Using opaque groups in a federated identity management environment
    1.
    发明授权
    Using opaque groups in a federated identity management environment 有权
    在联合身份管理环境中使用不透明组

    公开(公告)号:US08291474B2

    公开(公告)日:2012-10-16

    申请号:US12104141

    申请日:2008-04-16

    IPC分类号: H04L29/06

    摘要: A system and method for using an opaque group within a federated identity management environment, to prevent disclosure of identities of the group. An opaque group is constructed at an identity provider within the system and has a group identity that references primary system identities of its members (e.g., electronic mail addresses, public key certificates, network addresses). Services to the group (e.g., distribution of an object such as a document or electronic mail message, invitation to an online meeting, authentication as a member of the group) can be requested from service providers, but because service providers do not have access to members' primary identities, the service providers forward the requests to an identity provider that has access to the group identity. That identity provider retrieves the members' identities and completes the action.

    摘要翻译: 在联合身份管理环境中使用不透明组的系统和方法,以防止组内的身份公开。 在系统内的身份提供者处构造不透明组,并具有引用其成员的主要系统标识(例如,电子邮件地址,公共密钥证书,网络地址)的组身份。 可以向服务提供商请求向集团提供的服务(例如,诸如文档或电子邮件消息的对象的分发,对在线会议的邀请,作为组的成员的认证),但是由于服务提供商无法访问 成员的主要身份,服务提供商将请求转发给可访问组身份的身份提供者。 身份提供者检索成员的身份并完成该操作。

    USING OPAQUE GROUPS IN A FEDERATED IDENTITY MANAGEMENT ENVIRONMENT
    2.
    发明申请
    USING OPAQUE GROUPS IN A FEDERATED IDENTITY MANAGEMENT ENVIRONMENT 有权
    在联合身份管理环境中使用OPAQUE组

    公开(公告)号:US20090265753A1

    公开(公告)日:2009-10-22

    申请号:US12104141

    申请日:2008-04-16

    IPC分类号: G06F21/00

    摘要: A system and method for using an opaque group within a federated identity management environment, to prevent disclosure of identities of the group. An opaque group is constructed at an identity provider within the system and has a group identity that references primary system identities of its members (e.g., electronic mail addresses, public key certificates, network addresses). Services to the group (e.g., distribution of an object such as a document or electronic mail message, invitation to an online meeting, authentication as a member of the group) can be requested from service providers, but because service providers do not have access to members' primary identities, the service providers forward the requests to an identity provider that has access to the group identity. That identity provider retrieves the members' identities and completes the action.

    摘要翻译: 在联合身份管理环境中使用不透明组的系统和方法,以防止组内的身份公开。 在系统内的身份提供者处构造不透明组,并具有引用其成员的主要系统标识(例如,电子邮件地址,公共密钥证书,网络地址)的组身份。 可以向服务提供商请求向集团提供的服务(例如,诸如文档或电子邮件消息的对象的分发,对在线会议的邀请,作为组的成员的认证),但是由于服务提供商无法访问 成员的主要身份,服务提供商将请求转发给可访问组身份的身份提供者。 身份提供者检索成员的身份并完成该操作。

    Method for analyzing an XACML policy
    3.
    发明授权
    Method for analyzing an XACML policy 有权
    分析XACML策略的方法

    公开(公告)号:US08250526B2

    公开(公告)日:2012-08-21

    申请号:US12190438

    申请日:2008-08-12

    IPC分类号: G06F9/44

    CPC分类号: G06F8/72 G06F21/6218

    摘要: XACML (eXtensible Access Control Markup Language) documents, PolicySets and Policies can become long, complex and difficult to completely comprehend. A method is provided for facilitating analysis of such code to make it easier to answer questions such as: Given a particular set of Attribute values (and/or others unknown as of now), what is permitted or denied; are any of the rules redundant; are any of the rules inconsistent; for any pair of policies in the code, what set of Attributes will they both return Permit; how can a policy be refactored into an equivalent set of policies in which each branch of the policy tree pertains to specific values of specified Attributes? To facilitate such analysis and refactoring, every Rule in the collection of policies being analyzed is reduced to an equivalent expression in DNF (Disjunctive Normal Form). Some terms, predicates and other elements may be eliminated.

    摘要翻译: XACML(可扩展访问控制标记语言)文档,策略集和策略可能会变得漫长,复杂,难以完全理解。 提供了一种便于分析这些代码的方法,以便更容易地回答诸如以下问题:给定一组特定的属性值(和/或其他未知的),允许或否认的; 任何规则都是冗余的; 任何规则都不一致; 对于代码中的任何一个策略,他们将返回许可的什么属性集合; 如何将策略重构为等效的一组策略,其中策略树的每个分支与特定属性的特定值相关? 为了促进这种分析和重构,收集分析政策的每一条规则都被缩减为DNF(Disjunctive Normal Form)中的等效表达式。 一些术语,谓词和其他元素可能被消除。

    METHOD FOR ANALYZING AN XACML POLICY
    4.
    发明申请
    METHOD FOR ANALYZING AN XACML POLICY 有权
    分析XACML政策的方法

    公开(公告)号:US20100042973A1

    公开(公告)日:2010-02-18

    申请号:US12190438

    申请日:2008-08-12

    IPC分类号: G06F21/00 G06F9/44

    CPC分类号: G06F8/72 G06F21/6218

    摘要: XACML (eXtensible Access Control Markup Language) documents, PolicySets and Policies can become long, complex and difficult to completely comprehend. A method is provided for facilitating analysis of such code to make it easier to answer questions such as: Given a particular set of Attribute values (and/or others unknown as of now), what is permitted or denied; are any of the rules redundant; are any of the rules inconsistent; for any pair of policies in the code, what set of Attributes will they both return Permit; how can a policy be refactored into an equivalent set of policies in which each branch of the policy tree pertains to specific values of specified Attributes? To facilitate such analysis and refactoring, every Rule in the collection of policies being analyzed is reduced to an equivalent expression in DNF (Disjunctive Normal Form). Some terms, predicates and other elements may be eliminated.

    摘要翻译: XACML(可扩展访问控制标记语言)文档,策略集和策略可能会变得漫长,复杂,难以完全理解。 提供了一种便于分析这些代码的方法,以便更容易地回答诸如以下问题:给定一组特定的属性值(和/或其他未知的),允许或否认的; 任何规则都是冗余的; 任何规则都不一致; 对于代码中的任何一个策略,他们将返回许可的什么属性集合; 如何将策略重构为等效的一组策略,其中策略树的每个分支与特定属性的特定值相关? 为了促进这种分析和重构,收集分析政策的每一条规则都被缩减为DNF(Disjunctive Normal Form)中的等效表达式。 一些术语,谓词和其他元素可能被消除。

    Audio processing in a social environment
    5.
    发明授权
    Audio processing in a social environment 有权
    在社交环境中进行音频处理

    公开(公告)号:US08565906B1

    公开(公告)日:2013-10-22

    申请号:US11863872

    申请日:2007-09-28

    IPC分类号: G06F17/00

    摘要: Example embodiments herein include an audio manager that identifies at least one user in a social environment (e.g., multiplayer gaming environment). Each user in the social environment has a respective user music profile that contains audio attributes for various types of audio. The audio manager combines the user music profile from each user to form a group music profile. The audio manager further identifies a selection of audio segments to be rendered in the social environment that match the group music profile. Additionally, the audio manager processes the selection of audio segments against the audio attributes of at least one user to determine an audio segment to be rendered in the social environment. In one embodiment, the audio manager processes the selection of audio segments in accordance with a social value metric. In turn, the audio manager renders the audio segment in the social environment in accordance with the social value metric.

    摘要翻译: 这里的示例性实施例包括识别社交环境(例如,多人游戏环境)中的至少一个用户的音频管理器。 社交环境中的每个用户具有包含用于各种类型的音频的音频属性的相应用户音乐简档。 音频管理器组合来自每个用户的用户音乐简档以形成组音乐配置文件。 音频管理器进一步识别要在与社团音乐配置文件匹配的社交环境中呈现的音频段的选择。 此外,音频管理器针对至少一个用户的音频属性来处理音频段的选择,以确定要在社交环境中呈现的音频段。 在一个实施例中,音频管理器根据社会价值度量处理音频段的选择。 反过来,音频管理器根据社会价值度量在社交环境中呈现音频段。

    Methods and apparatus for acoustic model based soundtracks
    6.
    发明申请
    Methods and apparatus for acoustic model based soundtracks 有权
    基于声学模型的音轨的方法和装置

    公开(公告)号:US20080154403A1

    公开(公告)日:2008-06-26

    申请号:US11644651

    申请日:2006-12-22

    IPC分类号: G06F17/00

    摘要: A system provides a model for use within a digital environment. The model comprises at least one music segment, and supplies music for the digital environment. The system identifies a location within the digital environment. The location requires at least one music segment supplied by the model. The system selects at least one music segment to play within the digital environment. The music segment is selected based on the model, the location requiring the at least one music segment, and the digital environment. The selecting of the music segment is operable to be modified based on the model, the location requiring the at least one music segment, and the digital environment.

    摘要翻译: 系统提供了在数字环境中使用的模型。 该模型包括至少一个音乐段,并为数字环境提供音乐。 系统识别数字环境中的位置。 该位置至少需要一个由模型提供的音乐段。 该系统至少选择一个音乐段在数字环境中播放。 音乐片段基于模型,需要至少一个音乐片段的位置和数字环境来选择。 可以根据模型,要求至少一个音乐段的位置和数字环境来修改音乐段的选择。

    Methods and apparatus for acoustic model based soundtracks
    7.
    发明授权
    Methods and apparatus for acoustic model based soundtracks 有权
    基于声学模型的音轨的方法和装置

    公开(公告)号:US09180370B2

    公开(公告)日:2015-11-10

    申请号:US11644651

    申请日:2006-12-22

    IPC分类号: G06F17/00 A63F13/40

    摘要: A system provides a model for use within a digital environment. The model comprises at least one music segment, and supplies music for the digital environment. The system identifies a location within the digital environment. The location requires at least one music segment supplied by the model. The system selects at least one music segment to play within the digital environment. The music segment is selected based on the model, the location requiring the at least one music segment, and the digital environment. The selecting of the music segment is operable to be modified based on the model, the location requiring the at least one music segment, and the digital environment.

    摘要翻译: 系统提供了在数字环境中使用的模型。 该模型包括至少一个音乐段,并为数字环境提供音乐。 系统识别数字环境中的位置。 该位置至少需要一个由模型提供的音乐段。 该系统至少选择一个音乐段在数字环境中播放。 音乐片段基于模型,需要至少一个音乐片段的位置和数字环境来选择。 可以根据模型,要求至少一个音乐段的位置和数字环境来修改音乐段的选择。

    Methods and apparatus for window-based fair priority scheduling
    8.
    发明授权
    Methods and apparatus for window-based fair priority scheduling 有权
    用于基于窗口的公平优先级调度的方法和装置

    公开(公告)号:US08286173B2

    公开(公告)日:2012-10-09

    申请号:US11726830

    申请日:2007-03-23

    IPC分类号: G06F9/46

    CPC分类号: G06F9/4881

    摘要: A system provides a task scheduler to define a priority queue with at least one window and a queue-window key. Each window is an ordered collection of tasks in a task pool of the priority queue and is identified by the queue-window key. The task scheduler sets a task-window key equal to a user-window key when the user-window key is greater than the minimum queue-window key. The task scheduler can further set the task-window key equal to the minimum queue-window key when the user-window key is less than the minimum queue-window key. A maximum task limit per user for each window and a priority increment for the user-window key are further applied to ensure fair scheduling.

    摘要翻译: 一个系统提供一个任务调度器来定义具有至少一个窗口和队列窗口密钥的优先级队列。 每个窗口是优先级队列任务池中的任务的有序集合,并由队列窗口键标识。 当用户窗口密钥大于最小队列窗口密钥时,任务调度器设置等于用户窗口密钥的任务窗口密钥。 当用户窗口密钥小于最小队列窗口密钥时,任务调度器可以进一步将任务窗口密钥设置为等于最小队列窗口密钥。 每个窗口的每个用户的最大任务限制和用户窗口密钥的优先级增量进一步应用于确保公平调度。

    Methods and apparatus for window-based fair priority scheduling
    9.
    发明申请
    Methods and apparatus for window-based fair priority scheduling 有权
    用于基于窗口的公平优先级调度的方法和装置

    公开(公告)号:US20080235693A1

    公开(公告)日:2008-09-25

    申请号:US11726830

    申请日:2007-03-23

    IPC分类号: G06F9/46

    CPC分类号: G06F9/4881

    摘要: A system provides a task scheduler to define a priority queue with at least one window and a queue-window key. Each window is an ordered collection of tasks in a task pool of the priority queue and is identified by the queue-window key. The task scheduler sets a task-window key equal to a user-window key when the user-window key is greater than the minimum queue-window key. The task scheduler can further set the task-window key equal to the minimum queue-window key when the user-window key is less than the minimum queue-window key. A maximum task limit per user for each window and a priority increment for the user-window key are further applied to ensure fair scheduling.

    摘要翻译: 一个系统提供一个任务调度器来定义具有至少一个窗口和队列窗口密钥的优先级队列。 每个窗口是优先级队列任务池中的任务的有序集合,并由队列窗口键标识。 当用户窗口密钥大于最小队列窗口密钥时,任务调度器设置等于用户窗口密钥的任务窗口密钥。 当用户窗口密钥小于最小队列窗口密钥时,任务调度器可以进一步将任务窗口密钥设置为等于最小队列窗口密钥。 每个窗口的每个用户的最大任务限制和用户窗口密钥的优先级增量进一步应用于确保公平调度。