AUTOMATED PROVISIONING OF VIRTUAL MACHINES
    1.
    发明申请
    AUTOMATED PROVISIONING OF VIRTUAL MACHINES 审中-公开
    自动提供虚拟机

    公开(公告)号:US20140019959A1

    公开(公告)日:2014-01-16

    申请号:US13547148

    申请日:2012-07-12

    IPC分类号: G06F9/455

    摘要: Virtual machines in a network may be isolated by encrypting transmissions between the virtual machines with keys possessed only by an intended recipient. Within a network, the virtual machines may be logically organized into a number of community-of-interest (COI) groups. Each COI may use an encryption key to secure communications within the COI, such that only other virtual machines in the COI may decrypt the message. Virtual machines may be automatically provisioned with configuration information, such as the encryption keys, when the virtual machine is started. The provisioning information may be created based on a template stored on a configuration server.

    摘要翻译: 可以通过使用仅由预期接收者拥有的密钥对虚拟机之间的传输进行加密来隔离网络中的虚拟机。 在网络中,虚拟机可以在逻辑上被组织成许多社区(COI)组。 每个COI可以使用加密密钥来保护COI内的通信,使得仅COI中的其他虚拟机可以解密该消息。 当虚拟机启动时,虚拟机可能会自动配置配置信息,例如加密密钥。 可以基于存储在配置服务器上的模板来创建供应信息。

    VIRTUAL GATEWAYS FOR ISOLATING VIRTUAL MACHINES
    3.
    发明申请
    VIRTUAL GATEWAYS FOR ISOLATING VIRTUAL MACHINES 有权
    用于隔离虚拟机的虚拟网关

    公开(公告)号:US20140019750A1

    公开(公告)日:2014-01-16

    申请号:US13547143

    申请日:2012-07-12

    IPC分类号: H04L29/06

    摘要: Virtual machines in a network may be isolated by encrypting transmissions between the virtual machines with keys possessed only by an intended recipient. Within a network, the virtual machines may be logically organized into a number of community-of-interest (COI) groups. Each COI may use an encryption key to secure communications within the COI, such that only other virtual machines in the COI may decrypt the message. Virtual machines may further be isolated through a virtual gateway assigned to handle all communications between a virtual machine and a device outside of the virtual machine's COI. The virtual gateway may be a separate virtual machine for handling decrypting and encrypting messages for transmission between virtual machines and other devices.

    摘要翻译: 可以通过使用仅由预期接收者拥有的密钥对虚拟机之间的传输进行加密来隔离网络中的虚拟机。 在网络中,虚拟机可以在逻辑上被组织成许多社区(COI)组。 每个COI可以使用加密密钥来保护COI内的通信,使得仅COI中的其他虚拟机可以解密该消息。 虚拟机可以进一步通过被分配用于处理虚拟机和虚拟机的COI之外的设备之间的所有通信的虚拟网关来隔离。 虚拟网关可以是用于处理解密和加密消息以在虚拟机和其他设备之间传输的单独的虚拟机。

    CRYPTOGRAPHIC ISOLATION OF VIRTUAL MACHINES
    4.
    发明申请
    CRYPTOGRAPHIC ISOLATION OF VIRTUAL MACHINES 审中-公开
    虚拟机的拼接分离

    公开(公告)号:US20140019745A1

    公开(公告)日:2014-01-16

    申请号:US13547138

    申请日:2012-07-12

    IPC分类号: H04L29/06

    摘要: Virtual machines in a network may be isolated by encrypting transmissions between the virtual machines with keys possessed only by an intended recipient. Within a network, the virtual machines may be logically organized into a number of community-of-interest (COI) groups. Each COI may use an encryption key to secure communications within the COI, such that only other virtual machines in the COI may decrypt the message. Security may be further enhanced by establishing a session key for use during communications between a first and a second virtual machine. The session key may be encrypted with the COI key.

    摘要翻译: 可以通过使用仅由预期接收者拥有的密钥对虚拟机之间的传输进行加密来隔离网络中的虚拟机。 在网络中,虚拟机可以在逻辑上被组织成许多社区(COI)组。 每个COI可以使用加密密钥来保护COI内的通信,使得仅COI中的其他虚拟机可以解密该消息。 可以通过建立在第一和第二虚拟机之间的通信期间使用的会话密钥来进一步增强安全性。 会话密钥可以用COI密钥加密。

    Intelligent network interface card (NIC) optimizations
    6.
    发明授权
    Intelligent network interface card (NIC) optimizations 失效
    智能网络接口卡(NIC)优化

    公开(公告)号:US07581033B2

    公开(公告)日:2009-08-25

    申请号:US10729312

    申请日:2003-12-05

    IPC分类号: G06F15/16

    CPC分类号: G06F15/16 G06F13/385

    摘要: Intelligent NIC optimizations includes system and methods for Token Table Posting, use of a Master Completion Queue, Notification Request Area (NRA) associated with completion queues, preferably in the Network Interface Card (NIC) for providing notification of request completions, and what we call Lazy Memory Deregistration which allows non-critical memory deregistration processing to occur during non-busy times. These intelligent NIC optimizations which can be applied outside the scope of VIA (e.g. iWARP and the like), but also support VIA.

    摘要翻译: 智能网卡优化包括用于令牌表过帐的系统和方法,主完成队列的使用,与完成队列相关联的通知请求区域(NRA),优选地在网络接口卡(NIC)中用于提供请求完成的通知,以及所谓的 延迟内存取消注销,允许在非繁忙时间内进行非关键内存注销处理。 这些可以应用于VIA范围之外的智能NIC优化(例如iWARP等),也支持VIA。

    INTELLIGENT NETWORK INTERFACE CARD (NIC) OPTIMIZATIONS
    7.
    发明申请
    INTELLIGENT NETWORK INTERFACE CARD (NIC) OPTIMIZATIONS 失效
    智能网络接口卡(NIC)优化

    公开(公告)号:US20090172301A1

    公开(公告)日:2009-07-02

    申请号:US10729312

    申请日:2003-12-05

    IPC分类号: G06F12/00 G06F15/16 G06F9/46

    CPC分类号: G06F15/16 G06F13/385

    摘要: Intelligent NIC optimizations includes system and methods for Token Table Posting, use of a Master Completion Queue, Notification Request Area (NRA) associated with completion queues, preferably in the Network Interface Card (NIC) for providing notification of request completions, and what we call Lazy Memory Deregistration which allows non-critical memory deregistration processing to occur during non-busy times. These intelligent NIC optimizations which can be applied outside the scope of VIA (e.g. iWARP and the like), but also support VIA.

    摘要翻译: 智能网卡优化包括用于令牌表过帐的系统和方法,主完成队列的使用,与完成队列相关联的通知请求区域(NRA),优选地在网络接口卡(NIC)中用于提供请求完成的通知,以及所谓的 延迟内存取消注销,允许在非繁忙时间内进行非关键内存注销处理。 这些可以应用于VIA范围之外的智能NIC优化(例如iWARP等),也支持VIA。