Write protection of subroutine return addresses
    1.
    发明授权
    Write protection of subroutine return addresses 失效
    写子保护子程序返回地址

    公开(公告)号:US07809911B2

    公开(公告)日:2010-10-05

    申请号:US12263802

    申请日:2008-11-03

    IPC分类号: G06F12/14

    CPC分类号: G06F12/1466

    摘要: Exemplary methods, systems, and products are described that operate generally by moving subroutine return address protection to the processor itself, in effect proving atomic locks for subroutine return addresses stored in a stack, subject to application control. More particularly, exemplary methods, systems, and products are described that write protect subroutine return addresses by calling a subroutine, including storing in a stack memory address a subroutine return address and locking, by a computer processor, the stack memory address against write access. Calling a subroutine may include receiving in the computer processor an instruction to lock the stack memory address. Locking the stack memory address may be carried out by storing the stack memory address in a protected memory lockword. A protected memory lockword may be implemented as a portion of a protected content addressable memory.

    摘要翻译: 描述了通常通过将子程序返回地址保护移动到处理器本身的示例性方法,系统和产品,实际上证明了存储在堆栈中的子程序返回地址的原子锁,在应用程序控制下。 更具体地,描述了示例性方法,系统和产品,其通过调用子程序来写入保护子程序返回地址,包括存储堆栈存储器地址子程序返回地址并由计算机处理器锁定堆栈存储器地址以防写入访问。 调用子程序可以包括在计算机处理器中接收锁定堆栈存储器地址的指令。 锁定堆栈存储器地址可以通过将堆栈存储器地址存储在受保护的存储器锁定字中来执行。 受保护的存储器锁字可以被实现为受保护内容可寻址存储器的一部分。

    MIGRATION OF VIRTUAL MACHINES
    3.
    发明申请
    MIGRATION OF VIRTUAL MACHINES 有权
    虚拟机的迁移

    公开(公告)号:US20120192182A1

    公开(公告)日:2012-07-26

    申请号:US13356782

    申请日:2012-01-24

    IPC分类号: G06F9/455

    摘要: To migrate two or more virtual machines in a source hypervisor to a target hypervisor, a list of active and connected virtual machines in the source hypervisor is acquired. Connections between the source virtual machines are rerouted to a buffer so that data flowing between the source virtual machines is captured. The source virtual machines are migrated to a target hypervisor and are connected in the same manner as in the source hypervisor. The buffered data is migrated to the respective migrated virtual machines, and the target virtual machines are activated. The virtual machines can be migrated in order of data flow dependency such that the least dependent virtual machine is migrated first.

    摘要翻译: 要将源虚拟机管理程序中的两个或多个虚拟机迁移到目标虚拟机管理程序,将获取源虚拟机管理程序中的活动和连接的虚拟机列表。 源虚拟机之间的连接被重新路由到缓冲区,以便捕获在源虚拟机之间流动的数据。 源虚拟机将迁移到目标管理程序,并以与源虚拟机管理程序相同的方式进行连接。 缓冲的数据将迁移到相应的已迁移虚拟机,并激活目标虚拟机。 可以按照数据流依赖关系的顺序迁移虚拟机,以便首先迁移最不相关的虚拟机。

    Performance Tuning for Software as a Performance Level Service
    4.
    发明申请
    Performance Tuning for Software as a Performance Level Service 有权
    软件性能优化服务的性能调优

    公开(公告)号:US20120047240A1

    公开(公告)日:2012-02-23

    申请号:US12859891

    申请日:2010-08-20

    IPC分类号: G06F15/177 G06F15/173

    CPC分类号: G06F9/5072 G06F11/3409

    摘要: A mechanism is provided for performance tuning for software as a performance level service. At the request of a customer, a cloud provider may use a performance tuning component to determine performance parameters to increase performance of an application running on a given hardware platform. The cloud provider may then generate a tuning configuration and associate the tuning configuration with the customer such that when the cloud provider deploys a customer's software to a partition in a host system, the cloud provider sends the tuning configuration with the deployment package. The performance tuning component at the host system then applies the performance parameters in the tuning configuration to increase performance.

    摘要翻译: 提供了一种机制,用于将性能调整为软件作为性能级别服务。 应客户的要求,云提供商可以使用性能调整组件来确定性能参数,以提高在给定硬件平台上运行的应用程序的性能。 然后,云提供商可以生成调整配置并将调整配置与客户相关联,使得当云提供商将客户的软件部署到主机系统中的分区时,云提供商使用部署包发送调整配置。 主机系统的性能调整组件然后在调谐配置中应用性能参数以提高性能。

    PERSONAL UNIQUE URL ACCESS PROCESSING SYSTEM
    5.
    发明申请
    PERSONAL UNIQUE URL ACCESS PROCESSING SYSTEM 审中-公开
    个人唯一网址访问处理系统

    公开(公告)号:US20110282946A1

    公开(公告)日:2011-11-17

    申请号:US12779971

    申请日:2010-05-14

    IPC分类号: G06F15/16

    CPC分类号: G06Q30/02 G06Q30/00

    摘要: A method, programmed medium and system are provided for sending notice to a website representative whenever a specific and unique website is being accessed by an inquiring party seeking information regarding the website content. Contact information is exchanged between an inquiring party and a website representative and whenever the inquiring party views the unique URL which was provided by the website representative, the website representative is contacted with the inquiring party's phone number in real-time with the information that the inquiring party is now viewing the website.

    摘要翻译: 提供一种方法,编程媒体和系统,用于在寻求有关网站内容的信息的查询方访问特定唯一网站时向网站代表发送通知。 联系方式在询问方和网站代表之间交换,当查询方查看网站代表提供的唯一URL时,网站代理与查询方的电话号码实时联系,询问信息 派对正在浏览网站。

    Method and apparatus for detecting grid intrusions
    6.
    发明授权
    Method and apparatus for detecting grid intrusions 有权
    用于检测电网入侵的方法和装置

    公开(公告)号:US07765589B2

    公开(公告)日:2010-07-27

    申请号:US12123889

    申请日:2008-05-20

    IPC分类号: G06F17/30

    摘要: A method, apparatus, and computer instructions for authorizing a user to access grid resources. A request is received from the user to access a resource on the data processing system. This request includes a certificate. An authentication process is performed using the certificate when the request is received. In response to successfully authenticating the user in the authentication process, a first host name for the certificate is requested from a trusted source. A reply containing the first host name is received. Access to the resource is provided if the first host name returned by the trusted source matches a second host name for the user from which the request originated.

    摘要翻译: 用于授权用户访问网格资源的方法,装置和计算机指令。 从用户接收到访问数据处理系统上的资源的请求。 此请求包括证书。 当接收到请求时,使用证书执行认证处理。 为了响应在认证过程中成功认证用户,从可信源请求证书的第一主机名。 收到包含第一个主机名的回复。 如果信任源返回的第一个主机名与发起请求的用户的第二个主机名匹配,则提供对资源的访问。

    Method for implementing electronic mail dictionary transporter
    7.
    发明授权
    Method for implementing electronic mail dictionary transporter 有权
    实施电子邮件字典传送器的方法

    公开(公告)号:US07680893B2

    公开(公告)日:2010-03-16

    申请号:US11620343

    申请日:2007-01-05

    IPC分类号: G06F13/00

    CPC分类号: G06F17/2735 H04L51/00

    摘要: A method, system and computer program product that creates a transport dictionary, which links preferential terms and definitions to the Multipurpose Internet Mail Extension (MIME) of an outgoing electronic mail (email). Prior to sending a message, users are provided the option of transporting words or acronyms unique to the dictionary of the sender and recipient, which have been utilized in the outgoing email message. Linking dictionary preferences to the outgoing email provides clarity to terms utilized in the email message and decreases the amount of time a responder has to spend skipping, adding, or defining terms that are unique to the incoming MUA dictionary.

    摘要翻译: 一种方法,系统和计算机程序产品,其创建将优先条款和定义链接到传出电子邮件(电子邮件)的多用途互联网邮件扩展(MIME)的传输词典。 在发送消息之前,向用户提供运送发送者和收件人字典中唯一的单词或首字母缩略词的选项,这已经在外发电子邮件消息中被使用。 将字典偏好链接到传出电子邮件可以清楚地看到电子邮件消息中使用的术语,并减少响应者花费跳过,添加或定义传入的MUA字典特有的术语所花费的时间。

    KID'S CELL PHONE BUTTON THAT CALLS THE CLOSEST PARENT OR RELATIVE
    8.
    发明申请
    KID'S CELL PHONE BUTTON THAT CALLS THE CLOSEST PARENT OR RELATIVE 审中-公开
    KID的电话电话按钮可以关闭关闭的父母或相对

    公开(公告)号:US20090197636A1

    公开(公告)日:2009-08-06

    申请号:US12250669

    申请日:2008-10-14

    IPC分类号: H04M1/00

    摘要: A cellular telephone system, including: a first cellular telephone for a child; a second cellular telephone for a first relative of the child; and at least a third cellular telephone for at least a second relative of the child; the first cellular telephone including a single button that, when the single button is pushed, automatically activates only one call to a closest one of either (a) the second cellular telephone or (b) a closest one of the at least a third cellular telephone; where closest is measured by at least one of closest geographically, closest by driving time, and closest by driving distance.

    摘要翻译: 一种蜂窝电话系统,包括:用于小孩的第一蜂窝电话; 用于第一亲属的第二蜂窝电话; 以及至少第三蜂窝电话,用于所述儿童的至少第二亲属; 第一蜂窝电话包括单个按钮,当单个按钮被按下时,自动激活仅一个呼叫到(a)第二蜂窝电话中的最接近的一个或(b)至少第三蜂窝电话中最接近的一个 ; 其中最靠近的地理位置最接近,最靠近行驶时间并且最靠近驾驶距离来测量。

    Disposable aspirator cassette
    9.
    发明授权
    Disposable aspirator cassette 有权
    一次性抽吸盒

    公开(公告)号:US07540855B2

    公开(公告)日:2009-06-02

    申请号:US11809505

    申请日:2007-06-01

    IPC分类号: A61M37/00 A61M1/00

    摘要: An aspirator cassette includes a housing having first and second ends sealed off by first and second end caps, respectively. A partition mechanism is enclosed within the housing for dividing its internal volume into first and second regions. First and second fluid flow ports are mounted on the first and second end caps, respectively, to provide fluid flow paths into and from the first and second regions, respectively. When the first region is filled with liquid, its associated first port is connected to a vacuum source for sucking the liquid out of the region, whereby as the liquid is removed, the partition mechanism responds by decreasing the volume of the first region, and increasing the volume of the second region causing its second port to draw a vacuum for sucking fluid from an aspiration device connected to the second port.

    摘要翻译: 抽吸盒包括具有分别由第一和第二端盖密封的第一和第二端的壳体。 分隔机构封装在壳体内,用于将其内部体积分成第一和第二区域。 第一和第二流体流动口分别安装在第一和第二端盖上,以分别向第一和第二区域提供流体流动路径。 当第一区域充满液体时,其相关联的第一端口连接到用于将液体吸出区域的真空源,由此当液体被移除时,分隔机构通过减小第一区域的体积而增加,并且增加 所述第二区域的体积使其第二端口抽出用于从连接到所述第二端口的抽吸装置抽吸流体的真空。

    Encryption apparatus and method for providing an encrypted file system
    10.
    发明授权
    Encryption apparatus and method for providing an encrypted file system 失效
    用于提供加密文件系统的加密装置和方法

    公开(公告)号:US07428306B2

    公开(公告)日:2008-09-23

    申请号:US11406184

    申请日:2006-04-18

    IPC分类号: H04L9/14

    摘要: An encryption apparatus and method for providing an encrypted file system are provided. The encryption apparatus and method of the illustrative embodiments uses a combination of encryption methodologies so as to reduce the amount of decryption and re-encryption that is necessary to a file in the Encrypted File System in the event that the file needs to be modified. The encryption methodologies are interleaved, or alternated, with regard to each block of plaintext. In one illustrative embodiment, Plaintext Block Chaining (PBC) and Cipher Block Chaining (CBC) encryption methodologies are alternated for encrypting a sequence of blocks of data. The encryption of a block of plaintext is dependent upon the plaintext or a cipher generated for the plaintext of a previous block of data in the sequence of blocks of data so that the encryption is more secure than known Electronic Code Book encryption methodologies.

    摘要翻译: 提供了一种用于提供加密文件系统的加密装置和方法。 说明性实施例的加密装置和方法使用加密方法的组合,以便在需要修改文件的情况下减少加密文件系统中的文件所必需的解密和重新加密的量。 关于每个明文块,加密方法被交织或交替。 在一个说明性实施例中,替代了明文块链接(PBC)和密码块链接(CBC)加密方法来加密数据块序列。 明文块的加密取决于明文或为数据块序列中的先前数据块的明文生成的密码,使得加密比已知的电子代码簿加密方法更安全。