Method and system for generating and using a virus free file certificate
    1.
    发明授权
    Method and system for generating and using a virus free file certificate 有权
    生成和使用无病毒文件证书的方法和系统

    公开(公告)号:US06928550B1

    公开(公告)日:2005-08-09

    申请号:US09665040

    申请日:2000-09-19

    摘要: A method and system are disclosed for generating and using a virus-free file certificate. The method, for use in a virus-free certificate authority (102), includes the steps of: receiving (300) a virus-free certificate request for a file from a server (101) or a client (100) system; determining (301) whether the file is virus-free or not; if the file is declared virus-free by the virus-free certificate authority (102): generating (303, 304) a virus-free certificate (200) including a file signature (207) for certifying that said file is declared virus-free by the virus-free certificate authority (102); sending (306) back in response to the virus-free certificate request the virus-free certificate (200). The method, for use in a server (101) or client (100) system, includes the steps of: determining (400) whether a virus-free certificate (200) is associated with a file; if a virus-free certificate is associated with the file: authenticating (404) the virus-free certificate (200), said virus-free certificate including a certificate signature (206); authenticating (407) the file, said virus-free certificate (200) including a file signature (207), said file signature certifying that said file has been declared virus-free by a virus-free certificate authority (102).

    摘要翻译: 公开了用于生成和使用无病毒文件证书的方法和系统。 用于无病毒证书颁发机构(102)的方法包括以下步骤:从服务器(101)或客户机(100)系统接收(300)无病毒证书请求文件; 确定(301)该文件是否无病毒; 如果文件由无病毒证书颁发机构(102)声明为无病毒,则生成(303,304)无病毒证书(200),其包括用于证明所述文件被宣布无病毒的文件签名(207) 由无病毒认证机构(102); 发送(306)回应无病毒证书请求无病毒证书(200)。 用于服务器(101)或客户端(100)系统的方法包括以下步骤:确定(400)无病毒证书(200)是否与文件相关联; 如果无病毒证书与文件相关联:认证(404)无病毒证书(200),所述无病毒证书包括证书签名(206); 认证(407)文件,所述无病毒证书(200)包括文件签名(207),所述文件签名证明所述文件已被无病毒证书颁发机构(102)宣告为无病毒。

    Method and system for generating and using a virus free file certificate integrated within a file

    公开(公告)号:US07055175B1

    公开(公告)日:2006-05-30

    申请号:US09665627

    申请日:2000-09-19

    CPC分类号: G06F21/565 G06F2221/2115

    摘要: A method and system are disclosed for generating and using a virus-free file certificate integrated in a file. The method, for use in a virus-free certificate authority (102), for generating a virus-free certificate (200) certifying that a file is virus-free includes the steps of: receiving (300) a virus-free certificate request for a file from a server (101) or a client (100) system, said virus-free certificate request including the file for which the virus-free certificate is requested; determining (301) whether a virus-free certificate is integrated in the file; if no virus-free certificate is integrated in the file: determining (305) whether the file is virus-free or not; if the file is declared virus-free by the virus-free certificate authority (102): generating (313, 314) a virus-free certificate (200) including a file signature (207) for certifying that said file is declared virus-free by the virus-free certificate authority (102); integrating (316) the generated virus-free certificate (200) in the file; sending (316) back in response to the virus-free certificate request the file with the integrated virus-free certificate (200). The method for use in a server (101) or client (100) system, for determining that a file is virus-free includes the steps of: determining (401) whether a virus-free certificate (200) is integrated within a file; if a virus-free certificate is integrated within the file: authenticating (415) the virus-free certificate (200), said virus-free certificate including a certificate signature (206); authenticating (407) the file, said virus-free certificate (200) including a file signature (207), said file signature certifying that said file has been declared virus-free by a virus-free certificate authority (102).

    Virtual private network crossovers based on certificates
    3.
    发明授权
    Virtual private network crossovers based on certificates 有权
    基于证书的虚拟专用网络交换机

    公开(公告)号:US07574738B2

    公开(公告)日:2009-08-11

    申请号:US10288574

    申请日:2002-11-06

    IPC分类号: G06F15/16

    摘要: A method and system for enabling interconnection of VPNs is disclosed. An interconnection device manages an interconnection process at one or more facilities including, for example, a gateway device. The gateway device has information relating to a plurality of VPNs, and may facilitate interconnection between devices on at least two of the VPNs by determining that one device is in fact a member of a first one of the VPNs, and by forwarding connection parameters of the first VPN to the second VPN on an as-needed basis. In this way, the gateway allows interconnection without the need for a completely centralized decision-making process, and does so independently of the type of device and/or VPN(s) being used. Moreover, the gateway may implement only those VPN parameters needed by both VPNs to communicate with one another with a desired level of security, thereby simplifying the routing and forwarding processes associated with the actual communication occurring via the interconnection. The information related to the plurality of VPNs and their respective member devices may be stored in a mapping table at the gateway, and identification parameters of a device seeking interconnection and/or associated VPN parameters may be verified by the use of digital certificates.

    摘要翻译: 公开了一种实现VPN互连的方法和系统。 互连设备管理包括例如网关设备在内的一个或多个设施的互连处理。 网关设备具有与多个VPN相关的信息,并且可以通过确定一个设备实际上是VPN中的第一个的成员,并且通过转发所述VPN中的第一个VPN的连接参数来促进至少两个VPN中的设备之间的互连 第一个VPN到第二个VPN根据需要。 以这种方式,网关允许互连,而不需要完全集中的决策过程,并且独立于正在使用的设备和/或VPN的类型。 此外,网关可以仅实现两个VPN所需的VPN参数,以便以期望的安全级别彼此通信,从而简化与通过互连发生的实际通信相关联的路由和转发过程。 与多个VPN及其各自的成员设备相关的信息可以存储在网关的映射表中,并且可以通过使用数字证书来验证寻求互连和/或相关VPN参数的设备的识别参数。

    Method and system for optimizing performance and availability of a dynamic host configuration protocol (DHCP) service
    4.
    发明授权
    Method and system for optimizing performance and availability of a dynamic host configuration protocol (DHCP) service 有权
    用于优化动态主机配置协议(DHCP)服务的性能和可用性的方法和系统

    公开(公告)号:US08370487B2

    公开(公告)日:2013-02-05

    申请号:US13396455

    申请日:2012-02-14

    IPC分类号: G06F15/177

    摘要: A system and computer program product for monitoring and optimizing performance and availability of a Dynamic Host Configuration Protocol (DHCP) service are provided by one or a plurality of DHCP servers in an Internet Protocol (IP) network comprising one or a plurality of IP subnetworks. The system implemented in hardware, comprises a computer infrastructure operable to define one or a plurality of groups of subnetworks, each group of subnetworks comprising one or a plurality of subnetworks. The computer infrastructure is further operable to retrieve information related to resources, in particular IP addresses, allocated within a DHCP server to each group of subnetworks. The computer infrastructure is further operable to transfer the information to a DHCP service monitoring system, the DHCP service monitoring system comprising means for retrieving the information from the one or a plurality of DHCP servers and means for aggregating the information for each group of subnetworks.

    摘要翻译: 用于监视和优化动态主机配置协议(DHCP)服务的性能和可用性的系统和计算机程序产品由包括一个或多个IP子网的因特网协议(IP)网络中的一个或多个DHCP服务器提供。 以硬件实现的系统包括可操作地定义一个或多个子网组的计算机基础设施,每组子网包括一个或多个子网络。 计算机基础设施还可操作以从每个子网络组获取与DHCP服务器内分配的资源相关的信息,特别是IP地址。 计算机基础设施还可操作以将信息传送到DHCP服务监控系统,该DHCP服务监控系统包括用于从一个或多个DHCP服务器检索信息的装置以及用于聚合每组子网络的信息的装置。

    System and method to manage data to a plurality of proxy servers through a router by application level protocol and an authorized list
    5.
    发明授权
    System and method to manage data to a plurality of proxy servers through a router by application level protocol and an authorized list 失效
    通过应用级协议和授权列表通过路由器将数据管理到多个代理服务器的系统和方法

    公开(公告)号:US06792461B1

    公开(公告)日:2004-09-14

    申请号:US09664681

    申请日:2000-09-19

    申请人: Olivier Hericourt

    发明人: Olivier Hericourt

    IPC分类号: G06F15173

    摘要: A method and system for managing data traffic between an intranet and the internet. The Intranet composed of client computers connected to a router system which bridges the connection to a plurality of proxy servers. The proxy servers act as a gateway to the internet and operate on a designated application level protocol. The router system redirecting packets based on application level protocols to the proxy servers while checking the destination proxy server with an authorized list. The router system blocking or transmitting based on the application level protocol and the authorized server.

    摘要翻译: 一种用于管理内联网和互联网之间的数据流量的方法和系统。 由与连接到多个代理服务器的连接的路由器系统的客户端计算机组成的内联网。 代理服务器充当互联网的网关,并以指定的应用级协议进行操作。 路由器系统将基于应用级协议的数据包重定向到代理服务器,同时使用授权列表检查目标代理服务器。 基于应用层协议的路由器系统阻塞或发送,授权服务器。

    Method and system for retrieving an anti-virus signature from one or a plurality of virus-free certificate authorities
    7.
    发明授权
    Method and system for retrieving an anti-virus signature from one or a plurality of virus-free certificate authorities 有权
    从一个或多个无病毒证书机构检索防病毒签名的方法和系统

    公开(公告)号:US06976271B1

    公开(公告)日:2005-12-13

    申请号:US09665524

    申请日:2000-09-19

    摘要: A method and system as disclosed for use in a virus-free certificate proxy (107, 801), of retrieving from one or a plurality of virus-free certificate authorities (104, 804) a virus-free certificate (200) certifying that a file is virus-free. The method includes the steps of: receiving (1001) virus-free certificate request for a file; selecting a virus-free certificate authority (104, 804) having authority to generate a virus-free certificate (200) for the file; requesting (1003 . . . 1007) the virus-free certificate to the selected virus-free certificate authority (104, 804); receiving (1003 . . . 1007) from the selected virus-free certificate authority the generated virus-free certificate; sending back (1005) in response to the virus-free certificate request the received virus-free certificate.

    摘要翻译: 公开了用于无病毒证书代理(107,801)中的方法和系统,从一个或多个无病毒证书颁发机构(104,804)检索无病毒证书(200),证明该证书 文件是无病毒的。 该方法包括以下步骤:接收(1001)无病毒证书请求文件; 选择具有为文件生成无病毒证书(200)的权限的无病毒证书颁发机构(104,804); 向所选择的无病毒证书颁发机构(104,804)请求(1003 ... 1007)无病毒证书; 从选定的无病毒认证机构接收(1003 ... 1007)生成的无病毒证书; 发回(1005)回应无病毒证书请求收到的无病毒证书。

    Method and system for dispatching socks traffic based on socks connection identified by source address, application address and application level protocol
    9.
    发明授权
    Method and system for dispatching socks traffic based on socks connection identified by source address, application address and application level protocol 失效
    基于由源地址,应用地址和应用层协议确定的袜子连接调度袜子流量的方法和系统

    公开(公告)号:US06862629B1

    公开(公告)日:2005-03-01

    申请号:US09676738

    申请日:2000-09-29

    申请人: Olivier Hericourt

    发明人: Olivier Hericourt

    摘要: The present invention relates to a method and system for dispatching on a socks server an IP datagram originated from an application on a source device, in an Internet Protocol (IP) network comprising a plurality of socks servers, said IP datagram comprising a Source IP Address field in the IP header, a Source Port field in the Transmission Control Protocol (TCP) header, and socks data. The method comprises, in a socks dispatcher, the steps of: identifying the source device by retrieving source address in the Source IP Address field; identifying the application on the source device by retrieving the application address in the Source Port field; determining the application level protocol of socks data referring to a first table, the first table comprising for each socks connection identified by a source address and an application address, an application level protocol; and selecting a socks server referring to a second table, the second table defining for each application level protocol one or a plurality of socks servers. The step of selecting a socks server referring to a second table, comprises the further steps of: determining the number of socks servers in the second table defined for the application level protocol of the IP datagram: if only one socks server is defined in the second table, forwarding the IP datagram to said socks server, if more that one socks server is defined in the second table, forwarding the IP datagram to a socks server selected according to its capacity and the priority of the IP datagram.

    摘要翻译: 本发明涉及一种用于在袜子服务器上发送源自源设备上的应用的IP数据报,包括多个袜子服务器的因特网协议(IP)网络中的所述IP数据报的方法和系统,所述IP数据报包括源IP地址 IP头中的字段,传输控制协议(TCP)头中的源端口字段和袜子数据。 该方法包括以下步骤:通过在源IP地址字段中检索源地址来识别源设备;通过在源端口字段中检索应用地址来识别源设备上的应用;确定应用级别 针对第一表的袜子数据协议,第一表包括由源地址和应用地址标识的每个袜子连接,应用级协议; 并且参考第二表选择袜子服务器,第二表为每个应用层协议定义一个或多个袜子服务器。参考第二表选择袜子服务器的步骤还包括以下步骤:确定 第二表中的袜子服务器为IP数据报的应用级协议定义:如果在第二表中仅定义了一个袜子服务器,则将IP数据报转发到所述袜子服务器,如果在第二个表中定义了更多的一个袜子服务器 将IP数据报转发到根据IP容量和IP数据报的优先级选择的袜子服务器。

    Method and system for optimally selecting a Telnet 3270 server in a TCP/IP network
    10.
    发明授权
    Method and system for optimally selecting a Telnet 3270 server in a TCP/IP network 失效
    在TCP / IP网络中最佳选择Telnet 32​​70服务器的方法和系统

    公开(公告)号:US06779032B1

    公开(公告)日:2004-08-17

    申请号:US09604594

    申请日:2000-06-27

    申请人: Olivier Hericourt

    发明人: Olivier Hericourt

    IPC分类号: G06F15173

    摘要: The present invention relates to dynamic configuration of Telnet 3270 Clients and more particularly to a method and system for optimizing selection of a Server according to some response time and availability criteria. The invention rests on an Intermediate Selection Application mechanism using Availability and Response Time Probes. The present invention comprises the steps of retrieving known SNA Application Welcome Screens from SNA Applications through each server, measuring associated response times, and detecting failures and degradation of response time. The present invention uses a CGI (Common Gateway Interface) program for dynamically creating a Selection Screen (a web page in HTML code in one embodiment) on an Intermediate Selection Application.

    摘要翻译: 本发明涉及Telnet 32​​70客户端的动态配置,更具体地涉及根据一些响应时间和可用性标准来优化服务器选择的方法和系统。 本发明基于使用可用性和响应时间探针的中间选择应用机制。 本发明包括以下步骤:通过每个服务器从SNA应用检索已知的SNA应用程序欢迎屏幕,测量相关的响应时间,以及检测响应时间的失败和劣化。 本发明使用CGI(通用网关接口)程序,用于在中间选择应用上动态地创建选择屏幕(一个实施例中的HTML代码中的网页)。