-
公开(公告)号:US20060150253A1
公开(公告)日:2006-07-06
申请号:US11276722
申请日:2006-03-10
申请人: Yehuda Feuerstein , Jared Pfost , Stephen Purpura
发明人: Yehuda Feuerstein , Jared Pfost , Stephen Purpura
IPC分类号: H04N7/16
CPC分类号: G06F21/55 , G06F21/64 , G06F2221/2101 , G06Q30/0609 , Y10S707/99932 , Y10S707/99933
摘要: A security component determines whether a request for a resource poses a security risk to a computing device and verifies the integrity of the requested resource before the request is allowed. For a request having arguments and a resource path with a filename that identifies the resource, the security component determines that the request does not pose a security risk if the resource path does not exceed a maximum number of characters, individual arguments do not exceed a maximum number of characters, the arguments combined do not exceed a maximum number of characters, and the filename has a valid extension. The security component verifies the integrity of a requested resource by formulating a descriptor corresponding to the resource and comparing the descriptor with a cached descriptor corresponding to the resource.
摘要翻译: 安全组件确定对资源的请求是否对计算设备造成安全风险,并且在允许请求之前验证所请求资源的完整性。 对于具有参数的请求和具有标识资源的文件名的资源路径,如果资源路径不超过最大字符数,则安全组件确定该请求不会造成安全风险,单个参数不超过最大值 字符数,组合的参数不超过最大字符数,文件名有一个有效的扩展名。 安全性组件通过制定对应于资源的描述符并将描述符与对应于该资源的缓存描述符进行比较来验证所请求资源的完整性。
-
公开(公告)号:US07058978B2
公开(公告)日:2006-06-06
申请号:US09751016
申请日:2000-12-27
CPC分类号: G06F21/55 , G06F21/64 , G06F2221/2101 , G06Q30/0609 , Y10S707/99932 , Y10S707/99933
摘要: A security component determines whether a request for a resource poses a security risk to a computing device and verifies the integrity of the requested resource before the request is allowed. For a request having arguments and a resource path with a filename that identifies the resource, the security component determines that the request does not pose a security risk if the resource path does not exceed a maximum number of characters, individual arguments do not exceed a maximum number of characters, the arguments combined do not exceed a maximum number of characters, and the filename has a valid extension. The security component verifies the integrity of a requested resource by formulating a descriptor corresponding to the resource and comparing the descriptor with a cached descriptor corresponding to the resource.
-
公开(公告)号:US20060031572A1
公开(公告)日:2006-02-09
申请号:US10848417
申请日:2004-05-18
申请人: Yehuda Feuerstein , Robert Wigton
发明人: Yehuda Feuerstein , Robert Wigton
IPC分类号: G06F15/173
CPC分类号: G06F9/542
摘要: The invention provides for in-process and inter-process event notification in a distributed computing environment. The event notification system and method utilizes a hierarchical namespace to determine events of interest to registered subscribers. If an event falls within the hierarchical namespace of a registered subscriber, the event is received in the subscriber's queue. The use of a hierarchical namespace enables a subscriber to process events intended for the subscriber even though additional events are presented to the subscriber.
摘要翻译: 本发明提供了在分布式计算环境中的进程内和进程间事件通知。 事件通知系统和方法利用分层命名空间来确定注册用户感兴趣的事件。 如果事件落在注册用户的分层命名空间内,则在用户队列中接收该事件。 使用分层命名空间使订户能够处理为订户提供的事件,即使向订户提供附加事件。
-
公开(公告)号:US07555781B2
公开(公告)日:2009-06-30
申请号:US11276722
申请日:2006-03-10
CPC分类号: G06F21/55 , G06F21/64 , G06F2221/2101 , G06Q30/0609 , Y10S707/99932 , Y10S707/99933
摘要: A security component determines whether a request for a resource poses a security risk to a computing device and verifies the integrity of the requested resource before the request is allowed. For a request having arguments and a resource path with a filename that identifies the resource, the security component determines that the request does not pose a security risk if the resource path does not exceed a maximum number of characters, individual arguments do not exceed a maximum number of characters, the arguments combined do not exceed a maximum number of characters, and the filename has a valid extension. The security component verifies the integrity of a requested resource by formulating a descriptor corresponding to the resource and comparing the descriptor with a cached descriptor corresponding to the resource.
-
-
-