会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Using configured application pricing to determine end user fees for use of invocable services
    • 使用配置的应用定价来确定最终用户使用可调用服务的费用
    • US09044504B1
    • 2015-06-02
    • US13071368
    • 2011-03-24
    • Peter SirotaDon JohnsonGaurav D. GhareTushar JainAlan S. Geller
    • Peter SirotaDon JohnsonGaurav D. GhareTushar JainAlan S. Geller
    • G06Q30/00G07F19/00G06F7/00A61K48/00
    • A61K48/00G06Q10/06G06Q20/102G06Q30/02G06Q30/04
    • Techniques are described for facilitating use of invocable services by applications in a configurable manner. In at least some situations, the invocable services are Web services or other network-accessible services that are made available by providers of the services for use by others in exchange for fees defined by the service providers. The described techniques facilitate use of such invocable services by applications in a manner configured by the application providers and the service providers, including to track use of third-party invocable services by applications on behalf of end users and to allocate fees that are charged end users between the applications and the services as configured by the providers of the applications and services. In some situations, the configured pricing terms for a service specify fees for end users that differ in one or more ways from the defined fees charged by the provider of that service.
    • 描述了以可配置的方式促进应用使用可调用服务的技术。 在至少一些情况下,可调用的服务是Web服务或其他网络可访问的服务,这些服务由服务提供者提供,供他人使用以交换由服务提供商定义的费用。 所描述的技术有助于以应用提供商和服务提供商配置的方式由应用程序使用这种可调用服务,包括代表最终用户跟踪应用程序对第​​三方可调用服务的使用以及分配收取终端用户的费用 在由应用程序和服务的提供者配置的应用程序和服务之间。 在某些情况下,服务的配置定价条款指定终端用户的费用,这些费用以一种或多种方式与由该服务提供商收取的定义费用不同。
    • 3. 发明授权
    • Enhanced security for electronic communications
    • 增强电子通讯的安全性
    • US09225712B2
    • 2015-12-29
    • US13619921
    • 2012-09-14
    • Alan S. Geller
    • Alan S. Geller
    • H04L29/06G06F21/31G06F21/41
    • H04L63/102G06F21/31G06F21/41G06F2221/2119G06Q20/3821G06Q20/3825G06Q2220/00H04L63/0815H04L63/123
    • Techniques are described for providing enhanced security for electronic communications, such as by including in a message sent between two services a digital signature that is generated by using secret information known to the services, so that the recipient receives assurance regarding the sender's identity if the recipient can replicate the received digital signature using the secret information known to the recipient. In some situations, the enhanced security is used in communications to and/or from an access manager system that provides single sign-on functionality and other functionality to other services for use with those services' users, such as to prevent malicious phishers from inappropriately gaining access to user information. Various services may use the enhanced security techniques when interacting with the access manager system at various times, such as to initiate sign-on for a user and/or to take subsequent action on behalf of a signed-on user.
    • 描述了用于为电子通信提供增强的安全性的技术,例如通过在两个服务之间发送的消息中包括通过使用服务已知的秘密信息而生成的数字签名,使得接收方接收到关于发送者身份的保证,如果接收者 可以使用接收者已知的秘密信息来复制接收到的数字签名。 在某些情况下,增强的安全性用于与向与其他服务用户一起提供单一登录功能和其他功能的访问管理器系统的通信中,例如用于防止恶意钓鱼者不适当地获得 访问用户信息。 当在不同时间与访问管理器系统交互时,各种服务可以使用增强的安全技术,例如为用户启动登录和/或代表签名的用户采取后续动作。
    • 5. 发明授权
    • System and method for controlling access to web services resources
    • 用于控制对Web服务资源的访问的系统和方法
    • US08447829B1
    • 2013-05-21
    • US11351904
    • 2006-02-10
    • Alan S. GellerRahul Singh
    • Alan S. GellerRahul Singh
    • G06F15/173
    • H04L47/70G06F9/468G06F21/6218H04L9/3239H04L63/101H04L67/10
    • A system and method for controlling access to web services resources. A system may include a storage medium configured to store instructions and one or more processors configured to access the storage medium. The instructions may be executable by at least one of the processors to implement a web services access control system (ACS) configured to receive requests. Each request specifies an access operation to be performed with respect to a corresponding resource. Each of the requests is associated with a corresponding principal. For each received request, the ACS may be further configured to determine whether an access control entry exists that is associated with both the resource and principal associated with the request and that specifies an access type sufficient to perform the access operation. If no such entry exists, the ACS may deny the request.
    • 一种用于控制对Web服务资源的访问的系统和方法。 系统可以包括被配置为存储指令的存储介质和被配置为访问存储介质的一个或多个处理器。 指令可以由至少一个处理器执行以实现被配置为接收请求的web服务访问控制系统(ACS)。 每个请求指定对相应资源执行的访问操作。 每个请求与相应的主体相关联。 对于每个接收到的请求,ACS还可以被配置为确定是否存在与请求相关联的资源和主体相关联的访问控制条目,并且指定访问类型足以执行访问操作。 如果没有这样的条目,ACS可以拒绝该请求。
    • 6. 发明申请
    • ENHANCED SECURITY FOR ELECTRONIC COMMUNICATIONS
    • 电子通信的增强安全
    • US20130081111A1
    • 2013-03-28
    • US13619921
    • 2012-09-14
    • Alan S. Geller
    • Alan S. Geller
    • H04L9/32
    • H04L63/102G06F21/31G06F21/41G06F2221/2119G06Q20/3821G06Q20/3825G06Q2220/00H04L63/0815H04L63/123
    • Techniques are described for providing enhanced security for electronic communications, such as by including in a message sent between two services a digital signature that is generated by using secret information known to the services, so that the recipient receives assurance regarding the sender's identity if the recipient can replicate the received digital signature using the secret information known to the recipient. In some situations, the enhanced security is used in communications to and/or from an access manager system that provides single sign-on functionality and other functionality to other services for use with those services' users, such as to prevent malicious phishers from inappropriately gaining access to user information. Various services may use the enhanced security techniques when interacting with the access manager system at various times, such as to initiate sign-on for a user and/or to take subsequent action on behalf of a signed-on user.
    • 描述了用于为电子通信提供增强的安全性的技术,例如通过在两个服务之间发送的消息中包括通过使用服务已知的秘密信息而生成的数字签名,使得接收方接收到关于发送者身份的保证,如果接收者 可以使用接收者已知的秘密信息来复制接收到的数字签名。 在某些情况下,增强的安全性用于与向与其他服务用户一起提供单一登录功能和其他功能的访问管理器系统的通信中,例如用于防止恶意钓鱼者不适当地获得 访问用户信息。 当在不同时间与访问管理器系统交互时,各种服务可以使用增强的安全技术,例如为用户启动登录和/或代表签名的用户采取后续动作。
    • 7. 发明授权
    • Reliably transferring queued application messages
    • 可靠地传输排队的应用程序消息
    • US07613830B2
    • 2009-11-03
    • US11009178
    • 2004-12-10
    • Krishnan SrinivasanCraig Andrew CritchleyUday Shanker HegdeAlan S. GellerDavid Owen DriverRichard Douglas HillRodney Thomas Limprecht
    • Krishnan SrinivasanCraig Andrew CritchleyUday Shanker HegdeAlan S. GellerDavid Owen DriverRichard Douglas HillRodney Thomas Limprecht
    • G06F15/16
    • H04L51/14
    • The present invention extends to methods, systems, and computer program products for reliably and securely transferring queued application messages. Application messages are (e.g.,. binary or text) encoded and then encapsulated in transfer messages, enqueue messages, and dequeue responses such that composable protocol elements used in application messages can be reused in the transfer messages, enqueue messages, and dequeue responses. Transfer message headers are encoded and then encapsulated along with encoded application messages such that composable protocol elements used in transfer headers and application messages can be reused in the store and forward messages. Application messages, transfer messages, enqueue messages, dequeue responses, and store and forward messages can all be configured in accordance with the same messaging protocol, such as, for example, Simple Object Access Protocol. Since encapsulated elements are encoded, the encapsulated elements do not interfere with configuration of wrapping messages.
    • 本发明扩展到用于可靠和安全地传送排队的应用消息的方法,系统和计算机程序产品。 应用程序消息是(例如,二进制或文本)编码的,然后被封装在传输消息,入队消息和出队响应中,使得应用消息中使用的可组合协议元素可以在传输消息,入队消息和出队响应中重复使用。 转移消息报头被编码,然后与编码的应用消息一起被封装,使得在传送报头和应用消息中使用的可组合协议元素可以在存储中转发消息。 应用程序消息,传输消息,入队消息,出队响应以及存储和转发消息都可以根据相同的消息传递协议进行配置,例如简单对象访问协议。 由于封装的元素被编码,封装的元素不会影响包装消息的配置。
    • 8. 发明授权
    • System and method for n-way authentication in a network
    • 网络中n路认证的系统和方法
    • US07370199B2
    • 2008-05-06
    • US10766060
    • 2004-01-28
    • Michael A. AdayBryan M. WillmanMarcus PeinadoAlan S. Geller
    • Michael A. AdayBryan M. WillmanMarcus PeinadoAlan S. Geller
    • G06F21/00
    • H04L9/0825H04L9/14H04L2209/56
    • A method of controlling information exposure in a multiparty transaction includes an originating transaction participant cryptographically encoding all information for each of the transaction participants such that a unique data content and encryption are used for each of the messages destined to the other transaction participants. The cryptographically encoded messages are transmitted to the transaction participants such that each may decrypt their message and respond to a primary transaction participant with status concerning their portion of the transaction. After reception of affirmative status messages from the transaction participants, the primary transaction participant may transmit messages to the responding transaction participants to execute the multiparty transaction. The originating transaction participant may also be provided an indication that the multiparty transaction is executed.
    • 控制多方交易中的信息曝光的方法包括对每个交易参与者的所有信息进行密码编码的始发交易参与者,从而为发往其他交易参与者的每个消息使用唯一的数据内容和加密。 密码编码的消息被传送到交易参与者,使得每个消息可以解密他们的消息并且响应具有关于其交易部分的状态的主交易参与者。 在从交易参与者接收到肯定状态消息之后,主交易参与者可以向响应的交易参与者发送消息以执行多方交易。 也可以向源交易参与者提供执行多方交易的指示。
    • 9. 发明授权
    • Generic communications framework
    • 通用通信框架
    • US07222152B1
    • 2007-05-22
    • US09968632
    • 2001-10-01
    • Donald ThompsonAlan S. Geller
    • Donald ThompsonAlan S. Geller
    • G06F15/16G06F9/54
    • H04L67/00H04L69/18H04L69/32
    • A system and method for communicating between a client and a server using a generic, extensible, high-speed framework that separates clients and servers from the application layer and transport layer protocols commonly used for network communications. An application (client or server) specifies a uniform resource identifier (URI) to identify an interface for transmitting or receiving one or more messages and to identify the desired protocol and transport for communication. The invention, executing on the client and/or server, instantiates an object based on the URI to implement the specified protocol and transport for communication between the client and the server.
    • 一种用于使用通用,可扩展的高速框架在客户端和服务器之间进行通信的系统和方法,该框架将客户端和服务器与应用层分离,并且传输层协议通常用于网络通信。 应用程序(客户机或服务器)指定统一的资源标识符(URI),以标识用于发送或接收一个或多个消息的接口,并且识别所需的协议和用于通信的传输。 本发明在客户端和/或服务器上执行,基于该URI来实例化对象以实现指定的协议并传送用于客户端与服务器之间的通信。
    • 10. 发明授权
    • Distributed system and method for replicated storage of structured data records
    • 用于复制存储结构化数据记录的分布式系统和方法
    • US08996482B1
    • 2015-03-31
    • US11352461
    • 2006-02-10
    • Rahul SinghAlan S. GellerAmit J. Agarwal
    • Rahul SinghAlan S. GellerAmit J. Agarwal
    • G06F17/30
    • G06F17/30575
    • A distributed system and method for replicated storage of structure data records. According to one embodiment, a system may include storage hosts each configured to store and retrieve structured data records, and a data store manager configured to receive a request from a client to store a structured data record within a table. In response to receiving the request, the data store manager may be further configured to map the structured data record to a block according to a partition key value of the structured data record and an identifier of the table and to map the block to a subset comprising at least two of the plurality of storage hosts. Upon successfully storing the structured data record to the block within at least two storage hosts within the subset, the data store manager may be further configured to return to the client an indication that said request is complete.
    • 用于复制存储结构数据记录的分布式系统和方法。 根据一个实施例,系统可以包括每个被配置为存储和检索结构化数据记录的存储主机,以及数据存储管理器,被配置为从客户端接收在表内存储结构化数据记录的请求。 响应于接收到请求,数据存储管理器可以被进一步配置为根据结构化数据记录的分区键值和表的标识符将结构化数据记录映射到块,并将块映射到包括 多个存储主机中的至少两个。 在将结构化数据记录成功地存储在子集内的至少两个存储主机内的块之后,数据存储管理器可以被进一步配置为向客户端返回所述请求完成的指示。