Determination of spoofing of a unique machine identifier
    1.
    发明授权
    Determination of spoofing of a unique machine identifier 有权
    确定唯一机器标识符的欺骗

    公开(公告)号:US09313221B2

    公开(公告)日:2016-04-12

    申请号:US14372517

    申请日:2012-01-31

    摘要: In one embodiment, an edge network device may monitor a network service that is provided at a network service device. Information related to the monitored network service may be temporarily stored at the edge network device and transmitted to a remote network device. In one embodiment, an administrative device may compare current extracted information with stored historical information to determine if a unique machine identifier of an end user device has been spoofed.

    摘要翻译: 在一个实施例中,边缘网络设备可以监视在网络服务设备处提供的网络服务。 与所监视的网络服务相关的信息可以临时存储在边缘网络设备处并被发送到远程网络设备。 在一个实施例中,管理设备可以将当前提取的信息与存储的历史信息进行比较,以确定最终用户设备的唯一机器标识符是否已被欺骗。

    Switch that monitors for fingerprinted packets
    2.
    发明授权
    Switch that monitors for fingerprinted packets 有权
    用于监控指纹分组的交换机

    公开(公告)号:US08787176B2

    公开(公告)日:2014-07-22

    申请号:US13259551

    申请日:2009-10-29

    摘要: A switch comprises a switching module coupled to a plurality of ports. The switching module receives and forwards a plurality of packets through the ports. The switch also comprises a management unit comprising a processor and an agent executable by the processor. The agent causes the processor to monitor each packet received by the switching module and determine whether each such packet contains a predetermined fingerprint. Upon determining that a packet contains the predetermined fingerprint, the processor causes additional information to be included in a copy of the fingerprinted packet and forwarded to a predetermined address. The switching module also forwards the packet containing the predetermined fingerprint, but without the additional information, to an address corresponding to a destination address contained in the packet. A method of programming the switches is also described as well as a management workstation used to program the switches and analyze the fingerprinted packets.

    摘要翻译: 交换机包括耦合到多个端口的交换模块。 交换模块通过端口接收并转发多个数据包。 交换机还包括管理单元,其包括处理器和可由处理器执行的代理。 代理使处理器监视由切换模块接收的每个分组,并确定每个这样的分组是否包含预定的指纹。 在确定分组包含预定指纹时,处理器将附加信息包括在指纹分组的副本中并转发到预定的地址。 交换模块还将包含预定指纹的分组,但没有附加信息转发到与分组中包含的目的地地址相对应的地址。 还描述了对开关进行编程的方法以及用于对开关进行编程并分析指纹分组的管理工作站。

    MODULAR DROP-IN TRANSITION ASSEMBLY FOR INDUSTRIAL GAS TURBINE AND METHOD FOR INSTALLATION
    3.
    发明申请
    MODULAR DROP-IN TRANSITION ASSEMBLY FOR INDUSTRIAL GAS TURBINE AND METHOD FOR INSTALLATION 有权
    用于工业气体涡轮机的模块式倾倒式组装及其安装方法

    公开(公告)号:US20140123656A1

    公开(公告)日:2014-05-08

    申请号:US13672878

    申请日:2012-11-09

    IPC分类号: F02C7/00

    摘要: A preassembled modular drop-in transition having internal components in conformity with assembly and function specifications prior to and after insertion into an industrial gas turbine access port. The transition assembly maintains conformity with those specifications after insertion into the combustor case if it does not inadvertently impact other turbine components during its installation. Inadvertent impact is avoided by having a combustor service zone proximal the combustor case, enabling slidable insertion of each transition and/or combustor assembly into its corresponding access port along its corresponding insertion path without contacting other turbine system components. A multi-axis motion transition handling tool (THT) in the combustor service zone, preferably under automatic control, is coupled to a transition and facilitates precise alignment along the insertion path. Automatic control facilitates consistent repetitive transition installation and removal by executing a sequence of stored pre-determined manipulation steps.

    摘要翻译: 一个预组装的模块式下降过渡,在插入工业燃气轮机进出口之前和之后,内部组件符合组装和功能规范。 如果在安装过程中不会意外地撞击其他涡轮机部件,则过渡组件在插入燃烧器壳体后会保持与这些规格的一致性。 通过在燃烧器壳体附近具有燃烧器使用区域,可以避免无意中的冲击,从而使得每个过渡和/或燃烧器组件能够沿其相应的插入路径可滑动地插入到其相应的进入端口中,而不会接触其他涡轮机系统部件。 优选在自动控制下的燃烧器维修区域中的多轴运动过渡处理工具(THT)被耦合到过渡并有助于沿插入路径的精确对准。 自动控制通过执行存储的预定操作步骤的顺序来促进一致的重复过渡安装和移除。

    Device driver selection
    5.
    发明授权
    Device driver selection 有权
    设备驱动程序选择

    公开(公告)号:US08176503B2

    公开(公告)日:2012-05-08

    申请号:US10765304

    申请日:2004-01-27

    CPC分类号: G06F9/4411

    摘要: Methods, systems, and devices are provided for device driver selection. One embodiment of a management station includes a processor, memory in communication with the processor, and program instructions stored in memory and executable on the processor. The program instructions are executable to initiate execution of a particular device function that will use a driver, select a set of drivers based upon defined device information, and call a routine in a particular driver from the selected set of drivers which executes to determine whether the particular driver is most appropriate to perform the particular device function for a particular device.

    摘要翻译: 提供了设备驱动程序选择的方法,系统和设备。 管理站的一个实施例包括处理器,与处理器通信的存储器以及存储在存储器中并且可在处理器上执行的程序指令。 程序指令可执行以启动将使用驱动程序的特定设备功能的执行,基于定义的设备信息选择一组驱动程序,并且从执行的所选择的驱动程序集中调用特定驱动程序中的例程,以确定是否 特定驱动器最适合于为特定设备执行特定的设备功能。

    Network switch deployment
    6.
    发明授权
    Network switch deployment 有权
    网络交换机部署

    公开(公告)号:US07860026B2

    公开(公告)日:2010-12-28

    申请号:US11714940

    申请日:2007-03-07

    IPC分类号: H04L12/28

    CPC分类号: H04L45/00 H04L45/56 H04L49/35

    摘要: Network devices, systems and methods are described that may be used in network switch deployment. One method embodiment includes physically connecting a network switch to a network prior to booting the network switch, booting the network switch into a non-bridging mode, and providing the network switch with a configuration while the switch is in the non-bridging mode.

    摘要翻译: 描述了可用于网络交换机部署中的网络设备,系统和方法。 一种方法实施例包括在引导网络交换机之前将网络交换机物理连接到网络,将网络交换机引导到非桥接模式,以及在交换机处于非桥接模式时向网络交换机提供配置。

    NETWORK SERVICE MONITORING
    7.
    发明申请
    NETWORK SERVICE MONITORING 有权
    网络服务监控

    公开(公告)号:US20100157839A1

    公开(公告)日:2010-06-24

    申请号:US12720015

    申请日:2010-03-09

    摘要: Network devices, systems, and methods are described that perform network service monitoring. One method includes examining a number of packets received by a first network device to determine whether a protocol of a packet corresponds to a given network service, forwarding packet service type information and packet address information to a second network device in response to a determination that the protocol of the packet corresponds to the network service, comparing the packet service type information and an associated service type address to a list of service types and addresses on the second network device, and executing a remedial action if, based on the comparing, it is determined that the network service is an unauthorized service and that a provider of the network service is an unauthorized provider.

    摘要翻译: 描述了执行网络服务监控的网络设备,系统和方法。 一种方法包括:检查由第一网络设备接收的数量的分组,以确定分组的协议是否对应于给定的网络服务;响应于确定所述分组服务类型信息和分组地址信息,将分组服务类型信息和分组地址信息转发到第二网络设备 分组的协议对应于网络服务,将分组服务类型信息和相关联的服务类型地址与第二网络设备上的服务类型和地址列表进行比较,并且如果基于比较,则执行补救动作 确定网络服务是未经授权的服务,并且网络服务的提供商是未经授权的提供商。

    Network service monitoring
    8.
    发明申请
    Network service monitoring 有权
    网络服务监控

    公开(公告)号:US20080222730A1

    公开(公告)日:2008-09-11

    申请号:US11714596

    申请日:2007-03-06

    IPC分类号: H04L9/32

    摘要: Network devices, systems, and methods are described that perform network service monitoring. One method includes examining a number of packets received by a first network device to determine whether a protocol of a packet corresponds to a given network service, forwarding an event to a second network device in response to a determination that the protocol of the packet corresponds to the network service, determining whether the network service is an authorized service by comparing the network service to a list of network services, and executing a remedial action in response to a determination that the network service is an unauthorized service.

    摘要翻译: 描述了执行网络服务监控的网络设备,系统和方法。 一种方法包括检查由第一网络设备接收的数量的分组,以确定分组的协议是否对应于给定的网络服务,响应于确定分组的协议对应于第二网络设备的确定,向第二网络设备转发事件 网络服务,通过将网络服务与网络服务列表进行比较来确定网络服务是否是授权服务,以及响应于网络服务是未经授权的服务的确定来执行补救动作。

    Method and system for configuring a network device using a template
    9.
    发明申请
    Method and system for configuring a network device using a template 审中-公开
    使用模板配置网络设备的方法和系统

    公开(公告)号:US20080005344A1

    公开(公告)日:2008-01-03

    申请号:US11478571

    申请日:2006-06-29

    IPC分类号: G06F15/16

    摘要: A network device is configured by a network manager. The network manager creates a pool identifier and a corresponding pool of network addresses. The network manager also creates a template identifier and a corresponding template including at least one reference to the pool identifier. A device identifier of the network device is set to the template identifier before coupling the network device to a network. The network manager discovers the network device on the network and obtains the device identifier via the network. The network device is configured by the network manager with a configuration that is the corresponding template for the template identifier having each reference to the pool identifier replaced with a network address from the corresponding pool for the pool identifier.

    摘要翻译: 网络设备由网络管理器配置。 网络管理员创建池标识符和相应的网络地址池。 网络管理器还创建模板标识符和包括至少一个对池标识符的引用的对应模板。 在将网络设备耦合到网络之前,将网络设备的设备标识符设置为模板标识符。 网络管理员发现网络上的网络设备,并通过网络获取设备标识符。 网络设备由网络管理器配置,其配置是模板标识符的对应模板,每个模板标识符的引用都被池标识符替换为池标识符的相应池中的网络地址。

    Access control system and method for a networked computer system
    10.
    发明授权
    Access control system and method for a networked computer system 有权
    联网计算机系统的访问控制系统和方法

    公开(公告)号:US07243368B2

    公开(公告)日:2007-07-10

    申请号:US10113255

    申请日:2002-03-29

    申请人: Daniel E. Ford

    发明人: Daniel E. Ford

    IPC分类号: G06F7/04 G06F15/16

    摘要: An access control system for use with a networked computer system [10] comprises a host [14] of the networked computer system, and a bit stream whereby information is transferred from a source of said bit stream to said host [14], said bit stream bearing a routing label identifying an origin of said bit stream in the computer network. The system further comprises a word integrated with said bit stream, said word including a routing label identifying an origin of said word in the computer network, and an access control module in communication with said host, said access control module operable to make an identification, wherein the identification includes comparing the origin of said bit stream to the origin of said word.

    摘要翻译: 与网络计算机系统[10]一起使用的访问控制系统包括联网的计算机系统的主机[14]和位流,其中信息从所述位流的源传送到所述主机[14],所述位 携带标识在计算机网络中的所述比特流的来源的路由标签的流。 所述系统还包括与所述比特流集成的单词,所述单词包括标识所述计算机网络中所述单词的原点的路由标签,以及与所述主机通信的访问控制模块,所述访问控制模块可操作以进行识别, 其中所述识别包括将所述位流的原点与所述字的原点进行比较。