Phase optimization for data communication between plesiochronous time domains
    1.
    发明申请
    Phase optimization for data communication between plesiochronous time domains 审中-公开
    相位优化用于同步时域之间的数据通信

    公开(公告)号:US20060242473A1

    公开(公告)日:2006-10-26

    申请号:US11100773

    申请日:2005-04-07

    IPC分类号: G11B20/20 G06K5/04 G11B5/00

    CPC分类号: H04L7/033 H04L7/02

    摘要: A method and apparatus for optimizing data transfer between launch and capture domains driven by plesiochronous launch and capture clocks transmits a beacon of representational data from the launch domain to the capture domain and captures the beacon in the capture domain using the capture clock. The captured beacon is monitored for an anomaly. If an anomaly is not detected, a phase of the capture clock is adjusted and the beacon is transmitted, captured and monitored until an anomaly is detected. If an anomaly is detected, the phase of the capture clock is optimized relative to the captured beacon.

    摘要翻译: 用于优化由同步发射和捕获时钟驱动的发射和捕获域之间的数据传输的方法和装置将表示数据的信标从发射域发送到捕获域,并使用捕获时钟捕获捕获域中的信标。 捕获的信标被监控异常。 如果未检测到异常,则调整捕获时钟的相位,并发送,捕获和监视信标,直到检测到异常。 如果检测到异常,捕获时钟的相位相对于捕获的信标被优化。

    Information model mapping with shared directory tree representations
    3.
    发明授权
    Information model mapping with shared directory tree representations 有权
    信息模型映射与共享目录树表示

    公开(公告)号:US07302439B2

    公开(公告)日:2007-11-27

    申请号:US10184234

    申请日:2002-06-28

    IPC分类号: G06F17/30

    摘要: A registry service is described which uses a partitioned publisher assertion recording and accessing scheme. A publisher assertion regarding a relationship between entities (e.g., business or other types of entities) is encoded within a directory information tree in a memory. The publisher assertion includes publisher assertion part nodes corresponding to entity nodes in the directory information tree. The publisher assertion is complete if all publisher assertion parts corresponding to entities in the relationship are present in the directory information tree. The service may include a network including directory servers and registry servers. The publisher assertions are manipulated by authorized publishers and accessed by users using a variety of techniques, the operations of which are performed by such parties and/or are encoded upon computer-readable media.

    摘要翻译: 描述了使用分区发布者断言记录和访问方案的注册表服务。 关于实体(例如,业务或其他类型的实体)之间的关系的发布者断言被编码在存储器中的目录信息树中。 发布者断言包括对应于目录信息树中的实体节点的发布者断言部分节点。 如果与关系中的实体相对应的所有发布者断言部分都存在于目录信息树中,则发布者断言是完整的。 该服务可以包括包括目录服务器和注册服务器的网络。 发布者断言由授权的发布者操纵并由用户使用各种技术来访问,这些技术的操作由这些方执行和/或被编码在计算机可读介质上。

    System and method for automating network intrusion training
    4.
    发明申请
    System and method for automating network intrusion training 审中-公开
    网络入侵训练自动化的系统和方法

    公开(公告)号:US20080072321A1

    公开(公告)日:2008-03-20

    申请号:US11514593

    申请日:2006-09-01

    申请人: Mark Wahl

    发明人: Mark Wahl

    IPC分类号: G06F12/14

    CPC分类号: H04L63/14

    摘要: A system comprising a simulation coordinator, a sensor, and an intrusion detection management component to provide training of intrusion detection administrators by generating simulated notifications of network traffic associated with intrusions.

    摘要翻译: 一种包括仿真协调器,传感器和入侵检测管理组件的系统,通过生成与入侵相关联的网络流量的模拟通知来提供对入侵检测管理员的训练。

    SEPARATION OF DUTIES CHECKS FROM ENTITLEMENT SETS
    7.
    发明申请
    SEPARATION OF DUTIES CHECKS FROM ENTITLEMENT SETS 有权
    从分类集中分离检查

    公开(公告)号:US20120079556A1

    公开(公告)日:2012-03-29

    申请号:US12890712

    申请日:2010-09-27

    申请人: Mark Wahl

    发明人: Mark Wahl

    IPC分类号: G06F21/20

    CPC分类号: G06F21/604

    摘要: A data model in which a set provides an abstraction that isolates the computation of membership from the details of how an enforcement point determines access (e.g., based on claims, based on security group membership etc). Set operations (e.g., intersection, union, inverse) can then be used across the sets. The architecture utilizes workflow on set transitions such that when an object such as a user enters the scope of one of these sets, notification can occur, such that inadvertent changes which lead to separation-of-duties violations can be detected quickly. The sets can also be used to define entitlements for enforcement of claims-based access control in a cross-organization deployment (e.g., to a cloud-hosted application).

    摘要翻译: 一种数据模型,其中集合提供了一种抽象,该抽象将成员资格的计算与执行点如何确定访问的细节(例如,基于权利要求,基于安全组成员身份等)隔离。 然后可以在组之间使用设置操作(例如,交集,联合,反向)。 该架构在设置的转换中使用工作流,使得当诸如用户的对象输入这些集合中的一个的范围时,可以发生通知,从而可以快速检测到导致违反职责分离的意外变化。 这些集合还可以用于定义在跨组织部署(例如,到云托管的应用程序)中执行基于声明的访问控制的权利。