会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明授权
    • System and method for managing security meta-data in a reverse proxy
    • 用于管理逆向代理中的安全元数据的系统和方法
    • US07600230B2
    • 2009-10-06
    • US10885338
    • 2004-07-06
    • Ajay DesaiMing LeiFredric GoellLawrence Jacobs
    • Ajay DesaiMing LeiFredric GoellLawrence Jacobs
    • G06F3/00G06F15/16G06F7/04
    • H04L63/10H04L63/08H04L63/101
    • A system and method for managing security meta-data in a reverse proxy server. The reverse proxy caches data served by an origin server, and also stores security meta-data for authenticating a user and/or authorizing access to cached data. The security meta-data may include an ACL (Access Control List), access control token or descriptor, other access control information, user credentials, user privileges or roles, group membership, user aliases, etc. The reverse proxy may automatically receive access control information from the origin server when a request for data is forwarded to the origin server, or may explicitly request the information from the origin server or a security server. The reverse proxy receives and applies invalidation messages to invalidate stored security meta-data. Also, the reverse proxy acts in a stateful manner, with knowledge of the correlation between a given user and that user's session with the origin server.
    • 用于在逆向代理服务器中管理安全元数据的系统和方法。 反向代理缓存由原始服务器服务的数据,并且还存储用于认证用户的安全元数据和/或授权访问缓存的数据。 安全元数据可以包括ACL(访问控制列表),访问控制令牌或描述符,其他访问控制信息,用户凭证,用户特权或角色,组成员资格,用户别名等。反向代理可以自动接收访问控制 当请求数据被转发到原始服务器时,来自原始服务器的信息,或者可以从源服务器或安全服务器显式地请求信息。 反向代理接收并应用无效消息以使存储的安全元数据无效。 此外,反向代理以有状态的方式运行,知道给定用户与该用户与源服务器的会话之间的相关性。
    • 7. 发明授权
    • Method and apparatus to facilitate security-enabled content caching
    • 促进安全性内容缓存的方法和装置
    • US08108939B2
    • 2012-01-31
    • US10449202
    • 2003-05-29
    • Gaurav BhatiaArun SwaminathanAjay Desai
    • Gaurav BhatiaArun SwaminathanAjay Desai
    • H04L9/32G06F21/00
    • H04L63/10G06F17/30902G06F21/6218G06F2221/2149H04L67/2852H04L69/329
    • One embodiment of the present invention provides a system that facilitates security-enabled content caching. The system operates by first receiving a request from a user at a cache server for restricted content, wherein the cache server stores content for an application server. Next, the system determines if the restricted content is located on the cache server. If so, the system determines if the user is authorized to access the restricted content. If the user is authorized to access the restricted content, the system provides the restricted content to the user from the cache server. Providing the restricted content from the cache server eliminates the time consuming operations involved in requesting and receiving the restricted content from the application server.
    • 本发明的一个实施例提供了一种促进安全性内容缓存的系统。 该系统通过首先从用于受限内容的缓存服务器处的用户接收请求,其中高速缓存服务器存储用于应用服务器的内容。 接下来,系统确定受限内容是否位于缓存服务器上。 如果是这样,系统确定用户是否被授权访问受限制的内容。 如果用户被授权访问受限内容,则系统从缓存服务器向用户提供受限制的内容。 从缓存服务器提供受限制的内容消除了从应用服务器请求和接收受限内容所涉及的耗时的操作。