NETWORK INTRUSION DETECTION SYSTEM
    1.
    发明申请
    NETWORK INTRUSION DETECTION SYSTEM 审中-公开
    网络侵入检测系统

    公开(公告)号:US20090178140A1

    公开(公告)日:2009-07-09

    申请号:US11971370

    申请日:2008-01-09

    IPC分类号: G06F21/20

    CPC分类号: H04L63/1416

    摘要: A network intrusion detection system (IDS) is built at an important network node and used to detect and monitor network packets. The network intrusion detection system includes a network card and a system core processor. When receiving a network packet, a micro-processor of the network card performs a packet decode procedure and a packet preprocess procedure, thereby verifying a type and a source address of the packet in advance and converting the packet into an IDS format packet. Afterwards, the system core processor determines whether the packet is an intrusion packet. Since the computation of the packet decode procedure and the packet pre-process procedure is handled by the network card, the network intrusion detection system will not lose packets due to too heavy computation burden, thereby greatly improving the accuracy of the network intrusion detection system.

    摘要翻译: 网络入侵检测系统(IDS)在重要网络节点建立,用于检测和监控网络数据包。 网络入侵检测系统包括网卡和系统核心处理器。 当接收网络分组时,网卡的微处理器执行分组解码过程和分组预处理过程,从而预先验证分组的类型和源地址并将分组转换为IDS格式分组。 之后,系统核心处理器确定该分组是否是入侵分组。 由于分组解码过程的计算和分组预处理过程由网卡处理,网络入侵检测系统由于计算负担过重而不会丢失分组,从而大大提高了网络入侵检测系统的准确性。

    System and method of protecting data in write-back cache between storage systems
    2.
    发明申请
    System and method of protecting data in write-back cache between storage systems 审中-公开
    在存储系统之间保护写回缓存中的数据的系统和方法

    公开(公告)号:US20070288699A1

    公开(公告)日:2007-12-13

    申请号:US11448898

    申请日:2006-06-08

    IPC分类号: G06F12/00

    CPC分类号: G06F12/0804 G06F12/0866

    摘要: A system of protecting data in write-back cache between storage systems and the method thereof are employed to protect data in the write-back cache between a first storage system and a second storage system. The system adds, updates, or deletes the data in the second storage system backed up from the write-back cache of the first storage system by monitoring operations on the write-back cache of the first storage system and sending a corresponding command to the second storage system in accord with the monitored operation. Therefore, the method ensures the consistency between the backup data and the data stored in the write-back cache of the first storage system, thereby increasing the security of the data.

    摘要翻译: 采用保护存储系统之间的写回高速缓存中的数据及其方法的系统来保护第一存储系统和第二存储系统之间的写回高速缓存中的数据。 该系统通过监视第一存储系统的回写缓存上的操作并向第二存储系统的回写缓存发送相应的命令来添加,更新或删除从第一存储系统的写回缓存备份的第二存储系统中的数据 存储系统符合监控操作。 因此,该方法确保备份数据与存储在第一存储系统的回写缓存中的数据之间的一致性,从而增加数据的安全性。

    Internet protocol address take-over system in a local area network and method thereof
    3.
    发明申请
    Internet protocol address take-over system in a local area network and method thereof 审中-公开
    互联网协议地址接收系统在局域网及其方法

    公开(公告)号:US20070291704A1

    公开(公告)日:2007-12-20

    申请号:US11452258

    申请日:2006-06-14

    IPC分类号: H04Q7/24

    摘要: An Internet protocol (IP) address take-over system in a local area network and a method thereof are provided. The IP address take-over system takes over the IP addresses in a server connecting with a plurality of clients and containing a plurality of network interface cards, and automatically updates the media access control (MAC) addresses stored in the address resolution protocol (ARP) caches of the clients and corresponding to the IP address of the server, so as to guarantee the continuity of the network communication between the clients and the server, and improve the reliability of the server.

    摘要翻译: 提供局域网中的因特网协议(IP)地址接管系统及其方法。 IP地址接管系统接管与多个客户端连接并包含多个网络接口卡的服务器中的IP地址,并自动更新存储在地址解析协议(ARP)中的媒体访问控制(MAC)地址, 客户端的缓存和服务器的IP地址对应,以保证客户端与服务器之间网络通信的连续性,提高服务器的可靠性。

    Method of protecting data in cache memory of storage system
    4.
    发明申请
    Method of protecting data in cache memory of storage system 有权
    保护存储系统缓存中数据的方法

    公开(公告)号:US20070260922A1

    公开(公告)日:2007-11-08

    申请号:US11407212

    申请日:2006-04-20

    IPC分类号: G06F11/00

    CPC分类号: G06F11/1666 G06F11/2015

    摘要: A method of protecting data in the cache memory of a storage system is used to protect the data stored in the cache memory of a first storage system and a second storage system coupled together and with the battery backed function. When the first storage system and the second storage system function normally, the data in their cache memory are mutually backed up. When any of the storage system has a power failure situation, the other normal storage system takes over the malfunctioned storage device. The data in its own cache memory are protected using the battery backed function. After the malfunctioned storage system restarts, the two storage systems keep backing up the data in the cache memory of each other. This provides a thorough protection of the data in the cache memory of the storage systems, increasing the reliability thereof.

    摘要翻译: 使用保护存储系统的高速缓冲存储器中的数据的方法来保护存储在第一存储系统和第二存储系统的高速缓冲存储器中的数据,该第一存储系统和第二存储系统耦合在一起并且具有电池支持的功能。 当第一个存储系统和第二个存储系统正常工作时,它们的高速缓冲存储器中的数据将相互备份。 当任何存储系统出现电源故障时,其他正常的存储系统会接管故障存储设备。 使用电池支持的功能保护其自身缓存中的数据。 在故障存储系统重新启动之后,两个存储系统将不断备份高速缓存中的数据。 这提供了对存储系统的高速缓冲存储器中的数据的全面保护,从而提高了其可靠性。

    Method of protecting data in cache memory of storage system
    5.
    发明授权
    Method of protecting data in cache memory of storage system 有权
    保护存储系统缓存中数据的方法

    公开(公告)号:US07360016B2

    公开(公告)日:2008-04-15

    申请号:US11407212

    申请日:2006-04-20

    IPC分类号: G06F12/02

    CPC分类号: G06F11/1666 G06F11/2015

    摘要: A method of protecting data in the cache memory of a storage system is used to protect the data stored in the cache memory of a first storage system and a second storage system coupled together and with the battery backed function. When the first storage system and the second storage system function normally, the data in their cache memory are mutually backed up. When any of the storage system has a power failure situation, the other normal storage system takes over the malfunctioned storage device. The data in its own cache memory are protected using the battery backed function. After the malfunctioned storage system restarts, the two storage systems keep backing up the data in the cache memory of each other. This provides a thorough protection of the data in the cache memory of the storage systems, increasing the reliability thereof.

    摘要翻译: 使用保护存储系统的高速缓冲存储器中的数据的方法来保护存储在第一存储系统和第二存储系统的高速缓冲存储器中的数据,该第一存储系统和第二存储系统耦合在一起并且具有电池支持的功能。 当第一个存储系统和第二个存储系统正常工作时,它们的高速缓冲存储器中的数据将相互备份。 当任何存储系统出现电源故障时,其他正常的存储系统会接管故障存储设备。 使用电池支持的功能保护其自身缓存中的数据。 在故障存储系统重新启动之后,两个存储系统将不断备份高速缓存中的数据。 这提供了对存储系统的高速缓冲存储器中的数据的全面保护,从而提高了其可靠性。

    Method of protecting cache memory data in storage system
    6.
    发明申请
    Method of protecting cache memory data in storage system 审中-公开
    保存存储系统中缓存存储器数据的方法

    公开(公告)号:US20080016274A1

    公开(公告)日:2008-01-17

    申请号:US11485528

    申请日:2006-07-13

    IPC分类号: G06F13/00 G06F12/16

    CPC分类号: G06F11/1441 G06F11/2015

    摘要: A method of protecting the cache memory data in a storage system is used to protect the data in the cache memory of a battery backed storage system. The method provides a preserved area in the random access memory (RAM) of the system for storing the information of disk cache items. When the storage system has a power failure, the battery backed function provides power to protect the data stored in the RAM of the system being lost. When the storage system resumes, the information stored in the preserved area preserves the data stored in the disk cache of the system RAM. After the storage system resumes, the data stored in the disk cache of the RAM of the system are written into the corresponding block device. These implement the power failure protection for the data stored in the disk cache of the RAM of the system.

    摘要翻译: 使用保护存储系统中的高速缓存存储器数据的方法来保护电池支持的存储系统的高速缓冲存储器中的数据。 该方法在系统的随机存取存储器(RAM)中提供用于存储磁盘缓存项目的信息的保留区域。 当存储系统发生电源故障时,电池备份功能提供电源来保护存储在系统RAM内存中的数据丢失。 当存储系统恢复时,存储在保留区域中的信息保存存储在系统RAM的磁盘缓存中的数据。 在存储系统恢复之后,存储在系统的RAM的磁盘高速缓存中的数据被写入相应的块设备。 这些对存储在系统RAM的磁盘缓存中的数据实施了电源故障保护。

    Method of allocating physical memory in specified address range under Linux system platform
    7.
    发明授权
    Method of allocating physical memory in specified address range under Linux system platform 有权
    在Linux系统平台下,在指定的地址范围内分配物理内存的方法

    公开(公告)号:US08060706B2

    公开(公告)日:2011-11-15

    申请号:US12058033

    申请日:2008-03-28

    IPC分类号: G06F12/00 G06F13/00 G06F13/28

    CPC分类号: G06F12/023 G06F12/0223

    摘要: A method of allocating a physical memory in a specified address range under a Linux system platform is applied in a testing process of a physical memory under a Linux operating system. In this method, according to a specified address range and a size of a memory to be allocated, a large amount of physical memories in the system are allocated in a specified address range, and then the information about the allocated memories is transmitted, so as to map, inspect, and release the memories, thereby effectively supporting the test for physical memories under the Linux operating system.

    摘要翻译: 在Linux系统平台下,在指定地址范围内分配物理内存的方法应用于Linux操作系统下物理内存的测试过程。 在该方法中,根据指定的地址范围和要分配的存储器的大小,在指定的地址范围内分配系统中的大量物理存储器,然后发送关于所分配的存储器的信息,以便 映射,检查和释放内存,从而有效支持Linux操作系统下的物理内存测试。

    Position detecting system and method for electronic device
    8.
    发明授权
    Position detecting system and method for electronic device 有权
    电子设备位置检测系统及方法

    公开(公告)号:US07689375B2

    公开(公告)日:2010-03-30

    申请号:US11933903

    申请日:2007-11-01

    IPC分类号: G06F19/00 G06F17/40

    CPC分类号: G01B21/02

    摘要: A position detecting system and method for an electronic device used an audio signal input module of the electronic device and a signal receiver to connect to the audio signal input module convert an external position signal into an audio signal. A position detecting software running on the electronic device analyzes the audio signal. Accordingly, the current position of the electronic device is obtained. The audio signal input module of the electronic device is employed as an input port for the external position signal, thus saving the construction cost of the system. Besides, the current position of the electronic device with an ever-changing position can be obtained during a test process, such that the electronic device can start or stop a test item accordingly.

    摘要翻译: 使用电子设备的音频信号输入模块的电子设备的位置检测系统和方法以及连接到音频信号输入模块的信号接收器将外部位置信号转换为音频信号。 在电子设备上运行的位置检测软件分析音频信号。 因此,获得电子设备的当前位置。 电子设备的音频信号输入模块被用作外部位置信号的输入端口,从而节省了系统的施工成本。 此外,可以在测试过程中获得具有不断变化的位置的电子设备的当前位置,使得电子设备可以相应地启动或停止测试项目。

    Internal tracing method for network attack detection
    9.
    发明申请
    Internal tracing method for network attack detection 审中-公开
    网络攻击检测的内部跟踪方法

    公开(公告)号:US20100031093A1

    公开(公告)日:2010-02-04

    申请号:US12010698

    申请日:2008-01-29

    IPC分类号: G06F11/34 G06F9/45 G06F11/00

    摘要: An internal tracing method for network attack detection is used to trace whole life cycle of an attack data packet for test in different phases such as an attacking phase, a defending phase, and an attacked phase through configuring and uniting three parties including an attack end point (AEP), a detect end point (DEP), and a target end point (TEP) and setting a corresponding internal check point in each part when testing a network intrusion detection system (IDS). In other words, when testing the network IDS, in a whole period that the attack data packet for test is attacking, filtered, detected, and finally transmitted to a target host, a tester may clearly know the statuses and information of the data packet in each important phase, thereby generating a test report conveniently, quickly, and accurately.

    摘要翻译: 网络攻击检测的内部跟踪方法用于通过配置和组合三方(包括攻击端点)来跟踪攻击数据包的整个生命周期,以检测不同阶段的攻击相位,防御阶段和攻击阶段 (AEP),检测终端(DEP)和目标终点(TEP),并在测试网络入侵检测系统(IDS)时在每个部分设置相应的内部检查点。 换句话说,当测试网络IDS时,测试的攻击数据包在一整个时间内进行攻击,过滤,检测并最终传输到目标主机,测试人员可以清楚地知道数据包的状态和信息 每个重要阶段,从而方便,快速,准确地生成测试报告。

    System and method of data transmission and method of selecting communication path for dual-controller system
    10.
    发明授权
    System and method of data transmission and method of selecting communication path for dual-controller system 有权
    数据传输的系统和方法以及选择双控制系统通信路径的方法

    公开(公告)号:US07652985B2

    公开(公告)日:2010-01-26

    申请号:US11708490

    申请日:2007-02-21

    IPC分类号: G01R31/08 G06F11/00 H04J3/06

    摘要: A data transmission system and method and a method of selecting a communication path for a dual-controller system are provided, which are applied in a first controller and a second controller of the dual-controller system. First of all, a corresponding transmission medium is selected according to a feature of a data request issued by a controller, then the data request is converted into a data format compatible with a medium interface corresponding to the selected transmission medium and is sent to a corresponding medium driving portion connected with the medium interface, and the data request is sent to another controller through the medium driving portion and a connected corresponding medium controller, so as to select a path of the highest transmission performance, and realize the data transmission between the two controllers.

    摘要翻译: 提供了一种应用于双控制器系统的第一控制器和第二控制器的双控制器系统的数据传输系统和方法以及选择通信路径的方法。 首先,根据由控制器发出的数据请求的特征来选择相应的传输介质,然后将数据请求转换为与所选传输介质相对应的介质接口兼容的数据格式,并将其发送到相应的 介质驱动部分与介质接口连接,数据请求通过介质驱动部分和连接的相应介质控制器发送到另一控制器,以便选择最高传输性能的路径,并实现两者之间的数据传输 控制器