会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 5. 发明授权
    • Secure IPsec tunnels with a background system accessible via a gateway implementing NAT
    • 可通过实施NAT的网关访问后台系统的安全IPsec隧道
    • US07159242B2
    • 2007-01-02
    • US10142608
    • 2002-05-09
    • Denise Marie GentyJames Stanley TesauroRamachandran Unnikrishnan
    • Denise Marie GentyJames Stanley TesauroRamachandran Unnikrishnan
    • H04L9/00
    • H04L63/029H04L29/12009H04L29/12367H04L29/125H04L61/2514H04L61/2564H04L63/0272H04L63/061H04L63/08H04L63/164
    • A method and system for enabling secure IPsec tunnels within NAT without compromising security. A local network is configured with a gateway machine connected to the Internet and having an IPsec ID for interfacing with the Internet and a local IP/interface address for interfacing with the local network. Client machines are connected to the gateway machine and communicate with the Internet via the gateway and network address translation (NAT) techniques. Each client machine is configured with a local IP/interface address. The client machines are also provided with an alias of the IPsec ID for the gateway machine. When an IPsec request is received by the gateway machine to establish a tunnel (secure communication) with one of the clients, the gateway machine forwards the packet to the particular client using NAT. The client machine receives the request and since it has an alias of the gateway's IPsec ID, the client machine will confirm that it has one of the IPsec IDs in the packet. The client machine sends the reply packet back to the gateway machine, which then forwards it to the requesting machine over the Internet. The requesting machine receives the packet and a confirmation that it has reached its intended recipient and opens the secure IKE tunnel with the particular client via the gateway machine. In this manner authentication of the IKE tunnel and establishment of a secure IPsec session is completed with a client machine that is accessible only via a gateway implementing NAT.
    • 一种在NAT内实现安全IPsec隧道的方法和系统,不会影响安全性。 本地网络配置有连接到因特网的网关机器,并且具有用于与因特网进行接口的IPsec ID和用于与本地网络接口的本地IP /接口地址。 客户端机器连接到网关机器,并通过网关和网络地址转换(NAT)技术与互联网进行通信。 每个客户机都配置了本地IP /接口地址。 客户端计算机还提供了网关机器的IPsec ID的别名。 当网关机器接收到与其中一个客户端建立隧道(安全通信)的IPsec请求时,网关机器将NAT使用NAT转发到特定客户端。 客户端机器接收到请求,并且由于它具有网关的IPsec ID的别名,所以客户机将确认它具有数据包中的一个IPsec ID。 客户端机器将回复包发送回网关机器,网关机器然后通过因特网将其转发给请求机器。 请求机器接收分组并确认其已经到达其预期接收者,并通过网关机器与特定客户端打开安全IKE隧道。 以这种方式,IKE隧道的认证和安全IPsec会话的建立由仅通过实现NAT的网关可访问的客户机完成。
    • 7. 发明授权
    • System and method for automatically hiding sensitive information obtainable from a process table
    • 自动隐藏从进程表获取的敏感信息的系统和方法
    • US07380281B2
    • 2008-05-27
    • US10840558
    • 2004-05-06
    • Denise Marie GentyShawn Patrick MullenJames Stanley Tesauro
    • Denise Marie GentyShawn Patrick MullenJames Stanley Tesauro
    • G06F17/30
    • G06F21/31G06F21/6245
    • The present invention provides a system and method for automatically hiding sensitive information, obtainable from a process table, from other processes that should not access the sensitive information. The system and method include a sensitive command attribute table that is used by a system administrator to designate the commands and command attributes that will typically be associated with sensitive information. The sensitive command attribute table is used when a command is entered that requests information from the process table to be displayed or output. In response, a search of the process table entries is made to determine if a command and/or its attribute in the process table matches an entry in the sensitive command attribute table. If so, the command, its attributes, and/or its attribute values are blanked from the output of the process table information.
    • 本发明提供了一种系统和方法,用于从不能访问敏感信息的其他进程自动隐藏从进程表获得的敏感信息。 系统和方法包括一个敏感的命令属性表,由系统管理员用于指定通常与敏感信息相关联的命令和命令属性。 当输入请求来自进程表的信息以显示或输出的命令时,使用敏感命令属性表。 作为响应,进行对进程表条目的搜索以确定进程表中的命令和/或其属性是否与敏感命令属性表中的条目匹配。 如果是,则从进程表信息的输出中删除命令,其属性和/或其属性值。
    • 9. 发明授权
    • Method and apparatus for managing dynamically sizeable color tables
    • 用于管理动态大小的色表的方法和装置
    • US06897877B2
    • 2005-05-24
    • US10402076
    • 2003-03-27
    • Neal Richard MarionGeorge F. Ramsay, IIIJames Stanley Tesauro
    • Neal Richard MarionGeorge F. Ramsay, IIIJames Stanley Tesauro
    • G09G5/02G09G5/06G09G5/395
    • G09G5/395G09G5/06
    • A method, apparatus, and computer instructions for managing color maps in a data processing system. Responsive to a request to add a color map to a color table, a determination is made as to whether the color map is already installed in the color table. If the color map is not already installed in the color table, a decision is made as to whether a free block of color table entries sufficient to hold the color map is present in the color table. A determination is made as to whether existing blocks of color table entries in the color table can be rearranged to form a new free block of color table entries, if the free block of color table entries is insufficient to hold the color map. The existing blocks of color table entries in the color table are rearranged if the existing blocks of color table entries can be rearranged to form the new free block of color table entries. The color map is installed in the new free block of color table entries after the block of color table entries has been formed by rearranging the existing blocks of color table entries.
    • 一种用于在数据处理系统中管理彩色图的方法,装置和计算机指令。 响应于将颜色图添加到颜色表的请求,确定颜色图是否已经安装在颜色表中。 如果颜色表中还没有安装颜色映射,则决定是否在颜色表中存在足以容纳颜色映射的色表项的空闲块。 如果颜色表条目的空闲块不足以保持颜色图,则确定颜色表中的颜色表条目的现有块是否可以重新排列以形成新的空白块颜色表条目。 如果可以重新排列现有的颜色表条目块以形成颜色表条目的新空闲块,则重新排列颜色表中现有的颜色表条目块。 通过重新排列颜色表条目的现有块,形成彩色表条目块后,将颜色映射表安装在新的空白块颜色表条目中。