摘要:
A method and system are disclosed for generating and using a virus-free file certificate. The method, for use in a virus-free certificate authority (102), includes the steps of: receiving (300) a virus-free certificate request for a file from a server (101) or a client (100) system; determining (301) whether the file is virus-free or not; if the file is declared virus-free by the virus-free certificate authority (102): generating (303, 304) a virus-free certificate (200) including a file signature (207) for certifying that said file is declared virus-free by the virus-free certificate authority (102); sending (306) back in response to the virus-free certificate request the virus-free certificate (200). The method, for use in a server (101) or client (100) system, includes the steps of: determining (400) whether a virus-free certificate (200) is associated with a file; if a virus-free certificate is associated with the file: authenticating (404) the virus-free certificate (200), said virus-free certificate including a certificate signature (206); authenticating (407) the file, said virus-free certificate (200) including a file signature (207), said file signature certifying that said file has been declared virus-free by a virus-free certificate authority (102).
摘要:
A method and system are disclosed for generating and using a virus-free file certificate integrated in a file. The method, for use in a virus-free certificate authority (102), for generating a virus-free certificate (200) certifying that a file is virus-free includes the steps of: receiving (300) a virus-free certificate request for a file from a server (101) or a client (100) system, said virus-free certificate request including the file for which the virus-free certificate is requested; determining (301) whether a virus-free certificate is integrated in the file; if no virus-free certificate is integrated in the file: determining (305) whether the file is virus-free or not; if the file is declared virus-free by the virus-free certificate authority (102): generating (313, 314) a virus-free certificate (200) including a file signature (207) for certifying that said file is declared virus-free by the virus-free certificate authority (102); integrating (316) the generated virus-free certificate (200) in the file; sending (316) back in response to the virus-free certificate request the file with the integrated virus-free certificate (200). The method for use in a server (101) or client (100) system, for determining that a file is virus-free includes the steps of: determining (401) whether a virus-free certificate (200) is integrated within a file; if a virus-free certificate is integrated within the file: authenticating (415) the virus-free certificate (200), said virus-free certificate including a certificate signature (206); authenticating (407) the file, said virus-free certificate (200) including a file signature (207), said file signature certifying that said file has been declared virus-free by a virus-free certificate authority (102).
摘要:
A method and system for enabling interconnection of VPNs is disclosed. An interconnection device manages an interconnection process at one or more facilities including, for example, a gateway device. The gateway device has information relating to a plurality of VPNs, and may facilitate interconnection between devices on at least two of the VPNs by determining that one device is in fact a member of a first one of the VPNs, and by forwarding connection parameters of the first VPN to the second VPN on an as-needed basis. In this way, the gateway allows interconnection without the need for a completely centralized decision-making process, and does so independently of the type of device and/or VPN(s) being used. Moreover, the gateway may implement only those VPN parameters needed by both VPNs to communicate with one another with a desired level of security, thereby simplifying the routing and forwarding processes associated with the actual communication occurring via the interconnection. The information related to the plurality of VPNs and their respective member devices may be stored in a mapping table at the gateway, and identification parameters of a device seeking interconnection and/or associated VPN parameters may be verified by the use of digital certificates.
摘要:
A system and computer program product for monitoring and optimizing performance and availability of a Dynamic Host Configuration Protocol (DHCP) service are provided by one or a plurality of DHCP servers in an Internet Protocol (IP) network comprising one or a plurality of IP subnetworks. The system implemented in hardware, comprises a computer infrastructure operable to define one or a plurality of groups of subnetworks, each group of subnetworks comprising one or a plurality of subnetworks. The computer infrastructure is further operable to retrieve information related to resources, in particular IP addresses, allocated within a DHCP server to each group of subnetworks. The computer infrastructure is further operable to transfer the information to a DHCP service monitoring system, the DHCP service monitoring system comprising means for retrieving the information from the one or a plurality of DHCP servers and means for aggregating the information for each group of subnetworks.
摘要:
A method and system for managing data traffic between an intranet and the internet. The Intranet composed of client computers connected to a router system which bridges the connection to a plurality of proxy servers. The proxy servers act as a gateway to the internet and operate on a designated application level protocol. The router system redirecting packets based on application level protocols to the proxy servers while checking the destination proxy server with an authorized list. The router system blocking or transmitting based on the application level protocol and the authorized server.
摘要:
Described is a system and method for receiving an electronic mail including an attachment file and separating the attachment file from the electronic mail. The attachment is then sent to a remote source and the attachment file is replaced with a substitute file including identifying data for retrieving the attachment file from the remote source. The electronic mail with the substitute file is then forwarded to a receiver.
摘要:
A method and system as disclosed for use in a virus-free certificate proxy (107, 801), of retrieving from one or a plurality of virus-free certificate authorities (104, 804) a virus-free certificate (200) certifying that a file is virus-free. The method includes the steps of: receiving (1001) virus-free certificate request for a file; selecting a virus-free certificate authority (104, 804) having authority to generate a virus-free certificate (200) for the file; requesting (1003 . . . 1007) the virus-free certificate to the selected virus-free certificate authority (104, 804); receiving (1003 . . . 1007) from the selected virus-free certificate authority the generated virus-free certificate; sending back (1005) in response to the virus-free certificate request the received virus-free certificate.
摘要:
The present invention relies on dynamic autoproxy configuration and more particularly to a method and system for selecting a Proxy/Socks Server according to some response time and availability criteria. It rests on a dynamic autoproxy mechanism using availability and response time probes. It relies on probes retrieving well known HTML pages through each Proxy/Socks Server, measuring associated response time, detecting Proxy/Socks failures and degradation of response time. It also uses a CGI (Common Gateway Interface) program for dynamically creating autoproxy code (in a preferred embodiment Javascript code) on an autoproxy URL (Universal resource locator) system for selecting said Proxy/Socks Server.
摘要:
The present invention relates to a method and system for dispatching on a socks server an IP datagram originated from an application on a source device, in an Internet Protocol (IP) network comprising a plurality of socks servers, said IP datagram comprising a Source IP Address field in the IP header, a Source Port field in the Transmission Control Protocol (TCP) header, and socks data. The method comprises, in a socks dispatcher, the steps of: identifying the source device by retrieving source address in the Source IP Address field; identifying the application on the source device by retrieving the application address in the Source Port field; determining the application level protocol of socks data referring to a first table, the first table comprising for each socks connection identified by a source address and an application address, an application level protocol; and selecting a socks server referring to a second table, the second table defining for each application level protocol one or a plurality of socks servers. The step of selecting a socks server referring to a second table, comprises the further steps of: determining the number of socks servers in the second table defined for the application level protocol of the IP datagram: if only one socks server is defined in the second table, forwarding the IP datagram to said socks server, if more that one socks server is defined in the second table, forwarding the IP datagram to a socks server selected according to its capacity and the priority of the IP datagram.
摘要:
The present invention relates to dynamic configuration of Telnet 3270 Clients and more particularly to a method and system for optimizing selection of a Server according to some response time and availability criteria. The invention rests on an Intermediate Selection Application mechanism using Availability and Response Time Probes. The present invention comprises the steps of retrieving known SNA Application Welcome Screens from SNA Applications through each server, measuring associated response times, and detecting failures and degradation of response time. The present invention uses a CGI (Common Gateway Interface) program for dynamically creating a Selection Screen (a web page in HTML code in one embodiment) on an Intermediate Selection Application.