-
公开(公告)号:US20050005165A1
公开(公告)日:2005-01-06
申请号:US10603648
申请日:2003-06-25
CPC分类号: H04L63/0227 , H04L63/0218 , H04L63/029
摘要: A method for a firewall-aware application to communicate its expectations to a firewall without requiring the firewall to change its policy or compromise network security. An application API is provided for applications to inform a firewall or firewalls of the application's needs, and a firewall API is provided that informs the firewall or firewalls of the application's needs. An interception module watches for connect and listen attempts by applications and services to the network stack on the local computer. The interception module traps these attempts and determines what user is making the attempt, what application or service is making the attempt, and conducts a firewall policy look-up to determine whether the user and/or application or service are allowed to connect to the network. If so, the interception module may instruct the host and/or edge firewall to configure itself for the connection being requested.
摘要翻译: 防火墙感知应用程序将其期望传达到防火墙的方法,而不需要防火墙更改其策略或损害网络安全性。 为应用程序提供应用程序API以通知防火墙或防火墙应用程序的需求,并提供防火墙API,通知防火墙或防火墙应用程序的需求。 拦截模块监视应用程序和服务对本地计算机上的网络堆栈的连接和监听尝试。 拦截模块捕获这些尝试,并确定用户正在进行的尝试,什么应用程序或服务正在进行尝试,并进行防火墙策略查找,以确定是否允许用户和/或应用程序或服务连接到网络 。 如果是这样,则拦截模块可以指示主机和/或边缘防火墙为正在请求的连接配置自身。
-
公开(公告)号:US07559082B2
公开(公告)日:2009-07-07
申请号:US10603648
申请日:2003-06-25
IPC分类号: H04L29/06
CPC分类号: H04L63/0227 , H04L63/0218 , H04L63/029
摘要: A method for a firewall-aware application to communicate its expectations to a firewall without requiring the firewall to change its policy or compromise network security. An application API is provided for applications to inform a firewall or firewalls of the application's needs, and a firewall API is provided that informs the firewall or firewalls of the application's needs. An interception module watches for connect and listen attempts by applications and services to the network stack on the local computer. The interception module traps these attempts and determines what user is making the attempt, what application or service is making the attempt, and conducts a firewall policy look-up to determine whether the user and/or application or service are allowed to connect to the network. If so, the interception module may instruct the host and/or edge firewall to configure itself for the connection being requested.
摘要翻译: 防火墙感知应用程序将其期望传达到防火墙的方法,而不需要防火墙更改其策略或损害网络安全性。 为应用程序提供应用程序API以通知防火墙或防火墙应用程序的需求,并提供防火墙API,通知防火墙或防火墙应用程序的需求。 拦截模块监视应用程序和服务对本地计算机上的网络堆栈的连接和监听尝试。 拦截模块捕获这些尝试,并确定用户正在进行的尝试,什么应用程序或服务正在进行尝试,并进行防火墙策略查找,以确定是否允许用户和/或应用程序或服务连接到网络 。 如果是这样,则拦截模块可以指示主机和/或边缘防火墙为正在请求的连接配置自身。
-
公开(公告)号:US07587675B2
公开(公告)日:2009-09-08
申请号:US11364470
申请日:2006-02-28
申请人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
发明人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
IPC分类号: G06F3/00
摘要: The claimed method and system provides a graphical user interface that illustrates network topology information, including connection paths between devices on the local network and an external network such as the Internet. The claimed method and system may use a three column format for presenting the topology that is more intuitive for a user. Also, the claimed method and system may aggregate context and connection information from multiple different protocols to provide the topology display. Further, the claimed method and system may use a device registry to enable customized and extensible representations of the network devices.
摘要翻译: 所要求保护的方法和系统提供图形用户界面,其示出了网络拓扑信息,包括本地网络上的设备与诸如因特网的外部网络之间的连接路径。 所要求保护的方法和系统可以使用三列格式来呈现对用户更直观的拓扑。 此外,所要求保护的方法和系统可以聚合来自多个不同协议的上下文和连接信息以提供拓扑显示。 此外,所要求保护的方法和系统可以使用设备注册表来实现网络设备的定制和可扩展表示。
-
公开(公告)号:US20100064225A1
公开(公告)日:2010-03-11
申请号:US12548598
申请日:2009-08-27
申请人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
发明人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
IPC分类号: G06F3/01
摘要: The claimed method and system provides a graphical user interface that illustrates network topology information, including connection paths between devices on the local network and an external network such as the Internet. The claimed method and system may use a three column format for presenting the topology that is more intuitive for a user. Also, the claimed method and system may aggregate context and connection information from multiple different protocols to provide the topology display. Further, the claimed method and system may use a device registry to enable customized and extensible representations of the network devices.
摘要翻译: 所要求保护的方法和系统提供图形用户界面,其示出了网络拓扑信息,包括本地网络上的设备与诸如因特网的外部网络之间的连接路径。 所要求保护的方法和系统可以使用三列格式来呈现对用户更直观的拓扑。 此外,所要求保护的方法和系统可以聚合来自多个不同协议的上下文和连接信息以提供拓扑显示。 此外,所要求保护的方法和系统可以使用设备注册表来实现网络设备的定制和可扩展表示。
-
公开(公告)号:US07818673B2
公开(公告)日:2010-10-19
申请号:US12548598
申请日:2009-08-27
申请人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
发明人: Aaron Cunningham , Marieke I. Watson , Patrice L. Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
IPC分类号: G06F3/00
摘要: The claimed method and system provides a graphical user interface that illustrates network topology information, including connection paths between devices on the local network and an external network such as the Internet. The claimed method and system may use a three column format for presenting the topology that is more intuitive for a user. Also, the claimed method and system may aggregate context and connection information from multiple different protocols to provide the topology display. Further, the claimed method and system may use a device registry to enable customized and extensible representations of the network devices.
摘要翻译: 所要求保护的方法和系统提供图形用户界面,其示出了网络拓扑信息,包括本地网络上的设备与诸如因特网的外部网络之间的连接路径。 所要求保护的方法和系统可以使用三列格式来呈现对用户更直观的拓扑。 此外,所要求保护的方法和系统可以聚合来自多个不同协议的上下文和连接信息以提供拓扑显示。 此外,所要求保护的方法和系统可以使用设备注册表来实现网络设备的定制和可扩展表示。
-
公开(公告)号:US20070204231A1
公开(公告)日:2007-08-30
申请号:US11364470
申请日:2006-02-28
申请人: Aaron Cunningham , Marieke Watson , Patrice Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
发明人: Aaron Cunningham , Marieke Watson , Patrice Miner , Alexandru Gavrilescu , Haiyong Wang , Dennis Morgan
IPC分类号: G06F15/177 , G06F15/173
摘要: The claimed method and system provides a graphical user interface that illustrates network topology information, including connection paths between devices on the local network and an external network such as the Internet. The claimed method and system may use a three column format for presenting the topology that is more intuitive for a user. Also, the claimed method and system may aggregate context and connection information from multiple different protocols to provide the topology display. Further, the claimed method and system may use a device registry to enable customized and extensible representations of the network devices.
摘要翻译: 所要求保护的方法和系统提供图形用户界面,其示出了网络拓扑信息,包括本地网络上的设备与诸如因特网的外部网络之间的连接路径。 所要求保护的方法和系统可以使用三列格式来呈现对用户更直观的拓扑。 此外,所要求保护的方法和系统可以聚合来自多个不同协议的上下文和连接信息以提供拓扑显示。 此外,所要求保护的方法和系统可以使用设备注册表来实现网络设备的定制和可扩展表示。
-
公开(公告)号:US20120255026A1
公开(公告)日:2012-10-04
申请号:US13078951
申请日:2011-04-02
申请人: Jim Baca , Selim Aissi , Alan Ross , Tobias Kohlenberg , Dennis Morgan
发明人: Jim Baca , Selim Aissi , Alan Ross , Tobias Kohlenberg , Dennis Morgan
IPC分类号: G06F21/00
CPC分类号: G06F21/10 , H04L63/08 , H04L63/10 , H04L2463/101
摘要: A method, device, and system for managing digital usage rights of documents includes a mobile computing device having a digital rights management (DRM) enforcement engine included therein. The mobile computing device may communicate with a server, such as an enterprise digital rights management (EDRM) server, to retrieve a secured document and an associated document usage rights policy. The document and usage rights policy are stored in a secured storage of the mobile computing device. The DRM enforcement engine of the mobile computing device provides access to the requested document while locally enforcing the associated document usage rights policy. In some embodiments, the mobile computing device may act as a proxy for other computing devices communicatively coupled to the mobile computing device and/or act as a local EDRM to such computing devices.
摘要翻译: 用于管理文档的数字使用权限的方法,设备和系统包括其中包括数字版权管理(DRM)执行引擎的移动计算设备。 移动计算设备可以与诸如企业数字版权管理(EDRM)服务器的服务器进行通信,以检索安全文档和相关联的文档使用权限策略。 文档和使用权限策略被存储在移动计算设备的安全存储器中。 移动计算设备的DRM执行引擎提供对所请求的文档的访问,同时在本地执行相关联的文档使用权限策略。 在一些实施例中,移动计算设备可以充当通信地耦合到移动计算设备的其他计算设备的代理,和/或充当这样的计算设备的本地EDRM。
-
公开(公告)号:US20070113266A1
公开(公告)日:2007-05-17
申请号:US11271292
申请日:2005-11-12
申请人: Alan Ross , Dennis Morgan
发明人: Alan Ross , Dennis Morgan
IPC分类号: H04L9/00
CPC分类号: G06F21/6218 , G06F21/10 , G06F2221/2111 , G06F2221/2113 , G06F2221/2115 , G06F2221/2153
摘要: Apparatuses and methods provide operating system independent digital rights management. A request can be made for data, which can be monitored by a security module. The security module is independent of a host operating system and manages digital rights for the requested data. Thus, digital rights management occurs outside the context of a host operating system. The security module may classify the data and determine a security policy based on the data classification. Policy may be stored locally or remotely, and may be associated with the data subject to the policy.
摘要翻译: 设备和方法提供操作系统独立的数字版权管理。 可以对数据进行请求,数据可由安全模块监控。 安全模块独立于主机操作系统,并管理所请求数据的数字权限。 因此,数字版权管理发生在主机操作系统的上下文之外。 安全模块可以对数据进行分类,并根据数据分类确定安全策略。 策略可以在本地或远程存储,并且可以与受策略约束的数据相关联。
-
公开(公告)号:US20060010265A1
公开(公告)日:2006-01-12
申请号:US11172590
申请日:2005-06-29
申请人: Mark Aiken , Gurdeep Pall , Dennis Morgan
发明人: Mark Aiken , Gurdeep Pall , Dennis Morgan
IPC分类号: G06F13/14
CPC分类号: H04L49/901 , H04L29/06 , H04L49/90 , H04L69/32
摘要: A software network bridge is disclosed which allows the connected network segments to be presented as a single network unit to the host computer. The software bridge can be implemented as an intermediate network driver, abstracting multiple network segments into a single network interface for higher level protocols and applications. While the intermediate network driver acts as a software bridge implementing the Spanning Tree Algorithm, it also acts a network interface driver to higher level protocols, conglomerating information from the multiple underlying network interface cards and forwarding along commands from the higher level software to the appropriate network interface card. The intermediate network driver can also simultaneously send the same data packet through multiple network interfaces by creating multiple packet descriptors, each pointing to the same data, but each given individually to the underlying network interfaces to control during their transmission. Further efficiencies can also be achieved by the software bridge, implemented as an intermediate network driver, through the use of a dynamic allocation scheme which increases the size of the useable buffers of each network interface without increasing the overall memory consumption, and the use of a queuing scheme which preliminarily examines incoming data packets to determine if any processing needs to be performed, and queues the packets should they require processing. Additionally, a user interface is presented exposing this functionality of the intermediate network driver.
-
公开(公告)号:US20180251063A1
公开(公告)日:2018-09-06
申请号:US15448784
申请日:2017-03-03
申请人: Steven M. Helline , Dennis Morgan
发明人: Steven M. Helline , Dennis Morgan
IPC分类号: B60P7/08
CPC分类号: B60P7/0853 , B60P7/08
摘要: A chain binder to connect and apply tension to chains used to secure cargo on a truck bed. The chain binder includes a center body; a first side assembly; a second side assembly; and a power coupling provided on the center body. The first side assembly engages a first chain section and the second side assembly engages a second chain section. The power coupling couples a gear mechanism in the center body to an external power source. Operation of the power coupling moves the first and second side assemblies toward each other when operated in a first direction and moves the first and second side assemblies away from each other when operated in a second direction. As the first and second side assemblies move toward each other, tension in the chains increases and as the side assemblies move away from each other tension in the chain decreases.
-
-
-
-
-
-
-
-
-