Method and system for performing asynchronous cryptographic operations
    1.
    发明授权
    Method and system for performing asynchronous cryptographic operations 有权
    用于执行异步加密操作的方法和系统

    公开(公告)号:US08091125B1

    公开(公告)日:2012-01-03

    申请号:US12057208

    申请日:2008-03-27

    IPC分类号: G06F9/00 G06F15/16 G06F17/00

    摘要: A system and method for performing asynchronous cryptographic operations. A cryptographic toolkit receives requests for cryptographic operations, and initiates the cryptographic operations within a thread of execution. The toolkit detects when the cryptographic operations are complete, retrieves the results, and returns the results to a calling program. The cryptographic operations are performed in an asynchronous manner, without blocking a calling program. The calling program can specify whether the requested operations are to be performed without blocking.

    摘要翻译: 一种用于执行异步加密操作的系统和方法。 加密工具包接收加密操作的请求,并在执行线程中启动加密操作。 工具包检测加密操作何时完成,检索结果,并将结果返回给调用程序。 密码操作以异步方式执行,而不阻塞调用程序。 调用程序可以指定是否在不阻塞的情况下执行请求的操作。

    Method and system for scaling network traffic managers
    2.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US07697427B2

    公开(公告)日:2010-04-13

    申请号:US11469843

    申请日:2006-09-01

    IPC分类号: H04J1/16 H04J3/14

    摘要: A system for distributing network traffic to multiple traffic management devices. A distributor receives each packet from a network and may act as a layer 2 switch, a router, or distribute the packet to one of a group of traffic management devices. The distributor may receive packets from servers that the traffic management devices are managing communications to. When distributing packets to traffic management devices, information such as source and destination addresses may be used to determine which traffic management device each packet should be sent to. The distributor causes packets that are part of a flow to be delivered to the same traffic management device. Many configurations are possible for connecting the distributor to the traffic management devices, including connecting each traffic management device to a physical or virtual port on the distributor, connecting the traffic management devices to the distributor using a virtual local area network, and connecting the traffic management devices to a layer 2 switch.

    摘要翻译: 将流量分配到多个流量管理设备的系统。 分配器从网络接收每个分组,并且可以充当二层交换机,路由器,或者将分组分发到一组流量管理设备中。 分发者可以从流量管理设备管理通信的服务器接收数据包。 当向流量管理设备分发数据包时,可以使用诸如源地址和目的地址的信息来确定每个数据包应发送到哪个流量管理设备。 分发器使作为流的一部分的分组被传送到相同的流量管理设备。 许多配置可能用于将分发器连接到流量管理设备,包括将每个流量管理设备连接到分发器上的物理或虚拟端口,使用虚拟局域网将流量管理设备连接到分发者,并且连接流量管理 设备到第2层交换机。

    Method and system for scaling network traffic managers
    3.
    发明授权
    Method and system for scaling network traffic managers 有权
    扩展网络流量管理器的方法和系统

    公开(公告)号:US08477609B1

    公开(公告)日:2013-07-02

    申请号:US12723576

    申请日:2010-03-12

    IPC分类号: H04J1/16 H04J3/14

    摘要: Distributing network traffic to multiple traffic management devices. A distributor receives packets from a network and may act as a layer 2 switch or router, to distribute the packet to one of a group of traffic management devices. The distributor may receive packets from servers that the traffic management devices are managing communications to. When distributing packets to traffic management devices, information may be used to determine which traffic management device each packet should be sent to. The distributor causes packets in a flow to be delivered to the same traffic management device. Many configurations are possible for connecting the distributor to the traffic management devices, including connecting each traffic management device to a physical or virtual port on the distributor, connecting the traffic management devices to the distributor using a virtual local area network, and connecting the traffic management devices to a layer 2 switch.

    摘要翻译: 将网络流量分配到多个流量管理设备。 分发者从网络接收分组,并且可以充当二层交换机或路由器,以将分组分发到一组流量管理设备中。 分发者可以从流量管理设备管理通信的服务器接收数据包。 当向流量管理设备分发数据包时,可以使用信息来确定每个数据包应该发送到哪个流量管理设备。 分发器将流中的数据包传送到相同的流量管理设备。 许多配置可能用于将分发器连接到流量管理设备,包括将每个流量管理设备连接到分发器上的物理或虚拟端口,使用虚拟局域网将流量管理设备连接到分发者,并且连接流量管理 设备到第2层交换机。

    Method and system for scaling network traffic managers using connection keys
    4.
    发明授权
    Method and system for scaling network traffic managers using connection keys 有权
    使用连接密钥对网络流量管理员进行扩展的方法和系统

    公开(公告)号:US08004971B1

    公开(公告)日:2011-08-23

    申请号:US10659011

    申请日:2003-09-10

    IPC分类号: G01R31/08

    摘要: A method and system is directed to distributing a flow of packets over a network to multiple traffic management devices. An apparatus receives each packet from a network and may act as a layer 2 switch, or router, to distribute the packet to one of a group of traffic management devices. The apparatus also may receive packets from servers for which the traffic management devices are managing communications. When distributing packets, a target traffic management device is selected from the group of traffic management devices. A connection key associated with the received packet and an identifier associated with the selected traffic management device are saved such that subsequent received packets in the flow of packets are delivered to the same traffic management device.

    摘要翻译: 一种方法和系统旨在通过网络向多个流量管理设备分发分组流。 一种装置从网络接收每个分组,并且可以充当二层交换机或路由器,以将分组分发到一组业务管理设备中。 设备还可以从业务管理设备正在管理通信的服务器接收分组。 在分发报文时,从流量管理设备组中选择目标流量管理设备。 与接收到的分组相关联的连接密钥和与所选择的流量管理设备相关联的标识符被保存,使得分组流中的后续接收到的分组被传递到相同的流量管理设备。

    System and method for performing application level persistence
    5.
    发明授权
    System and method for performing application level persistence 有权
    执行应用程序级别持久性的系统和方法

    公开(公告)号:US07831712B1

    公开(公告)日:2010-11-09

    申请号:US11874109

    申请日:2007-10-17

    IPC分类号: G06F13/00

    摘要: A method and apparatus for inserting and examining Cookies in the data streams of HTTP connections for the purpose of persistently directing HTTP connections to the same destination. A network device directs subsequent HTTP connections from the same client to the same server (destination) for accessing the requested resources. There are four modes for employing the Cookie to persistently direct HTTP connections. The associated mode inserts a Cookie that uniquely identifies the client into an HTTP response. The passive mode inserts Cookie information that uniquely identifies a previously selected destination into an HTTP response. In the rewrite mode, a network device manages the destination information that is rewritten over blank Cookie information generated by the destination producing the HTTP response. The insert mode inserts and removes Cookie information in the data packets for HTTP requests and response prior to processing by the destination.

    摘要翻译: 用于在HTTP连接的数据流中插入和检查Cookie的方法和装置,用于持续将HTTP连接指向同一目的地。 网络设备将来自同一客户端的后续HTTP连接指向用于访问所请求资源的同一服务器(目的地)。 使用Cookie持续引导HTTP连接有四种模式。 相关联的模式将Cookie唯一地标识到HTTP响应中。 被动模式插入将先前选择的目的地唯一标识到HTTP响应中的Cookie信息。 在重写模式中,网络设备管理由产生HTTP响应的目的地生成的空白Cookie信息重写的目的地信息。 插入模式在目的地处理之前插入和删除HTTP请求和响应的数据包中的Cookie信息。

    Enabling encryption of application level persistence between a server and a client
    6.
    发明授权
    Enabling encryption of application level persistence between a server and a client 有权
    启用服务器和客户端之间应用程序级别持久性的加密

    公开(公告)号:US07287084B1

    公开(公告)日:2007-10-23

    申请号:US11235643

    申请日:2005-09-26

    IPC分类号: G06F13/00

    摘要: A method and system for inserting and examining encrypted identification information in the data streams of application level connections for the purpose of persistently directing application connections to the same destination. The invention enables a network device to direct subsequent application level connections from the same client to the same server (destination) for accessing the requested resources. There are four modes for employing the encrypted information to persistently direct application level connections. The associative mode inserts information that uniquely identifies the client into a response. The passive mode inserts information that uniquely identifies a previously selected destination into a response. In the rewrite mode, a network device manages the destination information that is rewritten over blank information generated by the destination producing the response. The insert mode inserts and removes identification information in the data packets for application level requests and responses prior to processing by the destination.

    摘要翻译: 用于在应用级连接的数据流中插入和检查加密的识别信息的方法和系统,用于持续地将应用连接指向同一个目的地。 本发明使得网络设备可以将后续应用级连接从同一客户端引导到同一服务器(目的地),以访问所请求的资源。 有四种使用加密信息的方式可以持续地直接应用级连接。 关联模式将唯一标识客户端的信息插入到响应中。 被动模式将将先前选择的目的地唯一标识的信息插入到响应中。 在重写模式中,网络设备管理由产生响应的目的地生成的空白信息重写的目的地信息。 在目的地处理之前,插入模式插入并移除数据包中的应用层请求和响应中的标识信息。

    System and method for performing application level persistence
    7.
    发明授权
    System and method for performing application level persistence 有权
    执行应用程序级别持久性的系统和方法

    公开(公告)号:US08103770B1

    公开(公告)日:2012-01-24

    申请号:US12941941

    申请日:2010-11-08

    IPC分类号: G06F13/00

    摘要: A method and apparatus for inserting and examining Cookies in the data streams of HTTP connections for the purpose of persistently directing HTTP connections to the same destination. A network device directs subsequent HTTP connections from the same client to the same server (destination) for accessing the requested resources. There are four modes for employing the Cookie to persistently direct HTTP connections. The associated mode inserts a Cookie that uniquely identifies the client into an HTTP response. The passive mode inserts Cookie information that uniquely identifies a previously selected destination into an HTTP response. In the rewrite mode, a network device manages the destination information that is rewritten over blank Cookie information generated by the destination producing the HTTP response. The insert mode inserts and removes Cookie information in the data packets for HTTP requests and response prior to processing by the destination.

    摘要翻译: 用于在HTTP连接的数据流中插入和检查Cookie的方法和装置,用于持续将HTTP连接指向同一目的地。 网络设备将来自同一客户端的后续HTTP连接指向用于访问所请求资源的同一服务器(目的地)。 使用Cookie持续引导HTTP连接有四种模式。 相关联的模式将Cookie唯一地标识到HTTP响应中。 被动模式插入将先前选择的目的地唯一标识到HTTP响应中的Cookie信息。 在重写模式中,网络设备管理由产生HTTP响应的目的地生成的空白Cookie信息重写的目的地信息。 插入模式在目的地处理之前插入和删除HTTP请求和响应的数据包中的Cookie信息。

    Enabling application level persistence between a server and another resource over a network
    8.
    发明授权
    Enabling application level persistence between a server and another resource over a network 有权
    通过网络启用服务器和另一资源之间的应用程序级别持久性

    公开(公告)号:US06970933B1

    公开(公告)日:2005-11-29

    申请号:US10284035

    申请日:2002-10-28

    IPC分类号: G06F13/00 H04L29/08

    摘要: A method and system for inserting and examining Cookies in the data streams of HTTP connections for the purpose of persistently directing HTTP connections to the same destination. The invention enables a network device to direct subsequent HTTP connections from the same client to the same server (destination) for accessing the requested resources. There are four modes for employing the Cookie to persistently direct HTTP connections. The associative mode inserts a Cookie that uniquely identifies the client into an HTTP response. The passive mode inserts Cookie information that uniquely identifies a previously selected destination into an HTTP response. In the rewrite mode, a network device manages the destination information that is rewritten over blank Cookie information generated by the destination producing the HTTP response. The insert mode inserts and removes Cookie information in the data packets for HTTP requests and responses prior to processing by the destination.

    摘要翻译: 用于在HTTP连接的数据流中插入和检查Cookie的方法和系统,用于持续将HTTP连接指向同一目的地。 本发明使得网络设备能够将来自同一客户端的后续HTTP连接引导到用于访问所请求的资源的同一服务器(目的地)。 使用Cookie持续引导HTTP连接有四种模式。 关联模式将Cookie唯一标识到HTTP响应中。 被动模式插入将先前选择的目的地唯一标识到HTTP响应中的Cookie信息。 在重写模式中,网络设备管理由产生HTTP响应的目的地生成的空白Cookie信息重写的目的地信息。 插入模式在目的地处理之前插入和删除HTTP请求和响应的数据包中的Cookie信息。

    Method and system for storing load balancing information with an HTTP cookie
    9.
    发明授权
    Method and system for storing load balancing information with an HTTP cookie 有权
    使用HTTP cookie存储负载均衡信息的方法和系统

    公开(公告)号:US06473802B2

    公开(公告)日:2002-10-29

    申请号:US10006555

    申请日:2001-12-04

    IPC分类号: G06F1300

    摘要: A method and system for inserting and examining Cookies in the data streams of HTTP connections for the purpose of persistently directing HTTP connections to the same destination. The invention enables a network device to direct subsequent HTTP connections from the same client to the same server (destination) for accessing the requested resources. There are four modes for employing the Cookie to persistently direct HTTP connections. The associative mode inserts a Cookie that uniquely identifies the client into an HTTP response. The passive mode inserts Cookie information that uniquely identifies a previously selected destination into an HTTP response. In the rewrite mode, a network device manages the destination information that is rewritten over blank Cookie information generated by the destination producing the HTTP response. The insert mode inserts and removes Cookie information in the data packets for HTTP requests and responses prior to processing by the destination.

    摘要翻译: 用于在HTTP连接的数据流中插入和检查Cookie的方法和系统,用于持续将HTTP连接指向同一目的地。 本发明使得网络设备能够将来自同一客户端的后续HTTP连接引导到用于访问所请求的资源的同一服务器(目的地)。 使用Cookie持续引导HTTP连接有四种模式。 关联模式将Cookie唯一标识到HTTP响应中。 被动模式插入将先前选择的目的地唯一标识到HTTP响应中的Cookie信息。 在重写模式中,网络设备管理由产生HTTP响应的目的地生成的空白Cookie信息重写的目的地信息。 插入模式在目的地处理之前插入和删除HTTP请求和响应的数据包中的Cookie信息。

    Employing rate shaping class capacities and metrics to balance connections
    10.
    发明授权
    Employing rate shaping class capacities and metrics to balance connections 有权
    采用速率整形类容量和度量来平衡连接

    公开(公告)号:US08788640B1

    公开(公告)日:2014-07-22

    申请号:US11230854

    申请日:2005-09-20

    IPC分类号: G06F15/16

    摘要: A method, system, and apparatus for integrating a rate shaping class analysis with a load balancing decision across multiple network links to improve traffic management decisions. For each of the available multiple network links, a determination is made as to how much bandwidth is available to each class associated with that network link. When a request for a connection is received, the request's class is determined. A load balancing decision is based on the available bandwidths for the determined class for the request. The invention may also integrate other Quality of Service metrics into the load balancing decision, including link type, failure rates, or the like.

    摘要翻译: 一种用于将速率整形类分析与跨多个网络链路的负载平衡决策集成以改善流量管理决策的方法,系统和装置。 对于每个可用的多个网络链路,确定与该网络链路相关联的每个类别具有多少带宽可用。 当接收到连接的请求时,确定请求的类。 负载平衡决定基于请求所确定的类的可用带宽。 本发明还可以将其他服务质量度量标准集成到负载平衡决策中,包括链路类型,故障率等。