URL-BASED STICKY ROUTING TOKENS USING A SERVER-SIDE COOKIE JAR
    1.
    发明申请
    URL-BASED STICKY ROUTING TOKENS USING A SERVER-SIDE COOKIE JAR 有权
    基于URL的STICKY路由器使用服务器端COOKIE JAR

    公开(公告)号:US20130007225A1

    公开(公告)日:2013-01-03

    申请号:US13535878

    申请日:2012-06-28

    IPC分类号: G06F15/16

    摘要: A method, system and program product are presented for enabling a session, as defined by a series of related transactions to perform a unit of work, to be created between a client and a particular server where the server is managed by a dispatcher. Modifications to the Uniform Resource Locator (URL) are used to create a method of transferring information form the client to the server. The server implements a server-side storage area (cookie jar) to temporarily store information about the client and the session so that the client is routed to the same server for successive messages in the same session and no reliance is made upon an ability by the client to store or return cookies.

    摘要翻译: 提供了一种方法,系统和程序产品,用于使得由一系列相关事务定义的会话能够执行在客户端和服务器由调度程序管理的特定服务器之间创建的工作单元。 对统一资源定位符(URL)的修改用于创建从客户端向服务器传输信息的方法。 服务器实现服务器端存储区域(cookie jar)以临时存储有关客户端和会话的信息,以便客户端被路由到相同的服务器,用于同一会话中的连续消息,并且不依赖于 客户端存储或返回Cookie。

    Apparatus and method for accessing request header information using a transcoding filter servlet
    2.
    发明授权
    Apparatus and method for accessing request header information using a transcoding filter servlet 有权
    使用代码转换过滤器servlet访问请求头信息的装置和方法

    公开(公告)号:US07003584B1

    公开(公告)日:2006-02-21

    申请号:US09611158

    申请日:2000-07-06

    IPC分类号: G06F15/16

    CPC分类号: H04L67/02 H04L69/22

    摘要: The present invention provides an apparatus and method for accessing request header information used to transcode servlet output. The apparatus and method of the present invention includes a preamble that stores request header information from a request sent by a client device. The request header information is then provided to the transcoder along with the generated content data. The transcoder then performs appropriate transcoding on the generated content data based on the request header information supplied by the preamble. The transcoded content data is then sent to the client device. In this way, the client device is able to obtain content from a much larger set of content sources than with conventional systems.

    摘要翻译: 本发明提供一种用于访问用于对servlet输出进行转码的请求头信息的装置和方法。 本发明的装置和方法包括前导码,其存储来自客户端设备发送的请求的请求头信息。 然后将请求头信息与生成的内容数据一起提供给代码转换器。 然后,代码转换器基于由前导码提供的请求头信息对所生成的内容数据执行适当的代码转换。 然后将经代码转换的内容数据发送到客户端设备。 以这种方式,客户端设备能够从与传统系统相比更大的内容源集合获得内容。

    Secure integrated device with secure, dynamically-selectable capabilities
    3.
    发明授权
    Secure integrated device with secure, dynamically-selectable capabilities 失效
    安全的集成设备,具有安全,动态可选的功能

    公开(公告)号:US06968453B2

    公开(公告)日:2005-11-22

    申请号:US09761906

    申请日:2001-01-17

    IPC分类号: G06F21/00 G07F7/10 H04L9/00

    摘要: A method, system, computer program product, and method of doing business by providing a secure integrated device (such as a pervasive computing device) for which operating capabilities can be dynamically yet securely selected (including, but not limited to, pluggable connection of input/output devices and/or application processors that provide selected functions). Each input/output (I/O) device and application processor to be used is plugged in to a bus of a security core, and authenticates itself to the security core using public key infrastructure techniques, thereby creating a secure multi-function device. All of the multi-function device's input and output interactions with its environment necessarily traverse an I/O bus under the sole control of the security core. The only communication path between an application processor and the external environment (such as an I/O device) is through an application processor bus, which is likewise under control of the security core. Thus a user may dynamically yet securely select the capabilities of a multi-function device, and because each I/O device and application processor in use by that multi-function device is authenticated, the security of transactions or network services performed when using such devices is improved.

    摘要翻译: 一种方法,系统,计算机程序产品和通过提供安全集成设备(例如普及计算设备)来进行业务的方法,对于该安全的集成设备,可以动态地安全地选择操作能力(包括但不限于输入的可插拔连接 /输出设备和/或提供所选功能的应用处理器)。 要使用的每个输入/输出(I / O)设备和应用处理器被插入安全核心的总线,并且使用公共密钥基础设施技术将其自身认证到安全核心,由此创建安全的多功能设备。 所有多功能设备与其环境的输入和输出交互必须在安全核心的唯一控制下遍历I / O总线。 应用处理器和外部环境(例如I / O设备)之间的唯一通信路径是通过应用处理器总线,其同样在安全核心的控制下。 因此,用户可以动态地安全地选择多功能设备的能力,并且由于该多功能设备使用的每个I / O设备和应用处理器被认证,所以在使用这些设备时执行的事务或网络服务的安全性 改进了

    Selective data encryption using style sheet processing for decryption by a key recovery agent
    4.
    发明授权
    Selective data encryption using style sheet processing for decryption by a key recovery agent 失效
    选择性数据加密使用样式表处理,由密钥恢复代理进行解密

    公开(公告)号:US06941459B1

    公开(公告)日:2005-09-06

    申请号:US09422431

    申请日:1999-10-21

    IPC分类号: G06F17/22 G06F17/27

    摘要: A method, system, and computer program product for selectively encrypting one or more elements of a document using style sheet processing. Disclosed is a policy-driven augmented style sheet processor (e.g. an Extensible Stylesheet Language, or “XSL”, processor) that creates a selectively-encrypted document (e.g. an Extensible Markup Language, or “XML”, document) carrying key-distribution material, such that by using an augmented document processor (e.g. an augmented XML processing engine), an agent can recover only the information elements for which it is authorized. The Document Type Definition (DTD) or schema associated with a document is modified, such that the DTD or schema specifies a reference to stored security policy to be applied to document elements. Each document element may specify a different security policy, such that the different elements of a single document can be encrypted differently (and, some elements may remain unencrypted). The key distribution material enables a document to be encrypted for decryption by an audience that is unknown at the time of document creation, and enables access to the distinct elements of a single encrypted document to be controlled for multiple users and/or groups of users. In this manner, group collaboration is improved by giving more people easier access to information for which they are authorized, while protecting sensitive data from unauthorized agents. A key recovery technique is also defined, whereby the entire document can be decrypted by an authorized agent regardless of how the different elements were originally encrypted and the access protections which were applied to those elements.

    摘要翻译: 一种用于使用样式表处理选择性地加密文档的一个或多个元素的方法,系统和计算机程序产品。 公开了一种策略驱动的增强样式表处理器(例如可扩展样式表语言或“XSL”处理器),其创建携带密钥分发材料的选择性加密的文档(例如可扩展标记语言或“XML”文档) ,使得通过使用增强的文档处理器(例如增强的XML处理引擎),代理人可以仅恢复其被授权的信息元素。 与文档相关联的文档类型定义(DTD)或模式被修改,使得DTD或模式指定对要应用于文档元素的存储的安全策略的引用。 每个文档元素可以指定不同的安全策略,使得可以不同地加密单个文档的不同元素(并且一些元素可以保持未加密)。 密钥分发材料使得文档被加密以供在文档创建时未知的受众解密,并且使得能够访问要为多个用户和/或用户组控制的单个加密文档的不同元素。 以这种方式,通过让更多的人更容易地访问他们获得授权的信息,同时保护敏感数据免受未经授权的代理人的改进,可以改善团队合作。 还定义了关键恢复技术,由此整个文档可以由授权代理进行解密,而不管不同元素最初被加密以及应用于这些元素的访问保护。

    Using device certificates for automated authentication of communicating devices
    5.
    发明授权
    Using device certificates for automated authentication of communicating devices 失效
    使用设备证书进行通信设备的自动认证

    公开(公告)号:US06826690B1

    公开(公告)日:2004-11-30

    申请号:US09435417

    申请日:1999-11-08

    IPC分类号: H04L900

    摘要: A device certificate identifies a particular device using a globally-unique device identifier and contains a public key associated therewith. A private key stored in protected storage of the device is used to digitally sign outbound messages, enabling communicating devices to authenticate one another using the associated device certificate and public key, before returning a response. Devices functioning as servers can thereby securely participate in dynamic, automatic address assignment services using a service such as a Boot Protocol or Dynamic Host Configuration Protocol, and/or to update address information stored in a Domain Name System (DNS) server, ensuring that the update is authentic, and when the DNS is also authenticated, ensuring that a legitimate DNS has been contacted.

    摘要翻译: 设备证书使用全局唯一的设备标识符来标识特定设备,并且包含与其相关联的公钥。 存储在设备的受保护存储器中的私钥用于数字签名出站消息,使得在返回响应之前能够使用相关联的设备证书和公钥来使设备彼此认证。 可以使用诸如引导协议或动态主机配置协议的服务,和/或更新存储在域名系统(DNS)服务器中的地址信息来安全地参与服务器的动态,自动地址分配服务,从而确保 更新是真实的,并且当DNS也被认证时,确保已经联系了合法的DNS。

    URL-based sticky routing tokens using a server-side cookie jar
    7.
    发明授权
    URL-based sticky routing tokens using a server-side cookie jar 有权
    使用服务器端cookie jar的基于URL的粘性路由令牌

    公开(公告)号:US08239445B1

    公开(公告)日:2012-08-07

    申请号:US09557708

    申请日:2000-04-25

    IPC分类号: G06F15/16

    摘要: A method, system and program product are presented for enabling a session, as defined by a series of related transactions to perform a unit of work, to be created between a client and a particular server where the server is managed by a dispatcher. Modifications to the Uniform Resource Locator (URL) are used to create a method of transferring information form the client to the server. The server implements a server-side storage area (cookie jar) to temporarily store information about the client and the session so that the client is routed to the same server for successive messages in the same session and no reliance is made upon an ability by the client to store or return cookies.

    摘要翻译: 提供了一种方法,系统和程序产品,用于使得由一系列相关事务定义的会话能够执行在客户端和服务器由调度程序管理的特定服务器之间创建的工作单元。 对统一资源定位符(URL)的修改用于创建从客户端向服务器传输信息的方法。 服务器实现服务器端存储区域(cookie jar)以临时存储有关客户端和会话的信息,以便客户端被路由到相同的服务器,用于同一会话中的连续消息,并且不依赖于 客户端存储或返回Cookie。

    Apparatus and method for determining compatibility of web sites with designated requirements based on functional characteristics of the web sites
    8.
    发明授权
    Apparatus and method for determining compatibility of web sites with designated requirements based on functional characteristics of the web sites 有权
    基于网站的功能特征确定网站与指定要求的兼容性的装置和方法

    公开(公告)号:US07254526B2

    公开(公告)日:2007-08-07

    申请号:US09938966

    申请日:2001-08-24

    CPC分类号: G06F17/30864

    摘要: An apparatus and method for searching a database of web site functional characteristics to identify web sites that are compatible with designated functions are provided. With the apparatus and method, a database of functional characteristics is compiled and a search interface is provided. The database may be compiled in an automatic, manual, or semiautomatic manner by, for example, retrieving web site content with various functions of a web browser disabled and analyzing the resultant output through the web browser. With the search interface, a user may enter designations of the functional characteristics that the user is either interested in having or not having in the resultant list of web sites. Based on the user's designation of functional characteristics, the search engine associated with the search interface searches the database of web sites and identifies the web site entries in the database that are compatible with the designated functional characteristics. The search engine then provides a listing of these web site entries through a search output interface which may then be used by the user that requested the search.

    摘要翻译: 提供了一种用于搜索网站功能特征的数据库以识别与指定功能兼容的网站的装置和方法。 利用该装置和方法,编辑功能特征数据库并提供搜索接口。 数据库可以以自动,手动或半自动的方式被编译,例如通过网络浏览器的各种功能来检索网站内容,并通过网络浏览器分析所得到的输出。 利用搜索界面,用户可以输入用户有兴趣拥有或不具有所得到的网站列表中的功能特征的指定。 基于用户对功能特征的指定,与搜索界面相关联的搜索引擎搜索网站的数据库,并且识别与指定的功能特征兼容的数据库中的网站条目。 然后,搜索引擎通过搜索输出接口提供这些网站条目的列表,然后搜索输出接口可以由请求搜索的用户使用。

    Method and apparatus for enhanced safety in hunting environments
    10.
    发明授权
    Method and apparatus for enhanced safety in hunting environments 有权
    在狩猎环境中增强安全性的方法和装置

    公开(公告)号:US06898526B2

    公开(公告)日:2005-05-24

    申请号:US09885779

    申请日:2001-06-20

    摘要: The invention is a system combining a Global Positioning Satellite (GPS) receiver, an electronic compass and a two-way wireless communication system wherein a plurality of hunters each carry such a device. The device is adapted to determine its location using GPS, report that location to a base station or directly to other such devices, receive the location of the other hunters from the base station or directly from other of such devices, and to warn the hunter when aiming his weapon in the direction of another hunter that is within an unsafe distance.

    摘要翻译: 本发明是一种组合全球定位卫星(GPS)接收机,电子罗盘和双向无线通信系统的系统,其中多个猎人各携带这样的设备。 该设备适于使用GPS确定其位置,向基站报告该位置或直接向其他这样的设备报告该位置,从基站或其他这样的设备接收其他猎人的位置,或者直接从其他这样的设备接收警报,并且向猎人报警 将他的武器瞄准另一个不安全距离的猎人的方向。