Security control apparatus and method for cloud-based virtual desktop

    公开(公告)号:US09674143B2

    公开(公告)日:2017-06-06

    申请号:US14474242

    申请日:2014-09-01

    IPC分类号: H04L29/06 H04L12/22 H04L12/26

    摘要: The security control apparatus includes a network control unit for receiving a security protocol-based packet that includes a protocol control header and data and that is transmitted between a cloud-based virtual desktop interaction remote agent unit and a virtual machine of a cloud-based virtual desktop interaction device, and blocking network traffic between cloud-based virtual desktop interaction remote agent unit and the virtual machine, depending on received results of checking. A policy checking unit checks whether information extracted from the security protocol-based packet is compliant with control policies, and transmits results of checking to the network control unit. If the information is not compliant with the control policies, a security solution interaction unit transmits the extracted information to an external security solution, and transmits results of checking by a corresponding security solution to the network control unit.

    Information Display Regarding Playback Queue Subscriptions
    5.
    发明申请
    Information Display Regarding Playback Queue Subscriptions 有权
    关于播放队列订阅的信息显示

    公开(公告)号:US20160291924A1

    公开(公告)日:2016-10-06

    申请号:US14674384

    申请日:2015-03-31

    申请人: Sonos, Inc.

    摘要: An example non-transitory computer-readable medium stores instructions that, when executed by a control device, cause the control device to perform functions. The functions comprise configuring a first playback device associated with a first user-account to (i) play media content from a playback queue comprising one or more audio tracks stored at a network location and (ii) enable one or more other user-accounts associated with other playback devices to subscribe to the playback queue. The functions further comprise receiving an indication that a second user-account associated with a second playback device has subscribed to the playback queue. The functions further comprise in response to receiving the indication, displaying a subscriber indicator on the control device showing that the second user-account has subscribed to the playback queue. An example control device and an example method, both related to the example non-transitory computer-readable medium, are also disclosed herein.

    摘要翻译: 示例性非暂时计算机可读介质存储当由控制设备执行时使控制设备执行功能的指令。 这些功能包括配置与第一用户帐户相关联的第一回放设备以(i)从包括存储在网络位置的一个或多个音频轨道的播放队列播放媒体内容,以及(ii)启用一个或多个与其相关联的其他用户帐户 与其他播放设备订阅播放队列。 这些功能还包括接收与第二播放设备相关联的第二用户帐户订阅了回放队列的指示。 功能还包括响应于接收到指示,在控制设备上显示用户指示符,显示第二用户帐户已订阅回放队列。 本文还公开了与示例性非暂时性计算机可读介质相关的示例性控制设备和示例性方法。

    Industrial automation system and method for safeguarding the system
    6.
    发明授权
    Industrial automation system and method for safeguarding the system 有权
    工业自动化系统及其保护方法

    公开(公告)号:US09124581B2

    公开(公告)日:2015-09-01

    申请号:US13739696

    申请日:2013-01-11

    摘要: An industrial automation system comprising a digital fingerprint that is allocated to a unit requesting access to the automation system and which is based on one or more parameters of a communication between the unit and a fingerprint-determining component of the automation system, wherein the industrial automation system additional comprises the fingerprint-determining component which, during the operation of the automation system, grants the requesting unit access to the automation system and compares the determined fingerprint of the requesting unit with a stored fingerprint.

    摘要翻译: 一种工业自动化系统,包括分配给请求访问自动化系统的单元的数字指纹,并且该数字指纹基于该单元与自动化系统的指纹确定组件之间的通信的一个或多个参数,其中工业自动化 系统附加包括指纹确定组件,其在自动化系统的操作期间授权请求单元访问自动化系统,并将确定的请求单元的指纹与存储的指纹进行比较。

    SECURE MOBILE COMMUNICATION RELAY HAVING FIREWALL FUNCTION
    7.
    发明申请
    SECURE MOBILE COMMUNICATION RELAY HAVING FIREWALL FUNCTION 有权
    具有防火功能的安全移动通信继电器

    公开(公告)号:US20150200913A1

    公开(公告)日:2015-07-16

    申请号:US14426165

    申请日:2012-09-11

    申请人: In-Young Jeon

    发明人: In-Young Jeon

    IPC分类号: H04L29/06

    摘要: The secure mobile communication relay of the present invention may comprise: a baseband processing unit for the baseband modulation/demodulation of the mobile communication signal transmitted between a terminal and a mobile communication network base station so as to extract baseband data; a control unit for analyzing the baseband data and permitting or rejecting the relay of the baseband data based on the result of a determination of whether or not a set security policy has been violated; a storage unit for storing information for setting the security policy; and a firewall function unit for determining, based on the instructions of the control unit, whether or not the packet data included in the baseband data violates the security policy.

    摘要翻译: 本发明的安全移动通信中继器可以包括:基带处理单元,用于在终端和移动通信网络基站之间传输的移动通信信号的基带调制/解调,以提取基带数据; 控制单元,用于基于是否已经违反了设定的安全策略的确定结果,分析基带数据并允许或拒绝基带数据的中继; 用于存储用于设置安全策略的信息的存储单元; 以及防火墙功能单元,用于基于控制单元的指令来确定包括在基带数据中的分组数据是否违反安全策略。

    Telecommunication method, computer program product and computer system
    9.
    发明授权
    Telecommunication method, computer program product and computer system 有权
    电信方法,计算机程序产品和计算机系统

    公开(公告)号:US08726360B2

    公开(公告)日:2014-05-13

    申请号:US13120983

    申请日:2009-09-04

    IPC分类号: H04L9/00 H04L9/32

    摘要: The invention relates to a telecommunication method having the following steps: establishing a first connection (101) between a first ID token (106) and a first computer system (136) via a second computer system (100) for reading at least one first attribute from the first ID token, generating a first soft token, wherein the first soft token comprises the at least one first attribute and a time specification, and wherein the first soft token is signed by the first computer system, sending the first soft token from the first computer system to a third computer system (150), wherein the first connection is a connection with end-to-end encryption.

    摘要翻译: 本发明涉及一种具有以下步骤的电信方法:经由第二计算机系统(100)在第一ID令牌(106)和第一计算机系统(136)之间建立第一连接(101),用于读取至少一个第一属性 从所述第一ID令牌生成第一软令牌,其中所述第一软令牌包括所述至少一个第一属性和时间规范,并且其中所述第一软令牌由所述第一计算机系统签名,从所述第一软令牌发送所述第一软令牌 第一计算机系统到第三计算机系统(150),其中所述第一连接是与端到端加密的连接。