Social trust based security model
    1.
    发明授权
    Social trust based security model 有权
    基于社会信任的安全模式

    公开(公告)号:US09077715B1

    公开(公告)日:2015-07-07

    申请号:US11394846

    申请日:2006-03-31

    IPC分类号: G06F21/00 H04L29/06

    摘要: Making a trust decision is disclosed. One or more members of a social trust network are polled for information associated with a trust decision about a computing environment. The information includes information collected automatically with respect to activities of one or more of the one or more members of the social trust network. At least one action is taken based at least in part on the information.

    摘要翻译: 披露信任决定。 针对与关于计算环境的信任决策相关联的信息,轮询社会信任网络的一个或多个成员。 该信息包括针对一个或多个一个或多个社会信任网络成员的活动而自动收集的信息。 至少部分地基于该信息采取至少一个动作。

    Profiling application usage from application streaming
    2.
    发明授权
    Profiling application usage from application streaming 有权
    从应用程序流分析应用程序的使用情况

    公开(公告)号:US08977764B1

    公开(公告)日:2015-03-10

    申请号:US12039515

    申请日:2008-02-28

    IPC分类号: G06F15/16

    摘要: Application usage is profiled based on application streaming. Code pages of multiple applications are streamed from a server to multiple client computers (endpoints) for execution. The streaming of the code pages is monitored, and usage data is collected such as which pages are streamed to which endpoints, under what circumstances and when. By referencing the streamed code pages and the underlying source code, the code pages are mapped (at least approximately) to corresponding application features. The collected usage data usage and the relevant mapping are analyzed, to create application usage profile data for streamed applications. The application usage profile data can include such information as how often, when, where and by whom application components are being executed, as well as which components cause errors, are most popular, confuse users, etc.

    摘要翻译: 应用程序使用情况基于应用程序流式进行分析。 多个应用程序的代码页从服务器流式传输到多个客户端计算机(端点)以供执行。 监视代码页的流式传输,并收集使用数据,例如哪些页面被流式传输到哪个端点,在什么情况下和什么时候。 通过引用流传输的代码页和底层的源代码,代码页被映射(至少近似)到相应的应用程序特征。 分析收集的使用数据用法和相关映射,以创建流应用程序的应用程序使用情况数据。 应用程序使用情况数据可以包括诸如应用组件的执行频率,何时何地以及由哪个应用组件执行的信息以及哪些组件导致错误,最受欢迎的,混淆用户等的信息。

    Method and apparatus for enabling e-mail routing and filtering based on dynamic identities
    4.
    发明授权
    Method and apparatus for enabling e-mail routing and filtering based on dynamic identities 有权
    基于动态身份实现电子邮件路由和过滤的方法和装置

    公开(公告)号:US08566401B1

    公开(公告)日:2013-10-22

    申请号:US11644511

    申请日:2006-12-22

    IPC分类号: G06F15/16

    摘要: A method and apparatus for enabling e-mail routing and filtering based on dynamic identities is presented. In one embodiment, the method includes provisioning a new e-mail address, and notifying an e-mail backend of the provisioned address wherein the provisioned address includes a list of authorized senders.

    摘要翻译: 提出了一种基于动态身份实现电子邮件路由和过滤的方法和装置。 在一个实施例中,该方法包括提供新的电子邮件地址,以及通知电子邮件后端所提供的地址,其中所提供的地址包括授权发送者的列表。

    Enforcing digital rights management in a heterogeneous environment
    5.
    发明授权
    Enforcing digital rights management in a heterogeneous environment 有权
    在异构环境中实施数字版权管理

    公开(公告)号:US08468608B1

    公开(公告)日:2013-06-18

    申请号:US12414466

    申请日:2009-03-30

    IPC分类号: G06F7/04

    CPC分类号: G06F21/10 G06F2221/0728

    摘要: A DRM server parses a request received from a client for a content identifier and client classification information. The content identifier identifies the requested content and client classification information describes the capabilities of the client. The DRM server determines a policy for the requested content. The policy specifies rules for determining access rights for the content responsive to the capabilities of the client. The DRM server determines access rights for the requested content responsive to the capabilities of the client and the policy. The DRM manager then provides the requested content and the determined access rights to the client.

    摘要翻译: DRM服务器解析从客户端接收到的用于内容标识符和客户端分类信息的请求。 内容标识符识别所请求的内容,并且客户端分类信息描述客户端的能力。 DRM服务器确定所请求内容的策略。 该策略指定响应于客户端的能力确定内容的访问权限的规则。 响应于客户端的能力和策略,DRM服务器确定所请求的内容的访问权限。 然后,DRM管理器向客户端提供所请求的内容和确定的访问权限。

    Prioritizing tasks from virtual machines
    6.
    发明授权
    Prioritizing tasks from virtual machines 有权
    从虚拟机优先处理任务

    公开(公告)号:US08424007B1

    公开(公告)日:2013-04-16

    申请号:US12242685

    申请日:2008-09-30

    IPC分类号: G06F9/46

    摘要: A computer-implemented method for prioritizing virtual machine tasks may include receiving a request to perform a first task from a virtual machine. The request may include information relevant to determining a priority of the task. The method may include determining the priority of the task based on the information. The method may further include scheduling the first task based on the priority of the task. The method may include selecting the first task for execution based on the scheduling. The method may include notifying the virtual machine that the first task has been selected for execution. Various related methods, computer-readable media, and systems are also disclosed.

    摘要翻译: 用于对虚拟机任务进行优先级的计算机实现的方法可以包括从虚拟机接收执行第一任务的请求。 该请求可以包括与确定任务的优先级有关的信息。 该方法可以包括基于该信息确定任务的优先级。 该方法还可以包括基于任务的优先级调度第一任务。 该方法可以包括基于调度来选择用于执行的第一任务。 该方法可以包括通知虚拟机第一任务已经被选择用于执行。 还公开了各种相关方法,计算机可读介质和系统。

    Methods and systems for defragmenting virtual machine prefetch data on physical storage
    7.
    发明授权
    Methods and systems for defragmenting virtual machine prefetch data on physical storage 有权
    在物理存储上对虚拟机预取数据进行碎片整理的方法和系统

    公开(公告)号:US08332570B1

    公开(公告)日:2012-12-11

    申请号:US12242734

    申请日:2008-09-30

    IPC分类号: G06F12/02 G06F9/455

    摘要: A computer-implemented method for defragmenting virtual machine prefetch data. The method may include obtaining prefetch information associated with prefetch data of a virtual machine. The method may also include defragmenting, based on the prefetch information, the prefetch data on physical storage. The prefetch information may include a starting location and length of the prefetch data on a virtual disk. The prefetch information may include a geometry specification of the virtual disk. Defragmenting on physical storage may include placing the prefetch data contiguously on physical storage, placing the prefetch data in a fast-access segment of physical storage, and/or ordering the prefetch data according to the order in which it is accessed at system or application startup.

    摘要翻译: 用于对虚拟机预取数据进行碎片整理的计算机实现的方法。 该方法可以包括获得与虚拟机的预取数据相关联的预取信息。 该方法还可以包括基于预取信息对物理存储器上的预取数据进行碎片整理。 预取信息可以包括虚拟磁盘上的预取数据的起始位置和长度。 预取信息可以包括虚拟磁盘的几何规格。 物理存储上的碎片整理可能包括将预取数据连续地放置在物理存储上,将预取数据放置在物理存储的快速访问段中,和/或根据系统或应用程序启动时访问顺序对预取数据进行排序 。

    Method and apparatus to determine device mobility history
    8.
    发明授权
    Method and apparatus to determine device mobility history 有权
    确定设备移动性历史的方法和设备

    公开(公告)号:US08255517B1

    公开(公告)日:2012-08-28

    申请号:US11477503

    申请日:2006-06-29

    IPC分类号: G06F15/173

    摘要: A method, system and computer-readable medium for securing access between a mobile computing device and a network computer is described. The method comprises upon a connection by the mobile computing device to a network or a device, recording the connection in a history database and processing the history database to assign a risk level to the mobile computing device. The system comprises the mobile computing device comprising a connection history collection agent for collecting information about a computing environment and the host computer comprising wireless environment data derived from the collected information where the host computer uses the wireless environment data to grant or deny a connection to the mobile computing device.

    摘要翻译: 描述了用于保护移动计算设备和网络计算机之间的接入的方法,系统和计算机可读介质。 该方法包括通过移动计算设备连接到网络或设备,在历史数据库中记录连接并处理历史数据库以向移动计算设备分配风险级别。 该系统包括移动计算设备,该移动计算设备包括用于收集关于计算环境的信息的连接历史收集代理,并且主计算机包括从收集的信息导出的无线环境数据,其中主计算机使用无线环境数据来准许或拒绝与 移动计算设备。

    Endpoint management using trust rating data
    9.
    发明授权
    Endpoint management using trust rating data 有权
    端点管理使用信任评级数据

    公开(公告)号:US08239915B1

    公开(公告)日:2012-08-07

    申请号:US11427938

    申请日:2006-06-30

    IPC分类号: H04L29/06

    摘要: Techniques are disclosed for implementing dynamic endpoint management. In accordance with one embodiment, whenever an endpoint joins a managed network for the first time, or rejoins that network, a local security module submits a list of applications (e.g., all or incremental) to a security server. The server validates the list and sends back a rule set (e.g., allow/block rules and/or required application security settings) for those applications. If the server has no information for a given application, it may further subscribe to content from a content provider or service. When the server is queried regarding an unknown application, the server sends a query to the service provider to obtain a trust rating for that unknown application. The trust rating can then be used to generate a rule set for the unknown application. Functionality can be shifted from server to client, and vice-versa if so desired.

    摘要翻译: 公开了实现动态端点管理的技术。 根据一个实施例,每当端点首次加入受管网络或重新加入该网络时,本地安全模块将应用列表(例如全部或增量)提交给安全服务器。 服务器验证列表,并发送这些应用程序的规则集(例如,允许/阻止规则和/或必需的应用程序安全设置)。 如果服务器没有给定应用程序的信息,它可以进一步订阅来自内容提供商或服务的内容。 当服务器查询未知应用程序时,服务器向服务提供商发送查询以获得该未知应用程序的信任等级。 然后可以使用信任评级来为未知应用程序生成规则集。 如果需要,功能可以从服务器转移到客户端,反之亦然。

    Dropping packets to prevent unauthorized data transfer through multimedia tunnels
    10.
    发明授权
    Dropping packets to prevent unauthorized data transfer through multimedia tunnels 有权
    丢弃数据包,以防止通过多媒体隧道进行未经授权的数据传输

    公开(公告)号:US08045457B1

    公开(公告)日:2011-10-25

    申请号:US11478786

    申请日:2006-06-29

    IPC分类号: G06F11/00 G06F15/16 G06F7/04

    摘要: Intentionally dropping packets to prevent unauthorized transfer of data through multimedia tunnels is disclosed. A stream of media transport protocol packets is received. One or more packets are dropped intentionally from the stream to render unusable at the destination a file or other data transported through the multimedia tunnel without authorization.

    摘要翻译: 公开了有意地丢弃数据包以防止通过多媒体隧道的未经授权的数据传输。 接收媒体传输协议包流。 有意地从流中丢弃一个或多个数据包,以在目的地使文件或未经授权通过多媒体隧道传输的其他数据不可用。