Adaptive compression
    1.
    发明授权
    Adaptive compression 有权
    自适应压缩

    公开(公告)号:US08516156B1

    公开(公告)日:2013-08-20

    申请号:US12838280

    申请日:2010-07-16

    IPC分类号: G06F15/16

    CPC分类号: H04L69/04 H04L67/06

    摘要: A method, system, and apparatus are directed towards compression of content over a network. The content may include content length information, such as within a header. In one embodiment, a portion of the content may be compressed to approximately fill a buffer of a predefined size. If there remains additional uncompressed content, a new content length may be determined based in part on the length of the compressed content and the remaining uncompressed content. The buffered content and the new content length may then be forwarded in response to the request. The remaining uncompressed content may be split into predefined blocks using identity compression. Identity compression may then be applied to the remaining uncompressed content which is then forwarded to a destination in response to the request.

    摘要翻译: 一种方法,系统和装置旨在通过网络压缩内容。 内容可以包括内容长度信息,例如在标题内。 在一个实施例中,内容的一部分可以被压缩以大致填充预定大小的缓冲器。 如果仍然存在额外的未压缩内容,则可以部分地基于压缩内容的长度和剩余的未压缩内容来确定新的内容长度。 然后可以响应于该请求转发缓冲的内容和新的内容长度。 剩余的未压缩内容可以使用身份压缩分割成预定义的块。 然后,可以将身份压缩应用于剩余的未压缩内容,然后响应于请求将身份压缩转发到目的地。

    Accessing SSL connection data by a third-party
    2.
    发明授权
    Accessing SSL connection data by a third-party 有权
    由第三方访问SSL连接数据

    公开(公告)号:US08782393B1

    公开(公告)日:2014-07-15

    申请号:US11420677

    申请日:2006-05-26

    IPC分类号: G06F21/00

    摘要: A method, system, and apparatus are directed towards enabling access to payload by a third-party sent over an SSL session. The third-party may be a proxy situated between a client and a server. SSL handshake messages are sent between the client and the server to establish the SSL connection. As the SSL handshake messages are routed through the proxy, the proxy may extract data. In addition, one of the client or the server may send another message within, or out-of-band to, the series of SSL handshake message directly to the proxy. The other SSL message may include secret data that the proxy may use to generate a session key for the SSL connection. With the session key, the proxy may receive SSL messages over the SSL connection, modify and/or transpose the payload within the received SSL messages, and/or terminate the SSL connection at the proxy.

    摘要翻译: 一种方法,系统和装置旨在使得能够通过SSL会话发送的第三方对负载进行访问。 第三方可以是位于客户端和服务器之间的代理。 在客户端和服务器之间发送SSL握手消息,建立SSL连接。 当SSL握手消息通过代理路由时,代理可以提取数据。 此外,客户端或服务器中的一个可以直接向该代理发送一系列SSL握手消息内或带外的另一消息。 另一SSL消息可以包括代理可用于生成用于SSL连接的会话密钥的秘密数据。 通过会话密钥,代理可以通过SSL连接接收SSL消息,修改和/或转发收到的SSL消息内的有效负载,和/或终止代理服务器上的SSL连接。

    Adaptive compression
    3.
    发明授权
    Adaptive compression 有权
    自适应压缩

    公开(公告)号:US07783781B1

    公开(公告)日:2010-08-24

    申请号:US11243629

    申请日:2005-10-05

    IPC分类号: G06F15/16 G06F15/173

    CPC分类号: H04L69/04 H04L67/06

    摘要: A method, system, and apparatus are directed towards compression of content over a network. The content may include content length information, such as within a header. In one embodiment, a portion of the content may be compressed to approximately fill a buffer of a predefined size. If there remains additional uncompressed content, a new content length may be determined based in part on the length of the compressed content and the remaining uncompressed content. The buffered content and the new content length may then be forwarded in response to the request. The remaining uncompressed content may be split into predefined blocks using identity compression. Identity compression may then be applied to the remaining uncompressed content which is then forwarded to a destination in response to the request.

    摘要翻译: 一种方法,系统和装置旨在通过网络压缩内容。 内容可以包括内容长度信息,例如在标题内。 在一个实施例中,内容的一部分可以被压缩以大致填充预定大小的缓冲器。 如果仍然存在额外的未压缩内容,则可以部分地基于压缩内容的长度和剩余的未压缩内容来确定新的内容长度。 然后可以响应于该请求转发缓冲的内容和新的内容长度。 剩余的未压缩内容可以使用身份压缩分割成预定义的块。 然后,可以将身份压缩应用于剩余的未压缩内容,然后响应于请求将身份压缩转发到目的地。

    Method and system for scaling network traffic managers
    4.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US07702809B1

    公开(公告)日:2010-04-20

    申请号:US11929603

    申请日:2007-10-30

    IPC分类号: G06F15/173

    摘要: A method and system is directed to routing a flow of packets over a network to multiple traffic management devices. An apparatus receives each packet from a network and forwards the packet to one of a group of traffic management devices. The apparatus also may receive packets from servers for which the traffic management devices are managing communications. When forwarding packets, a traffic management device is selected from the group of traffic management devices by employing a hash of an IP address and port number. The IP address and port number are selected from source or destination information in the packet that has a greater port number. When the traffic management device performs a network address translation, further actions may be performed so that packets that are part of a flow between two network devices are delivered to the same traffic management device.

    摘要翻译: 一种方法和系统旨在通过网络将分组流路由到多个流量管理设备。 一种装置从网络接收每个分组,并将分组转发到一组业务管理设备中的一个。 设备还可以从业务管理设备正在管理通信的服务器接收分组。 在转发数据包时,通过采用IP地址和端口号的散列来从流量管理设备组中选择流量管理设备。 IP地址和端口号从具有较大端口号的数据包中的源或目标信息中选择。 当流量管理设备执行网络地址转换时,可以执行进一步的动作,使得作为两个网络设备之间的流的一部分的分组被传递到相同的流量管理设备。

    Method and system for scaling network traffic managers
    5.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US08477609B1

    公开(公告)日:2013-07-02

    申请号:US12723576

    申请日:2010-03-12

    IPC分类号: H04J1/16 H04J3/14

    摘要: Distributing network traffic to multiple traffic management devices. A distributor receives packets from a network and may act as a layer 2 switch or router, to distribute the packet to one of a group of traffic management devices. The distributor may receive packets from servers that the traffic management devices are managing communications to. When distributing packets to traffic management devices, information may be used to determine which traffic management device each packet should be sent to. The distributor causes packets in a flow to be delivered to the same traffic management device. Many configurations are possible for connecting the distributor to the traffic management devices, including connecting each traffic management device to a physical or virtual port on the distributor, connecting the traffic management devices to the distributor using a virtual local area network, and connecting the traffic management devices to a layer 2 switch.

    摘要翻译: 将网络流量分配到多个流量管理设备。 分发者从网络接收分组,并且可以充当二层交换机或路由器,以将分组分发到一组流量管理设备中。 分发者可以从流量管理设备管理通信的服务器接收数据包。 当向流量管理设备分发数据包时,可以使用信息来确定每个数据包应该发送到哪个流量管理设备。 分发器将流中的数据包传送到相同的流量管理设备。 许多配置可能用于将分发器连接到流量管理设备,包括将每个流量管理设备连接到分发器上的物理或虚拟端口,使用虚拟局域网将流量管理设备连接到分发者,并且连接流量管理 设备到第2层交换机。

    Method and system for scaling network traffic managers
    6.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US07395349B1

    公开(公告)日:2008-07-01

    申请号:US10644692

    申请日:2003-08-20

    IPC分类号: G06F15/173

    摘要: A method and system is directed to routing a flow of packets over a network to multiple traffic management devices. An apparatus receives each packet from a network and forwards the packet to one of a group of traffic management devices. The apparatus also may receive packets from servers for which the traffic management devices are managing communications. When forwarding packets, a traffic management device is selected from the group of traffic management devices by employing a hash of an IP address and port number. The IP address and port number are selected from source or destination information in the packet that has a greater port number. When the traffic management device performs a network address translation, further actions may be performed so that packets that are part of a flow between two network devices are delivered to the same traffic management device.

    摘要翻译: 一种方法和系统旨在通过网络将分组流路由到多个流量管理设备。 一种装置从网络接收每个分组,并将分组转发到一组业务管理设备中的一个。 设备还可以从业务管理设备正在管理通信的服务器接收分组。 在转发数据包时,通过采用IP地址和端口号的散列来从流量管理设备组中选择流量管理设备。 IP地址和端口号从具有较大端口号的数据包中的源或目标信息中选择。 当流量管理设备执行网络地址转换时,可以执行进一步的动作,使得作为两个网络设备之间的流的一部分的分组被传递到相同的流量管理设备。

    Method and system for scaling network traffic managers
    7.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US09209990B1

    公开(公告)日:2015-12-08

    申请号:US12723567

    申请日:2010-03-12

    摘要: A method and system is directed to routing a flow of packets over a network to multiple traffic management devices. An apparatus receives each packet from a network and forwards the packet to one of a group of traffic management devices. The apparatus also may receive packets from servers for which the traffic management devices are managing communications. When forwarding packets, a traffic management device is selected from the group of traffic management devices by employing a hash of an IP address and port number. The IP address and port number are selected from source or destination information in the packet that has a greater port number. When the traffic management device performs a network address translation, further actions may be performed so that packets that are part of a flow between two network devices are delivered to the same traffic management device.

    摘要翻译: 一种方法和系统旨在通过网络将分组流路由到多个流量管理设备。 一种装置从网络接收每个分组,并将分组转发到一组业务管理设备中的一个。 设备还可以从业务管理设备正在管理通信的服务器接收分组。 在转发数据包时,通过采用IP地址和端口号的散列来从流量管理设备组中选择流量管理设备。 IP地址和端口号从具有较大端口号的数据包中的源或目标信息中选择。 当流量管理设备执行网络地址转换时,可以执行进一步的动作,使得作为两个网络设备之间的流的一部分的分组被传递到相同的流量管理设备。

    Method and system for performing asynchronous cryptographic operations
    8.
    发明授权
    Method and system for performing asynchronous cryptographic operations 有权
    用于执行异步加密操作的方法和系统

    公开(公告)号:US07376967B1

    公开(公告)日:2008-05-20

    申请号:US10308844

    申请日:2002-12-02

    IPC分类号: G06F15/16 G06F17/00 G06F9/00

    摘要: A system and method for performing asynchronous cryptographic operations. A cryptographic toolkit receives requests for cryptographic operations, and initiates the cryptographic operations within a thread of execution. The toolkit detects when the cryptographic operations are complete, retrieves the results, and returns the results to a calling program. The cryptographic operations are performed in an asynchronous manner, without blocking a calling program. The calling program can specify whether the requested operations are to be performed without blocking.

    摘要翻译: 一种用于执行异步加密操作的系统和方法。 加密工具包接收加密操作的请求,并在执行线程中启动加密操作。 工具包检测加密操作何时完成,检索结果,并将结果返回给调用程序。 密码操作以异步方式执行,而不阻塞调用程序。 调用程序可以指定是否在不阻塞的情况下执行请求的操作。

    Method and system for performing asynchronous cryptographic operations
    9.
    发明授权
    Method and system for performing asynchronous cryptographic operations 有权
    用于执行异步加密操作的方法和系统

    公开(公告)号:US08091125B1

    公开(公告)日:2012-01-03

    申请号:US12057208

    申请日:2008-03-27

    IPC分类号: G06F9/00 G06F15/16 G06F17/00

    摘要: A system and method for performing asynchronous cryptographic operations. A cryptographic toolkit receives requests for cryptographic operations, and initiates the cryptographic operations within a thread of execution. The toolkit detects when the cryptographic operations are complete, retrieves the results, and returns the results to a calling program. The cryptographic operations are performed in an asynchronous manner, without blocking a calling program. The calling program can specify whether the requested operations are to be performed without blocking.

    摘要翻译: 一种用于执行异步加密操作的系统和方法。 加密工具包接收加密操作的请求,并在执行线程中启动加密操作。 工具包检测加密操作何时完成,检索结果,并将结果返回给调用程序。 密码操作以异步方式执行,而不阻塞调用程序。 调用程序可以指定是否在不阻塞的情况下执行请求的操作。

    Method and system for scaling network traffic managers
    10.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US07697427B2

    公开(公告)日:2010-04-13

    申请号:US11469843

    申请日:2006-09-01

    IPC分类号: H04J1/16 H04J3/14

    摘要: A system for distributing network traffic to multiple traffic management devices. A distributor receives each packet from a network and may act as a layer 2 switch, a router, or distribute the packet to one of a group of traffic management devices. The distributor may receive packets from servers that the traffic management devices are managing communications to. When distributing packets to traffic management devices, information such as source and destination addresses may be used to determine which traffic management device each packet should be sent to. The distributor causes packets that are part of a flow to be delivered to the same traffic management device. Many configurations are possible for connecting the distributor to the traffic management devices, including connecting each traffic management device to a physical or virtual port on the distributor, connecting the traffic management devices to the distributor using a virtual local area network, and connecting the traffic management devices to a layer 2 switch.

    摘要翻译: 将流量分配到多个流量管理设备的系统。 分配器从网络接收每个分组,并且可以充当二层交换机,路由器,或者将分组分发到一组流量管理设备中。 分发者可以从流量管理设备管理通信的服务器接收数据包。 当向流量管理设备分发数据包时,可以使用诸如源地址和目的地址的信息来确定每个数据包应发送到哪个流量管理设备。 分发器使作为流的一部分的分组被传送到相同的流量管理设备。 许多配置可能用于将分发器连接到流量管理设备,包括将每个流量管理设备连接到分发器上的物理或虚拟端口,使用虚拟局域网将流量管理设备连接到分发者,并且连接流量管理 设备到第2层交换机。