IDENTITY MANAGEMENT METHOD AND SYSTEM
    4.
    发明申请
    IDENTITY MANAGEMENT METHOD AND SYSTEM 失效
    身份管理方法与系统

    公开(公告)号:US20120185849A1

    公开(公告)日:2012-07-19

    申请号:US13016116

    申请日:2011-01-28

    IPC分类号: G06F15/173 G06F9/455

    摘要: An identity management method and system is disclosed. The method includes identity context management (ICM) clients monitoring access to Internet resources using dedicated Virtual Machines (VM). An ICM server monitors associations between Internet resource identifiers (IDs) and the Internet resources accessed by the VMs. The VMs register context for the ICM clients with the ICM server. An ICM client enables access to Internet resources and presentation of Webpages and Internet contents associated with the Internet resources within the associated Virtual Machine context.

    摘要翻译: 公开了身份管理方法和系统。 该方法包括使用专用虚拟机(VM)监视对Internet资源的访问的身份上下文管理(ICM)客户端。 ICM服务器监控Internet资源标识符(ID)和VM访问的Internet资源之间的关联。 虚拟机使用ICM服务器为ICM客户端注册上下文。 ICM客户端可以访问因特网资源以及与相关虚拟机上下文中的互联网资源相关联的网页和互联网内容的呈现。

    Method of synchronizing firewalls in a communication system based upon a server farm
    5.
    发明授权
    Method of synchronizing firewalls in a communication system based upon a server farm 有权
    在基于服务器场的通信系统中同步防火墙的方法

    公开(公告)号:US08001279B2

    公开(公告)日:2011-08-16

    申请号:US10317522

    申请日:2002-12-12

    IPC分类号: G06F15/16

    CPC分类号: H04L63/0218 H04L63/20

    摘要: A method of synchronizing firewalls in a communication system comprising a server farm wherein any user connected to the Internet can access customer servers, and at least two firewalls using a Virtual Router Redundancy Protocol (VRRP) to set up as primary interface firewall the firewall which owns the primary interface of the VRRP group of interfaces to at least one customer server. The method includes initializing, in a secondary interface firewall, a synchronization message exchange with the primary firewall after receiving a packet for a connection having a state which is incompatible with the received packet or after the standard firewall processing of a packet corresponding to a new connection, and registering in a common connection table the state of any connection if the connection is new or if the connection state has changed.

    摘要翻译: 一种在包括服务器场的通信系统中同步防火墙的方法,其中连接到因特网的任何用户可以访问客户服务器,以及使用虚拟路由器冗余协议(VRRP)至少两个防火墙来建立作为主接口防火墙的防火墙, 接口的VRRP组的主界面至少一个客户服务器。 该方法包括:在二级接口防火墙中,在接收到具有与接收到的分组不兼容的状态的连接的分组之后或在对应于新连接的分组的标准防火墙处理之后,在辅助接口防火墙中初始化与主防火墙的同步消息交换 并且如果连接是新的或者连接状态已经改变,则在公共连接表中注册任何连接的状态。

    Adjudication means in method and system for managing service levels provided by service providers
    6.
    发明授权
    Adjudication means in method and system for managing service levels provided by service providers 有权
    判断意味着在服务提供商提供的管理服务水平的方法和系统中

    公开(公告)号:US07228255B2

    公开(公告)日:2007-06-05

    申请号:US11314375

    申请日:2005-12-20

    IPC分类号: G06F17/30

    摘要: A method and system for managing a service level of a service provided by a service provider to a customer under a service level agreement. The measurement data is adjudicated to correct the measurement data in accordance with at least one adjudication element that identifies a rule specifying how to correct the measurement data. The adjudicated measurement data is transformed into operational data by merging the adjudicated measurement data using a logic specified in the service level agreement. The operational data is evaluated by applying a formula to the operational data, resulting in the operational data being configured for being subsequently qualified. The operational data is qualified by comparing the evaluated operational data with specified service level targets for at least one service level period and identifying operational data points meeting and/or not meeting the specified service level targets.

    摘要翻译: 一种用于根据服务级别协议来管理服务提供商向客户提供的服务的服务水平的方法和系统。 根据至少一个标识指定如何校正测量数据的规则的判断元件来裁定测量数据以校正测量数据。 通过使用服务级别协议中指定的逻辑合并确定的测量数据,将裁定的测量数据转换为操作数据。 通过对运行数据应用公式来评估运行数据,从而使运行数据配置为随后进行合格。 操作数据通过将评估的操作数据与至少一个服务级别周期的指定服务级别目标进行比较并识别会议和/或不符合指定的服务级别目标的操作数据点来限定。

    Method and system for improving the availability of software processes utilizing configurable finite state tables
    7.
    发明授权
    Method and system for improving the availability of software processes utilizing configurable finite state tables 有权
    使用可配置有限状态表来提高软件过程可用性的方法和系统

    公开(公告)号:US07779129B2

    公开(公告)日:2010-08-17

    申请号:US11845545

    申请日:2007-08-27

    IPC分类号: G06F15/16

    CPC分类号: G06F8/61 G06F9/453

    摘要: The invention provides a system and method for providing a high availability application at low cost for a wide range of solution architectures. A user runs a simplistic web-based wizard to install the high availability application. Then, a user designs the high availability application's logic for an individual process or process-group using a finite state table. Next, a standard UNIX init process spawner subsystem is extended to implement the high availability application as a property of a process. Finally, the logic from the finite state table is used to make each process or process-group highly available.

    摘要翻译: 本发明提供了一种用于为各种解决方案架构以低成本提供高可用性应用的系统和方法。 用户运行一个简单的基于Web的向导来安装高可用性应用程序。 然后,用户使用有限状态表为单个进程或进程组设计高可用性应用程序的逻辑。 接下来,扩展了标准的UNIX init进程spawner子系统,以实现高可用性应用程序作为进程的属性。 最后,来自有限状态表的逻辑用于使每个进程或进程组高度可用。

    Security system for preventing unauthorized packet transmission between customer servers in a server farm
    8.
    发明授权
    Security system for preventing unauthorized packet transmission between customer servers in a server farm 有权
    用于防止服务器场中的客户服务器之间未经授权的数据包传输的安全系统

    公开(公告)号:US07359378B2

    公开(公告)日:2008-04-15

    申请号:US10263213

    申请日:2002-10-02

    IPC分类号: H04L12/56 H04L9/00

    摘要: A security system for a communication system that includes an IP network and groups of servers in a farm, wherein each group is associated with a customer. A user connected to the network can access information provided by a customer from a server within the group of servers associated with this customer through a dispatching device. The security system comprises setting means in each of the switches which are located between the dispatching device and the customer servers for setting a field of bits in the IP header of potentially irregular packets transmitted from a customer server and the dispatching device, means in the dispatching device for identifying any packet wherein the field of bits has been set to the predefined value, and means for deleting or logging the potentially irregular packet when the destination of the packet is not the dispatching device.

    摘要翻译: 一种用于通信系统的安全系统,其包括农场中的IP网络和服务器组,其中每个组与客户相关联。 连接到网络的用户可以通过调度设备从与该客户关联的服务器组内的服务器中访问由客户提供的信息。 安全系统包括位于调度设备和客户服务器之间的每个交换机中的设置装置,用于设置从客户服务器和调度设备发送的潜在不规则分组的IP报头中的位的字段,调度中的装置 用于识别其中所述比特位已被设置为所述预定义值的任何分组的装置,以及用于当分组的目的地不是分派装置时删除或记录潜在不规则分组的装置。

    Adjudication means in method and system for managing service levels provided by service providers
    9.
    发明申请
    Adjudication means in method and system for managing service levels provided by service providers 有权
    判断意味着在服务提供商提供的管理服务水平的方法和系统中

    公开(公告)号:US20060167870A1

    公开(公告)日:2006-07-27

    申请号:US11314375

    申请日:2005-12-20

    IPC分类号: G06F17/30

    摘要: A method and system for managing a service level of a service provided by a service provider to a customer under a service level agreement. The measurement data is adjudicated to correct the measurement data in accordance with at least one adjudication element that identifies a rule specifying how to correct the measurement data. The adjudicated measurement data is transformed into operational data by merging the adjudicated measurement data using a logic specified in the service level agreement. The operational data is evaluated by applying a formula to the operational data, resulting in the operational data being configured for being subsequently qualified. The operational data is qualified by comparing the evaluated operational data with specified service level targets for at least one service level period and identifying operational data points meeting and/or not meeting the specified service level targets.

    摘要翻译: 一种用于根据服务级别协议来管理服务提供商向客户提供的服务的服务水平的方法和系统。 根据至少一个标识指定如何校正测量数据的规则的判断元件来裁定测量数据以校正测量数据。 通过使用服务级别协议中指定的逻辑合并确定的测量数据,将裁定的测量数据转换为操作数据。 通过对运行数据应用公式来评估运行数据,从而使运行数据配置为随后进行合格。 操作数据通过将评估的操作数据与至少一个服务级别周期的指定服务级别目标进行比较并识别会议和/或不符合指定的服务级别目标的操作数据点来限定。

    Identity management method and system
    10.
    发明授权
    Identity management method and system 失效
    身份管理方法和系统

    公开(公告)号:US08495219B2

    公开(公告)日:2013-07-23

    申请号:US13016116

    申请日:2011-01-28

    摘要: An identity management method and system is disclosed. The method includes identity context management (ICM) clients monitoring access to Internet resources using dedicated Virtual Machines (VM). An ICM server monitors associations between Internet resource identifiers (IDs) and the Internet resources accessed by the VMs. The VMs register context for the ICM clients with the ICM server. An ICM client enables access to Internet resources and presentation of Webpages and Internet contents associated with the Internet resources within the associated Virtual Machine context.

    摘要翻译: 公开了身份管理方法和系统。 该方法包括使用专用虚拟机(VM)监视对Internet资源的访问的身份上下文管理(ICM)客户端。 ICM服务器监控Internet资源标识符(ID)和VM访问的Internet资源之间的关联。 虚拟机使用ICM服务器为ICM客户端注册上下文。 ICM客户端可以访问因特网资源以及与相关虚拟机上下文中的互联网资源相关联的网页和互联网内容的呈现。