METHOD AND APPARATUS FOR LIMITING DENIAL OF SERVICE ATTACK BY LIMITING TRAFFIC FOR HOSTS
    1.
    发明申请
    METHOD AND APPARATUS FOR LIMITING DENIAL OF SERVICE ATTACK BY LIMITING TRAFFIC FOR HOSTS 有权
    通过限制交通运输来限制服务质量的方法和装置

    公开(公告)号:US20100122346A1

    公开(公告)日:2010-05-13

    申请号:US12611467

    申请日:2009-11-03

    IPC分类号: G06F11/00 G06F11/30

    CPC分类号: H04L63/1416 H04L63/1458

    摘要: A method for controlling a denial of service attack involves receiving a plurality of packets from a network, identifying an attacking host based on a severity level of the denial of service attack from the network, wherein the attacking host is identified by an identifying attack characteristic associated with one of the plurality of packets associated with the attacking host, analyzing each of the plurality of packets by a classifier to determine to which of a plurality of temporary data structures each of the plurality of packet is forwarded, forwarding each of the plurality of packets associated with the identifying attack characteristic to one of the plurality of temporary data structures matching the severity level of the denial of service attack as determined by the classifier, requesting a number of packets from the one of the plurality of temporary data structures matching the severity level by the virtual serialization queue, and forwarding the number of packets to the virtual serialization queue.

    摘要翻译: 用于控制拒绝服务攻击的方法包括从网络接收多个分组,基于来自网络的拒绝服务攻击的严重性级别识别攻击主机,其中攻击主机通过相关联的识别攻击特征来识别 与所述攻击主机相关联的所述多个分组中的一个分组,通过分类器分析所述多个分组中的每一个,以确定所述多个分组中的每一个被转发到多个临时数据结构中的哪一个,转发所述多个分组中的每个分组 与所述多个临时数据结构中的一个临时数据结构中的一个临时数据结构相关联,所述临时数据结构与由所述分类器确定的所述拒绝服务攻击的严重性级别匹配,请求从所述多个临时数据结构中的一个临时数据结构匹配严重性级别 通过虚拟序列化队列,并将数据包的数量转发到virtua l序列化队列

    Method and apparatus for limiting denial of service attack by limiting traffic for hosts
    2.
    发明授权
    Method and apparatus for limiting denial of service attack by limiting traffic for hosts 有权
    通过限制主机流量来限制拒绝服务攻击的方法和装置

    公开(公告)号:US07640591B1

    公开(公告)日:2009-12-29

    申请号:US11112328

    申请日:2005-04-22

    IPC分类号: G06F11/00 G06F11/30

    CPC分类号: H04L63/1416 H04L63/1458

    摘要: A method for controlling a denial of service attack involves receiving a plurality of packets from a network, identifying an attacking host based on a severity level of the denial of service attack from the network, wherein the attacking host is identified by an identifying attack characteristic associated with one of the plurality of packets associated with the attacking host, analyzing each of the plurality of packets by a classifier to determine to which of a plurality of temporary data structures each of the plurality of packet is forwarded, forwarding each of the plurality of packets associated with the identifying attack characteristic to one of the plurality of temporary data structures matching the severity level of the denial of service attack as determined by the classifier, requesting a number of packets from the one of the plurality of temporary data structures matching the severity level by the virtual serialization queue, and forwarding the number of packets to the virtual serialization queue.

    摘要翻译: 用于控制拒绝服务攻击的方法包括从网络接收多个分组,基于来自网络的拒绝服务攻击的严重性级别识别攻击主机,其中攻击主机通过相关联的识别攻击特征来识别 与所述攻击主机相关联的所述多个分组中的一个分组,通过分类器分析所述多个分组中的每一个,以确定所述多个分组中的每一个被转发到多个临时数据结构中的哪一个,转发所述多个分组中的每个分组 与所述多个临时数据结构中的一个临时数据结构中的一个临时数据结构相关联,所述临时数据结构与由所述分类器确定的所述拒绝服务攻击的严重性级别匹配,请求从所述多个临时数据结构中的一个临时数据结构匹配严重性级别 通过虚拟序列化队列,并将数据包的数量转发到virtua l序列化队列

    Method and apparatus for limiting denial of service attack by limiting traffic for hosts
    3.
    发明授权
    Method and apparatus for limiting denial of service attack by limiting traffic for hosts 有权
    通过限制主机流量来限制拒绝服务攻击的方法和装置

    公开(公告)号:US08312544B2

    公开(公告)日:2012-11-13

    申请号:US12611467

    申请日:2009-11-03

    IPC分类号: G06F9/00 G06F11/00

    CPC分类号: H04L63/1416 H04L63/1458

    摘要: A method for controlling a denial of service attack involves receiving a plurality of packets from a network, identifying an attacking host based on a severity level of the denial of service attack from the network, wherein the attacking host is identified by an identifying attack characteristic associated with one of the plurality of packets associated with the attacking host, analyzing each of the plurality of packets by a classifier to determine to which of a plurality of temporary data structures each of the plurality of packet is forwarded, forwarding each of the plurality of packets associated with the identifying attack characteristic to one of the plurality of temporary data structures matching the severity level of the denial of service attack as determined by the classifier, requesting a number of packets from the one of the plurality of temporary data structures matching the severity level by the virtual serialization queue, and forwarding the number of packets to the virtual serialization queue.

    摘要翻译: 用于控制拒绝服务攻击的方法包括从网络接收多个分组,基于来自网络的拒绝服务攻击的严重性级别识别攻击主机,其中攻击主机通过相关联的识别攻击特征来识别 与所述攻击主机相关联的所述多个分组中的一个分组,通过分类器分析所述多个分组中的每一个,以确定所述多个分组中的每一个被转发到多个临时数据结构中的哪一个,转发所述多个分组中的每个分组 与所述多个临时数据结构中的一个临时数据结构中的一个临时数据结构相关联,所述临时数据结构与由所述分类器确定的所述拒绝服务攻击的严重性级别匹配,请求从所述多个临时数据结构中的一个临时数据结构匹配严重性级别 通过虚拟序列化队列,并将数据包的数量转发到virtua l序列化队列

    Dynamic hardware classification engine updating for a network interface
    4.
    发明授权
    Dynamic hardware classification engine updating for a network interface 有权
    用于网络接口的动态硬件分类引擎更新

    公开(公告)号:US07593404B1

    公开(公告)日:2009-09-22

    申请号:US11112934

    申请日:2005-04-22

    IPC分类号: H04L12/28

    CPC分类号: H04L49/9063 H04L49/90

    摘要: Incoming network data is processed according to a current hardware classification “engine” configuration. As data is propagated from a network interface to a host system, an activity of one or more components of the host system is monitored. If it is determined that a desired/optimal resource utilization of the host system and/or a desired/optimal network performance is not being achieved, the hardware classification “engine” configuration is dynamically modified.

    摘要翻译: 根据当前硬件分类“引擎”配置处理进入的网络数据。 随着数据从网络接口传播到主机系统,监视主机系统的一个或多个组件的活动。 如果确定没有实现主机系统的期望/最佳资源利用和/或期望/最佳网络性能,则动态地修改硬件分类“引擎”配置。

    Method and apparatus for dynamically isolating affected services under denial of service attack
    5.
    发明授权
    Method and apparatus for dynamically isolating affected services under denial of service attack 有权
    在拒绝服务攻击下动态隔离受影响的服务的方法和装置

    公开(公告)号:US07739736B1

    公开(公告)日:2010-06-15

    申请号:US11112158

    申请日:2005-04-22

    IPC分类号: G06F9/00 G06F11/00 H04L29/06

    CPC分类号: H04L63/1458

    摘要: A method for controlling consumption of resources by a packet destination involves receiving a plurality of packets from a network, identifying the packet destination consuming greater than a pre-determined amount of resources to process the plurality of packets, analyzing each of the plurality of packets by a classifier to determine to which of a plurality of temporary data structures each of the plurality of packet is forwarded, forwarding each of the plurality of packets to one of the plurality of temporary data structures as determined by the classifier, requesting a number of packets from the one of the plurality of temporary data structures associated with the packet destination by the virtual serialization queue, wherein the number of packets is limited by an attack control parameter associated with the virtual serialization queue, and forwarding the number of packets to the virtual serialization queue.

    摘要翻译: 用于控制分组目的地的资源消耗的方法包括从网络接收多个分组,识别分组目的地消耗大于预定量的资源以处理多个分组,通过以下方式分析多个分组中的每一个: 分类器,用于确定多个分组中的每一个被转发到多个临时数据结构中的哪一个,将所述多个分组中的每一个转发到由所述分类器确定的所述多个临时数据结构中的一个,请求数量的分组 所述虚拟序列化队列与所述分组目的地相关联的所述多个临时数据结构中的所述多个临时数据结构中的一个,其中所述分组的数量受与所述虚拟序列化队列相关联的攻击控制参数的限制,并且将所述分组的数目转发到所述虚拟序列化队列 。

    Method and system for handling received packets
    6.
    发明授权
    Method and system for handling received packets 有权
    处理接收到的数据包的方法和系统

    公开(公告)号:US07457316B1

    公开(公告)日:2008-11-25

    申请号:US10930299

    申请日:2004-08-31

    IPC分类号: H04J3/24

    摘要: A method for processing a chain of packets involving obtaining the chain of packets from a network, obtaining destination information from a first packet in the chain of packets, determining whether destination information of the first packet matches destination information of a second packet in the chain of packets, aggregating the first packet and the second packet to obtain an aggregated chain of packets, if destination information of the second packet matches the destination information of the first packet, hashing destination information to obtain a hash value, and forwarding the aggregated chain of packets to at least one client using the hash value.

    摘要翻译: 一种处理分组链的方法,包括从网络获取分组链,从分组链中的第一分组获取目的地信息,确定第一分组的目的地信息是否匹配链中的第二分组的目的地信息 分组,聚合第一分组和第二分组,以获得聚集的分组链,如果第二分组的目的地信息与第一分组的目的地信息匹配,则将散列目的地信息进行哈希值获取,并转发聚合的分组链 到使用哈希值的至少一个客户端。

    Method and system for using DLPI to negotiate advanced interfaces
    7.
    发明授权
    Method and system for using DLPI to negotiate advanced interfaces 有权
    使用DLPI协商高级接口的方法和系统

    公开(公告)号:US07487514B1

    公开(公告)日:2009-02-03

    申请号:US10931145

    申请日:2004-08-31

    IPC分类号: G06F9/44

    CPC分类号: H04L67/14

    摘要: A method for obtaining a capability of a network interface card (NIC). The method includes sending a first data link provider interface (DLPI) request to the NIC and sending a DLPI acknowledgement to an operating system, where the DLPI acknowledgement includes the capability of the NIC. The method further includes enabling the capability on the operating system and establishing a direct communication channel between the NIC and the operating system using the capability.

    摘要翻译: 一种获取网络接口卡(NIC)能力的方法。 该方法包括向NIC发送第一数据链路提供者接口(DLPI)请求并向操作系统发送DLPI确认,其中DLPI确认包括NIC的能力。 该方法还包括启用操作系统上的能力并且使用该能力在NIC和操作系统之间建立直接通信信道。

    Fluoroboron compound having aromatic ring or salt thereof, and method for producing compound having cyclic ether-fused aromatic ring using the same
    8.
    发明授权
    Fluoroboron compound having aromatic ring or salt thereof, and method for producing compound having cyclic ether-fused aromatic ring using the same 失效
    具有芳环的氟硼化合物或其盐,以及使用其具有环醚稠合芳环的化合物的制备方法

    公开(公告)号:US08273885B2

    公开(公告)日:2012-09-25

    申请号:US12440557

    申请日:2007-09-11

    IPC分类号: C07F5/02

    摘要: Provided is a fluoroboron compound which is highly safe and stable and is capable of forming a cyclic ether-fused ring by the intramolecular alkoxymethylation reaction, or a salt thereof. The compound can be synthesized by the intramolecular alkoxymethylation reaction of a fluoroboron compound represented by the formula (I) or a salt thereof in the presence of a metal catalyst. (wherein the moiety represented by the formula represents an aromatic ring; L represents a substituent such as a halogen atom; R represents a substituted or unsubstituted alkylene group having 1 or 2 carbon atoms; and M represents an alkali metal cation or the like, with the proviso that L and —R—OCH2BF3M are respectively located on contiguous carbon atoms on the aromatic ring, or in the case of a fused aromatic ring, on two carbon atoms adjacent to one carbon at the fused position).

    摘要翻译: 本发明提供一种高度安全稳定且能够通过分子内烷氧基甲基化反应形成环状醚稠合环的氟硼烷化合物或其盐。 该化合物可以通过在式(I)表示的氟硼烷化合物或其盐在金属催化剂的存在下的分子内烷氧基甲基化反应来合成。 (式中,由式表示的部分表示芳香环,L表示卤素原子等取代基,R表示取代或未取代的碳原子数1或2的亚烷基,M表示碱金属阳离子等, 条件是L和-R-OCH2BF3M分别位于芳环上的连续碳原子上,或在稠合芳环的情况下位于与稠合位置的一个碳相邻的两个碳原子上)。

    Out-of-band voice communication with interactive voice response services during gameplay
    9.
    发明授权
    Out-of-band voice communication with interactive voice response services during gameplay 有权
    在游戏过程中带有交互式语音响应服务的带外语音通信

    公开(公告)号:US08177643B2

    公开(公告)日:2012-05-15

    申请号:US12328776

    申请日:2008-12-05

    IPC分类号: A63F9/24

    摘要: While executing a game program, a game console determines that a user wishes to issue a voice command through a headset or other audio input/output device connected to the console. The game console switches the communication channel for the audio input/output device from the game program to a voice recognition engine without interrupting the execution of the game program on the console. The voice command is then forwarded from the audio input/output device to the voice recognition engine.

    摘要翻译: 在执行游戏程序时,游戏机确定用户希望通过连接到控制台的耳机或其他音频输入/输出设备发出语音命令。 游戏机将音频输入/输出设备的通信通道从游戏程序切换到语音识别引擎,而不会中断控制台上的游戏程序的执行。 然后,语音命令从音频输入/输出设备转发到语音识别引擎。

    Customized speech generation
    10.
    发明授权
    Customized speech generation 有权
    定制语音生成

    公开(公告)号:US08706827B1

    公开(公告)日:2014-04-22

    申请号:US13529788

    申请日:2012-06-21

    IPC分类号: G06F15/16

    摘要: Various approaches enable automatic communication generation based on patterned behavior in a particular context. For example, a computing device can monitor behavior of a user to determine patterns of communication behavior in certain situations. In response to detecting multiple occurrences of the certain situation, a computing device can prompt a user to perform an action corresponding to the pattern of behavior. In some embodiments, a set of speech models corresponding to a type of contact is generated. The speech models include language consistent with patterns of speech between a user and the type of contact. Based on context and on the contact, a message using language consistent with past communications between the user and contact is generated from a speech model associated with the type of contact.

    摘要翻译: 各种方法使得能够在特定上下文中基于图案行为的自动通信生成。 例如,计算设备可以监视用户的行为以确定某些情况下的通信行为的模式。 响应于检测到多次出现某些情况,计算设备可以提示用户执行与行为模式相对应的动作。 在一些实施例中,生成对应于一种类型的联系的一组语音模型。 语音模型包括与用户与联系人类型之间的语言模式一致的语言。 基于上下文和联系人,使用与用户和联系人之间的过去通信一致的语言的消息从与联系人类型相关联的语音模型生成。