Data processing system and method for prohibiting unauthorized modification of transmission priority levels
    2.
    发明授权
    Data processing system and method for prohibiting unauthorized modification of transmission priority levels 有权
    用于禁止未经授权修改传输优先级的数据处理系统和方法

    公开(公告)号:US06701349B1

    公开(公告)日:2004-03-02

    申请号:US09356190

    申请日:1999-07-16

    IPC分类号: G06F1300

    摘要: A data processing system and method are disclosed for prohibiting an unauthorized user from modifying a priority level associated with a client computer system. The priority level is utilized by a client computer system during transmission of the client's data over a network. One of a plurality of priority levels is associated with the client computer system. The plurality of priority levels includes a higher priority level and a lower priority level. The client computer system associates the priority level with the data transmitted by the client computer system over the network. The data associated with the higher priority level is typically transmitted prior to data associated with the lower priority level. In response to an attempt to modify the associated priority level, the client determines whether the attempt is being made by an approved user. In response to a determination that the attempt is not being made by an approved user, the attempted modification of the priority level is prohibited. In another embodiment, a priority level may be associated with each class of data. When the client computer system transmits a packet, the client determines which class of data is included in the packet. The priority level associated with that class is then associated with the packet including that class of data. The client, then, transmits the packet which is associated with one of the priority levels.

    摘要翻译: 公开了一种数据处理系统和方法,用于禁止未经授权的用户修改与客户端计算机系统相关联的优先级。 在通过网络传送客户端的数据时,客户端计算机系统利用优先级。 多个优先级中的一个与客户端计算机系统相关联。 多个优先级包括较高优先级和较低优先级。 客户端计算机系统将优先级与客户端计算机系统通过网络发送的数据相关联。 与较高优先级相关联的数据通常在与较低优先级相关联的数据之前传输。 响应于尝试修改相关联的优先级,客户端确定尝试是否由批准​​用户进行。 为了对被许可用户不进行尝试的确定作出回应,禁止尝试修改优先级。 在另一个实施例中,优先级可以与每类数据相关联。 当客户端计算机系统发送数据包时,客户端确定数据包中包含哪一类数据。 然后,与该类相关联的优先级与包括该类数据的分组相关联。 然后,客户端发送与优先级中的一个相关联的分组。

    Separately powered network interface for reporting the activity states of a network connected client
    4.
    发明授权
    Separately powered network interface for reporting the activity states of a network connected client 失效
    单独供电的网络接口,用于报告网络连接的客户端的活动状态

    公开(公告)号:US06532497B1

    公开(公告)日:2003-03-11

    申请号:US09060280

    申请日:1998-04-14

    IPC分类号: G06F1516

    CPC分类号: H04L43/0817

    摘要: An intelligent network interface monitors activity states of a client and reports them to a network manager using a single network connection. The network interface monitors interrupts occurring on the client, derives activity states from the interrupts, and logs the activity states on the network interface. An activity state specifies whether the client is in a hung state, but may also specify whether the client is off, sleeping, inactive, or active. The network interface may periodically report the activity states to the network manager or report upon receiving a command. The network interface is preferably powered full time using a trickle power supply and therefore operates even when the remainder of the client is off. By including a processor or specialized logic on the network interface, the interface operates independently of the client operating system and therefore monitors and reports even when the client malfunctions.

    摘要翻译: 智能网络接口监视客户端的活动状态,并使用单个网络连接将其报告给网络管理员。 网络接口监视客户端发生的中断,从中断导出活动状态,并记录网络接口上的活动状态。 活动状态指定客户端是否处于挂起状态,但也可以指定客户端是否处于关闭,睡眠,不活动或活动状态。 网络接口可以在接收到命令时定期向网络管理器报告活动状态或报告。 网络接口优选地使用涓流电源全时供电,因此即使当客户端的其余部分关闭时也是这样。 通过在网络接口上包含处理器或专用逻辑,接口独立于客户端操作系统运行,因此即使客户端发生故障也能监视和报告。

    Data processing system and method for securing a docking station and its portable PC
    5.
    发明授权
    Data processing system and method for securing a docking station and its portable PC 有权
    用于固定坞站及其便携式PC的数据处理系统和方法

    公开(公告)号:US06609207B1

    公开(公告)日:2003-08-19

    申请号:US09260921

    申请日:1999-03-02

    IPC分类号: G06F1214

    CPC分类号: G06F21/88 G06F21/31

    摘要: A data processing system and method including a docking station and a portable computer capable of being coupled to the docking station are disclosed for securing the docking station, the portable computer, and for securing the attachment of the docking station to the portable computer. The portable computer is coupled to the docking station. A disconnection password is established. When the portable computer is disconnected from the docking station, a user is prompted for the disconnection password. The portable computer is disabled in response to a failure to correctly enter the disconnection password, wherein the portable computer is inoperable without a correct entry of the disconnection password. When a portable computer is connected to the docking station, a correct entry of a connection password is required. In response to a failure to correctly enter the connection password, access to the docking station is prohibited. When the docking station is physically removed from its stationary support, correct entry of a relocation password is required. In response to a failure to correctly enter the password, access to the docking station is prohibited.

    摘要翻译: 公开了一种数据处理系统和方法,其包括对接站和能够连接到对接站的便携式计算机,用于固定对接站,便携式计算机,以及用于将对接站的连接固定到便携式计算机。 便携式计算机耦合到对接站。 断开密码建立。 当便携式计算机与对接站断开连接时,提示用户断开连接密码。 响应于无法正确输入断开密码,便携式计算机被禁用,其中便携式计算机在不正确输入断开密码的情况下是不可操作的。 当便携式计算机连接到扩展坞时,需要正确输入连接密码。 响应于无法正确输入连接密码,禁止访问扩展坞。 当对接站从其固定支架物理上移除时,需要正确输入重新定位密码。 为了不正确输入密码,禁止访问扩展坞。

    Computer system and method for generating a digital certificate
    6.
    发明授权
    Computer system and method for generating a digital certificate 有权
    用于生成数字证书的计算机系统和方法

    公开(公告)号:US06988196B2

    公开(公告)日:2006-01-17

    申请号:US09748654

    申请日:2000-12-22

    IPC分类号: H04L9/00

    CPC分类号: G06F21/31

    摘要: A computer system and method are disclosed for generating a certificate that can be validated against a trusted hardware subsystem within a computer system. A security subsystem is established within the computer system. A master key pair including a master public key and master private key are established. The master private key is stored in protected storage within the security subsystem such that the master private key is inaccessible outside of the security subsystem. Generation of a self-verifying certificate is requested. A user of the computer system is then prompted to enter an authentication code in response to the request for generation of the certificate. A certificate is generated utilizing the master key pair only in response to a correct entry of the authentication code. The certificate is used only internally within the computer system.

    摘要翻译: 公开了一种计算机系统和方法,用于生成可以针对计算机系统内的可信硬件子系统进行验证的证书。 在计算机系统内建立安全子系统。 建立包括主公钥和主密钥的主密钥对。 主私钥存储在安全子系统内的受保护存储器中,使得主私钥在安全子系统之外是不可访问的。 要求生成自我验证证书。 然后响应于产生证书的请求,提示计算机系统的用户输入认证码。 只有在正确输入验证码时才使用主密钥对生成证书。 该证书仅在计算机系统内部使用。

    Data processing system and method for permitting a server to remotely perform diagnostics on a malfunctioning client computer system
    7.
    发明授权
    Data processing system and method for permitting a server to remotely perform diagnostics on a malfunctioning client computer system 有权
    数据处理系统和方法,用于允许服务器远程执行故障客户端计算机系统上的诊断

    公开(公告)号:US06480972B1

    公开(公告)日:2002-11-12

    申请号:US09257547

    申请日:1999-02-24

    IPC分类号: G06K1100

    摘要: A data processing system and method are described for permitting a server computer system to perform remote diagnostics on a malfunctioning client computer system coupled to the server computer system utilizing a network. The server computer system transmits a diagnostic command to the malfunctioning client computer system utilizing the network. A network adapter operating as a bus controller for an internal bus within the malfunctioning client computer system executes the diagnostic command. The network adapter transmits a result of the execution of the diagnostic command to the server computer system. In this manner, the diagnostic command is executed within a malfunctioning client computer system by a remote, server computer system.

    摘要翻译: 描述了一种数据处理系统和方法,用于允许服务器计算机系统对利用网络耦合到服务器计算机系统的故障客户端计算机系统执行远程诊断。 服务器计算机系统利用网络向故障的客户端计算机系统发送诊断命令。 作为故障客户端计算机系统内部总线的总线控制器的网络适配器执行诊断命令。 网络适​​配器将诊断命令的执行结果发送到服务器计算机系统。 以这种方式,通过远程服务器计算机系统在故障的客户端计算机系统内执行诊断命令。

    Data processing system and method including a network access connector for limiting access to the network
    9.
    发明授权
    Data processing system and method including a network access connector for limiting access to the network 失效
    数据处理系统和方法包括用于限制对网络的访问的网络接入连接器

    公开(公告)号:US06754826B1

    公开(公告)日:2004-06-22

    申请号:US09282713

    申请日:1999-03-31

    IPC分类号: H04L932

    CPC分类号: H04L63/0823 H04L63/10

    摘要: A data processing system and method are disclosed for providing an access connector which limits access to a network to only authorized client computer systems. The network is controlled by a server computer system. The access connector is provided for physically coupling a client computer system to the network. The access connector is physically coupled to the network. Prior to permitting the client computer system to attempt to establish a client communication link with the network, the client computer system attempts to authenticate itself to the server computer system. In response to the client computer system being unable to authenticate itself to the server computer system, the access connector prohibits the client computer system from establishing a client communication link between the client computer system and the network.

    摘要翻译: 公开了一种用于提供访问连接器的数据处理系统和方法,其将对网络的访问限于仅授权的客户端计算机系统。 网络由服务器计算机系统控制。 提供接入连接器用于将客户端计算机系统物理耦合到网络。 接入连接器物理耦合到网络。 在允许客户端计算机系统尝试与网络建立客户端通信链路之前,客户端计算机系统尝试向服务器计算机系统认证自身。 响应于客户端计算机系统无法向服务器计算机系统认证自身,访问连接器禁止客户端计算机系统在客户端计算机系统和网络之间建立客户端通信链路。

    System and method for permitting a dumb device to create and transmit network packets
    10.
    发明授权
    System and method for permitting a dumb device to create and transmit network packets 有权
    用于允许哑设备创建和传送网络分组的系统和方法

    公开(公告)号:US06628663B1

    公开(公告)日:2003-09-30

    申请号:US09206014

    申请日:1998-12-04

    IPC分类号: H04L1266

    摘要: A method and system are described for permitting a dumb device having no operating system to create and transmit a network packet utilizing a network. The dumb device is coupled to a client computer system utilizing the network. A network interface is established within the dumb device. In response to an event, the dumb device generates an internal output signal. The output signal is received within the dumb device by the network interface. In response to a receipt of the output signal, the network interface creates and transmits a network packet including an indication of the event to the client computer system, wherein a dumb device having no operating system creates and transmits a network packet.

    摘要翻译: 描述了一种用于允许没有操作系统的哑设备利用网络来创建和发送网络分组的方法和系统。 该哑设备被耦合到利用网络的客户端计算机系统。 网络接口建立在哑设备内。 响应于事件,哑设备产生内部输出信号。 输出信号由网络接口​​在哑设备内接收。 响应于输出信号的接收,网络接口创建并发送包括事件指示的网络分组给客户端计算机系统,其中没有操作系统的哑设备创建并发送网络分组。