SYSTEM AND METHODS FOR CONTROLLING NETWORK TRAFFIC THROUGH VIRTUAL SWITCHES
    1.
    发明申请
    SYSTEM AND METHODS FOR CONTROLLING NETWORK TRAFFIC THROUGH VIRTUAL SWITCHES 有权
    通过虚拟开关控制网络交通的系统和方法

    公开(公告)号:US20130070762A1

    公开(公告)日:2013-03-21

    申请号:US13237806

    申请日:2011-09-20

    IPC分类号: H04L12/56

    CPC分类号: H04L49/70 H04L41/0893

    摘要: A network may include network switches with network switch ports that may be coupled to end hosts. The network switches may be controlled by a controller such as a controller server. Virtual switches may be formed using the controller from groups of the network switch ports and the end hosts. Each virtual switch may include virtual interfaces associated with end hosts or network switches. Virtual links may be formed that define network connections between the virtual interfaces and end hosts or between two virtual interfaces. Virtual network policies such as selective packet forwarding, packet dropping, packet redirection, packet modification, or packet logging may be implemented at selected virtual interfaces to control traffic through the communications network. The controller may translate the virtual network policies into network switch forwarding paths that satisfy the virtual network policies.

    摘要翻译: 网络可以包括具有可以耦合到终端主机的网络交换机端口的网络交换机。 网络交换机可以由诸如控制器服务器的控制器来控制。 可以使用来自网络交换机端口和终端主机的组的控制器来形成虚拟交换机。 每个虚拟交换机可以包括与终端主机或网络交换机相关联的虚拟接口。 可以形成虚拟链路,其定义虚拟接口和终端主机之间或两个虚拟接口之间的网络连接。 可以在所选择的虚拟接口处实现虚拟网络策略,例如选择性分组转发,丢包,分组重定向,分组修改或分组记录,以控制通过通信网络的业务。 控制器可将虚拟网络策略转换为满足虚拟网络策略的网络交换机转发路径。

    System and methods for controlling network traffic through virtual switches
    2.
    发明授权
    System and methods for controlling network traffic through virtual switches 有权
    通过虚拟交换机控制网络流量的系统和方法

    公开(公告)号:US09185056B2

    公开(公告)日:2015-11-10

    申请号:US13237806

    申请日:2011-09-20

    CPC分类号: H04L49/70 H04L41/0893

    摘要: A network may include network switches with network switch ports that may be coupled to end hosts. The network switches may be controlled by a controller such as a controller server. Virtual switches may be formed using the controller from groups of the network switch ports and the end hosts. Each virtual switch may include virtual interfaces associated with end hosts or network switches. Virtual links may be formed that define network connections between the virtual interfaces and end hosts or between two virtual interfaces. Virtual network policies such as selective packet forwarding, packet dropping, packet redirection, packet modification, or packet logging may be implemented at selected virtual interfaces to control traffic through the communications network. The controller may translate the virtual network policies into network switch forwarding paths that satisfy the virtual network policies.

    摘要翻译: 网络可以包括具有可以耦合到终端主机的网络交换机端口的网络交换机。 网络交换机可以由诸如控制器服务器的控制器来控制。 可以使用来自网络交换机端口和终端主机的组的控制器来形成虚拟交换机。 每个虚拟交换机可以包括与终端主机或网络交换机相关联的虚拟接口。 可以形成虚拟链路,其定义虚拟接口和终端主机之间或两个虚拟接口之间的网络连接。 可以在所选择的虚拟接口处实现虚拟网络策略,例如选择性分组转发,丢包,分组重定向,分组修改或分组记录,以控制通过通信网络的业务。 控制器可将虚拟网络策略转换为满足虚拟网络策略的网络交换机转发路径。

    SYSTEMS AND METHODS FOR MANAGING VIRTUAL SWITCHES
    4.
    发明申请
    SYSTEMS AND METHODS FOR MANAGING VIRTUAL SWITCHES 有权
    用于管理虚拟交换机的系统和方法

    公开(公告)号:US20120281698A1

    公开(公告)日:2012-11-08

    申请号:US13103012

    申请日:2011-05-06

    IPC分类号: H04L12/56 H04L12/28

    摘要: Network switches that are controlled by a controller server may contain ports through which network packets are received and forwarded. An architect may configure the controller server to create virtual switches. Each virtual switch may be formed from a subset of the ports of the network switches. The architect may assign administrators to the virtual switches. The administrators may configure the virtual switches. An administrator may use a command line interface to configure a virtual switch. The administrator may use commands such as a show port command, an access list command, a show access list command, and a membership rule command to manage the virtual switch. The controller server may prevent the administrator from logging on to virtual switches that have been assigned to other administrators.

    摘要翻译: 由控制器服务器控制的网络交换机可能包含接收和转发网络数据包的端口。 建筑师可以配置控制器服务器来创建虚拟交换机。 每个虚拟交换机可以由网络交换机的端口的子集形成。 架构师可以将管理员分配给虚拟交换机。 管理员可以配置虚拟交换机。 管理员可以使用命令行界面配置虚拟交换机。 管理员可以使用show port命令,access list命令,show access list命令和membership rule命令来管理虚拟交换机。 控制器服务器可能会阻止管理员登录到已分配给其他管理员的虚拟交换机。

    Systems and methods for managing virtual switches
    5.
    发明授权
    Systems and methods for managing virtual switches 有权
    用于管理虚拟交换机的系统和方法

    公开(公告)号:US08416796B2

    公开(公告)日:2013-04-09

    申请号:US13103012

    申请日:2011-05-06

    IPC分类号: H04L12/28 H04L12/56

    摘要: Network switches that are controlled by a controller server may contain ports through which network packets are received and forwarded. An architect may configure the controller server to create virtual switches. Each virtual switch may be formed from a subset of the ports of the network switches. The architect may assign administrators to the virtual switches. The administrators may configure the virtual switches. An administrator may use a command line interface to configure a virtual switch. The administrator may use commands such as a show port command, an access list command, a show access list command, and a membership rule command to manage the virtual switch. The controller server may prevent the administrator from logging on to virtual switches that have been assigned to other administrators.

    摘要翻译: 由控制器服务器控制的网络交换机可能包含接收和转发网络数据包的端口。 建筑师可以配置控制器服务器来创建虚拟交换机。 每个虚拟交换机可以由网络交换机的端口的子集形成。 架构师可以将管理员分配给虚拟交换机。 管理员可以配置虚拟交换机。 管理员可以使用命令行界面配置虚拟交换机。 管理员可以使用show port命令,access list命令,show access list命令和membership rule命令来管理虚拟交换机。 控制器服务器可能会阻止管理员登录到已分配给其他管理员的虚拟交换机。

    Message authentication using signatures
    6.
    发明授权
    Message authentication using signatures 有权
    使用签名的邮件认证

    公开(公告)号:US08429232B1

    公开(公告)日:2013-04-23

    申请号:US10951975

    申请日:2004-09-28

    IPC分类号: G06F15/16

    摘要: Systems and methods are provided for using digital signatures to help distinguish legitimate email from known or trusted organizations from unsolicited email or forged email. Digital signatures may be used in an email body, mail header, or embedded links. The signatures may be verified by a recipient or internet service provider and may be used in conjunction with spam filtering applications.

    摘要翻译: 提供了系统和方法,用于使用数字签名来帮助区分合法电子邮件与已知或受信任的组织与未经请求的电子邮件或伪造的电子邮件。 数字签名可用于电子邮件正文,邮件头或嵌入式链接。 签名可以由接收者或互联网服务提供商进行验证,并且可以与垃圾邮件过滤应用一起使用。

    Secure messaging system with personalization information
    7.
    发明授权
    Secure messaging system with personalization information 有权
    具有个性化信息的安全消息系统

    公开(公告)号:US08145718B1

    公开(公告)日:2012-03-27

    申请号:US11581056

    申请日:2006-10-13

    IPC分类号: H04L9/00

    摘要: Personalization images are included in email messages to combat phishing attacks in which an attacker attempts to trick a user into divulging sensitive information over the Internet. When a recipient of an email message receives a message, the recipient can visually inspect the personalization image in the message. If the personalization image is missing or if the personalization image is not valid, the email recipient is alerted to the possibility of a phishing attack. Email message content may be encrypted. A gateway associated with an email message sender may be used to perform encryption operations on the message content. The gateway may create an html version of the email by placing the encrypted message content in an html wrapper. An image reference corresponding to the personalization image may be embedded in the html version of the message.

    摘要翻译: 个性化图像包含在电子邮件消息中,以防止攻击者试图欺骗用户通过Internet泄露敏感信息的网络钓鱼攻击。 当电子邮件消息的收件人收到消息时,收件人可以直观地检查消息中的个性化图像。 如果个性化图像丢失或个人化图像无效,电子邮件收件人将被警告可能发生网络钓鱼攻击。 电子邮件内容可能被加密。 与电子邮件消息发送者相关联的网关可以用于对消息内容执行加密操作。 网关可以通过将加密的消息内容放置在html包装器中来创建电子邮件的html版本。 对应于个性化图像的图像引用可以嵌入在消息的html版本中。

    Secure messaging systems
    8.
    发明授权
    Secure messaging systems 有权
    安全通讯系统

    公开(公告)号:US07921292B1

    公开(公告)日:2011-04-05

    申请号:US10406938

    申请日:2003-04-04

    IPC分类号: H04L9/32

    摘要: A system is provided that uses cryptographic techniques to support secure messaging between senders and recipients. A sender may encrypt a message for a recipient using the recipient's public key. The sender may send the encrypted message to the message address of a given recipient. A server may be used to decrypt the encrypted message for the recipient, so that the recipient need not install a decryption engine on the recipient's equipment.

    摘要翻译: 提供了一种使用加密技术来支持发件人和收件人之间的安全通讯的系统。 发件人可以使用收件人的公开密钥对收件人的邮件进行加密。 发送者可以将加密的消息发送到给定接收者的消息地址。 可以使用服务器对接收者的加密消息进行解密,使得接收者不需要在接收者的设备上安装解密引擎。

    SECURE MESSAGE SYSTEM WITH REMOTE DECRYPTION SERVICE
    9.
    发明申请
    SECURE MESSAGE SYSTEM WITH REMOTE DECRYPTION SERVICE 有权
    安全消息系统与远程解码服务

    公开(公告)号:US20100161984A1

    公开(公告)日:2010-06-24

    申请号:US12714010

    申请日:2010-02-26

    IPC分类号: H04L9/32 H04L9/30

    摘要: Systems and methods for secure messaging are provided. A sender may encrypt content and send the encrypted content to a recipient over a communications network. The encrypted content may be decrypted for the recipient using a remote decryption service. Encrypted message content may be placed into a markup language form. Encrypted content may be incorporated into the form as a hidden form element. Form elements for collecting recipient credential information such as username and password information may also be incorporated into the form. At the recipient, the recipient may use the form to provide recipient credential information to the remote decryption service. The recipient may also use the form to upload the encrypted content from the form to the decryption service. The decryption service may provide the recipient with access to a decrypted version of the uploaded content over the communications network.

    摘要翻译: 提供了安全消息传递的系统和方法。 发送者可以加密内容,并通过通信网络将加密的内容发送给接收者。 可以使用远程解密服务为接收者解密加密内容。 加密的消息内容可以被放置成标记语言形式。 加密内容可以作为隐藏表单元素合并到表单中。 收集凭证信息(如用户名和密码信息)的表单元素也可以并入表单中。 在接收方,收件人可以使用该表单向远程解密服务提供接收者凭证信息。 收件人还可以使用表格将加密的内容从表单上传到解密服务。 解密服务可以通过通信网络向接收者提供对已上传内容的解密版本的访问。

    SECURITY DEVICE FOR CRYPTOGRAPHIC COMMUNICATIONS
    10.
    发明申请
    SECURITY DEVICE FOR CRYPTOGRAPHIC COMMUNICATIONS 有权
    保护通信安全设备

    公开(公告)号:US20090327731A1

    公开(公告)日:2009-12-31

    申请号:US12107043

    申请日:2008-04-21

    IPC分类号: H04L9/00

    摘要: Cryptographic systems and methods are provided in which authentication operations, digital signature operations, and encryption operations may be performed. Authentication operations may be performed using authentication information. The authentication information may be constructed using a symmetric authentication key or a public/private pair of authentication keys. Users may digitally sign data using private signing keys. Corresponding public signing keys may be used to verify user signatures. Identity-based-encryption (IBE) arrangements may be used for encrypting messages using the identity of a recipient. IBE-encrypted messages may be decrypted using appropriate IBE private keys. A smart card, universal serial bus key, or other security device having a tamper-proof enclosure may use the authentication information to obtain secret key information. Information such as IBE private key information, private signature key information, and authentication information may be stored in the tamper-proof enclosure.

    摘要翻译: 提供了可以执行认证操作,数字签名操作和加密操作的加密系统和方法。 可以使用认证信息来执行认证操作。 可以使用对称认证密钥或公/私钥对来构造认证信息。 用户可以使用专用签名密钥对数据进行数字签名。 可以使用相应的公共签名密钥来验证用户签名。 基于身份的加密(IBE)安排可以用于使用接收者的身份加密消息。 可以使用适当的IBE私钥对IBE加密的消息进行解密。 具有防篡改外壳的智能卡,通用串行总线密钥或其他安全装置可以使用认证信息来获得秘密密钥信息。 诸如IBE私钥信息,私人签名密钥信息和认证信息的信息可以存储在防篡改外壳中。