Network firewall test methods and apparatus
    1.
    发明申请
    Network firewall test methods and apparatus 有权
    网络防火墙测试方法和设备

    公开(公告)号:US20050076235A1

    公开(公告)日:2005-04-07

    申请号:US10678328

    申请日:2003-10-03

    IPC分类号: G06F11/30

    摘要: A test method for Internet-Protocol packet networks that verifies the proper functioning of a dynamic pinhole filtering implementation as well as quantifying network vulnerability statistically, as pinholes are opened and closed is described. Specific potential security vulnerabilities that may be addressed through testing include: 1) excessive delay in opening pinholes, resulting in an unintentional denial of service; 2) excessive delay in closing pinholes, creating a closing delay window of vulnerability; 3) measurement of the length of various windows of vulnerability; 4) setting a threshold on a window of vulnerability such that it triggers an alert when a predetermined value is exceeded; 5) determination of incorrectly allocated pinholes, resulting in a denial of service; 6) determining the opening of extraneous pinhole/IP address combinations through a firewall which increase the network vulnerability through unrecognized backdoors; and 7) determining the inability to correlate call state information with dynamically established rules in the firewall.

    摘要翻译: 描述了针对针孔打开和关闭的互联网协议分组网络的测试方法,其验证动态针孔过滤实现的正常功能以及统计地定量网络脆弱性。 可能通过测试解决的特定潜在的安全漏洞包括:1)打开针孔过多的延迟,导致无意的拒绝服务; 2)关闭针孔过度延迟,造成关闭延迟窗口的脆弱性; 3)测量各种窗口的长度; 4)在漏洞窗口设置阈值,使得当超过预定值时触发警报; 5)确定分配不正确的针孔,导致拒绝服务; 6)通过防火墙确定外部针孔/ IP地址组合的打开,通过无法识别的后门增加网络脆弱性; 以及7)确定无法将呼叫状态信息与防火墙中动态建立的规则相关联。

    Security management system for monitoring firewall operation
    2.
    发明申请
    Security management system for monitoring firewall operation 有权
    用于监控防火墙操作的安全管理系统

    公开(公告)号:US20050076238A1

    公开(公告)日:2005-04-07

    申请号:US10679222

    申请日:2003-10-03

    摘要: A test method for Internet-Protocol packet networks that verifies the proper functioning of a dynamic pinhole filtering implementation as well as quantifying network vulnerability statistically, as pinholes are opened and closed is described. Specific potential security vulnerabilities that may be addressed through testing include: 1) excessive delay in opening pinholes, resulting in an unintentional denial of service; 2) excessive delay in closing pinholes, creating a closing delay window of vulnerability; 3) measurement of the length of various windows of vulnerability; 4) setting a threshold on a window of vulnerability such that it triggers an alert when a predetermined value is exceeded; 5) determination of incorrectly allocated pinholes, resulting in a denial of service; 6) determining the opening of extraneous pinhole/IP address combinations through a firewall which increase the network vulnerability through unrecognized backdoors; and 7) determining the inability to correlate call state information with dynamically established rules in the firewall.

    摘要翻译: 描述了针对针孔打开和关闭的互联网协议分组网络的测试方法,其验证动态针孔过滤实现的正常功能以及统计地定量网络脆弱性。 可能通过测试解决的特定潜在的安全漏洞包括:1)打开针孔过多的延迟,导致无意的拒绝服务; 2)关闭针孔过度延迟,造成关闭延迟窗口的脆弱性; 3)测量各种窗口的长度; 4)在漏洞窗口设置阈值,使得当超过预定值时触发警报; 5)确定分配不正确的针孔,导致拒绝服务; 6)通过防火墙确定外部针孔/ IP地址组合的打开,通过无法识别的后门增加网络脆弱性; 以及7)确定无法将呼叫状态信息与防火墙中动态建立的规则相关联。

    Methods and apparatus for testing dynamic network firewalls
    3.
    发明申请
    Methods and apparatus for testing dynamic network firewalls 有权
    动态网络防火墙测试方法和设备

    公开(公告)号:US20050075842A1

    公开(公告)日:2005-04-07

    申请号:US10678779

    申请日:2003-10-03

    IPC分类号: G06F19/00 H04L29/06

    CPC分类号: H04L63/02 H04L63/1433

    摘要: A test method for Internet-Protocol packet networks that verifies the proper functioning of a dynamic pinhole filtering implementation as well as quantifying network vulnerability statistically, as pinholes are opened and closed is described. Specific potential security vulnerabilities that may be addressed through testing include: 1) excessive delay in opening pinholes, resulting in an unintentional denial of service; 2) excessive delay in closing pinholes, creating a closing delay window of vulnerability; 3) measurement of the length of various windows of vulnerability; 4) setting a threshold on a window of vulnerability such that it triggers an alert when a predetermined value is exceeded; 5) determination of incorrectly allocated pinholes, resulting in a denial of service; 6) determining the opening of extraneous pinhole/IP address combinations through a firewall which increase the network vulnerability through unrecognized backdoors; and 7) determining the inability to correlate call state information with dynamically established rules in the firewall.

    摘要翻译: 描述了针对针孔打开和关闭的互联网协议分组网络的测试方法,其验证动态针孔过滤实现的正常功能以及统计地定量网络脆弱性。 可能通过测试解决的特定潜在的安全漏洞包括:1)打开针孔过多的延迟,导致无意的拒绝服务; 2)关闭针孔过度延迟,造成关闭延迟窗口的脆弱性; 3)测量各种窗口的长度; 4)在漏洞窗口设置阈值,使得当超过预定值时触发警报; 5)确定分配不正确的针孔,导致拒绝服务; 6)通过防火墙确定外部针孔/ IP地址组合的打开,通过无法识别的后门增加网络脆弱性; 以及7)确定无法将呼叫状态信息与防火墙中动态建立的规则相关联。

    System and method for determining the location of an acoustic event
    4.
    发明申请
    System and method for determining the location of an acoustic event 有权
    用于确定声学事件位置的系统和方法

    公开(公告)号:US20060050610A1

    公开(公告)日:2006-03-09

    申请号:US11221541

    申请日:2005-09-07

    IPC分类号: H04B1/59

    CPC分类号: G01S5/22

    摘要: A system and method is provided for determining the three dimensional location of an acoustic event using a system of five or more sound sensing elements. The sensing elements are positioned at substantially the same elevation and in spatially distributed locations with respect to the acoustic event. The sensing elements generate notification signals indicating occurrence of the acoustic event. A central processor receives the notification signals, associates the locations of each of the sensing elements with the time at which each sensing element sensed the sound, determines the speed of sound for the medium, and calculates a three dimensional location for the acoustic event using a linear error minimization algorithm. A system of six or more sensing elements enables the processor further to discriminate between near simultaneous acoustic events.

    摘要翻译: 提供了一种用于使用五个或更多个声音感测元件的系统来确定声学事件的三维位置的系统和方法。 感测元件相对于声学事件被定位在基本上相同的高度和空间上分布的位置。 感测元件产生指示声音事件发生的通知信号。 中央处理器接收通知信号,将每个感测元件的位置与每个感测元件感测到的声音的时间相关联,确定介质的声速,并且使用以下方式计算声学事件的三维位置: 线性误差最小化算法。 六个或更多个感测元件的系统使得处理器能够进一步区分近似同时的声学事件。

    Method and system for electronic trading via a yield curve
    6.
    发明申请
    Method and system for electronic trading via a yield curve 有权
    通过收益曲线进行电子交易的方法和系统

    公开(公告)号:US20070112665A1

    公开(公告)日:2007-05-17

    申请号:US11595498

    申请日:2006-11-10

    IPC分类号: G06Q40/00

    CPC分类号: G06Q40/04 G06Q40/02

    摘要: A method and system for providing electronic trading via yield curves. The method and system allow automatic execution of electronic trades with yield curve trading strategies using real, synthetic, black box, spread, and supply differential yield curve trading information.

    摘要翻译: 一种通过收益曲线提供电子交易的方法和系统。 该方法和系统允许使用实际,合成,黑盒,差价和供应差异收益率曲线交易信息自动执行电子交易与收益曲线交易策略。

    System for editing and conversion of distributed simulation data for visualization
    7.
    发明申请
    System for editing and conversion of distributed simulation data for visualization 审中-公开
    用于编辑和转换分布式仿真数据进行可视化的系统

    公开(公告)号:US20070146367A1

    公开(公告)日:2007-06-28

    申请号:US11598701

    申请日:2006-11-14

    申请人: Edward Harvey

    发明人: Edward Harvey

    IPC分类号: G06T15/70

    CPC分类号: G06T13/00

    摘要: A simulation system for generating movie “scenes” that show interactions between simulated entities that populate a synthetic environment used to support training exercises and equipment. The simulation system includes a simulation engine that produces simulated entity state and event data; a visualization suite that allows an editor to display 2-D and 3-D views of the synthetic battlespace and to hear the battlefield and communications sounds associated with an interaction; a digital data logger that records simulation entity state and event data; an editing processor that provides the functionality required to identify, filter, specify, and organize the “scenes” that make up an interaction of interest; a “scene” generator that converts the entity state and event data for the set of scenes that make up an interaction into a digital movie file; and a repository for storage of complete movies and copying of movies to removable media.

    摘要翻译: 用于生成电影“场景”的模拟系统,其显示填充用于支持训练练习和设备的合成环境的模拟实体之间的交互。 仿真系统包括产生模拟实体状态和事件数据的仿真引擎; 一个可视化套件,允许编辑器显示合成战斗空间的2-D和3-D视图,并听到与交互相关联的战场和通信声音; 记录模拟实体状态和事件数据的数字数据记录器; 编辑处理器,其提供识别,过滤,指定和组织构成感兴趣的交互的“场景”所需的功能; 一个“场景”生成器,将构成交互的一组场景的实体状态和事件数据转换成数字电影文件; 以及用于存储完整电影和将电影复制到可移动媒体的存储库。