会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • AUGMENTED DEPLOYMENT SPECIFICATION FOR SOFTWARE COMPLIANCE
    • 有关软件合规的授权部署规范
    • WO2014202933A1
    • 2014-12-24
    • PCT/GB2014/000230
    • 2014-06-12
    • BRITISH TELECOMMUNICATIONS public limited company
    • DIMITRAKOS, TheoGEORGALAS, NektariosEL-MOUSSA, FadiPAWAR, PramodVAFIADIS, George
    • G06F9/44G06F11/30
    • G06F8/60G06F8/61G06F8/70G06F9/45533G06F11/00G06F11/30
    • A method of augmenting a deployment specification for a software application to determine a level of compliance of the application with a compliance characteristic, the deployment specification being suitable for identifying a resource required to execute the software application in a virtualised computing environment, the method comprising: receiving a definition of the compliance characteristic as a set of compliance criteria concerning the resource, wherein satisfaction of the compliance criteria during execution of the software application is suitable for determining the level of compliance of the software application with the compliance characteristic; selecting at least one software component from a library of components based on the definition of the compliance characteristic, the software component being operable to determine a state of satisfaction of at least a subset of the set of criteria for the compliance characteristic; and modifying the deployment specification to identify the at least one selected software component such that, on execution of the application, the level of compliance of the application with the compliance characteristic is determined.
    • 一种增强软件应用程序的部署规范以确定具有合规特性的应用程序的一致性级别的方法,所述部署规范适合于识别在虚拟化计算环境中执行所述软件应用所需的资源,所述方法包括: 接收关于符合性特征的定义作为关于资源的合规性标准的集合,其中在执行软件应用期间满足遵从标准适合于确定软件应用程序具有合规特性的合规级别; 基于所述合规性特征的定义从组件库中选择至少一个软件组件,所述软件组件可操作以确定所述一致性特征的所述一组标准中的至少一个子集的满足状态; 以及修改所述部署规范以识别所述至少一个所选择的软件组件,使得在执行所述应用时确定所述应用与所述符合性特征的一致性水平。
    • 2. 发明申请
    • APPLICATION BROKER FOR MULTIPLE VIRTUALISED COMPUTING ENVIRONMENTS
    • 多个虚拟计算环境的应用程序代理
    • WO2014202929A1
    • 2014-12-24
    • PCT/GB2014/000226
    • 2014-06-12
    • BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY
    • DIMITRAKOS, TheoGEORGALAS, NektariosPAWAR, Pramod
    • G06F9/44G06F11/30
    • G06F8/64G06F8/61G06F9/45533
    • A method for deploying a software application for execution, the method comprising: receiving an application specification for the application, the application specification including an identification of one or more resources required for execution of the application; receiving a set of infrastructure specifications, each infrastructure specification including an identification of one or more resources associated with a virtualised computing environment in a set of virtualised computing environments; receiving a set of compliance characteristics for the application, each compliance characteristic including one or more criteria, each of the criteria being based on one or more formal parameters concerning a resource; receiving a set of software component definitions, each software component definition including one or more of: a) an indication of one or more actual parameters the software component is operable to provide; and b) an indication of one or more virtualised computing environments in the set of virtualised computing environments with which the software component is operable to execute; selecting, for each of the resources identified in the application specification, a virtualised computing environment based on the set of infrastructure specifications, the set of compliance characteristics and the set of software component definitions, wherein the selected virtualised computing environments are operable to generate actual parameters corresponding to one or more formal parameters for the criteria such that a measure of a number of evaluable criteria meets a predetermined threshold.
    • 一种用于部署用于执行的软件应用的方法,所述方法包括:接收所述应用的应用规范,所述应用规范包括执行所述应用所需的一个或多个资源的标识; 接收一组基础设施规范,每个基础设施规范包括在一组虚拟化计算环境中与虚拟化计算环境相关联的一个或多个资源的标识; 接收针对所述应用的一组遵从性特征,每个合规性特征包括一个或多个标准,所述标准中的每一个都基于关于资源的一个或多个形式参数; 接收一组软件组件定义,每个软件组件定义包括以下中的一个或多个:a)软件组件可操作以提供的一个或多个实际参数的指示; 以及b)所述虚拟化计算环境集合中的一个或多个虚拟化计算环境的指示,所述软件组件可通过该虚拟化计算环境来执行; 基于所述一组基础架构规范,所述一致性特征和所述一组软件组件定义,为所述应用规范中识别的每个资源选择虚拟化计算环境,其中,所选择的虚拟化计算环境可操作以生成实际参数 对应于用于标准的一个或多个形式参数,使得可评估标准的数量的度量满足预定阈值。
    • 3. 发明申请
    • FIREWALL TESTING
    • 防火墙测试
    • WO2014147359A1
    • 2014-09-25
    • PCT/GB2014/000086
    • 2014-03-07
    • BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY
    • KEARNEY, Paul, Joseph
    • H04L29/06
    • H04L63/02
    • The invention provides a method of testing a firewall for a communications network, and an equivalent apparatus. More specifically, the method allows a high-level firewall policy model to be defined based on input provided by a firewall administrator without specialised knowledge in mathematically formal languages. The firewall policy model represents an idealisation of the firewall under test, the firewall policy, and the network environment in which the firewall is deployed. One or more sets of test cases is generated based on the policy mode. The generated test case set includes at least one test case comprising a specification of a packet to be processed by the firewall under test and the expected outcome of processing the packet by a firewall compliant with the policy. Preferably, the generated test case set allows potential failure of the firewall under test to implement the policy correctly to be detected. The test packets specified in the test cases are subsequently provided to the firewall under test for processing. The outcome of the processing is monitored, and the observed packets compared with the expected results to determine whether the firewall under test is functioning according to the firewall policy.
    • 本发明提供了一种用于测试通信网络的防火墙的方法和等效设备。 更具体地说,该方法允许基于防火墙管理员提供的输入来定义高级防火墙策略模型,而无需在数学形式语言中的专门知识。 防火墙策略模型代表了被测防火墙,防火墙策略和部署防火墙的网络环境的理想化。 基于策略模式生成一组或多组测试用例。 生成的测试用例集包括至少一个测试用例,其包括待测试的防火墙要处理的分组的规格以及符合该策略的防火墙处理分组的预期结果。 优选地,所生成的测试用例组允许被测防火墙的潜在故障来实现正确地被检测的策略。 测试案例中指定的测试包随后提供给被测试的防火墙进行处理。 监视处理的结果,并将观察到的数据包与预期结果进行比较,以确定被测防火墙是否根据防火墙策略运行。
    • 5. 发明申请
    • SELECTION OF DATA SOURCES FOR SOFTWARE SERVICES
    • 选择软件服务的数据源
    • WO2015071628A1
    • 2015-05-21
    • PCT/GB2014/000467
    • 2014-11-13
    • BRITISH TELECOMMUNICATIONS public limited company
    • GHANEA-HERCOCK, Robert AlanHEALING, Alexander Laurence
    • G06F9/50G06N5/02G06F17/30
    • G06F17/30657G06F9/5077G06F17/30705
    • A data source software component generator apparatus for generating a representation of one or more data sources for selection from a plurality of data sources to satisfy a data dependency of a software service, each data source including a definition of at least one semantic identifier corresponding to data accessible via the data source, the data sources being represented organised into clusters of multiple data sources based on a semantic association between semantic identifiers of data sources in a cluster, each cluster being represented as one or more data structures, and the data dependency being defined by a specification including one or more semantic identifiers corresponding to data required for execution of the software service, the apparatus comprising: a data source encapsulator unit adapted to encapsulate each cluster as an executable software component; a semantic identifier selection unit adapted to select, from a set of semantic identifiers for all data sources represented in a cluster of a software component, a proper subset of the set of semantic identifiers based on at least one predetermined semantic identifier selection criterion; a software component configuration unit adapted to configure a software component to advertise semantic identifiers to components external to the software component, and provide an interface accessible by components external to the software component, the software component being adapted to deliver data from data sources in the cluster of the software component via the interface, such that, in operation, the apparatus generates and configures executable software components for selection of one or more software components to provide data for the software service based on the advertised semantic identifiers so as to satisfy at least part of the data dependency of the software service.
    • 一种用于生成用于从多个数据源中选择以满足软件服务的数据依赖性的一个或多个数据源的表示的数据源软件组件发生器装置,每个数据源包括与数据对应的至少一个语义标识符的定义 可以通过数据源访问,基于群集中的数据源的语义标识符之间的语义关联,将数据源组织成多个数据源的簇,每个簇被表示为一个或多个数据结构,并且数据依赖被定义 通过包括与执行软件服务所需的数据相对应的一个或多个语义标识符的规范,所述装置包括:数据源封装单元,适于将每个簇封装为可执行软件组件; 语义标识符选择单元,适于从基于至少一个预定语义标识符选择标准的语义标识符集合的适当子集中选择在软件组件的集群中表示的所有数据源的一组语义标识符; 软件组件配置单元,其适于配置软件组件以向所述软件组件外部的组件通告语义标识符,并且提供可由所述软件组件外部的组件访问的接口,所述软件组件适于从所述集群中的数据源传送数据 通过该接口,使得在操作中,该设备生成并配置可执行软件组件,用于选择一个或多个软件组件,以基于所通告的语义标识符为软件服务提供数据,以满足至少部分 的软件服务的数据依赖性。
    • 6. 发明申请
    • CATEGORISING SOFTWARE APPLICATION STATE
    • 分类软件应用程序状态
    • WO2014202930A1
    • 2014-12-24
    • PCT/GB2014/000227
    • 2014-06-12
    • BRITISH TELECOMMUNICATIONS public limited company
    • DIMITRAKOS, TheoGEORGALAS, NektariosEL-MOUSSA, FadiPAWAR, PramodVAFIADIS, George
    • G06F9/44G06F11/30
    • G06F17/30598G06F9/44505G06F9/45533G06F9/5055G06F11/3692G06F2009/45587G06F2009/45591
    • A method for categorising a state of operation of a software application in execution in a virtualised computing environment, the application having associated a set of software components being operable to access data associated with the application, the method comprising the steps of: receiving a set of software application state definitions, each state definition including a definition of an application characteristic having associated criteria based on one or more formal parameters; identifying a set of hypothetical states for the application from the set of state definitions based on the data, wherein the data is used to formulate a set of one or more actual parameters corresponding to formal parameters for criteria associated with one or more of the states in the set of hypothetical states; for each of the states in the set of hypothetical states, in response to a determination that criteria associated with a current state is fully evaluable in the negative, removing the current state from the set of hypothetical states; selecting a candidate state from the set of hypothetical states based on a level of satisfaction of criteria associated with each state in the set of hypothetical states, the candidate state having associated one or more absent formal parameters for which no actual parameter is included in the set of actual parameters; and determining if a level of satisfaction of criteria associated with the candidate state fails to meet a threshold level of satisfaction, and in response to the determination undertaking the steps of: a) adjusting the set of software components such that the set of software components is operable to obtain an improved set of actual parameters associated with the application, the improved set of actual parameters including at least one actual parameter corresponding to an absent formal parameter; and b) repeating the removing, selecting and determining steps.
    • 一种用于对在虚拟化计算环境中执行的软件应用程序的操作状态进行分类的方法,所述应用程序具有关联的一组软件组件,用于访问与所述应用程序相关联的数据,所述方法包括以下步骤:接收一组 软件应用状态定义,每个状态定义包括基于一个或多个形式参数的具有相关联标准的应用特征的定义; 基于所述数据从所述状态定义集合识别所述应用的一组假设状态,其中所述数据用于制定一组一组或多个实际参数,所述一个或多个实际参数对应于与所述状态中的一个或多个状态相关联的标准的形式参数 一组假设状态; 对于一组假设状态中的每个州,为了响应于与当前状态相关联的标准是否完全可评估的确定,将该状态从一组假设状态中移除; 基于与所述假设状态集合中的每个状态相关联的标准的满足程度从所述一组假设状态中选择候选状态,所述候选状态具有相关联的一个或多个缺席形式参数,其中所述集合中不包括实际参数 的实际参数; 以及确定与所述候选状态相关联的标准的满足程度是否满足阈值阈值水平,并且响应于所述确定采取以下步骤:a)调整所述软件组件的集合,使得所述一组软件组件为 可操作以获得与所述应用相关联的改进的实际参数集合,所述改进的实际参数集合包括对应于缺少形式参数的至少一个实际参数; 和b)重复去除,选择和确定步骤。
    • 7. 发明申请
    • CONTROLLED STORAGE DEVICE ACCESS
    • 控制存储设备访问
    • WO2015079196A1
    • 2015-06-04
    • PCT/GB2014/000466
    • 2014-11-13
    • BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY
    • EL- MOUSSA, FadiDIMITRAKOS, TheoVAFIADIS, Georgios
    • G06F21/44
    • H04L9/3226G06F3/0622G06F3/0659G06F3/0673G06F21/44
    • A method for securely accessing a hardware storage device connected to a computer system, the hardware storage device having a unique hardware identifier and the computer system including a processor, the method comprising: an agent software component receiving the identifier of the storage device to authenticate the storage device, wherein the agent executes in an unrestricted mode of operation of the processor such that the agent is a trusted software component; in response to the authentication, the agent accessing a secure data key for encrypting and decrypting data on the storage device, wherein the data key is accessible only to trusted agents executing in the unrestricted mode of the processor such that software executing in a user mode of the processor stores and retrieves data on the storage device only via the agent.
    • 一种用于安全地访问连接到计算机系统的硬件存储设备的方法,所述硬件存储设备具有唯一的硬件标识符,并且所述计算机系统包括处理器,所述方法包括:代理软件组件,接收所述存储设备的标识符, 存储设备,其中所述代理以所述处理器的无限制操作模式执行,使得所述代理是可信软件组件; 响应于认证,代理访问用于加密和解密存储设备上的数据的安全数据密钥,其中数据密钥仅可访问在处理器的无限制模式下执行的信任代理,使得以用户模式执行的软件 处理器只能通过代理在存储设备上存储和检索数据。
    • 9. 发明申请
    • EVALUATING SOFTWARE COMPLIANCE
    • 评估软件合规性
    • WO2014202934A1
    • 2014-12-24
    • PCT/GB2014/000231
    • 2014-06-12
    • BRITISH TELECOMMUNICATIONS public limited company
    • DIMITRAKOS, TheoGEORGALAS, NektariosEL-MOUSSA, FadiPAWAR, PramodVAFIADIS, George
    • G06F9/44G06F11/30
    • G06F8/71G06F8/61G06F9/45533G06F9/5011
    • A software compliance assessment apparatus for determining a level of compliance of a software application in execution in a virtualised computing environment, the apparatus comprising: an identifier component operable to identify resources instantiated for execution of the application; a retriever component operable to retrieve a compliance characteristic for the application, the compliance characteristic being retrieved based on the identified resources, and the compliance characteristic having associated a compliance criterion based on a formal parameter; a selector component operable to select a software component for providing an actual parameter corresponding to the formal parameter, the actual parameter being based on data concerning at least one of the resources; an evaluator component operable to evaluate the compliance criterion using the actual parameter; and a detector component operable to detect a change to one or more of the resources, wherein the identifier component, selector component and evaluator component are operable in response to a determination by the detector component that one or more resources is changed, wherein the selector component selects the software component based on an identification of one or more data items that the software component is operable to provide.
    • 一种软件合规性评估装置,用于确定在虚拟化计算环境中执行的软件应用程序的一致性水平,所述装置包括:标识符组件,可操作以识别实例化用于执行应用程序的资源; 检索器组件,可操作以检索所述应用的符合性特性,所述合规性特性是基于所识别的资源而被检索的,并且所述合规性特征具有基于形式参数的合规性标准; 选择器部件,其可操作以选择用于提供与所述形式参数对应的实际参数的软件组件,所述实际参数基于与所述资源中的至少一个资源有关的数据; 评估器组件,其可操作以使用所述实际参数来评估所述合规性准则; 以及检测器组件,其可操作以检测对所述资源中的一个或多个的改变,其中,所述标识符组件,选择器组件和评估器组件响应于所述检测器组件确定一个或多个资源被改变而可操作,其中所述选择器组件 基于软件组件可操作地提供的一个或多个数据项的标识来选择软件组件。
    • 10. 发明申请
    • DETECTION OF DATA CONNECTION LOSS
    • 检测数据连接损失
    • WO2014096753A1
    • 2014-06-26
    • PCT/GB2013/000533
    • 2013-12-06
    • BRITISH TELECOMMUNICATIONS PUBLIC LIMITED COMPANY
    • KOYABE, Martin WanyonyiCUI, Zhan
    • H04L12/24H04L12/26
    • G06F11/079G06F11/0709G06F11/0769H04L41/064H04L41/0645H04L43/50
    • A method of detecting loss of data connection in a plurality of links between an exchange and one or more of a plurality of network terminals arising during presence of a user at an intervention point node on the links between the exchange and the network terminals, comprising: receiving connection information about a loss of data connection on any one of the links; receiving duration information about a duration of the user presence at the intervention point node; determining if the loss of data connection occurred within the user presence duration; causing line tests to be conducted on each of the links for which loss of data connection is determined to have occurred within the user presence duration; receiving results of the line tests including a number of links being determined, by the line test, to exhibit a fault; and determining if the number of links determined to exhibit a fault exceeds a predetermined threshold number.
    • 一种检测交换机与多个网络终端中的一个或多个网络终端之间的数据连接的丢失的方法,所述多个网络终端在用户在所述交换机和所述网络终端之间的链路上的介入点节点处存在期间产生,包括: 接收关于任何一个链路上的数据连接丢失的连接信息; 接收关于在介入点节点处的用户存在的持续时间的持续时间信息; 确定在用户存在持续时间内是否发生数据连接的丢失; 在用户存在持续时间内确定发生数据连接丢失的每个链路进行线路测试; 通过线路测试接收线路测试的结果,包括确定的多个链路,以显示故障; 以及确定被确定为出现故障的链路数是否超过预定阈值数。