Determining server resources accessible to client nodes using information received at the server via a communications medium
    1.
    发明授权
    Determining server resources accessible to client nodes using information received at the server via a communications medium 失效
    使用通过通信介质在服务器接收的信息来确定客户机节点可访问的服务器资源

    公开(公告)号:US07451219B2

    公开(公告)日:2008-11-11

    申请号:US10702179

    申请日:2003-11-05

    IPC分类号: G06F13/00

    CPC分类号: G06F21/6218

    摘要: Resources of a server node are logically divided into a plurality of sets of resources. At least one set of resources is assigned to one or more client nodes. The association of the at least one set of resources with the one or more client nodes is via a data structure stored at the server node. The data structure is provided by a trusted agent over a communications medium coupling the server node and the one or more client nodes. It includes information that indicates the resources accessible by the client nodes. To access the information, an identifier, also provided by a trusted agent, is employed.

    摘要翻译: 服务器节点的资源在逻辑上被划分为多组资源。 至少一组资源被分​​配给一个或多个客户端节点。 至少一组资源与一个或多个客户端节点的关联是经由存储在服务器节点处的数据结构。 数据结构由可信代理通过耦合服务器节点和一个或多个客户端节点的通信介质提供。 它包括指示客户机节点可访问的资源的信息。 为了访问信息,使用也由可信代理提供的标识符。

    Supervisor partitioning of client resources
    2.
    发明授权
    Supervisor partitioning of client resources 失效
    主管分割客户资源

    公开(公告)号:US07720907B2

    公开(公告)日:2010-05-18

    申请号:US12140489

    申请日:2008-06-17

    IPC分类号: G06F15/16

    摘要: A system for supervisor partitioning of client resources in a subnet communications environment includes a plurality of client nodes, each receiving an allocated set of resources determined by a central authority, which assigns resources to a supervisor key associated with each supervisor of the plurality of client nodes. At each of the client nodes, the allocated set of resources are partitioned using a local supervisor associated therewith, with each supervisor associating one or more resource keys with one or more resources allocated to the corresponding client node, and assigning the one or more resource keys to the one or more applications. The supervisor keys are configured so as to prevent a given supervisor from partitioning resources not allocated to the client node associated therewith. Following the partitioning, communication packets are issued from the one or more applications to a resource provider node without inspection by the corresponding supervisor.

    摘要翻译: 用于子网通信环境中的客户端资源的管理员划分的系统包括多个客户端节点,每个客户端节点接收由中央管理机构确定的一组分配的资源,该资源将资源分配给与多个客户端节点中的每个主管相关联的管理员密钥 。 在每个客户端节点处,使用与其相关联的本地监督器对所分配的一组资源进行分区,每个主管将一个或多个资源密钥与分配给相应的客户机节点的一个或多个资源相关联,并且分配一个或多个资源密钥 到一个或多个应用程序。 管理员密钥被配置为防止给定的管理员分配未分配给与其相关联的客户机节点的资源。 在分区之后,通信分组从一个或多个应用发布到资源提供商节点,而不需要相应的主管的检查。

    Method and system for supervisor partitioning of client resources
    3.
    发明授权
    Method and system for supervisor partitioning of client resources 失效
    客户资源管理员划分的方法和系统

    公开(公告)号:US07499970B2

    公开(公告)日:2009-03-03

    申请号:US10986577

    申请日:2004-11-12

    IPC分类号: G06F15/13

    摘要: A method for supervisor partitioning of client resources in a communications environment includes receiving, at a client node, an allocated set of resources over a communications network, and partitioning the allocated set of resources among one or more applications associated with the client node using a local authority. Following the partitioning, communication requests are issued from the one or more applications to a shared resource provider node without inspection by the local authority.

    摘要翻译: 一种用于在通信环境中的客户端资源的管理程序划分的方法包括:在客户端节点处,通过通信网络接收所分配的一组资源,以及使用本地的方式在与客户机节点相关联的一个或多个应用中分配所分配的一组资源 权威。 在分区之后,通信请求从一个或多个应用发布到共享资源提供者节点而不经地方当局的检查。

    SUPERVISOR PARTITIONING OF CLIENT RESOURCES
    4.
    发明申请
    SUPERVISOR PARTITIONING OF CLIENT RESOURCES 失效
    监督客户资源分配

    公开(公告)号:US20080250125A1

    公开(公告)日:2008-10-09

    申请号:US12140489

    申请日:2008-06-17

    IPC分类号: G06F15/177

    摘要: A system for supervisor partitioning of client resources in a subnet communications environment includes a plurality of client nodes, each receiving an allocated set of resources determined by a central authority, which assigns resources to a supervisor key associated with each supervisor of the plurality of client nodes. At each of the client nodes, the allocated set of resources are partitioned using a local supervisor associated therewith, with each supervisor associating one or more resource keys with one or more resources allocated to the corresponding client node, and assigning the one or more resource keys to the one or more applications. The supervisor keys are configured so as to prevent a given supervisor from partitioning resources not allocated to the client node associated therewith. Following the partitioning, communication packets are issued from the one or more applications to a resource provider node without inspection by the corresponding supervisor.

    摘要翻译: 用于子网通信环境中的客户端资源的管理员划分的系统包括多个客户端节点,每个客户端节点接收由中央管理机构确定的一组分配的资源,该资源将资源分配给与多个客户端节点中的每个主管相关联的管理员密钥 。 在每个客户端节点处,使用与其相关联的本地监督器对所分配的一组资源进行分区,每个主管将一个或多个资源密钥与分配给相应的客户机节点的一个或多个资源相关联,并且分配一个或多个资源密钥 到一个或多个应用程序。 管理员密钥被配置为防止给定的管理员分配未分配给与其相关联的客户机节点的资源。 在分区之后,通信分组从一个或多个应用发布到资源提供商节点,而不需要相应的主管的检查。

    Authenticating a requestor without providing a key
    5.
    发明授权
    Authenticating a requestor without providing a key 失效
    验证请求者而不提供密钥

    公开(公告)号:US08015243B2

    公开(公告)日:2011-09-06

    申请号:US12168201

    申请日:2008-07-07

    IPC分类号: G06F15/16

    摘要: A method for authenticating a requesting entity in a communications environment. In an exemplary embodiment, the method includes determining a client identification of a client node associated with the requesting entity, and determining whether the requesting entity associated with the client node is acting in a supervisor capacity. A key to the requesting entity is returned from a resource provider node upon determining that the client identification of the client node indicates that the client node is permitted to access one or more resources of the provider node, and that the client node is acting in a supervisor capacity.

    摘要翻译: 一种用于在通信环境中认证请求实体的方法。 在示例性实施例中,该方法包括确定与请求实体相关联的客户端节点的客户端标识,以及确定与客户端节点相关联的请求实体是否以监督能力行事。 在确定客户端节点的客户端标识指示客户端节点被允许访问提供商节点的一个或多个资源,并且客户端节点正在执行时,从资源提供商节点返回请求实体的密钥 主管能力。

    Authenticating a Requestor Without Providing a Key
    6.
    发明申请
    Authenticating a Requestor Without Providing a Key 失效
    验证请求者而不提供密钥

    公开(公告)号:US20080271133A1

    公开(公告)日:2008-10-30

    申请号:US12168201

    申请日:2008-07-07

    IPC分类号: H04L9/32

    摘要: A method for authenticating a requesting entity in a communications environment. In an exemplary embodiment, the method includes determining a client identification of a client node associated with the requesting entity, and determining whether the requesting entity associated with the client node is acting in a supervisor capacity. A key to the requesting entity is returned from a resource provider node upon determining that the client identification of the client node indicates that the client node is permitted to access one or more resources of the provider node, and that the client node is acting in a supervisor capacity.

    摘要翻译: 一种用于在通信环境中认证请求实体的方法。 在示例性实施例中,该方法包括确定与请求实体相关联的客户端节点的客户端标识,以及确定与客户端节点相关联的请求实体是否以监督能力行事。 在确定客户端节点的客户端标识指示客户端节点被允许访问提供商节点的一个或多个资源,并且客户端节点正在执行时,从资源提供商节点返回请求实体的密钥 主管能力。

    Method and system for authenticating a requestor without providing a key
    7.
    发明授权
    Method and system for authenticating a requestor without providing a key 有权
    用于在不提供密钥的情况下认证请求者的方法和系统

    公开(公告)号:US07437447B2

    公开(公告)日:2008-10-14

    申请号:US10987280

    申请日:2004-11-12

    IPC分类号: G06F15/16

    摘要: A method for authenticating a requesting entity in a communications environment. In an exemplary embodiment, the method includes determining a client identification of a client node associated with the requesting entity, and determining whether the requesting entity associated with the client node is acting in a supervisor capacity. A key to the requesting entity is returned from a resource provider node upon determining that the client identification of the client node indicates that the client node is permitted to access one or more resources of the provider node, and that the client node is acting in a supervisor capacity.

    摘要翻译: 一种用于在通信环境中认证请求实体的方法。 在示例性实施例中,该方法包括确定与请求实体相关联的客户端节点的客户端标识,以及确定与客户端节点相关联的请求实体是否以监督能力行事。 在确定客户端节点的客户端标识指示客户端节点被允许访问提供商节点的一个或多个资源,并且客户端节点正在执行时,从资源提供商节点返回请求实体的密钥 主管能力。

    Authenticating a requestor without providing a key
    8.
    发明授权
    Authenticating a requestor without providing a key 失效
    验证请求者而不提供密钥

    公开(公告)号:US07818413B2

    公开(公告)日:2010-10-19

    申请号:US12168198

    申请日:2008-07-07

    IPC分类号: G06F15/16

    摘要: A system for authenticating a requesting entity in a subnet communications environment includes determining a client identification of a client node associated with the requesting entity, and determining whether the requesting entity associated with the client node is acting in a supervisor capacity. A key to the requesting entity is returned from a resource provider node upon determining that the client identification of the client node indicates that the client node is permitted to access one or more resources of the provider node, and that the client node is acting in a supervisor capacity.

    摘要翻译: 用于在子网通信环境中认证请求实体的系统包括确定与请求实体相关联的客户端节点的客户端标识,以及确定与客户端节点相关联的请求实体是否以监督能力行事。 在确定客户端节点的客户端标识指示客户端节点被允许访问提供商节点的一个或多个资源,并且客户端节点正在执行时,从资源提供商节点返回请求实体的密钥 主管能力。

    Authenticating a Requestor Without Providing a Key
    9.
    发明申请
    Authenticating a Requestor Without Providing a Key 失效
    验证请求者而不提供密钥

    公开(公告)号:US20080271125A1

    公开(公告)日:2008-10-30

    申请号:US12168198

    申请日:2008-07-07

    IPC分类号: H04L9/32 G06F15/173

    摘要: A system for authenticating a requesting entity in a subnet communications environment includes determining a client identification of a client node associated with the requesting entity, and determining whether the requesting entity associated with the client node is acting in a supervisor capacity. A key to the requesting entity is returned from a resource provider node upon determining that the client identification of the client node indicates that the client node is permitted to access one or more resources of the provider node, and that the client node is acting in a supervisor capacity.

    摘要翻译: 用于在子网通信环境中认证请求实体的系统包括确定与请求实体相关联的客户端节点的客户端标识,以及确定与客户端节点相关联的请求实体是否以监督能力行事。 在确定客户端节点的客户端标识指示客户端节点被允许访问提供商节点的一个或多个资源,并且客户端节点正在执行时,从资源提供商节点返回请求实体的密钥 主管能力。

    Converged infiniband over ethernet network
    10.
    发明授权
    Converged infiniband over ethernet network 失效
    通过以太网网络融合infiniband

    公开(公告)号:US08165138B2

    公开(公告)日:2012-04-24

    申请号:US11950055

    申请日:2007-12-04

    IPC分类号: H04L12/28 H04L12/56

    摘要: A method of providing a converged InfiniBand over Ethernet (IBOE) network. An IBOE switch receives a data packet. If the data packet is received by the IBOE switch from the InfiniBand network, a translation utility looks up an Ethernet media access control (MAC) address corresponding to an LID of the packet in a translation table. The translation utility generates an Ethernet packet and encapsulates an InfiniBand link layer packet before sending the packet. If the data packet is received by the IBOE switch from the Ethernet network, the translation utility removes the Ethernet header from the packet and looks up a LID corresponding to the MAC address. The translation utility calculates an outbound port number and sends the packet.

    摘要翻译: 提供融合式InfiniBand over Ethernet(IBOE)网络的方法。 IBOE交换机接收数据包。 如果IBOE交换机从InfiniBand网络接收到数据分组,则转换实用程序在转换表中查找与分组的LID相对应的以太网媒体访问控制(MAC)地址。 翻译实用程序在发送数据包之前生成以太网数据包并封装InfiniBand链路层数据包。 如果IBOE交换机从以太网接收到数据包,则转换实用程序从数据包中删除以太网报头,并查找与MAC地址对应的LID。 翻译实用程序计算出站端口号并发送数据包。