Hybrid Java-C network appliance
    1.
    发明授权
    Hybrid Java-C network appliance 失效
    混合Java-C网络设备

    公开(公告)号:US07516333B2

    公开(公告)日:2009-04-07

    申请号:US10909848

    申请日:2004-08-02

    CPC分类号: G06F11/30 H04L67/02 H04L67/34

    摘要: A network appliance that runs both C and Java integrated software to provide a flexible architecture for rapid prototyping of XML security functionality, including SSL acceleration, XML encryption, XML decryption, XML signature, and XML verification, while the network appliance continues to provide high-speed performance.

    摘要翻译: 运行C和Java集成软件的网络设备为XML安全功能的快速原型设计提供了灵活的架构,包括SSL加速,XML加密,XML解密,XML签名和XML验证,而网络设备继续提供高性能, 速度表现。

    Methods and apparatus for providing out-of-band network traffic monitoring
    2.
    发明授权
    Methods and apparatus for providing out-of-band network traffic monitoring 有权
    提供带外网络流量监控的方法和装置

    公开(公告)号:US08996691B1

    公开(公告)日:2015-03-31

    申请号:US13461597

    申请日:2012-05-01

    IPC分类号: G06F15/173 H04L12/40

    CPC分类号: H04L12/40071 H04L12/6418

    摘要: Methods and apparatus for providing out-of-band network traffic monitoring such as intrusion detection to clients on a provider network. A client can configure new or existing components and specify that traffic monitoring be added on or at the components in the client's configuration on the provider network. Traffic monitoring is provided for the client's configuration via replication technology on the provider network. In response to the client specifying that traffic monitoring is to be added on or at a component, traffic to the client's configuration is routed to replication technology, which may be implemented at a network substrate level, that passes one copy to the client's configuration and sends another copy to a destination that handles traffic monitoring such as an intrusion detection handler. The destination may be anywhere on the provider network or on an external network.

    摘要翻译: 用于向提供者网络上的客户端提供带外网络流量监控(例如入侵检测)的方法和装置。 客户端可以配置新的或现有的组件,并指定在提供商网络上的客户端配置中或组件上添加流量监控。 通过供应商网络上的复制技术为客户端的配置提供流量监控。 响应于客户端指定将流量监视添加到组件上或在组件上,到客户机配置的流量被路由到复制技术,其可以在网络底层级实现,将一个副本传递给客户端的配置并发送 另一个复制到处理流量监控的目的地,例如入侵检测处理程序。 目的地可以是提供商网络或外部网络上的任何地方。

    Dynamic software licensing
    3.
    发明授权

    公开(公告)号:US09846899B1

    公开(公告)日:2017-12-19

    申请号:US13601608

    申请日:2012-08-31

    CPC分类号: G06Q30/06 G06F21/10

    摘要: A licensing service is disclosed that can be used in a virtual environment. A master license can be used by the licensing service to maintain a pool of licenses associated with a customer number. Multiple ephemeral licenses can be issued from the pool. The ephemeral licenses can have a short duration to ensure periodic renewal of the ephemeral licenses during the life of the master license. Tighter control of the licenses ensures that the ephemeral licenses are only used during the life of the master license. Additionally, autoscaling is promoted through the use of the license pool, which can adapt according to actual use.

    Methods and apparatus for providing inline network traffic monitoring
    4.
    发明授权
    Methods and apparatus for providing inline network traffic monitoring 有权
    提供内联网络流量监控的方法和装置

    公开(公告)号:US09032070B1

    公开(公告)日:2015-05-12

    申请号:US13461601

    申请日:2012-05-01

    IPC分类号: G06F15/173 H04L12/26

    摘要: Methods and apparatus for providing inline network traffic monitoring such as intrusion detection to clients of a provider network. A client can configure new or existing components and specify that traffic monitoring be added on or at the components in the client's configuration on the provider network. Traffic monitoring is automatically and transparently added to the client's configuration on or at the components. Traffic to the client's configuration passes through the traffic monitoring technology. Traffic monitoring technology may be implemented on a resource in the client's configuration that implements other technology, such as a load balancer component. Alternatively, traffic monitoring technology may be implemented on separate components upstream or downstream of a resource that implements other technology. Traffic monitoring may be implemented at a network substrate level rather than at an overlay network level.

    摘要翻译: 用于向提供商网络的客户端提供诸如入侵检测的内联网络流量监控的方法和装置。 客户端可以配置新的或现有的组件,并指定在提供商网络上的客户端配置中或组件上添加流量监控。 流量监控自动且透明地添加到组件上或组件上的客户端配置中。 流量到客户端的配置通过流量监控技术。 可以在实现其他技术的客户端配置中的资源(例如负载均衡器组件)上实现流量监控技术。 或者,可以在实现其他技术的资源的上游或下游的单独组件上实现流量监控技术。 交通监控可以在网络底层级别而不是覆盖网络级实现。

    Managing data storage using storage policy specifications

    公开(公告)号:US09984079B1

    公开(公告)日:2018-05-29

    申请号:US13350658

    申请日:2012-01-13

    申请人: Thomas C. Stickle

    发明人: Thomas C. Stickle

    摘要: Techniques are described for managing data storage using defined data storage management policies. In some situations, data storage may be managed using multiple supported storage mechanisms, such as different storage mechanisms of different types and/or in different locations. As one example, the described techniques may be performed to manage data that is available to a software program executing on a computer system, such as by caching a subset of the available data on one or more storage mechanisms to enhance later retrieval times of that data subset by the software program. In this example, the multiple supported storage mechanisms may include one or more storage mechanisms local to the computer system and one or more storage mechanisms remote from the computer system, and a defined data storage management policy for the software program may define particular types of data to store on particular storage mechanisms in particular manners.

    Methods and apparatus for providing network traffic monitoring services
    6.
    发明授权
    Methods and apparatus for providing network traffic monitoring services 有权
    提供网络流量监控服务的方法和设备

    公开(公告)号:US09166992B1

    公开(公告)日:2015-10-20

    申请号:US13461604

    申请日:2012-05-01

    IPC分类号: G06F15/173 H04L29/06

    CPC分类号: H04L63/1408 H04L63/1425

    摘要: Methods and apparatus for providing network traffic monitoring such as intrusion detection to clients of a provider network. An interface and methods are provided via which a client can select traffic monitoring as a functionality to be added to their configuration on the provider network, for example as part of a load balancer layer. Via the interface, the client can configure new or existing components and specify that traffic monitoring be added on or at the components. Traffic monitoring technology is automatically and transparently added to the client's configuration on or at the components. By adding traffic monitoring functionality to an existing layer, the client does not have to separately manage traffic monitoring on the client's configuration. Traffic monitoring technology may be added at a network substrate level rather than at an overlay network level to insure that all traffic is available to the traffic monitoring technology.

    摘要翻译: 用于向提供商网络的客户端提供诸如入侵检测的网络流量监控的方法和装置。 提供了一种接口和方法,通过该接口和方法,客户端可以选择流量监控作为要添加到其在提供商网络上的配置的功能,例如作为负载平衡器层的一部分。 通过接口,客户端可以配置新的或现有的组件,并指定在组件上或组件上添加流量监控。 流量监控技术可自动,透明地添加到组件上或组件上的客户端配置中。 通过向现有层添加流量监控功能,客户端不必单独管理客户端配置的流量监控。 交通监控技术可以在网络底层级别添加,而不是在覆盖网络级别添加,以确保所有流量都可用于流量监控技术。

    Validating machine images
    7.
    发明授权
    Validating machine images 有权
    验证机器图像

    公开(公告)号:US09009840B1

    公开(公告)日:2015-04-14

    申请号:US13356497

    申请日:2012-01-23

    申请人: Thomas C. Stickle

    发明人: Thomas C. Stickle

    摘要: In a resource-on-demand environment, virtual machine images are validated before use. A provider or source of a virtual machine image may generate a manifest, indicating executable components of the machine image. Before use, a created virtual machine may compare its executable components with those specified by the manifest. To ensure authenticity, the manifest may be associated with a signature, and the virtual machine may use the signature to verify the manifest and the source of the machine image.

    摘要翻译: 在资源需求环境中,虚拟机映像在使用前被验证。 虚拟机映像的提供者或源可以生成表示机器映像的可执行组件的清单。 在使用之前,创建的虚拟机可将其可执行组件与清单指定的组件进行比较。 为了确保真实性,清单可能与签名相关联,并且虚拟机可以使用签名来验证清单和机器映像的源。