System and method of adaptively reconfiguring buffers
    1.
    发明申请
    System and method of adaptively reconfiguring buffers 有权
    自适应重新配置缓冲区的系统和方法

    公开(公告)号:US20050086448A1

    公开(公告)日:2005-04-21

    申请号:US10687259

    申请日:2003-10-16

    IPC分类号: G06F12/00 G06F12/02

    CPC分类号: G06F12/023

    摘要: A system and method of adaptively reconfiguring a pool of buffers are provided. The buffers are initially configured to a size (i.e., a current size). Each time data is placed in the buffers by an application program, it is determined whether the size of the data is greater than the current size of the buffers. If the size of the data is greater than the current size of the buffers, the buffers are reconfigured to the size of the data if the number of times data of that size is stored in the buffers is greater than a first threshold. If, however, the size of the data is smaller than the current size of the buffers, the buffers may be reconfigured to the size of the data if the number of times data of that size is stored in the buffers is smaller than a second threshold.

    摘要翻译: 提供了一种自适应地重新配置缓冲器池的系统和方法。 缓冲器最初被配置成一个大小(即当前大小)。 每当通过应用程序将数据放置在缓冲器中时,确定数据的大小是否大于缓冲器的当前大小。 如果数据的大小大于缓冲区的当前大小,则如果缓冲区中存储该大小的数据的次数大于第一阈值,则将缓冲区重新配置为数据的大小。 然而,如果数据的大小小于缓冲器的当前大小,则如果缓冲器中存储该大小的数据的次数小于第二阈值,则可以将缓冲器重新配置为数据的大小 。

    System and method of dynamically weighted analysis for intrusion decison-making
    2.
    发明申请
    System and method of dynamically weighted analysis for intrusion decison-making 有权
    入侵判定动态权重分析系统和方法

    公开(公告)号:US20070169195A1

    公开(公告)日:2007-07-19

    申请号:US11334672

    申请日:2006-01-18

    IPC分类号: G06F12/14 G08B19/00

    CPC分类号: H04L63/1416 G06F21/55

    摘要: An intrusion detection mechanism is provided for flexible, automatic, thorough, and consistent security checking and vulnerability resolution in a heterogeneous environment. The mechanism may provide a predefined number of default intrusion analysis approaches, such as signature-based, anomaly-based, scan-based, and danger theory. The intrusion detection mechanism also allows a limitless number of intrusion analysis approaches to be added on the fly. Using an intrusion detection skin, the mechanism allows various weights to be assigned to specific intrusion analysis approaches. The mechanism may adjust these weights dynamically. The score ration can be tailored to determine if an intrusion occurred and adjusted dynamically. Also, multiple security policies for any type of computing element may be enforced.

    摘要翻译: 提供入侵检测机制,用于在异构环境中进行灵活,自动,彻底,一致的安全检查和漏洞解决。 该机制可以提供预定义数量的默认入侵分析方法,例如基于签名的,基于异常的,基于扫描的和危险理论。 入侵检测机制还允许在飞行中添加无限数量的入侵分析方法。 使用入侵检测皮肤,该机制允许将各种权重分配给特定的入侵分析方法。 该机制可以动态地调整这些权重。 可以定制分数比例以确定入侵是否发生并动态调整。 此外,可以强制执行用于任何类型的计算元件的多个安全策略。

    Adaptive intrusion detection for autonomic systems
    3.
    发明申请
    Adaptive intrusion detection for autonomic systems 审中-公开
    自主系统的自适应入侵检测

    公开(公告)号:US20060129382A1

    公开(公告)日:2006-06-15

    申请号:US11351062

    申请日:2006-02-09

    IPC分类号: G06F17/27

    CPC分类号: G06F21/552

    摘要: A system, method, and computer program product for adaptively identifying unauthorized intrusions in a networked data processing system. In accordance with the method of the present invention, an intrusion detection module receives system event data that may be utilized for intrusion detection. The received system event data is processed utilizing multiple intrusion detection techniques including at least one behavior-based intrusion detection technique to generate an intrusion detection result. In response to the intrusion detection result indicating an unauthorized intrusion, at least one knowledge-based intrusion detection corpus is updated utilizing the system event data. In a preferred embodiment, the intrusion detection system/method is implemented in a network data processing environment in which the knowledge-based intrusion detection corpus is communicatively accessible by multiple elements coupled to the networked data processing system. The method preferably includes issuing a network update to update knowledge-based intrusion detection corpora associated with the multiple elements included in the network.

    摘要翻译: 一种用于在联网数据处理系统中自适应地识别未经授权的入侵的系统,方法和计算机程序产品。 根据本发明的方法,入侵检测模块接收可用于入侵检测的系统事件数据。 使用多个入侵检测技术来处理所接收的系统事件数据,该技术包括至少一个基于行为的入侵检测技术以产生入侵检测结果。 响应于表示未授权入侵的入侵检测结果,利用系统事件数据来更新至少一个基于知识的入侵检测语料库。 在优选实施例中,入侵检测系统/方法在网络数据处理环境中实现,其中基于知识的入侵检测语料库可由耦合到联网数据处理系统的多个元件通信地访问。 该方法优选地包括发布网络更新以更新与包括在网络中的多个元素相关联的基于知识的入侵检测语料库。

    System and method of improved large page handling in a virtual memory system
    4.
    发明申请
    System and method of improved large page handling in a virtual memory system 失效
    改进虚拟内存系统中大页面处理的系统和方法

    公开(公告)号:US20060259735A1

    公开(公告)日:2006-11-16

    申请号:US11127922

    申请日:2005-05-12

    IPC分类号: G06F13/28 G06F12/00

    摘要: A system and method of improved handling of large pages in a virtual memory system. A data memory management unit (DMMU) detects sequential access of a first sub-page and a second sub-page out of a set of sub-pages that comprise a same large page. Then, the DMMU receives a request for the first sub-page and in response to such a request, the DMMU instructs a pre-fetch engine to pre-fetch at least the second sub-page if the number of detected sequential accesses equals or exceeds a predetermined value.

    摘要翻译: 改进虚拟存储器系统中大页面处理的系统和方法。 数据存储器管理单元(DMMU)检测包括相同大页面的一组子页面中的第一子页面和第二子页面的顺序访问。 然后,DMMU接收对第一子页面的请求,并且响应于这样的请求,如果检测到的顺序访问的数量等于或超过,则DMMU指示预取引擎至少预取第二子页面 预定值。

    System, apparatus and method of adaptively queueing processes for execution scheduling
    5.
    发明申请
    System, apparatus and method of adaptively queueing processes for execution scheduling 审中-公开
    用于执行调度的自适应排队过程的系统,装置和方法

    公开(公告)号:US20060037021A1

    公开(公告)日:2006-02-16

    申请号:US10916982

    申请日:2004-08-12

    IPC分类号: G06F9/46

    CPC分类号: G06F9/4881

    摘要: A system, apparatus and method of adaptively queueing processes for execution scheduling are provided. When a process yields its processor to another process, it is generally placed in a queue before it is re-scheduled for execution. If it is re-scheduled for execution within a longer period of time than needed, the next time it has to be placed in a queue, it will be placed in a queue or at a location in a queue where it will be scheduled for execution in a shorter amount of time. If it is re-scheduled for execution within a period of time that is shorter than needed, the next time it has to be placed in a queue, it will be placed in a queue or at a location in a queue where it will be scheduled for execution within a longer period of time.

    摘要翻译: 提供了一种用于执行调度的自适应排队处理的系统,装置和方法。 当一个进程将其处理器产生到另一个进程时,它通常在重新计划执行之前放在队列中。 如果重新计划在比所需的更长的时间段内执行,则下一次它必须被放置在队列中时,它将被放置在队列中或队列中将被调度执行的位置 在更短的时间内。 如果在比所需时间短的一段时间内重新计划执行,则下一次必须将其放入队列中时,它将被放置在队列中或将在其中排定的队列中的位置 在更长的时间内执行。

    Adaptive scheduler using inherent knowledge of operating system subsystems for managing resources in a data processing system
    6.
    发明申请
    Adaptive scheduler using inherent knowledge of operating system subsystems for managing resources in a data processing system 有权
    自适应调度器使用操作系统子系统的固有知识来管理数据处理系统中的资源

    公开(公告)号:US20060031841A1

    公开(公告)日:2006-02-09

    申请号:US10912495

    申请日:2004-08-05

    IPC分类号: G06F9/46

    CPC分类号: G06F9/50

    摘要: Method, system and computer program product for managing resources in a data processing system. Knowledge provided by each subsystem of a plurality of subsystems of an operating system regarding behavior of the subsystem is shared by other subsystems of the operating system, and the shared knowledge, together with existing functional characteristics of the subsystems is used by the operating system to more efficiently manage resources in the data processing system.

    摘要翻译: 用于管理数据处理系统资源的方法,系统和计算机程序产品。 由操作系统的多个子系统的每个子系统提供的关于子系统的行为的知识由操作系统的其他子系统共享,共享知识以及子系统的现有功能特征被操作系统用于更多 有效管理数据处理系统中的资源。

    Method and system for tracking a data processing system within a communications network
    7.
    发明申请
    Method and system for tracking a data processing system within a communications network 审中-公开
    用于跟踪通信网络内的数据处理系统的方法和系统

    公开(公告)号:US20070136580A1

    公开(公告)日:2007-06-14

    申请号:US11301108

    申请日:2005-12-12

    IPC分类号: H04L9/00

    CPC分类号: H04L9/0897 H04L2209/80

    摘要: A method and system for tracking a data processing system within a communications network are provided. According to one embodiment, a method is provided comprising receiving identity data from a data processing system via a communications network, where the data processing system comprises a security processing element associated with a secure storage element and the identity data specifies a portion of a security processing element endorsement key stored within the secure storage element. The described method embodiment further comprises identifying the data processing system utilizing the identity data and causing corresponding recovery data to be stored in response to an identification of the data processing system, where the recovery data comprises an associated network connection address.

    摘要翻译: 提供了一种用于跟踪通信网络内的数据处理系统的方法和系统。 根据一个实施例,提供了一种方法,包括经由通信网络从数据处理系统接收身份数据,其中所述数据处理系统包括与安全存储元件相关联的安全处理元件,并且所述身份数据指定安全处理的一部分 存储在安全存储元件内的元素认可密钥。 所描述的方法实施例还包括利用身份数据识别数据处理系统,并响应于数据处理系统的标识而使对应的恢复数据被存储,其中恢复数据包括相关的网络连接地址。

    Method and system for controlling peripheral adapter interrupt frequency by transferring processor load information to the peripheral adapter
    8.
    发明申请
    Method and system for controlling peripheral adapter interrupt frequency by transferring processor load information to the peripheral adapter 审中-公开
    通过将处理器负载信息传送到外设适配器来控制外设适配器中断频率的方法和系统

    公开(公告)号:US20060064529A1

    公开(公告)日:2006-03-23

    申请号:US10948411

    申请日:2004-09-23

    IPC分类号: G06F13/24

    CPC分类号: G06F13/24

    摘要: A method and system for controlling interrupt frequency by transferring processor load information to a peripheral adapter provides adaptive interrupt latency to improve performance in a processing system. A device driver obtains current processor load information from an operating system or directly from processor usage counters. The estimated processor load is then used to set a parameter in the adapter that controls the frequency of an interrupt generator, which may be controlled by setting an interrupt queue depth threshold, packet frequency threshold or interrupt hold-off time value. The result is that the relative frequency of interrupts is managed in conformity with the current processor load, provide reduced processing latency when the system is relatively idle, which avoids loading the processor with additional interrupt processing overhead when the processor is busy.

    摘要翻译: 通过将处理器负载信息传送到外围适配器来控制中断频率的方法和系统提供了自适应中断等待时间以提高处理系统中的性能。 设备驱动程序从操作系统或直接从处理器使用计数器获取当前处理器负载信息。 然后,估计的处理器负载用于设置控制中断发生器频率的适配器中的参数,该参数可以通过设置中断队列深度阈值,数据包频率阈值或中断缓存时间值来控制。 结果是根据当前的处理器负载来管理中断的相对频率,当系统相对空闲时,提供减少的处理延迟,这避免了当处理器繁忙时加载具有额外中断处理开销的处理器。

    System, method and program for management of users, groups, servers and resources in a heterogeneous network environment
    10.
    发明授权
    System, method and program for management of users, groups, servers and resources in a heterogeneous network environment 失效
    用于在异构网络环境中管理用户,组,服务器和资源的系统,方法和程序

    公开(公告)号:US06748436B1

    公开(公告)日:2004-06-08

    申请号:US09564824

    申请日:2000-05-04

    IPC分类号: G06F1300

    CPC分类号: H04L41/0226

    摘要: A system, method, and program for managing users, groups, servers, and resources in a heterogeneous network environment are disclosed. The network environment includes a configuration server coupled to a number of deployment servers, which each operates under a specific platform. In response to receipt of a generic command for management of a user, group, server, or resource by the configuration server, a determination is made based on pre-assignment as to which one of the deployment servers is the appropriate deployment server that is to receive the generic command. The generic command is mapped to a specific-platform command executable under the respective specific platform of the appropriate deployment server. The specific-platform command is executed by the appropriate deployment server to complete a task for performing the generic command. In a preferred embodiment, a set of generic commands for managing the users, groups, servers, and resources in the heterogeneous networked environment is defined. The set of generic commands is correlated to sets of specific-platform commands for different specific platforms. One of the sets of specific-platform commands is determined for a respective specific platform. The specific-platform command is identified within the set of specific-platform commands that is correlated to the generic command being processed by the deployment server.

    摘要翻译: 公开了一种用于在异构网络环境中管理用户,组,服务器和资源的系统,方法和程序。 网络环境包括耦合到多个部署服务器的配置服务器,每个部署服务器各自在特定平台下操作。 响应于由配置服务器接收用于管理用户,组,服务器或资源的通用命令,基于对所述部署服务器中的哪个部署服务器是适当的部署服务器的预先分配进行确定 接收通用命令。 通用命令映射到相应部署服务器的相应特定平台下的特定平台命令可执行文件。 特定平台命令由相应的部署服务器执行,以完成执行通用命令的任务。 在优选实施例中,定义了用于管理异构网络环境中的用户,组,服务器和资源的一组通用命令。 通用命令集与不同特定平台的特定平台命令集相关。 为各个特定平台确定特定平台命令集之一。 特定平台命令在与通过部署服务器处理的通用命令相关的特定平台命令集中进行标识。