute values are blanked from the output of the process table information.

    摘要翻译: 本发明提供了一种系统和方法,用于从不能访问敏感信息的其他进程自动隐藏从进程表获得的敏感信息。 系统和方法包括一个敏感的命令属性表,由系统管理员用于指定通常与敏感信息相关联的命令和命令属性。 当输入请求来自进程表的信息以显示或输出的命令时,使用敏感命令属性表。 作为响应,进行对进程表条目的搜索以确定进程表中的命令和/或其属性是否与敏感命令属性表中的条目匹配。 如果是,则从进程表信息的输出中删除命令,其属性和/或其属性值。

    Usage consciousness in HTTP/HTML for reducing unused data flow across a network
    9.
    发明授权
    Usage consciousness in HTTP/HTML for reducing unused data flow across a network 有权
    HTTP / HTML中的使用意识,用于减少网络中未使用的数据流

    公开(公告)号:US07461162B2

    公开(公告)日:2008-12-02

    申请号:US11014055

    申请日:2004-12-16

    IPC分类号: G06F15/16

    摘要: HTTP/HTML is enhanced to provide information to a server about the current usage level of the continuous data that is being sent to the client. With this information, the server is able to tailor the data being sent to the client based on the current usage level. If the usage level changes in the client system, the server receives information about the changed level and the amount of data being sent is adjusted (up or down) accordingly. The client (browser) is enhanced to determine and send the current usage status and the server is enhanced with the intelligence to tailor the data it sends based on the current usage status received from the client.

    摘要翻译: HTTP / HTML被增强,向服务器提供有关发送到客户端的连续数据的当前使用级别的信息。 利用这些信息,服务器能够根据当前使用级别来定制要发送给客户端的数据。 如果客户端系统中的使用级别发生变化,服务器就会收到关于已更改级别的信息,并且相应地调整(上或下)发送的数据量。 客户机(浏览器)被增强以确定和发送当前使用状态,并且使用智能来增强服务器,以根据从客户端接收的当前使用状态来定制其发送的数据。

    Secure IPsec tunnels with a background system accessible via a gateway implementing NAT
    10.
    发明授权
    Secure IPsec tunnels with a background system accessible via a gateway implementing NAT 有权
    可通过实施NAT的网关访问后台系统的安全IPsec隧道

    公开(公告)号:US07159242B2

    公开(公告)日:2007-01-02

    申请号:US10142608

    申请日:2002-05-09

    IPC分类号: H04L9/00

    摘要: A method and system for enabling secure IPsec tunnels within NAT without compromising security. A local network is configured with a gateway machine connected to the Internet and having an IPsec ID for interfacing with the Internet and a local IP/interface address for interfacing with the local network. Client machines are connected to the gateway machine and communicate with the Internet via the gateway and network address translation (NAT) techniques. Each client machine is configured with a local IP/interface address. The client machines are also provided with an alias of the IPsec ID for the gateway machine. When an IPsec request is received by the gateway machine to establish a tunnel (secure communication) with one of the clients, the gateway machine forwards the packet to the particular client using NAT. The client machine receives the request and since it has an alias of the gateway's IPsec ID, the client machine will confirm that it has one of the IPsec IDs in the packet. The client machine sends the reply packet back to the gateway machine, which then forwards it to the requesting machine over the Internet. The requesting machine receives the packet and a confirmation that it has reached its intended recipient and opens the secure IKE tunnel with the particular client via the gateway machine. In this manner authentication of the IKE tunnel and establishment of a secure IPsec session is completed with a client machine that is accessible only via a gateway implementing NAT.

    摘要翻译: 一种在NAT内实现安全IPsec隧道的方法和系统,不会影响安全性。 本地网络配置有连接到因特网的网关机器,并且具有用于与因特网进行接口的IPsec ID和用于与本地网络接口的本地IP /接口地址。 客户端机器连接到网关机器,并通过网关和网络地址转换(NAT)技术与互联网进行通信。 每个客户机都配置了本地IP /接口地址。 客户端计算机还提供了网关机器的IPsec ID的别名。 当网关机器接收到与其中一个客户端建立隧道(安全通信)的IPsec请求时,网关机器将NAT使用NAT转发到特定客户端。 客户端机器接收到请求,并且由于它具有网关的IPsec ID的别名,所以客户机将确认它具有数据包中的一个IPsec ID。 客户端机器将回复包发送回网关机器,网关机器然后通过因特网将其转发给请求机器。 请求机器接收分组并确认其已经到达其预期接收者,并通过网关机器与特定客户端打开安全IKE隧道。 以这种方式,IKE隧道的认证和安全IPsec会话的建立由仅通过实现NAT的网关可访问的客户机完成。