会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明授权
    • Provider-arbitrated mandatory access control policies in cloud computing environments
    • 云计算环境中提供商仲裁的强制访问控制策略
    • US08813225B1
    • 2014-08-19
    • US13525010
    • 2012-06-15
    • Erik J. FullerEric J. BrandwineChristopher J. LefelhoczArijit GangulyEric W. Schultze
    • Erik J. FullerEric J. BrandwineChristopher J. LefelhoczArijit GangulyEric W. Schultze
    • H04L29/06
    • H04L63/10H04L63/20H04L67/16
    • Methods and apparatus for provider-arbitrated mandatory access control policies in cloud computing environments are disclosed. A system includes an access manager, and a plurality of resources configurable to provide a plurality of distributed, web-accessible services. Each service has a respective service manager. The access manager determines whether a mandatory access control policy document specified by a service manager of a particular service applies to an administration request, wherein the policy indicates that a permission setting for a resource being used to implement at least a portion of the particular service cannot be modified by a client with administrative rights on the resource. In response to determining that the policy document applies, and that an evaluation of the policy document indicates that an administrative operation specified in the administration request is prohibited by the policy, the access manager rejects the administration request.
    • 披露了云计算环境中提供者仲裁强制访问控制策略的方法和设备。 系统包括访问管理器和可配置为提供多个分布式的web访问服务的多个资源。 每个服务都有相应的服务经理。 访问管理器确定由特定服务的服务管理器指定的强制访问控制策略文档是否适用于管理请求,其中策略指示用于实现特定服务的至少一部分的资源的许可设置不能 由具有资源管理权限的客户端修改。 响应于确定策略文档的适用,并且对策略文档的评估表明该策略禁止在管理请求中指定的管理操作,则访问管理器拒绝管理请求。
    • 5. 发明授权
    • Methods and apparatus for providing composed appliance services in virtualized private networks
    • 在虚拟专用网络中提供组装设备服务的方法和设备
    • US09319272B1
    • 2016-04-19
    • US13239159
    • 2011-09-21
    • Eric J. BrandwineAmeet N. VaswaniEkechi Karl Edozie NwokahEric W. Schultze
    • Eric J. BrandwineAmeet N. VaswaniEkechi Karl Edozie NwokahEric W. Schultze
    • G06F15/173H04L12/24
    • H04L41/0806
    • Methods and apparatus that enable appliance service instances to be provisioned in a subnet of a customer's private network on a service provider network without provisioning the backend nodes in the customer's subnet. At least one front-end node instance is provisioned in the customer's subnet. Instead of provisioning the backend nodes in the customer's subnet, the appliance service provider provisions the backend node instances in the appliance service provider's subnet. In addition, at least the front-end node instance may be provided with multiple interfaces. At least two of the interfaces face different subnets, with one facing the customer subnet and the other facing the backend subnet operated by the appliance service provider in which the backend node instances are implemented. In some implementations, a third interface may face a management subnet so that the owner of the front-end node instance may manage the instance.
    • 能够在服务提供商网络上的客户专用网络的子网中配置设备服务实例而不在客户子网中提供后端节点的方法和设备。 在客户的子网中至少配置一个前端节点实例。 设备服务提供商不要在客户的子网中配置后端节点,而是在设备服务提供商的子网中提供后端节点实例。 此外,至少前端节点实例可以被提供有多个接口。 至少两个接口面临着不同的子网,一个面向客户子网,另一个面向由实现后端节点实例的设备服务提供商操作的后端子网。 在一些实现中,第三接口可能面向管理子网,使得前端节点实例的所有者可以管理该实例。