Isolating multiple authentication channels, each using multiple authentication models
    1.
    发明申请
    Isolating multiple authentication channels, each using multiple authentication models 有权
    隔离多个认证通道,每个认证通道使用多个认证模型

    公开(公告)号:US20050108579A1

    公开(公告)日:2005-05-19

    申请号:US10807945

    申请日:2004-03-23

    IPC分类号: G06F12/14 G06F21/00 H04L29/06

    CPC分类号: G06F21/31

    摘要: A computer receives a user authentication request from a client. The computer accesses a password associated with the user name, stored locally on the computer, and attempts to authenticate the password using an authentication server. If the password authentication succeeds, the computer hashes the password and compares the hashes. If the hashes match, the user authentication succeeds.

    摘要翻译: 计算机从客户端接收用户认证请求。 计算机访问与本地存储在计算机上的用户名关联的密码,并尝试使用身份验证服务器验证密码。 如果密码认证成功,则计算机将哈希密码并比较哈希值。 如果哈希匹配,则用户认证成功。

    Secure systems management
    2.
    发明申请
    Secure systems management 有权
    安全的系统管理

    公开(公告)号:US20060265597A1

    公开(公告)日:2006-11-23

    申请号:US11134542

    申请日:2005-05-19

    摘要: To effect a change to the system, a user process makes a request. An interface receives the request, and attempts to authenticate the user. Assuming the user is authenticated, the interface determines the user's UID. The interface determines a provider process that can make the requested change, and forwards the request to the provider process. The interface also assigns the user's UID to the provider process's eUID. The provider process then attempts to make the change, provided the change can be made given the eUID assignment. The provider process then attempts to run under the new eUID, enabling the system to prohibit it from doing something that is not authorized for that user. This protects the system from inadvertently executing management operations by one provider process that is not expected or intended by the user of another provider process.

    摘要翻译: 为了对系统进行更改,用户进程发出请求。 接口接收请求,并尝试认证用户。 假设用户被认证,接口确定用户的UID。 接口确定可以进行请求的更改的提供程序进程,并将请求转发给提供程序进程。 该接口还将用户的UID分配给提供者进程的eUID。 提供者进程然后尝试进行更改,前提是可以在给予eUID分配的情况下进行更改。 提供程序进程然后尝试在新的eUID下运行,使系统能够禁止它执行未被该用户授权的操作。 这样可以保护系统无意中由一个提供商进程执行管理操作,这是由另一个提供者进程的用户预期或不希望的。

    SYSTEM AND METHOD FOR PERFORMING DESIGNATED SERVICE IMAGE PROCESSING FUNCTIONS IN A SERVICE IMAGE WAREHOUSE
    3.
    发明申请
    SYSTEM AND METHOD FOR PERFORMING DESIGNATED SERVICE IMAGE PROCESSING FUNCTIONS IN A SERVICE IMAGE WAREHOUSE 失效
    在服务图像仓库中执行指定服务图像处理功能的系统和方法

    公开(公告)号:US20090288082A1

    公开(公告)日:2009-11-19

    申请号:US12123036

    申请日:2008-05-19

    IPC分类号: G06F9/455

    摘要: System and method for performing processing functions on a warehoused service image. In one embodiment, the system comprises a service image warehouse for storing at least one service image; means for modifying the at least one service image by performing at least one of a plurality of service image processing functions on a service image contemporaneously with a user's checking the at least one service image out of the service image warehouse; means for checking the modified service image back into the service image warehouse; and a plurality of compute nodes connected to the service image warehouse to which the at least one service image may be deployed. Each of the compute nodes comprises one of a physical machine and a virtual machine host.

    摘要翻译: 在仓储服务图像上执行处理功能的系统和方法。 在一个实施例中,系统包括用于存储至少一个服务图像的服务图像仓库; 用于通过执行服务图像上的多个服务图像处理功能中的至少一个与用户从所述服务图像仓库中检查所述至少一个服务图像同时修改所述至少一个服务图像的装置; 用于将修改后的服务图像检索回服务映像仓库的装置; 以及连接到可以部署所述至少一个服务映像的服务映像仓库的多个计算节点。 每个计算节点包括物理机器和虚拟机主机之一。

    System and method for performing designated service image processing functions in a service image warehouse
    4.
    发明授权
    System and method for performing designated service image processing functions in a service image warehouse 失效
    在服务图像仓库中执行指定的服务图像处理功能的系统和方法

    公开(公告)号:US08572607B2

    公开(公告)日:2013-10-29

    申请号:US12123036

    申请日:2008-05-19

    IPC分类号: G06F9/455

    摘要: System and method for performing processing functions on a warehoused service image. In one embodiment, the system comprises a service image warehouse for storing at least one service image; means for modifying the at least one service image by performing at least one of a plurality of service image processing functions on a service image contemporaneously with a user's checking the at least one service image out of the service image warehouse; means for checking the modified service image back into the service image warehouse; and a plurality of compute nodes connected to the service image warehouse to which the at least one service image may be deployed. Each of the compute nodes comprises one of a physical machine and a virtual machine host.

    摘要翻译: 在仓储服务图像上执行处理功能的系统和方法。 在一个实施例中,系统包括用于存储至少一个服务图像的服务图像仓库; 用于通过在用户从所述服务图像仓库中检查所述至少一个服务图像的同时执行服务图像上的多个服务图像处理功能中的至少一个来修改所述至少一个服务图像的装置; 用于将修改后的服务图像检索回服务映像仓库的装置; 以及连接到可以部署所述至少一个服务映像的服务映像仓库的多个计算节点。 每个计算节点包括物理机器和虚拟机主机之一。