Method of detecting unjustifiable reloading of stored data
    1.
    发明授权
    Method of detecting unjustifiable reloading of stored data 失效
    检测存储数据不合理重新加载的方法

    公开(公告)号:US5440731A

    公开(公告)日:1995-08-08

    申请号:US851206

    申请日:1992-03-13

    摘要: A method of discriminating, for each first level partial data, whether or not saved data, one file of which is composed of a plurality of the first level partial data and each of the first level partial data is able to include a second level partial data, has been unjustifiably rewritten. The method includes the steps of at a time of saving a file, designating a first level partial data on the basis of a user instruction, receiving a password from a user, converting the received password and the designated first level partial data, which includes second level partial data, according to a predetermined procedure to generate a first code and saving the file with storing of the first code to correspond to the designated first level partial data. At a time of reading the saved file, reading the saved file, designating the first level partial data on the basis of a user instruction, receiving the password from the user, converting the received password and the designated first level partial data, which includes the second level partial data if the designated first level partial data includes the second level partial data, according to the predetermined procedure to generate a second code. The method compares the generated second code with the first code stored to correspond to the designated first level partial data, and discriminates that the designated first level partial data has been unjustifiably rewritten if comparison results in a fact that the first code is not equal to the second code.

    摘要翻译: 对于每个第一级部分数据,鉴别一个文件是否由多个第一级部分数据组成的保存数据和第一级部分数据中的每一个能够包括第二级部分数据的方法 ,被无理地重写。 该方法包括以下步骤:在保存文件时,基于用户指令指定第一级部分数据,从用户接收密码,转换接收到的密码和指定的第一级部分数据,其包括第二级部分数据 根据预定的过程产生第一代码,并且通过存储第一代码来保存文件以对应于所指定的第一级部分数据。 在读取保存的文件时,读取保存的文件,基于用户指令指定第一级部分数据,从用户接收密码,转换接收到的密码和指定的第一级部分数据,其中包括 如果指定的第一级部分数据包括第二级部分数据,则根据预定过程产生第二代码。 该方法将生成的第二代码与存储的对应于指定的第一级部分数据的第一代码进行比较,并且如果比较导致第一代码不等于第一代码的事实,则判别指定的第一级部分数据已被不正当地重写 第二个代码。

    System for detecting improper rewrites of data system for using separate
reader writer passwords
    2.
    发明授权
    System for detecting improper rewrites of data system for using separate reader writer passwords 失效
    用于使用单独的读写器密码检测数据的不正确重写的系统

    公开(公告)号:US5455941A

    公开(公告)日:1995-10-03

    申请号:US842917

    申请日:1992-02-27

    摘要: In storing data in one file, consisting of a plurality of blocks of data, a first code is generated by converting a password and a predetermined portion of each of the blocks of data. This portion may be, for example, the data block itself or identification information such as a name. The code is stored in correspondence to the stored data. In reading the stored data, a second code is generated by performing the same conversion on the password and the predetermined portion of the stored data. A comparison is made between the generated second code and the first code stored. Failure of the two to match indicates that an improper rewrite has occurred. In such a case, that occurrence may simply be noted, access to the data may be prohibited; more generally, what processing is performed, or is permitted, is varied according to the result of the comparison.

    摘要翻译: 在将数据存储在由多个数据块组成的一个文件中时,通过转换每个数据块的密码和预定部分来生成第一代码。 该部分可以是例如数据块本身或诸如名称的标识信息。 代码根据存储的数据存储。 在读取存储的数据时,通过对密码和存储数据的预定部分执行相同的转换来生成第二代码。 在所生成的第二代码和存储的第一代码之间进行比较。 两个匹配的失败表示发生了不正确的重写。 在这种情况下,可以简单地注意到,可能禁止访问数据; 更一般地,根据比较的结果来改变进行或被允许的处理。

    Document processing method and apparatus which can add comment data added to an original document to a revised document
    3.
    发明授权
    Document processing method and apparatus which can add comment data added to an original document to a revised document 失效
    可以将添加到原始文档的注释数据添加到修订文档的文档处理方法和装置

    公开(公告)号:US06438566B1

    公开(公告)日:2002-08-20

    申请号:US08734308

    申请日:1996-10-21

    IPC分类号: G06F1721

    CPC分类号: G06F17/30011

    摘要: A comment added to a certain portion in a first document can be automatically re-added to an equivalent position in a second document, and comment transfer processing between documents is automatically performed. Position information of a comment with respect to an old document obtained from an old document comment file is stored in a position information area, and comment contents also obtained from the old document comment file are stored in a comment content area. A character string corresponding to the position information is extracted from an old document file, and is stored in a character string area. A new document file is searched on the basis of the character string stored in the character string area, and position information of the detected character string is stored in a candidate area. One of position information stored in the candidate area is selected according to a predetermined rule, and the selected position information is stored in a new position information area. The comment contents stored in the comment content area, and the position information stored in the new position information area are written in a new document comment file.

    摘要翻译: 添加到第一文档中的某个部分的评论可以被自动重新添加到第二文档中的等同位置,并且自动执行文档之间的注释传送处理。 关于从旧的文档评论文件获得的旧文档的评论的位置信息被存储在位置信息区域中,并且还从旧的文档评论文件获得的评论内容被存储在评论内容区域中。 从旧文档文件中提取与位置信息对应的字符串,并存储在字符串区域中。 基于存储在字符串区域中的字符串搜索新的文档文件,并且将检测到的字符串的位置信息存储在候选区域中。 根据预定规则选择存储在候选区域中的位置信息之一,并且将选择的位置信息存储在新的位置信息区域中。 存储在评论内容区域中的评论内容和存储在新位置信息区域中的位置信息被写入新的文档评论文件中。

    Detecting rewriting of stored data, using codes based on password and
the stored data
    4.
    发明授权
    Detecting rewriting of stored data, using codes based on password and the stored data 失效
    检测存储数据的重写,使用基于密码和存储数据的代码

    公开(公告)号:US5481672A

    公开(公告)日:1996-01-02

    申请号:US842514

    申请日:1992-02-27

    IPC分类号: G06F21/62 G06F21/64 G06F11/00

    摘要: In storing data, a first code is generated by converting a password and some predetermined portion of the data itself (e.g., all of the data itself, or a time stamp) in a predetermined procedure. The first code is then stored in correspondence to the data. Thereafter, in reading the stored data, a second code is generated by converting the password and the same predetermined portion of the stored data, using the same predetermined procedure, and the resulting second code is compared with the first code stored in correspondence to the stored data. A determination is made that a rewrite has occurred, if the two codes do not match. Subsequent data processing may be controlled in accordance with the result of this determination.

    摘要翻译: 在存储数据时,通过在预定过程中转换密码和数据本身的某些预定部分(例如,所有数据本身或时间戳)来生成第一代码。 然后将第一代码与数据相对应地存储。 此后,在读取存储的数据时,通过使用相同的预定过程转换密码和存储的数据的相同的预定部分来生成第二代码,并将所得到的第二代码与存储的对应于所存储的第一代码的第一代码进行比较 数据。 如果两个代码不匹配,则确定已经发生重写。 可以根据该确定的结果来控制随后的数据处理。

    Security policy enforcement system and security policy enforcement method
    6.
    发明授权
    Security policy enforcement system and security policy enforcement method 有权
    安全策略执行体系和安全策略执行方法

    公开(公告)号:US09386039B2

    公开(公告)日:2016-07-05

    申请号:US13822875

    申请日:2011-11-24

    申请人: Takayuki Sasaki

    发明人: Takayuki Sasaki

    IPC分类号: H04L29/06 G06F21/62

    摘要: Provided is a system which distributes a processing load of security measures and enforce a security policy to be applicable to a large system. Policy information indicating a security measure to be executed on user information transmitted from a client to a server is stored in a policy storing section. Measure arrangement information indicating the security measure executable in each of a plurality of policy enforcement sections is stored in a measure-arrangement storing section. One or more of the policy enforcement sections are selected on the basis of the policy information and the measure arrangement information. Each of the one or more policy enforcement sections executes the security measure on the user information and outputs, on the basis of a selection result, the user information to the other policy enforcement sections among the one or more policy enforcement sections or to the server.

    摘要翻译: 提供一种分配安全措施的处理负荷并执行适用于大型系统的安全策略的系统。 指示对从客户端发送到服务器的用户信息执行的安全措施的策略信息存储在策略存储部中。 指示在多个策略执行部中的每一个中可执行的安全措施的测量配置信息被存储在测量配置存储部中。 基于策略信息和测量安排信息来选择一个或多个策略执行部分。 所述一个或多个策略执行部分中的每个执行所述用户信息的安全措施,并且基于所述选择结果将所述用户信息输出到所述一个或多个策略执行部分中的所述其他策略执行部分或所述服务器。

    Method and system for power estimation based on a number of signal changes
    8.
    发明授权
    Method and system for power estimation based on a number of signal changes 有权
    基于多个信号变化的功率估计方法和系统

    公开(公告)号:US09021289B2

    公开(公告)日:2015-04-28

    申请号:US13273837

    申请日:2011-10-14

    IPC分类号: G06F1/00 G06F17/50

    CPC分类号: G06F17/504 G06F2217/78

    摘要: In a power estimator, a power coefficient-calculating section acquires an average value of the number of signal changes per unit time in each circuit range to thereby calculate a power coefficient for each circuit range or calculate a power coefficient for each circuit range when the average value of the number of signal changes per unit time is equal to 1, a correction coefficient-calculating section calculates a ratio of an average value of the number of signal changes per unit time at signal lines included in the circuit range to an average value of the number of signal changes per unit time at observing points designated in the circuit range, as a correction coefficient, and a power value-calculating section calculates a power value for each circuit range based on the correction coefficient and the power coefficient calculated for each circuit range.

    摘要翻译: 在功率估计器中,功率系数计算部分获取每个电路范围内每单位时间的信号变化次数的平均值,从而计算每个电路范围的功率系数,或者计算每个电路范围的功率系数, 每单位时间的信号变化次数的值等于1,校正系数计算部分计算包括在电路范围中的信号线处的每单位时间的信号变化次数的平均值与平均值的比值 在电路范围中指定的观测点处的每单位时间的信号变化的数量作为校正系数,并且功率值计算部分基于校正系数和为每个电路计算的功率系数来计算每个电路范围的功率值 范围。

    Communication system, policy management apparatus, communication method, and program
    9.
    发明授权
    Communication system, policy management apparatus, communication method, and program 失效
    通信系统,策略管理设备,通信方式和程序

    公开(公告)号:US08681803B2

    公开(公告)日:2014-03-25

    申请号:US13822547

    申请日:2012-09-14

    IPC分类号: H04L12/28

    CPC分类号: H04L41/28 H04L45/38 H04L45/64

    摘要: Authentication apparatus authenticates user using host connected to forwarding node. Policy management apparatus holds access control policy for identifying host under access control using identifier of forwarding node or identifier of user, and links identifier of host under access control and identifier of forwarding node to which host is connected, or identifier of host under access control and identifier of user using host. Forwarding node transmits to policy management apparatus identifier of host connected to own forwarding node and identifier of own forwarding node. Authentication apparatus transmits to policy management apparatus identifier of host connected to forwarding node and identifier of user. Policy management apparatus refers to access control policy and, if host connected to forwarding node is under access control, notifies content of access control to control apparatus as access control list. Control apparatus generates processing rule in accordance with access control list and sets generated processing rule in forwarding nodes.

    摘要翻译: 验证设备使用连接到转发节点的主机对用户进行认证。 策略管理装置保存用于使用转发节点的标识符或用户的标识符的标识下的主机访问控制策略,以及主机所连接的主机的接入控制的标识符和主机所连接的转发节点的标识符,以及访问控制下的主机的标识符,以及 使用主机的用户标识符。 转发节点发送到连接到自己的转发节点的主机的策略管理设备标识符和自己的转发节点的标识符。 认证装置向连接到转发节点的主机和用户的标识符的策略管理装置的标识符发送。 策略管理装置是指访问控制策略,如果连接到转发节点的主机正在进行访问控制,则将访问控制的内容通知控制装置作为访问控制列表。 控制装置根据访问控制列表生成处理规则,并在转发节点中设置生成的处理规则。

    Confidential information leakage prevention system, confidential information leakage prevention method and confidential information leakage prevention program
    10.
    发明授权
    Confidential information leakage prevention system, confidential information leakage prevention method and confidential information leakage prevention program 有权
    机密信息泄漏防范系统,机密信息泄漏防范方法和机密信息泄漏防范方案

    公开(公告)号:US08677508B2

    公开(公告)日:2014-03-18

    申请号:US13521938

    申请日:2010-12-06

    申请人: Takayuki Sasaki

    发明人: Takayuki Sasaki

    IPC分类号: H04L29/06

    摘要: Provided are first monitoring unit 106a for monitoring whether service provision unit 102 has been called by an application, second monitoring unit 107a for monitoring whether a network access request is sent to a network, first access control unit 106b for controlling the network access request of the call detected by the first monitoring unit 106a, based on a security level assigned to the application program that has called the service provision unit, and second access control unit 107b for determining whether the first access control unit 106b has already performed access control on the network access request detected to have been sent by the second monitoring unit 107a, and, if the access control has been performed, controlling the network access request based on a security level assigned to the application program that has sent this network access request.

    摘要翻译: 提供了用于监视是否已经由应用呼叫服务提供单元102的第一监视单元106a,用于监视网络访问请求是否被发送到网络的第二监视单元107a,用于控制网络访问请求的第一访问控制单元106b 由第一监视单元106a检测到的呼叫,基于分配给已经呼叫服务提供单元的应用程序的安全级别,以及第二访问控制单元107b,用于确定第一访问控制单元106b是否已经执行了网络上的访问控制 检测到由第二监视单元107a发送的访问请求,并且如果已经执行了访问控制,则基于分配给已经发送了该网络访问请求的应用程序的安全级别来控制网络访问请求。