Network monitoring using bounded memory data structures
    2.
    发明授权
    Network monitoring using bounded memory data structures 有权
    使用有限存储器数据结构进行网络监控

    公开(公告)号:US08645527B1

    公开(公告)日:2014-02-04

    申请号:US12180333

    申请日:2008-07-25

    IPC分类号: G06F15/16 G06F15/173 G06F3/00

    摘要: A network monitoring device includes a data structure for maintaining information about endpoints involved in network flows. Each endpoint, either a source or a destination for a network flow, has information maintained in a modified binary trie, having a branch for each bit of the source or destination address, but with interior nodes having only a single child node elided. A pruning thread is given a limited amount of time for operation, with the effect that the data structure is maintained available for use except for only that limited amount of time. In the event that the pruning thread is unable to prune the entire data structure, it maintains a marker indicating where last it left off, and returns to that location in the data structure at a later pruning operation.

    摘要翻译: 网络监视设备包括用于维护关于网络流中涉及的端点的信息的数据结构。 每个端点(网络流的源或目的地)具有维护在修改的二进制trie中的信息,其具有针对源或目的地地址的每个位的分支,但是具有仅具有单个子节点的内部节点被消除。 修剪线程被给予有限的操作时间,其结果是保持数据结构可用于使用,只有有限的时间量。 在修剪线程无法修剪整个数据结构的情况下,它会维护一个标记,指示最后一次停止的位置,并在稍后的修剪操作中返回到数据结构中的该位置。

    Parallel distributed network monitoring
    3.
    发明授权
    Parallel distributed network monitoring 失效
    并行分布式网络监控

    公开(公告)号:US08199641B1

    公开(公告)日:2012-06-12

    申请号:US12179703

    申请日:2008-07-25

    IPC分类号: H04L12/26 G06F15/173

    摘要: A network monitoring system includes devices receiving network traffic information, and generating at least partial results relating to network symptoms. Those partial results are forwarded to devices processing those partial results and generating information relating to problems in response to those symptoms. Problems are reported to users or sent as notifications. In one embodiment, information relating to network traffic is monitored both by a first set of devices associated with source addresses for that network traffic and a second set of devices associated with destination addresses for that network traffic. Information received by that first set of devices includes information relating to both the source address and destination address of network traffic. That first set of devices processes information relating to the source address of network traffic and forwards information relating to the destination address of network traffic to that second set of devices.

    摘要翻译: 网络监控系统包括接收网络流量信息的设备,以及产生与网络症状有关的至少部分结果。 这些部分结果被转发到处理这些部分结果的设备,并且响应于这些症状产生与问题有关的信息。 问题报告给用户或作为通知发送。 在一个实施例中,与网络业务有关的信息由与该网络业务的源地址相关联的第一组设备以及与该网络业务的目的地地址相关联的第二组设备来监控。 由第一组设备接收的信息包括与网络流量的源地址和目的地地址相关的信息。 第一组设备处理与网络业务的源地址相关的信息,并将与网络流量的目的地地址相关的信息转发到第二组设备。

    Network monitoring of behavior probability density
    4.
    发明授权
    Network monitoring of behavior probability density 有权
    网络监控行为概率密度

    公开(公告)号:US08639797B1

    公开(公告)日:2014-01-28

    申请号:US12180243

    申请日:2008-07-25

    IPC分类号: G06F15/173

    摘要: A network monitoring system maintains both information regarding historical activity of a network, and information regarding emergent activity of the network. Comparison of historical activity of the network with emergent activity of the network allows the system to determine whether network activity is changing over time. The network monitoring system maintains data structures representing a p.d.f. for observable values of network parameters. Recent activity of the network can be compared with both the p.d.f. for historical activity and for emergent activity to aid in determining whether that recent activity is within the realm of normal, and whether network activity is changing over time. The network monitoring system adjusts that information regarding historical activity of a network in response to emergent activity of that network. The network monitoring device determines information regarding time-dependent activity of that network in response to spectral analysis regarding historical activity of that network.

    摘要翻译: 网络监控系统维护关于网络的历史活动的信息和关于网络的紧急活动的信息。 网络的历史活动与网络紧急活动的比较允许系统确定网络活动是否随时间而变化。 网络监控系统维护表示p.d.f.的数据结构。 用于网络参数的可观察值。 网络的最近活动可以与p.d.f. 用于历史活动和紧急活动,以帮助确定最近的活动是否在正常范围内,以及网络活动是否随时间而变化。 网络监控系统根据网络的紧急活动调整有关网络历史活动的信息。 响应于关于该网络的历史活动的频谱分析,网络监视设备确定关于该网络的时间相关活动的信息。

    Network monitoring using virtual packets
    5.
    发明授权
    Network monitoring using virtual packets 有权
    使用虚拟数据包进行网络监控

    公开(公告)号:US08451731B1

    公开(公告)日:2013-05-28

    申请号:US12180193

    申请日:2008-07-25

    IPC分类号: H04J1/16 H04J3/14 G06F15/173

    摘要: A network monitoring device includes a flow processing element, disposed to receive flow information relating to network flows, and to generate a set of virtual packets, each representing a portion of a network flow. The virtual packets are maintained in a time-sequential order, and read by elements of the network monitoring device to generate information relating to network traffic, such as symptoms affecting the communication network, problems affecting the communication network, and otherwise. The network monitoring device randomly samples virtual packets, with at least one of two effects: (1) flow information from traffic reporting devices that are themselves sampling at differing rates can be equalized, with the effect of standardizing information from all of them; (2) the network monitoring device itself can restrict its attention to a fraction of all virtual packets, with the effect of keeping up with a relatively large number of virtual packets.

    摘要翻译: 网络监视设备包括流处理元件,其被设置为接收与网络流相关的流信息,并且生成一组虚拟分组,每组虚拟分组表示网络流的一部分。 虚拟分组以时间顺序的顺序进行维护,并由网络监控设备的元素进行读取,以产生与网络流量相关的信息,例如影响通信网络的症状,影响通信网络的问题等。 网络监控设备随机采样虚拟数据包,具有以下两个效果中的至少一个:(1)流量报告设备本身以不同速率进行采样的流量信息可以均衡化,并使其全部信息标准化; (2)网络监控设备本身可以将其注意力限制在所有虚拟分组的一小部分,具有跟上相对较大数量的虚拟分组的效果。

    Method and apparatus for embedding encrypted images of signatures and other data on checks
    8.
    发明授权
    Method and apparatus for embedding encrypted images of signatures and other data on checks 有权
    将签名的加密图像和其他数据嵌入到检查上的方法和装置

    公开(公告)号:US07228428B2

    公开(公告)日:2007-06-05

    申请号:US10014486

    申请日:2001-12-14

    IPC分类号: G06K9/00

    CPC分类号: B42D25/29

    摘要: Apparatus, methods, and articles of manufacture consistent with the present invention provide a check validation scheme wherein a payor's signature is digitized, encrypted and embedded on the front of the check using glyphs. When the payor seeks to convert a blank check into a negotiable instrument, the user fills out the check and signs it. When the check is presented to a bank for payment, a teller using a decoding device, decodes and decrypts the digitized signature such that a human-readable image of the digitized signature can be seen on a screen for comparison with the payor's scripted signature. If the two signatures are identical, the check is honored.

    摘要翻译: 与本发明一致的装置,方法和制品提供了一种检验验证方案,其中付款人的签名被数字化,加密并且使用字形嵌入到支票的前面。 当付款人试图将空白支票转换成可转让票据时,用户填写支票并进行签收。 当支票被提供给银行进行支付时,使用解码装置的柜员,对数字化签名进行解码和解密,使得可以在屏幕上看到数字化签名的人类可读图像,以与付款人的脚本签名进行比较。 如果两个签名相同,则支票将被兑现。