Distributed management communications network
    1.
    发明授权
    Distributed management communications network 失效
    分布式管理通信网络

    公开(公告)号:US5634011A

    公开(公告)日:1997-05-27

    申请号:US517305

    申请日:1995-08-21

    摘要: A multinode, multicast communications network has a distributed control for the creation, administration and operational mode selection operative in each of the nodes of the network. Each node is provided with a Set Manager for controlling either creation of, administration or access to a set of users to whom a multicast is to be directed. The Set Manager maintains a record of the local membership of all users associated with the node in which the Set Manager resides. A given Set Manager for each designated set of users is assigned the task of being the Set Leader to maintain membership information about the entire set of users in the multicast group. One of the Set Managers in the communications network is designated to be the Registrar which maintains a list of all the Set Leaders in the network. The Registrar insures that there is one and only one Set Leader for each set of users, answers inquiries about the membership of the sets and directs inquiries to appropriate Set Leaders if necessary. All of the set creation, administration and control functions can therefore be carried out by any node of the system and provision is made to assume the function at a new node when failure or partition in the network occurs.

    摘要翻译: 多节点组播通信网络具有分布式控制,用于在网络的每个节点中操作的创建,管理和操作模式选择。 每个节点都设有一个集管理器,用于控制要组播多路广播的一组用户的创建,管理或访问。 集管理器维护与Set Manager所在节点相关联的所有用户的本地成员资格记录。 为每个指定的用户组给定的集合管理器被分配为作为集合领导者的任务以维护关于组播组中的整个用户组的成员关系信息。 通信网络中的一个集合管理器被指定为注册服务商,该服务器维护网络中所有集团领导者的列表。 注册服务机构确保每组用户只有一个,只有一个集合领导,回答关于集合成员的查询,并在必要时向相应的集合领导者查询。 因此,所有的创建,管理和控制功能都可以由系统的任何节点执行,并且在网络中发生故障或分区时,将提供在新节点上承担功能。

    Multicast communication tree creation and control method and apparatus
    2.
    发明授权
    Multicast communication tree creation and control method and apparatus 失效
    组播通信树创建与控制方法及装置

    公开(公告)号:US5355371A

    公开(公告)日:1994-10-11

    申请号:US900628

    申请日:1982-06-18

    CPC分类号: H04L12/185 H04L12/1854

    摘要: In a multicast network communication system, administration of the communication path making up the multicast tree itself has been separated from control and administration of the network. Creation of a multicast distribution tree and control over the membership thereof, is separately controlled independently from the creation and use of the tree transmission path used to communicate among the members of a multicast set. Transmission distribution trees are set up when a transmission request is received and the properties of the transmission path that is required are known. Transmission paths are created and controlled by all nodes in the communications system, each node having necessary control code and processors for responding to requests from set members to transmit a message to groups of users by creating and activating the necessary tree communication path distribution linkages. A distribution tree is created by the Tree Leader by generating a tree address using a random number generator. A tree address correlator is generated utilizing network and node identifiers unique for the network, and a list of subnodes or users connected for each member of the multicast tree set is generated. Using this information, a tree distribution path is computed to cover all of the subnodes required and a tree set up request message is sent by the Tree Leader along a computed path to each involved subnode. Each subnode returns a message indicating whether the tree address is already in use or is available for use. Successfully negotiated tree addresses are marked at the path link initiation and termination points at each node through the network.

    摘要翻译: 在组播网络通信系统中,构成组播树本身的通信路径的管理与网络的控制和管理分离。 独立地创建组播分发树和对其成员的控制,独立于创建和使用用于在组播组的成员之间进行通信的树传输路径。 当接收到发送请求并且已知所需的传输路径的属性时,建立传输分配树。 传输路径由通信系统中的所有节点创建和控制,每个节点具有必要的控制代码和处理器,用于响应来自设备成员的请求,通过创建和激活必要的树通信路径分配链接来发送消息到用户组。 树分配树通过使用随机数生成器生成树形地址来创建分布树。 使用网络唯一的网络和节点标识符生成树地址相关器,并且生成为多播树集的每个成员连接的子节点或用户列表。 使用该信息,计算树分布路径以覆盖所有所需的子节点,并且树结构请求消息沿着计算的路径发送到每个相关子节点。 每个子节点返回一条消息,指示树状地址是否已被使用或可用。 通过网络在每个节点的路径链路启动和终止点标记成功协商的树地址。

    Forming and maintaining access groups at the lan/wan interface
    5.
    发明授权
    Forming and maintaining access groups at the lan/wan interface 失效
    在lan / wan界面上形成和维护访问组

    公开(公告)号:US5365523A

    公开(公告)日:1994-11-15

    申请号:US976826

    申请日:1992-11-16

    IPC分类号: H04L12/66 H04L12/46

    CPC分类号: H04L12/66

    摘要: Access agents in nodes at the LAN/WAN interface are formed into a group of access agents so that the access agents may be managed by the WAN as a group. The group must maintain group operation integrity in that if communications between agents in the group are broken, the access agents will coalesce into subgroups and continue performing communication jobs as a group activity. Each of the access agents contains a finite state machine to perform the tasks of group formation and maintenance. The formation of interconnected access agents into a group is accomplished by one access agent being identified as a group leader. All other access agents communicating with the group leader within the LAN may then join the group. The maintenance of group activity integrity is accomplished by detecting a break in group communication integrity and thereafter reforming the group into multiple smaller groups. The maintenance of group operation integrity also includes the merger of small groups into a large group when a bridge is added between LAN segments.

    摘要翻译: 在LAN / WAN接口的节点中的接入代理被形成为一组接入代理,使得接入代理可以由WAN作为一组进行管理。 该组必须维护组操作完整性,因为如果该组中的代理之间的通信中断,则访问代理将合并成子组并继续执行通信作业作为组活动。 每个访问代理包含一个有限状态机来执行组的形成和维护任务。 将互连的接入代理组合成一组是由一个接入代理被识别为组长。 所有与LAN内的组长通信的其他访问代理可以加入该组。 群体活动完整性的维护是通过检测组通信完整性的突破,然后将组重组成多个较小的组来实现的。 群组运行完整性的维护还包括在LAN段之间添加桥梁时将小组合并成大型组。

    Method and system for providing targeted advertising in public places and carriers
    6.
    发明授权
    Method and system for providing targeted advertising in public places and carriers 有权
    在公共场所和运营商提供有针对性的广告的方法和系统

    公开(公告)号:US08825526B2

    公开(公告)日:2014-09-02

    申请号:US11927130

    申请日:2007-10-29

    IPC分类号: G06Q30/02

    摘要: A method and system for providing targeted advertising in public places and carriers such as trains, buses, train stations, shopping malls, airports, etc. The demographics, purchasing history and/or personal preferences of individuals in the public place are collected from personal digital assistants (PDAs) or other wireless communication devices carried by the individuals in the public place or public carrier. The collected data pertaining to a group of individuals who are present near the display device, is processed and used to select appropriate advertisements that would most likely interest that group of individuals. The selected advertisements are displayed on the display device located in the public place or public carrier so as to provide targeted advertising to the group of individuals.

    摘要翻译: 在公共场所以及列车,公交车,火车站,商场,机场等公共场所和运营商提供有针对性的广告的方法和系统。公众场所个人的人口统计,采购历史和/或个人喜好从个人数字 助理(PDA)或其他无线通信设备由个人在公共场所或公共运营商承载。 收集的与出现在显示设备附近的一组个人有关的数据被处理并用于选择最可能对该组个人感兴趣的适当的广告。 所选择的广告被显示在位于公共场所或公共运营商的显示装置上,以向个人群体提供有针对性的广告。

    Quality of service improvements for network transactions
    7.
    发明授权
    Quality of service improvements for network transactions 失效
    网络交易服务质量改进

    公开(公告)号:US07213071B2

    公开(公告)日:2007-05-01

    申请号:US09825078

    申请日:2001-04-03

    IPC分类号: G06F15/16

    摘要: Methods, systems, computer program products, and methods of doing business by improving quality of service (“QoS”) in network exchanges comprising a plurality of related request and response messages. A TQoS (“transactional QoS”) cookie is defined, which is used to store information needed when controlling response time (and perhaps other QoS factors as well) for messages exchanged with a particular client. In preferred embodiments, this QoS information comprises a relative priority for these related messages and an available bandwidth for transmitting messages to the client. The disclosed techniques enable applying consistent QoS requirements for delivery of all the related Web objects comprising a transaction. No changes are required on client devices or in client software, and there is no dependency on a client to support cookies.

    摘要翻译: 方法,系统,计算机程序产品和通过提高包括多个相关请求和响应消息的网络交换服务质量(“QoS”)来进行业务的方法。 定义了TQoS(“事务性QoS”)cookie,用于在与特定客户端交换的消息控制响应时间(以及可能的其他QoS因素)时存储所需的信息。 在优选实施例中,该QoS信息包括这些相关消息的相对优先级和用于向客户端发送消息的可用带宽。 所公开的技术使得能够对包括事务的所有相关Web对象的传送应用一致的QoS要求。 在客户端设备或客户端软件中不需要进行任何更改,并且客户端不依赖于支持Cookie。

    Selective data encryption using style sheet processing for decryption by a client proxy
    8.
    发明授权
    Selective data encryption using style sheet processing for decryption by a client proxy 失效
    使用样式表处理进行选择性数据加密,由客户端代理解密

    公开(公告)号:US06978367B1

    公开(公告)日:2005-12-20

    申请号:US09422492

    申请日:1999-10-21

    IPC分类号: G06F1/28 G06F21/00 H04L29/06

    摘要: A method, system, and computer program product for selectively encrypting one or more elements of a document using style sheet processing. Disclosed is a policy-driven augmented style sheet processor (e.g. an Extensible Stylesheet Language, or “XSL”, processor) that creates a selectively-encrypted document (e.g. an Extensible Markup Language, or “XML”, document) carrying key-distribution material, such that by using an augmented document processor (e.g. an augmented XML processing engine), an agent can recover only the information elements for which it is authorized. The Document Type Definition (DTD) or schema associated with a document is modified, such that the DTD or schema specifies a reference to stored security policy to be applied to document elements. Each document element may specify a different security policy, such that the different elements of a single document can be encrypted differently (and, some elements may remain unencrypted). The key distribution material enables a document to be encrypted for decryption by an audience that is unknown at the time of document creation, and enables access to the distinct elements of a single encrypted document to be controlled for multiple users and/or groups of users. In this manner, group collaboration is improved by giving more people easier access to information for which they are authorized, while protecting sensitive data from unauthorized agents. A key recovery technique is also defined, whereby the entire document can be decrypted by an authorized agent regardless of how the different elements were originally encrypted and the access protections which were applied to those elements.

    摘要翻译: 一种用于使用样式表处理选择性地加密文档的一个或多个元素的方法,系统和计算机程序产品。 公开了一种策略驱动的增强样式表处理器(例如可扩展样式表语言或“XSL”处理器),其创建携带密钥分发材料的选择性加密的文档(例如可扩展标记语言或“XML”文档) ,使得通过使用增强的文档处理器(例如增强的XML处理引擎),代理人可以仅恢复其被授权的信息元素。 与文档相关联的文档类型定义(DTD)或模式被修改,使得DTD或模式指定对要应用于文档元素的存储的安全策略的引用。 每个文档元素可以指定不同的安全策略,使得可以不同地加密单个文档的不同元素(并且一些元素可以保持未加密)。 密钥分发材料使得文档被加密以供在文档创建时未知的受众解密,并且使得能够访问要为多个用户和/或用户组控制的单个加密文档的不同元素。 以这种方式,通过让更多的人更容易地访问他们获得授权的信息,同时保护敏感数据免受未经授权的代理人的改进,可以改善团队合作。 还定义了关键恢复技术,由此整个文档可以由授权代理进行解密,而不管不同元素最初被加密以及应用于这些元素的访问保护。

    Method and an apparatus for detecting a need for security and invoking a secured presentation of data
    9.
    发明授权
    Method and an apparatus for detecting a need for security and invoking a secured presentation of data 有权
    用于检测对安全性的需求并调用数据的安全呈现的方法和装置

    公开(公告)号:US06918039B1

    公开(公告)日:2005-07-12

    申请号:US09573859

    申请日:2000-05-18

    摘要: A method and an apparatus in a data processing system detects the presence of sensitive data and renders this data in a secured manner. The data processing system may be any device with information presentation capability which can receive data from a network. Detecting a need for secured rendering may include recognition that the data was encrypted, tags in the data indicating a level of secured rendering, or various forms of pre-arrangement between the sender and the recipient. Ways to determine if the recipient is in a secured environment include detection of conversations in the environment, video images showing people in the environment, analysis of infrared signals, determining the location of the data processing system using GPS or similar means, or interaction with an authenticated user. The means for rendering may be specified in the data, may be determined by the recipient, may be determined by pre-agreement between the sender and recipient, or may be based on the capability of the data processing system. Secured rendering means include, but are not limited to, display of data in a visual format that requires a special lens for detection, speaking the data into a speaker device in an ear canal of the recipient, or use of a special coded format known only to the recipient.

    摘要翻译: 数据处理系统中的方法和装置检测敏感数据的存在并以安全的方式呈现该数据。 数据处理系统可以是可以从网络接收数据的具有信息呈现能力的任何设备。 检测对安全渲染的需要可以包括:数据被加密的识别,指示安全渲染级别的数据中的标签,或发送者和接收者之间的各种形式的预先安排。 确定接收者是否处于安全环境中的方法包括:检测环境中的对话,在环境中显示人的视频图像,红外信号的分析,使用GPS或类似装置确定数据处理系统的位置,或与 认证用户。 用于呈现的装置可以在数据中指定,可以由接收者确定,可以通过发送者和接收者之间的预先协商来确定,或者可以基于数据处理系统的能力。 安全渲染装置包括但不限于以视觉格式显示需要特殊镜头进行检测的数据,将数据说明在接收者的耳道中的扬声器装置中,或使用仅仅被公认的特殊编码格式 给收件人

    URL-BASED STICKY ROUTING TOKENS USING A SERVER-SIDE COOKIE JAR
    10.
    发明申请
    URL-BASED STICKY ROUTING TOKENS USING A SERVER-SIDE COOKIE JAR 有权
    基于URL的STICKY路由器使用服务器端COOKIE JAR

    公开(公告)号:US20130007225A1

    公开(公告)日:2013-01-03

    申请号:US13535878

    申请日:2012-06-28

    IPC分类号: G06F15/16

    摘要: A method, system and program product are presented for enabling a session, as defined by a series of related transactions to perform a unit of work, to be created between a client and a particular server where the server is managed by a dispatcher. Modifications to the Uniform Resource Locator (URL) are used to create a method of transferring information form the client to the server. The server implements a server-side storage area (cookie jar) to temporarily store information about the client and the session so that the client is routed to the same server for successive messages in the same session and no reliance is made upon an ability by the client to store or return cookies.

    摘要翻译: 提供了一种方法,系统和程序产品,用于使得由一系列相关事务定义的会话能够执行在客户端和服务器由调度程序管理的特定服务器之间创建的工作单元。 对统一资源定位符(URL)的修改用于创建从客户端向服务器传输信息的方法。 服务器实现服务器端存储区域(cookie jar)以临时存储有关客户端和会话的信息,以便客户端被路由到相同的服务器,用于同一会话中的连续消息,并且不依赖于 客户端存储或返回Cookie。