Architecture for an integrated policy enforcement system
    1.
    发明授权
    Architecture for an integrated policy enforcement system 有权
    综合政策执行系统架构

    公开(公告)号:US07257833B1

    公开(公告)日:2007-08-14

    申请号:US10052745

    申请日:2002-01-17

    IPC分类号: H04L9/00

    CPC分类号: H04L63/0227 H04L63/102

    摘要: Enforcing a plurality of different policies on a stream of packets is disclosed. In lieu of running separate algorithms for each policy, the system exploits the commonalities of all of the policies. The conditions corresponding to the compiled rules are arranged in a condition tree and processed in a pipelined architecture that allows the results of the various stages to be carried forward into subsequent stages of processing. The rules for which all conditions have been satisfied can be identified by one stage of processing in one pass of condition tree traversal and are passed to subsequent stages. A rule table corresponding to an individual policy type can then be readily examined to determine partial or complete satisfaction of the rule of that policy type, without requiring a re-examination of the conditions underlying the rule. Additionally, corresponding actions can be taken where rule satisfaction is determined. This approach allows extremely high-speed policy enforcement performance.

    摘要翻译: 公开了在分组流上执行多个不同的策略。 代替为每个策略运行单独的算法,系统利用了所有策略的共同点。 与编译规则相对应的条件被布置在条件树中,并且以流水线架构进行处理,其允许将各个阶段的结果转移到后续的处理阶段。 所有条件已经满足的规则可以通过条件树遍历的一遍中的一个处理阶段来识别,并被传递到后续阶段。 然后可以容易地检查对应于单个策略类型的规则表,以确定该策略类型的规则的部分或完全满足,而不需要重新检查规则的基础。 另外,在确定规则满足的情况下可以采取相应的动作。 这种方法允许极高的策略执行性能。

    System and method for detection of intrusion attacks on packets transmitted on a network
    2.
    发明授权
    System and method for detection of intrusion attacks on packets transmitted on a network 失效
    用于检测在网络上传输的数据包的入侵攻击的系统和方法

    公开(公告)号:US07058821B1

    公开(公告)日:2006-06-06

    申请号:US10052328

    申请日:2002-01-17

    IPC分类号: G06F11/30

    CPC分类号: H04L63/145 H04L69/32

    摘要: An intrusion detection system detects and takes appropriate action against intrusion attacks on packets transmitted on a network. Various conditions for the intrusion attacks are described in the form of a rule tree. The intrusion detection system employs a pipelined structure including a plurality of modules, and parts of the rule are assigned to the modules. The modules determine in a pipelined manner whether the conditions of an intrusion attack are satisfied. In an intrusion attack on the packet is detected, the intrusion detection system takes appropriate action against the determined intrusion attack.

    摘要翻译: 入侵检测系统检测并采取适当措施,防止对网络上传输的数据包进行入侵攻击。 入侵攻击的各种条件以规则树的形式进行描述。 入侵检测系统采用包括多个模块的流水线结构,并将规则的一部分分配给模块。 模块以流水线方式确定入侵攻击的条件是否满足。 检测到入侵检测系统对入侵攻击的入侵检测系统采取适当措施对抗确定的入侵攻击。

    MODEL GUIDED DEEP LEARNING APPROACH TOWARDS PREDICTION OF PHYSICAL SYSTEM BEHAVIOR

    公开(公告)号:US20190188587A1

    公开(公告)日:2019-06-20

    申请号:US16226461

    申请日:2018-12-19

    摘要: Systems and methods are provided for controlling predictive medical monitoring. A non-linear-predictive-guide model estimates a patient parameter that is used as a guide in a deep neural network for improving accuracy of estimation by the deep neural network. The guide model generates a guiding first estimated patient parameter based on the guide model and patient input data. The deep neural network generates a second estimated patient parameter based on the deep neural network, the patient input data, and the guiding first estimated patient parameter. The deep neural network includes an input layer that receives the guiding first estimated patient parameter, and hidden layers including respective artificial neurons configured to perform a linear or nonlinear transformation on output of at least one artificial neuron from an adjacent layer in the deep neural network. An output layer receives at least one output from a hidden layer.

    POWER DELIVERY SYSTEM MANAGEMENT
    8.
    发明申请
    POWER DELIVERY SYSTEM MANAGEMENT 审中-公开
    电力输送系统管理

    公开(公告)号:US20150277410A1

    公开(公告)日:2015-10-01

    申请号:US14667771

    申请日:2015-03-25

    IPC分类号: G05B19/042

    摘要: An energy management system includes a number of power sources, a first set of energy storage devices (ESDs), a second set of ESDs, and a control system. The first set of ESDs is coupled between the power sources and a load and has a first set of operating characteristics. The second set of ESDs is also coupled between the power sources and the load and has a second set of operating characteristics that are different from the first set of operating characteristics. The control system is configured to selectively deliver power from one of the plurality of power sources to the first plurality of ESDs, the second plurality of ESDs, or both and selectively deliver power from the first plurality of ESDs, the second plurality of ESDs, or both to the load based on short and long term variations in a set of energy delivery system characteristics.

    摘要翻译: 能量管理系统包括多个电源,第一组能量存储装置(ESD),第二组ESD以及控制系统。 第一组ESD耦合在电源和负载之间,并具有第一组工作特性。 第二组ESD也耦合在电源和负载之间,并且具有与第一组操作特性不同的第二组操作特性。 所述控制系统被配置为选择性地将功率从所述多个电源中的一个供电到所述第一多个ESD,所述第二多个ESD或两者,并且选择性地从所述第一多个ESD,所述第二多个ESD或 基于一组能量传递系统特性中的短期和长期变化的负载。

    Systems and methods for managing statistical expressions
    9.
    发明授权
    Systems and methods for managing statistical expressions 有权
    用于管理统计表达式的系统和方法

    公开(公告)号:US08700597B2

    公开(公告)日:2014-04-15

    申请号:US12186682

    申请日:2008-08-06

    IPC分类号: G06F7/00 G06F17/30

    摘要: Using natural language-like user inputs to provide statistics on a subset of data is described. In one embodiment, a user input that includes at least one word or phrase representing a rule is received. The rule includes an identification of a subset of data and a statistical expression to be performed on the subset of data. The subset of data includes at least part of the data elements of a data set. Each data element includes information on an individual or group. Instructions are provided for translating the rule into an executable format. The executable format includes a translated identification of the subset and a translated statistical expression. The subset of the data is accessed using the translated identification of the subset. The translated statistical expression is executed to obtain statistics on data elements of the subset of data. The statistics on the data elements are provided.

    摘要翻译: 描述了使用自然语言的用户输入来提供数据子集的统计数据。 在一个实施例中,接收包括表示规则的至少一个单词或短语的用户输入。 该规则包括要对数据子集执行的数据子集的标识和统计表达式。 数据子集包括数据集的数据元素的至少一部分。 每个数据元素包括关于个人或组的信息。 提供了将规则翻译成可执行格式的说明。 可执行格式包括该子集的翻译标识和翻译的统计表达式。 使用子集的翻译标识来访问数据的子集。 执行翻译的统计表达式以获得关于数据子集的数据元素的统计。 提供了有关数据元素的统计信息。