Combining assessment models and client targeting to identify network security vulnerabilities
    1.
    发明申请
    Combining assessment models and client targeting to identify network security vulnerabilities 有权
    结合评估模型和客户端定位来识别网络安全漏洞

    公开(公告)号:US20080235801A1

    公开(公告)日:2008-09-25

    申请号:US11725890

    申请日:2007-03-20

    Abstract: Described is a technology for managing network security by having network clients that are capable of self-assessment assess themselves for security risks and/or security vulnerabilities. Other clients may be remotely assessed for security risks and/or security vulnerabilities. Assessments may include antimalware scans, vulnerability assessment, and/or port scans. The results of the self-assessments and remote assessments are combined into a data set (e.g., a view) indicative of the network security state. In this manner, for example, significant network resources are conserved by allowing those clients capable of self-assessment to assess themselves and thereafter only provide their self-assessment results. Clients capable of self-assessment may also be remotely assessed, to determine whether any discrepancies exist between their remote assessments and self-assessments. Clients may be discovered, along with their self-assessment capabilities, by network communication.

    Abstract translation: 描述了一种通过让能够进行自我评估的网络客户评估自身的安全风险和/或安全漏洞来管理网络安全的技术。 远程评估其他客户端的安全风险和/或安全漏洞。 评估可能包括反恶意软件扫描,漏洞评估和/或端口扫描。 自评估和远程评估的结果被组合成指示网络安全状态的数据集(例如,视图)。 以这种方式,例如,通过允许能够进行自我评估的客户来评估自己,然后仅提供其自我评估结果,可以节省重要的网络资源。 还可以远程评估能够进行自我评估的客户,以确定其远程评估与自我评估之间是否存在差异。 可以通过网络通信来发现客户端及其自我评估功能。

    Combining assessment models and client targeting to identify network security vulnerabilities
    2.
    发明授权
    Combining assessment models and client targeting to identify network security vulnerabilities 有权
    结合评估模型和客户端定位来识别网络安全漏洞

    公开(公告)号:US08302196B2

    公开(公告)日:2012-10-30

    申请号:US11725890

    申请日:2007-03-20

    Abstract: Described is a technology for managing network security by having network clients that are capable of self-assessment assess themselves for security risks and/or security vulnerabilities. Other clients may be remotely assessed for security risks and/or security vulnerabilities. Assessments may include antimalware scans, vulnerability assessment, and/or port scans. The results of the self-assessments and remote assessments are combined into a data set (e.g., a view) indicative of the network security state. In this manner, for example, significant network resources are conserved by allowing those clients capable of self-assessment to assess themselves and thereafter only provide their self-assessment results. Clients capable of self-assessment may also be remotely assessed, to determine whether any discrepancies exist between their remote assessments and self-assessments. Clients may be discovered, along with their self-assessment capabilities, by network communication.

    Abstract translation: 描述了一种通过让能够进行自我评估的网络客户评估自身的安全风险和/或安全漏洞来管理网络安全的技术。 远程评估其他客户端的安全风险和/或安全漏洞。 评估可能包括反恶意软件扫描,漏洞评估和/或端口扫描。 自评估和远程评估的结果被组合成指示网络安全状态的数据集(例如,视图)。 以这种方式,例如,通过允许能够进行自我评估的客户来评估自己,然后仅提供其自我评估结果,可以节省重要的网络资源。 还可以远程评估能够进行自我评估的客户,以确定其远程评估与自我评估之间是否存在差异。 可以通过网络通信来发现客户端及其自我评估功能。

    Methods and systems for processing HTTP requests
    4.
    发明授权
    Methods and systems for processing HTTP requests 有权
    用于处理HTTP请求的方法和系统

    公开(公告)号:US06629127B1

    公开(公告)日:2003-09-30

    申请号:US09360776

    申请日:1999-07-26

    Abstract: Various embodiments of the invention are directed to closely integrating functionality between an internet server and a WebDAV tool. Areas of specific focus in this document include delegation of duties between the internet server and the WebDAV tool, efficient management of a resource's content-type, support for segregation of a namespace into separate virtual roots, and determinations of whether to invoke certain processing extensions to handle requests for a given HTTP verb.

    Abstract translation: 本发明的各种实施例涉及在互联网服务器和WebDAV工具之间紧密集成功能。 本文件中特别关注的领域包括在互联网服务器与WebDAV工具之间进行职责分配,对资源的内容类型进行高效管理,支持将命名空间分离为单独的虚拟根,以及确定是否调用某些处理扩展 处理给定HTTP动词的请求。

    Secure Software Deployments
    5.
    发明申请
    Secure Software Deployments 审中-公开
    安全软件部署

    公开(公告)号:US20090007096A1

    公开(公告)日:2009-01-01

    申请号:US11770536

    申请日:2007-06-28

    CPC classification number: H04L63/20 G06F21/57

    Abstract: Techniques for secure software deployments are described. In one implementation, a software package is published to an installation portion of a networked environment and stored. Similarly, an applicability rule (or policy) associated with the software package is published to the installation portion and stored. During a periodic synchronization between a host device and the installation portion, the applicability rule is communicated, and a determination is made whether the host device is intended to receive the software package based on the applicability rule communicated during the periodic synchronization. If the applicability rule is satisfied, the software package is installed on the host device. In a further implementation, the software package may be installed on the host device via a communication channel that is normally designated for non-routine communications, such as security packet updates and other administrative functions.

    Abstract translation: 描述了用于安全软件部署的技术。 在一个实现中,软件包被发布到网络环境的安装部分并被存储。 类似地,与软件包相关联的适用性规则(或策略)被发布到安装部分并被存储。 在主机设备和安装部分之间的周期性同步期间,传达适用性规则,并且基于在周期性同步期间传递的适用规则,确定主机设备是否打算接收软件包。 如果适用规则得到满足,软件包就安装在主机上。 在进一步的实现中,软件包可以经由通常指定用于诸如安全分组更新和其他管理功能的非常规通信的通信信道安装在主机设备上。

    Methods and systems for preparing extensible markup language (XML) documents and for responding to XML requests
    7.
    发明授权
    Methods and systems for preparing extensible markup language (XML) documents and for responding to XML requests 失效
    用于准备可扩展标记语言(XML)文档和响应XML请求的方法和系统

    公开(公告)号:US06993715B2

    公开(公告)日:2006-01-31

    申请号:US11192952

    申请日:2005-07-29

    Abstract: Methods and systems for generating and sending an XML document are described. In a specific implementation, methods and systems for responding to an XML client request utilize an XML response generator that includes one or more request method objects. There is one object for each particular type of client request that might be received. Each request method object knows and gathers the data that is needed to respond to its particular associated client request. An emitter object receives calls from the request method object and translates the data that it receives into response portions that are in proper XML syntactic form.

    Abstract translation: 描述用于生成和发送XML文档的方法和系统。 在具体实现中,用于响应XML客户端请求的方法和系统利用包括一个或多个请求方法对象的XML响应生成器。 每个特定类型的客户端请求可能有一个对象可能被接收。 每个请求方法对象知道并收集响应其特定关联的客户端请求所需的数据。 发射器对象接收来自请求方法对象的调用,并将其接收到的数据转换为适当的XML语法形式的响应部分。

    System and method for converting a file system path into a uniform resource locator
    8.
    发明授权
    System and method for converting a file system path into a uniform resource locator 有权
    将文件系统路径转换为统一资源定位符的系统和方法

    公开(公告)号:US06519626B1

    公开(公告)日:2003-02-11

    申请号:US09360539

    申请日:1999-07-26

    CPC classification number: G06F17/30067 G06F17/30887

    Abstract: A method is described of converting a file system path corresponding to a resource to a uniform resource locator (URL) corresponding to the resource. After receiving the file system path, the following information is obtained related to the resource located in the inputted file system path: the protocol prefix, domain name, the port number if different than default, and the URL fixed subdirectory structure if any. This information may be obtained, for example, by reference to a URL provided to a conversion module. The URL is then manufactured by first assigning the protocol prefix as the left-most characters of the URL. Then, the domain name, a colon “:” and port number if different than default, any subdirectory structure, and a latter portion of the file system path are added to the protocol prefix. Finally, any back slashes “\” are converted to forward slashes “/” to complete the conversion to the URL.

    Abstract translation: 描述了将与资源相对应的文件系统路径转换为与资源相对应的统一资源定位符(URL)的方法。 收到文件系统路径后,获取与输入文件系统路径中的资源相关的以下信息:协议前缀,域名,端口号,如果与默认值不同,以及URL固定的子目录结构(如果有)。 该信息可以例如通过参考提供给转换模块的URL来获得。 然后通过首先将协议前缀指定为URL的最左边的字符来制造该URL。 然后,域名,冒号“:”和端口号如果不同于默认值,则任何子目录结构以及文件系统路径的后一部分都将添加到协议前缀中。 最后,任何反斜杠“\”都将转换为正斜杠“/”,以完成对URL的转换。

    XML schema design for environment-specific types based on base types
    9.
    发明授权
    XML schema design for environment-specific types based on base types 有权
    基于基础类型的环境特定类型的XML模式设计

    公开(公告)号:US07930680B2

    公开(公告)日:2011-04-19

    申请号:US11177051

    申请日:2005-07-08

    CPC classification number: G06F17/2247

    Abstract: XML Schema Designs for environment-specific types based on XML base types are disclosed. The invention provides a series of “base types” in the XML Schema. Each base type is in an environment-specific XML Schema namespace that disambiguates the environment's types from all other types defined by any other environment. The XML Schema Design then defines the final type as an anonymous type, derived from the environment-specific base type. The base type is defined with any XML Schema type facets that apply to all derivatives of the base type, and the anonymous final type is defined with additional XML Schema type facets to fully describe the type.

    Abstract translation: 公开了基于XML基础类型的环境特定类型的XML模式设计。 本发明提供了XML Schema中的一系列“基本类型”。 每种基本类型都在环境特定的XML Schema命名空间中,可以将环境的类型与任何其他环境定义的所有其他类型相冲突。 然后,XML模式设计将最终类型定义为从环境特定的基本类型派生的匿名类型。 使用适用于基本类型的所有衍生工具的任何XML模式类型构面定义基类型,并使用其他XML模式类型构面定义匿名最终类型,以完全描述该类型。

    Dynamic generation of WSDL documents based on database metadata
    10.
    发明授权
    Dynamic generation of WSDL documents based on database metadata 有权
    基于数据库元数据动态生成WSDL文档

    公开(公告)号:US07590935B2

    公开(公告)日:2009-09-15

    申请号:US11177077

    申请日:2005-07-08

    CPC classification number: G06F17/30899 H04L67/02

    Abstract: Methods for generating WSDL (“Web Services Description Language”) documents to describe types and function entry points based on database metadata are disclosed. Such a method may include resolving the endpoint metadata by querying based on parameters about the request collected by the HTTP stack. From the endpoint metadata, the list of entry points which have been mapped may be collected. For each entry point, attributes about the entry point may be collected, and metadata for the types of parameters to the entry point may be looked up. A first collection of unique XML schema namespaces may be created, with one entry corresponding to each unique XML schema namespace for any arbitrary user-defined XML Schema definitions required by a parameter to an entry point. A second collection of unique XML schema namespaces may be created, with one entry corresponding to each unique XML schema namespace for an entry point. The wrapper elements for the WSDL document and any global XML schema definitions may be emitted. The first collection of unique XML schema namespaces may be iterated through, and the XML schema definitions may be emitted. The second collection of unique XML schema namespaces may be iterated through. For each entry point in the second collection, the XML schema definition for the entry point may be emitted, including any XML schema definitions for parameters to the entry point. After emitting all of the XML schema definitions, the entry points may be iterated through, and WSDL document definitions for messages, port types, and bindings for each entry point may be emitted. After emitting all of the message definitions, the WSDL document may be completed by emitting service entry definitions for the endpoint.

    Abstract translation: 公开了基于数据库元数据生成WSDL(“Web服务描述语言”)文档来描述类型和功能入口点的方法。 这种方法可以包括通过基于由HTTP栈收集的请求的参数进行查询来解析端点元数据。 从端点元数据可以收集已经映射的入口点的列表。 对于每个入口点,可以收集关于入口点的属性,并且可以查找到入口点的参数类型的元数据。 可以创建唯一的XML模式命名空间的第一个集合,其中一个条目对应于每个唯一的XML模式命名空间,用于参数到入口点所需的任意用户定义的XML模式定义。 可以创建唯一的XML模式命名空间的第二个集合,其中一个条目对应于入口点的每个唯一的XML模式命名空间。 可以发出WSDL文档和任何全局XML模式定义的包装器元素。 可以遍历唯一的XML模式命名空间的第一个集合,并且可能会发出XML模式定义。 可以遍历第二个唯一的XML模式命名空间的集合。 对于第二个集合中的每个入口点,可以发出入口点的XML模式定义,包括用于入口点的参数的任何XML模式定义。 在发布所有XML模式定义之后,可以遍历入口点,并且可以发出每个入口点的消息,端口类型和绑定的WSDL文档定义。 在发出所有消息定义之后,WSDL文档可以通过为端点发出服务条目定义来完成。

Patent Agency Ranking