Method for preventing time of check to time of use exploits
    1.
    发明授权
    Method for preventing time of check to time of use exploits 有权
    防止检查时间用于使用时间的方法

    公开(公告)号:US07657936B2

    公开(公告)日:2010-02-02

    申请号:US11333519

    申请日:2006-01-17

    IPC分类号: G06F21/00

    摘要: A method for preventing time of check to time of use exploits includes receiving a system call from a user space at a system call intercept and copying user space parameters from the user space to a kernel space responsive to the system call. The method also includes copying the user space parameters from the kernel space to a secure location in the user space, receiving the user space parameters from the secure location at the system call intercept, and executing the system call based on the received user space parameters. A computer readable medium including computer readable code and a system for executing the method steps are also disclosed.

    摘要翻译: 一种用于防止检查时间用于使用时间的方法包括:在系统呼叫截取时从用户空间接收系统呼叫,并且响应于系统呼叫将用户空间参数从用户空间复制到内核空间。 该方法还包括将用户空间参数从内核空间复制到用户空间中的安全位置,在系统呼叫拦截时从安全位置接收用户空间参数,以及基于接收到的用户空间参数来执行系统呼叫。 还公开了一种包括计算机可读代码的计算机可读介质和用于执行方法步骤的系统。

    Method and apparatus for moving data from an extensible markup language format to normalized format
    2.
    发明授权
    Method and apparatus for moving data from an extensible markup language format to normalized format 失效
    将数据从可扩展标记语言格式移动到归一化格式的方法和装置

    公开(公告)号:US07475090B2

    公开(公告)日:2009-01-06

    申请号:US11560168

    申请日:2006-11-15

    IPC分类号: G06F17/00

    摘要: A computer implemented method, apparatus, and computer usable program code for creating normalized data from markup language data. User defined parameters are received for retrieving event data, wherein the parameters define a type of event and a subset of attributes for the type of event. In response to receiving the parameters, a process is configured using the type of event and the subset of attributes for the type of event to form a configured process. A set of records is processed using the configured process, wherein the configured process places data corresponding to each attribute in the subset of attributes for the type of event from the set of records into a table to form the normalized data.

    摘要翻译: 一种用于从标记语言数据创建归一化数据的计算机实现的方法,装置和计算机可用程序代码。 接收用户定义的参数用于检索事件数据,其中参数定义事件类型和事件类型的属性子集。 响应于接收参数,使用事件类型和事件类型的子集来配置进程以形成配置的进程。 使用所配置的进程处理一组记录,其中所配置的进程将对应于属性类型的每个属性的数据从记录集合中放置到表中以形成归一化数据。

    METHOD AND APPARATUS FOR STORING AUDIT EVENT DATA
    3.
    发明申请
    METHOD AND APPARATUS FOR STORING AUDIT EVENT DATA 失效
    存储审核事件数据的方法和装置

    公开(公告)号:US20080114817A1

    公开(公告)日:2008-05-15

    申请号:US11560120

    申请日:2006-11-15

    IPC分类号: G06F17/00

    摘要: A computer implemented method, apparatus, and computer usable program code for processing event data. In response to receiving an event, a size of the event data for the event is compared to a threshold size to form a comparison. The information about an event and event data is stored in a first entry in a main table in a database if the comparison indicates that the size of the event data is one that can be stored in the main table. The information about the event is placed in the first entry in the main table if the size is greater than the threshold size. The event data is stored in a second entry in an overflow table if the size is greater than the threshold size, wherein the entry includes a pointer to the first entry. The main table and overflow table form a live set and hold the current live data.

    摘要翻译: 用于处理事件数据的计算机实现的方法,装置和计算机可用程序代码。 响应于接收事件,将事件的事件数据的大小与阈值大小进行比较以形成比较。 如果比较指示事件数据的大小是可以存储在主表中的大小,则关于事件和事件数据的信息被存储在数据库的主表中的第一条目中。 如果大小超过阈值大小,则有关该事件的信息将放在主表中的第一个条目中。 如果大小大于阈值大小,则事件数据被存储在溢出表中的第二条目中,其中条目包括指向第一条目的指针。 主表和溢出表形成一个活动集并保存当前的实时数据。

    Subchaining transcoders in a transcoding framework
    4.
    发明授权
    Subchaining transcoders in a transcoding framework 有权
    转码框架中的Subchaining代码转换器

    公开(公告)号:US06401132B1

    公开(公告)日:2002-06-04

    申请号:US09366402

    申请日:1999-08-03

    IPC分类号: G06F1300

    摘要: A method for transcoding an input stream to a desired output format using a transcoder framework. In response to a given transcoder of the framework recognizing an external reference that it cannot transcode, the method calls a subseries of specialized transcoders to transcode the external reference. After the subseries of specialized transcoders generates a transcoded external reference, that reference is returned back to the given transcoder, where it is incorporated into the transcoder's output. Transcoder sub-chains are used in this manner as modular, building blocks in the transcoder framework.

    摘要翻译: 一种使用代码转换器框架将输入流转码为期望输出格式的方法。 响应于识别不能转码的外部参考的框架的给定代码转换器,该方法调用专用代码转换器的子系列来转码外部参考。 在专用代码转换器的子系列产生代码转换的外部参考之后,该参考被返回给给定的代码转换器,其中它被合​​并到代码转换器的输出中。 转码子子链以这种方式用作代码转换器框架中的模块化构建块。

    Method for establishing optimal intermediate caching points by grouping program elements in a software system
    5.
    发明授权
    Method for establishing optimal intermediate caching points by grouping program elements in a software system 有权
    通过将软件系统中的程序元素分组来建立最优中间缓存点的方法

    公开(公告)号:US06611876B1

    公开(公告)日:2003-08-26

    申请号:US09428397

    申请日:1999-10-28

    IPC分类号: G06F1300

    摘要: A set of program elements (e.g., transcoders) are grouped together as an administrative unit. Instead of caching the individual outputs of each program element, preferably only the aggregate output of the set of program elements, taken as a whole, is cached. The inventive technique enables the effective re-use of intermediate content. In an illustrative client-server based implementation involving a transcoding service located at a server, the cached information may be shared across multiple server instances to obviate redundant processing. With the present invention, a caching mechanism in a complex software system may be extended in a user-configurable manner by setting up optimal intermediate caching points that are defined by groups of programs used in long computations.

    摘要翻译: 一组程序元素(例如,代码转换器)被组合在一起作为管理单元。 不是高速缓存每个节目元素的各个输出,而是优选地仅将整个节目元素集合的总输出缓存。 本发明的技术使得能够有效地重复使用中间含量。 在涉及位于服务器处的代码转换服务的说明性的基于客户端 - 服务器的实现中,可以跨多个服务器实例共享缓存的信息以避免冗余处理。 利用本发明,可以通过设置由长计算中使用的程序组定义的最佳中间缓存点,以用户可配置的方式来扩展复杂软件系统中的缓存机制。

    Method and apparatus for managing data pushed asynchronously to a pervasive computing client
    6.
    发明授权
    Method and apparatus for managing data pushed asynchronously to a pervasive computing client 有权
    用于管理与普适计算客户端异步推送的数据的方法和装置

    公开(公告)号:US06272542B1

    公开(公告)日:2001-08-07

    申请号:US09210204

    申请日:1998-12-10

    IPC分类号: G06F15173

    摘要: A method of managing events in a pervasive computing client device having a browser. Upon loading of a page in a browser window, the browser issues an outstanding HTTP request to a specified port. Thereafter, upon generation of an asynchronous event on another port, the routine identifies an appropriate message and builds a response to the outstanding HTTP request. The response, which includes the message, is then delivered to the specified port, whereupon the browser renders the message to the user. Thereafter, the browser automatically re-issues the outstanding HTTP request and waits for another asynchronous event.

    摘要翻译: 一种在具有浏览器的普及计算客户端设备中管理事件的方法。 在浏览器窗口中加载页面时,浏览器会向指定端口发出未完成的HTTP请求。 此后,当在另一端口上产生异步事件时,该例程标识适当的消息并构建对未完成的HTTP请求的响应。 包含消息的响应然后被传递到指定的端口,浏览器向用户呈现消息。 此后,浏览器自动重新发出未完成的HTTP请求,并等待另一个异步事件。

    Method and system for using virtual URLs for load balancing
    7.
    发明授权
    Method and system for using virtual URLs for load balancing 有权
    使用虚拟URL进行负载平衡的方法和系统

    公开(公告)号:US08375127B1

    公开(公告)日:2013-02-12

    申请号:US09282692

    申请日:1999-03-31

    申请人: Christian Lita

    发明人: Christian Lita

    IPC分类号: G06F15/173

    CPC分类号: G06F17/3089

    摘要: A method, computer program product and server for use managing connection requests to a pool of servers identified by a given URL. The method begins in response to a connection request from a given client machine that initiates a user session for associating a session identifier with a given server in the pool. The session identifier is then used to generate a “virtual” URL that redirects the connection request to the given server. Thereafter, any additional connection requests issued from the given client machine during the user session are redirected to the given server so that all content is served to the client from the same location. When the user session terminates, the virtual URL is inactivated and the given server is returned to the pool so that it can then be assigned a new user session to manage.

    摘要翻译: 一种用于管理对由给定URL识别的服务器池的连接请求的方法,计算机程序产品和服务器。 该方法响应来自给定客户端计算机的连接请求开始,该客户端计算机启动用于将会话标识符与池中的给定服务器相关联的用户会话。 然后会话标识符用于生成将连接请求重定向到给定服务器的虚拟URL。 此后,在用户会话期间从给定客户端机器发出的任何附加连接请求被重定向到给定的服务器,使得所有内容从相同的位置提供给客户端。 当用户会话终止时,虚拟URL将被禁用,并将给定的服务器返回到池中,以便随后可以为其分配新的用户会话以进行管理。

    METHOD AND APPARATUS FOR MOVING DATA FROM AN EXTENSIBLE MARKUP LANGUAGE FORMAT TO NORMALIZED FORMAT
    8.
    发明申请
    METHOD AND APPARATUS FOR MOVING DATA FROM AN EXTENSIBLE MARKUP LANGUAGE FORMAT TO NORMALIZED FORMAT 失效
    将数据从可扩展标记语言格式移动到正规格式的方法和装置

    公开(公告)号:US20080114802A1

    公开(公告)日:2008-05-15

    申请号:US11560168

    申请日:2006-11-15

    IPC分类号: G06F17/30

    摘要: A computer implemented method, apparatus, and computer usable program code for creating normalized data from markup language data. User defined parameters are received for retrieving event data, wherein the parameters define a type of event and a subset of attributes for the type of event. In response to receiving the parameters, a process is configured using the type of event and the subset of attributes for the type of event to form a configured process. A set of records is processed using the configured process, wherein the configured process places data corresponding to each attribute in the subset of attributes for the type of event from the set of records into a table to form the normalized data.

    摘要翻译: 一种用于从标记语言数据创建归一化数据的计算机实现的方法,装置和计算机可用程序代码。 接收用户定义的参数用于检索事件数据,其中参数定义事件类型和事件类型的属性子集。 响应于接收参数,使用事件类型和事件类型的子集来配置进程以形成配置的进程。 使用所配置的进程处理一组记录,其中所配置的进程将对应于属性类型的每个属性的数据从记录集合中放置到表中以形成归一化数据。

    Method for preventing time of check to time of use exploits
    9.
    发明申请
    Method for preventing time of check to time of use exploits 有权
    防止检查时间用于使用时间的方法

    公开(公告)号:US20070199045A1

    公开(公告)日:2007-08-23

    申请号:US11333519

    申请日:2006-01-17

    IPC分类号: H04L9/32

    摘要: A method for preventing time of check to time of use exploits includes receiving a system call from a user space at a system call intercept and copying user space parameters from the user space to a kernel space responsive to the system call. The method also includes copying the user space parameters from the kernel space to a secure location in the user space, receiving the user space parameters from the secure location at the system call intercept, and executing the system call based on the received user space parameters. A computer readable medium including computer readable code and a system for executing the method steps are also disclosed.

    摘要翻译: 一种用于防止检查时间用于使用时间的方法包括:在系统呼叫截取时从用户空间接收系统呼叫,并且响应于系统呼叫将用户空间参数从用户空间复制到内核空间。 该方法还包括将用户空间参数从内核空间复制到用户空间中的安全位置,在系统呼叫拦截时从安全位置接收用户空间参数,以及基于接收到的用户空间参数来执行系统呼叫。 还公开了一种包括计算机可读代码的计算机可读介质和用于执行方法步骤的系统。

    Managing connection requests in a dialup computer network
    10.
    发明授权
    Managing connection requests in a dialup computer network 失效
    在拨号计算机网络中管理连接请求

    公开(公告)号:US6119161A

    公开(公告)日:2000-09-12

    申请号:US808264

    申请日:1997-02-28

    IPC分类号: H04L29/06 H04L29/12 G06F13/00

    摘要: A method of managing connection requests from an application supported on a client. The client has a modem connectable to at least one server via a dialup computer network. According to the method, a list is maintained of the local Internet Protocol (IP) addresses assigned as modem connections are established to the dialup computer network during a session. The list is preferably in Last In, First Out (LIFO) order and includes a latest IP address as the last entry and one or more stale IP addresses. In response to a connection request associated with a stale IP address, the stale IP address is mapped to the latest IP address. The connection request is then redirected using the latest IP address. Preferably, client supports a proxy server which services the connection request locally if possible to avoid network traffic.

    摘要翻译: 一种从客户端支持的应用程序管理连接请求的方法。 客户端具有通过拨号计算机网络可连接至少一个服务器的调制解调器。 根据该方法,在会话期间,为拨号计算机网络建立调制解调器连接所分配的本地因特网协议(IP)地址的列表。 该列表最好在“最后输入”(First In,First Out(LIFO))顺序中,并包括最新的IP地址作为最后一个条目和一个或多个不正确的IP地址。 响应与过期IP地址相关联的连接请求,过期的IP地址映射到最新的IP地址。 然后使用最新的IP地址重定向连接请求。 优选地,客户机支持代理服务器,如果可能,本地服务于连接请求以避免网络流量。