TRACKING POLICY DECISIONS IN A NETWORK
    1.
    发明申请
    TRACKING POLICY DECISIONS IN A NETWORK 有权
    跟踪网络中的政策决策

    公开(公告)号:US20100312740A1

    公开(公告)日:2010-12-09

    申请号:US12481519

    申请日:2009-06-09

    IPC分类号: G06F15/173 G06N5/02

    CPC分类号: H04L47/70

    摘要: An apparatus is disclosed for creating and storing policy data records comprising data identifying network policy decisions. After a data packet is received, a network policy decision is made based on information in the packet and one or more network policies. A policy data record identifying the network policy decision is created, and the policy data record is stored.

    摘要翻译: 公开了一种用于创建和存储包括识别网络策略决定的数据的策略数据记录的装置。 在接收到数据分组之后,基于分组中的信息和一个或多个网络策略进行网络策略决定。 创建标识网络策略决策的策略数据记录,并存储策略数据记录。

    Tracking policy decisions in a network
    2.
    发明授权
    Tracking policy decisions in a network 有权
    跟踪网络中的策略决策

    公开(公告)号:US08266088B2

    公开(公告)日:2012-09-11

    申请号:US12481519

    申请日:2009-06-09

    IPC分类号: G06N5/02 G06F17/00

    CPC分类号: H04L47/70

    摘要: An apparatus is disclosed for creating and storing policy data records comprising data identifying network policy decisions. After a data packet is received, a network policy decision is made based on information in the packet and one or more network policies. A policy data record identifying the network policy decision is created, and the policy data record is stored.

    摘要翻译: 公开了一种用于创建和存储包括识别网络策略决定的数据的策略数据记录的装置。 在接收到数据分组之后,基于分组中的信息和一个或多个网络策略进行网络策略决定。 创建标识网络策略决策的策略数据记录,并存储策略数据记录。

    Distributed Hierarchical Rendering and Provisioning of Cloud Services
    3.
    发明申请
    Distributed Hierarchical Rendering and Provisioning of Cloud Services 有权
    云服务的分布式分层渲染和配置

    公开(公告)号:US20120110185A1

    公开(公告)日:2012-05-03

    申请号:US12915531

    申请日:2010-10-29

    IPC分类号: G06F15/173

    CPC分类号: G06F9/5072

    摘要: Techniques are provided herein for distributed and hierarchical rendering and provisioning of cloud services. At a device in a cloud computing system comprising a plurality of hierarchical levels, a cloud service request is received for rendering and provisioning of a virtual data center. A determination is made as to which aspects of the cloud service request are to be satisfied by devices in a first hierarchical level and which aspects of the cloud service request are to be satisfied by devices in a second hierarchical level and in subsequent hierarchical levels. Rendering and provisioning commands are provided to one or more devices in the first hierarchical level that are selected to satisfy aspects of the cloud service request in the first hierarchical level. A subset cloud service request for aspects of the cloud service request that are to be satisfied by devices in the second hierarchical level is sent to a device in the second hierarchical level.

    摘要翻译: 本文提供了用于云服务的分布式和分层呈现和提供的技术。 在包括多个分层级的云计算系统中的设备处,接收云服务请求以便呈现和提供虚拟数据中心。 确定云服务请求的哪些方面将由第一层级中的设备满足,并且云服务请求的哪些方面将由第二层次级别和后续层级中的设备来满足。 渲染和配置命令被提供给第一层级中的一个或多个被选择以满足第一层级中的云服务请求的方面的一个或多个设备。 将要在第二层级中的设备满足的云服务请求的方面的子集云服务请求被发送到第二层级中的设备。

    Distributed hierarchical rendering and provisioning of cloud services
    4.
    发明授权
    Distributed hierarchical rendering and provisioning of cloud services 有权
    云服务的分布式分层渲染和配置

    公开(公告)号:US08667138B2

    公开(公告)日:2014-03-04

    申请号:US12915531

    申请日:2010-10-29

    IPC分类号: G06F15/173

    CPC分类号: G06F9/5072

    摘要: Techniques are provided herein for distributed and hierarchical rendering and provisioning of cloud services. At a device in a cloud computing system comprising a plurality of hierarchical levels, a cloud service request is received for rendering and provisioning of a virtual data center. A determination is made as to which aspects of the cloud service request are to be satisfied by devices in a first hierarchical level and which aspects of the cloud service request are to be satisfied by devices in a second hierarchical level and in subsequent hierarchical levels. Rendering and provisioning commands are provided to one or more devices in the first hierarchical level that are selected to satisfy aspects of the cloud service request in the first hierarchical level. A subset cloud service request for aspects of the cloud service request that are to be satisfied by devices in the second hierarchical level is sent to a device in the second hierarchical level.

    摘要翻译: 本文提供了用于云服务的分布式和分层呈现和提供的技术。 在包括多个分层级的云计算系统中的设备处,接收云服务请求以便呈现和提供虚拟数据中心。 确定云服务请求的哪些方面将由第一层级中的设备满足,并且云服务请求的哪些方面将由第二层次级别和后续层级中的设备来满足。 渲染和配置命令被提供给第一层级中的一个或多个被选择以满足第一层级中的云服务请求的方面的一个或多个设备。 将要在第二层级中的设备满足的云服务请求的方面的子集云服务请求被发送到第二层级中的设备。

    Apparatus and methods for providing an application level gateway for use in networks
    5.
    发明授权
    Apparatus and methods for providing an application level gateway for use in networks 有权
    用于提供在网络中使用的应用级网关的装置和方法

    公开(公告)号:US07788407B1

    公开(公告)日:2010-08-31

    申请号:US10914444

    申请日:2004-08-09

    IPC分类号: G06F15/16 G06F15/173

    摘要: An application level gateway allows computers on a local area or “internal” network to serve data (e.g., web pages, files or other constructs) to computer systems on an external or public network such as the Internet, even though references such as hostnames and/or network addresses within the internal network that are contained within the data (e.g., URLs in web pages) might not be compatible (e.g., DNS resolvable or routable) with the external network. The system detects, in a portion of data (e.g., a web page), a local reference to a computer system on the internal network, determines whether a computer system identifier is mapped to the computer system specified in the local reference, and replaces the local reference with a translated reference obtained from the mapping. The translated reference contains the computer system identifier and a reference to a gateway computer system coupled to the internal network, such that subsequent referrals to the translated reference are directed to the gateway computer system. When a request for the data is subsequently received, the gateway performs a reverse mapping to determine the identity of the computer system on the internal network.

    摘要翻译: 应用级网关允许本地或“内部”网络上的计算机向诸如因特网的外部或公共网络上的计算机系统提供数据(例如,网页,文件或其他结构),即使诸如主机名和 /或包含在数据内的内部网络中的网络地址(例如,网页中的URL)可能与外部网络不兼容(例如,DNS可解析或可路由)。 该系统在一部分数据(例如网页)中检测对内部网络上的计算机系统的本地引用,确定计算机系统标识符是否映射到本地引用中指定的计算机系统,并且替换 使用从映射获取的转换引用的本地引用。 经翻译的参考文献包含计算机系统标识符和对与内部网络耦合的网关计算机系统的引用,使得到翻译的引用的后续引用被引导到网关计算机系统。 当随后接收到对数据的请求时,网关执行反向映射以确定内部网络上的计算机系统的身份。

    Method and apparatus for authorizing network device operations that are requested by applications
    6.
    发明授权
    Method and apparatus for authorizing network device operations that are requested by applications 有权
    用于授权应用程序请求的网络设备操作的方法和装置

    公开(公告)号:US07356601B1

    公开(公告)日:2008-04-08

    申请号:US10325783

    申请日:2002-12-18

    IPC分类号: G06F15/16

    摘要: A method of authorizing network device operations that are requested by applications is disclosed. A request for authorization from a network management application is received. The request identifies a user who is using the network management application to interact with a network device, the network management application that is seeking to execute one or more application tasks on a network device, the device, and the application tasks. A determination whether the specified user is authorized to execute the application tasks on the device is made. A success message is sent to the application only when the specified user is authorized to execute the application tasks on the device. Other embodiments support authorizing one application task against a plurality of devices or device groups. TACACS+ may be used for communication. A TACACS+ server that can support application authorization, and associated extensions to the TACACS+ protocol, are described.

    摘要翻译: 公开了授权应用请求的网络设备操作的方法。 接收到来自网络管理应用程序的授权请求。 请求标识正在使用网络管理应用程序与网络设备进行交互的用户,正在寻求在网络设备上执行一个或多个应用任务的网络管理应用,设备和应用任务。 确定指定用户是否被授权在设备上执行应用任务。 只有当指定的用户被授权在设备上执行应用程序任务时,才会向应用程序发送成功消息。 其他实施例支持授权针对多个设备或设备组的一个应用任务。 TACACS +可用于通信。 描述可以支持应用程序授权的TACACS +服务器,以及TACACS +协议的相关扩展。