摘要:
A disclosed method include: receiving, an identifier of a user, an identifier of contents associated with the user and identification data concerning a sensor that read the identifier of the user; reading an identifier of a node associated with the received identification data or a combination of the received identification data and the received identifier of the user, from a data storage unit storing an identifier of a node that will cache contents to be outputted to a display device provided at a different position from a position of a sensor in association with identification data concerning the sensor or a combination of identification data concerning the sensor and an identifier of a user; and transmitting the received identifier of the user and an identifier of contents associated with the user to a node whose identifier was read.
摘要:
The control node, on the basis of the connection information between the distribution nodes and the load information of the distribution nodes, determines a distribution node of the distribution destination to which one of a plurality of distribution nodes subsequently distributes the data, and the data type which is distributed to the distribution node of the distribution destination. The control node distributes node information which specifies the distribution node of the determined distribution destination and type information which specifies the determined data type. The distribution node receives the node information and the type information distributed from the control node. The distribution node, when it receives the data distributed from the other distribution nodes, selects the data of the type specified by the type information from the received data. The distribution node transmits the data of the selected type to the distribution node specified by the node information.
摘要:
In a firewall device protecting a specific network against an attack from an external network, a filtering object identifying portion identifies whether or not received data includes filtering object data, a filtering execution/inexecution selector transmits to a source device of the received data, when the received data includes the filtering object data, a selection request of a desire for a filtering execution or inexecution of the received data, does not select the filtering execution of the received data from the source device on a condition that a selection response indicates a desire for the filtering inexecution and the source device is authenticated, but selects the filtering execution under other conditions, and a filtering processor filters the selected received data.
摘要:
A method of realizing uniqueness assurance includes: selecting a server to which a first message is to be transferred from multiple servers and transferring the first message to the selected server when the first message is received from a terminal apparatus by a load sharing apparatus; storing a second message that should be transferred to the same server as that of the first server when the second message is received from the terminal apparatus by the load sharing apparatus after the first message is transferred; generating uniqueness assurance information corresponding to the communication protocols corresponding to a session generated by the server to which the first message is transferred, the uniqueness assurance information indicating the correspondence between the session and the message corresponding to the session; and transferring the second message in accordance with the generated uniqueness assurance information if the stored second message exits.
摘要:
A method of realizing uniqueness assurance includes: selecting a server to which a first message is to be transferred from multiple servers and transferring the first message to the selected server when the first message is received from a terminal apparatus by a load sharing apparatus; storing a second message that should be transferred to the same server as that of the first server when the second message is received from the terminal apparatus by the load sharing apparatus after the first message is transferred; generating uniqueness assurance information corresponding to the communication protocols corresponding to a session generated by the server to which the first message is transferred, the uniqueness assurance information indicating the correspondence between the session and the message corresponding to the session; and transferring the second message in accordance with the generated uniqueness assurance information if the stored second message exits.
摘要:
A prior information collecting unit transmits in advance a SYN/ACK frame to an address of a client in an external network, and monitors a response to the SYN/ACK frame. If there is no response, the prior information collecting unit determines that the address is a valid attack address. If there is a response with a RST frame, the prior information collecting unit determines that the address is an invalid attack address. An address holding unit stores a responding state of the client. A valid attack identifying unit detects a valid attack frame having a valid attack address as a source address from among frames addressed to the server, based on information stored in the address holding unit. A flow rate limiting unit limits a flow rate at the time of transferring the valid attack frames to the server.
摘要:
A load balancing apparatus stores a transfer rule in which a path control identifier for identifying a path for a message sent from a client device is associated with relay device information for specifying a relay device that creates the path control identifier. When receiving a message from the client device, the load balancing apparatus determines whether the message contains the path control identifier. If the load balancing apparatus determines that the path control identifier is contained, the load balancing apparatus specifies, from the transfer rule, relay device information with which the path control identifier is associated and then sends the message to a relay device that is specified by the specified relay device information. In contrast, if the load balancing apparatus determines that the path control identifier is not contained, the load balancing apparatus sends the message to the relay device specified in accordance with a predetermined condition.
摘要:
A load balancing apparatus stores a transfer rule in which a path control identifier for identifying a path for a message sent from a client device is associated with relay device information for specifying a relay device that creates the path control identifier. When receiving a message from the client device, the load balancing apparatus determines whether the message contains the path control identifier. If the load balancing apparatus determines that the path control identifier is contained, the load balancing apparatus specifies, from the transfer rule, relay device information with which the path control identifier is associated and then sends the message to a relay device that is specified by the specified relay device information. In contrast, if the load balancing apparatus determines that the path control identifier is not contained, the load balancing apparatus sends the message to the relay device specified in accordance with a predetermined condition.
摘要:
An encryption communication system, comprising a communication relay device that connects a first network and a second network, for encrypting a communication within the first network and a communication within the second network in a network system configured so that communications are performed between a client in the first network and a server in the second network via the communication relay device, wherein the communication relay device comprises key generation unit generating an encryption key and a decryption key with respect to the client, and key transfer unit transmitting the encryption key and the decryption key to the server, and the server comprises frame receiving unit decrypting a receipt frame by use of the decryption key, and frame transmitting unit encrypting the frame by use of the encryption key and thus transmitting the frame.
摘要:
It is an object to increase a processing-enabled user count and traffic size by avoiding frames from being discarded without any increase in buffer size within a bandwidth control device. A bandwidth control device includes a response measuring module measuring a size of a response frame and calculating, based on the measured size, a predictive traffic size as a size of the traffic of the response frame predicted to be received as a response to a request frame, and a bandwidth control module controlling a traffic rate of the response frame corresponding to the request frame by controlling a traffic rate of the request frame on the basis of the calculated predictive traffic size.