会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 13. 发明申请
    • SECURE PLATFORM VOUCHER SERVICE FOR SOFTWARE COMPONENTS WITHIN AN EXECUTION ENVIRONMENT
    • 执行环境中软件组件的安全平台提供服务
    • US20080022129A1
    • 2008-01-24
    • US11864573
    • 2007-09-28
    • David DurhamHormuzd KhosraviUri BlumenthalMen Long
    • David DurhamHormuzd KhosraviUri BlumenthalMen Long
    • H04L9/00G06F12/14H04L9/32
    • G06F21/54H04L9/004H04L9/3236H04L63/123H04L63/126H04L63/20H04L2209/60
    • Embodiments of apparatus, articles, methods, and systems for secure platform voucher service for software components within an execution environment are generally described herein. An embodiment includes the ability for a Virtual Machine Monitor, Operating System Monitor, or other underlying platform capability to restrict memory regions for access only by specifically authenticated, authorized and verified software components, even when part of an otherwise comprised operating system environment. A provisioning remote entity or gateway only needs to know a platform's public key or certificate hierarchy in order to receive verification proof for any component in the platform. The verification proof or voucher helps to assure to the remote entity that no man-in-the-middle, rootkit, spyware or other malware running in the platform or on the network will have access to the provisioned material. The underlying platform to lock and unlock secrets on behalf of the authenticated/authorized/verified software component provided in protected memory regions only accessible to the authenticated/authorized/verified software component. Other embodiments may be described and claimed.
    • 这里一般地描述用于执行环境中的软件组件的安全平台凭单服务的装置,物品,方法和系统的实施例。 一个实施例包括虚拟机监视器,操作系统监视器或其他底层平台功能的能力,以限制仅通过特定认证的,授权的和已验证的软件组件进行访问的存储器区域,即使在另外包含的操作系统环境的一部分。 配置远程实体或网关只需要知道平台的公钥或证书层次结构,以便接收平台中任何组件的验证证明。 验证证明或凭证有助于向远程实体确保在平台或网络上运行的中间人,rootkit,间谍软件或其他恶意软件将无法访问所提供的资料。 代表被保护的内存区域中提供的经过身份验证/授权/验证的软件组件的锁定和解锁秘密的底层平台只能由经过身份验证/授权/验证的软件组件访问。 可以描述和要求保护其他实施例。
    • 15. 发明授权
    • Methods and apparatus for managing dependencies in distributed systems
    • 用于管理分布式系统中依赖关系的方法和设备
    • US06847970B2
    • 2005-01-25
    • US10241162
    • 2002-09-11
    • Alexander KellerUri BlumenthalLorraine JacksonGautam Kar
    • Rory D. Jackson
    • G06F9/44G06F7/00G06F11/00G06F15/16G06F17/00G06F17/30G06Q10/00H04L12/24
    • H04L41/0893G06F11/008G06Q10/00Y10S707/99953
    • Techniques for managing information in a computing environment. Information associated with components of the computing environment is obtained. Then, from at least a portion of the obtained information, a determination is made as to the existence of one or more relationships associated with at least a portion of the components of the computing environment. The determination of the existence of one or more relationships is capable of accounting for a full lifecycle (e.g., including deployment, installation and runtime) associated with at least one component of the computing environment. Thus, techniques for managing runtime dependencies between the various components of computing systems are disclosed which provide a level of abstraction from individual systems and allow the computation of service/component (wherein the component may, for example, be an application, middleware, hardware, a device driver, an operating system and a system associated with the computing environment) dependencies that are related to end-to-end services, as perceived by a customer. By way of example, the inventive techniques may be applied to a distributed computing environment. The computing environment may also be an autonomic computing environment.
    • 在计算环境中管理信息的技术。 获得与计算环境的组件相关联的信息。 然后,从所获得的信息的至少一部分,确定与计算环境的至少一部分组件相关联的一个或多个关系的存在。 确定一个或多个关系的存在能够计算与计算环境的至少一个组件相关联的完整生命周期(例如,包括部署,安装和运行时)。 因此,公开了用于管理计算系统的各种组件之间的运行时依赖性的技术,其提供来自各个系统的抽象级别并允许服务/组件的计算(其中组件可以是应用程序,中间件,硬件, 设备驱动程序,操作系统和与计算环境相关联的系统)与客户感知的端到端服务相关的依赖性。 作为示例,本发明的技术可以应用于分布式计算环境。 计算环境也可以是自主计算环境。
    • 16. 发明授权
    • Secure platform voucher service for software components within an execution environment
    • 在执行环境中的软件组件的安全平台凭证服务
    • US08499151B2
    • 2013-07-30
    • US13412382
    • 2012-03-05
    • David DurhamHormuzd M. KhosraviUri BlumenthalMen Long
    • David DurhamHormuzd M. KhosraviUri BlumenthalMen Long
    • H04L29/06
    • G06F21/54H04L9/004H04L9/3236H04L63/123H04L63/126H04L63/20H04L2209/60
    • Apparatuses, articles, methods, and systems for secure platform voucher service for software within an execution environment. An embodiment includes the ability for a Virtual Machine Monitor, Operating System Monitor, or other underlying platform capability to restrict memory regions for access only by authenticated, authorized and verified software components. A provisioning remote entity or gateway only needs to know a platform's public key or certificate hierarchy to receive verification for any component. The verification or voucher helps assure to the remote entity that no malware running in the platform or on the network will have access to provisioned material. The underlying platform to lock and unlock secrets on behalf of the authenticated/authorized/verified software component provided in protected memory regions only accessible to the software component.
    • 用于执行环境中的软件的安全平台凭证服务的设备,物品,方法和系统。 一个实施例包括虚拟机监视器,操作系统监视器或其他底层平台功能的能力,以限制仅通过认证的,授权和验证的软件组件进行访问的存储器区域。 配置远程实体或网关只需要知道平台的公钥或证书层次结构来接收任何组件的验证。 验证或凭证有助于向远程实体确保在平台或网络上运行的恶意软件无法访问配置的资料。 代表在受保护的内存区域中提供的经认证/授权/验证的软件组件的软件组件可访问的基础平台来锁定和解锁秘密。
    • 20. 发明授权
    • Secure platform voucher service for software components within an execution environment
    • 在执行环境中的软件组件的安全平台凭证服务
    • US08132003B2
    • 2012-03-06
    • US11864573
    • 2007-09-28
    • David DurhamHormuzd M. KhosraviUri BlumenthalMen Long
    • David DurhamHormuzd M. KhosraviUri BlumenthalMen Long
    • H04L29/06
    • G06F21/54H04L9/004H04L9/3236H04L63/123H04L63/126H04L63/20H04L2209/60
    • Embodiments of apparatus, articles, methods, and systems for secure platform voucher service for software components within an execution environment are generally described herein. An embodiment includes the ability for a Virtual Machine Monitor, Operating System Monitor, or other underlying platform capability to restrict memory regions for access only by specifically authenticated, authorized and verified software components, even when part of an otherwise compromised operating system environment. A provisioning remote entity or gateway only needs to know a platform's public key or certificate hierarchy in order to receive verification proof for any component in the platform. The verification proof or voucher helps to assure to the remote entity that no man-in-the-middle, rootkit, spyware or other malware running in the platform or on the network will have access to the provisioned material. The underlying platform to lock and unlock secrets on behalf of the authenticated/authorized/verified software component provided in protected memory regions only accessible to the authenticated/authorized/verified software component. Other embodiments may be described and claimed.
    • 这里一般地描述用于执行环境中的软件组件的安全平台凭单服务的装置,物品,方法和系统的实施例。 一个实施例包括虚拟机监视器,操作系统监视器或其他底层平台功能的能力,以限制存储器区域,以便仅通过特定认证的,授权的和已验证的软件组件进行访问,即使在其他受损的操作系统环境的一部分。 配置远程实体或网关只需要知道平台的公钥或证书层次结构,以便接收平台中任何组件的验证证明。 验证证明或凭证有助于向远程实体确保在平台或网络上运行的中间人,rootkit,间谍软件或其他恶意软件将无法访问所提供的资料。 代表被保护的内存区域中提供的经过身份验证/授权/验证的软件组件的锁定和解锁秘密的底层平台只能由经过身份验证/授权/验证的软件组件访问。 可以描述和要求保护其他实施例。