Methods and apparatus for access control in service-oriented computing environments
    1.
    发明授权
    Methods and apparatus for access control in service-oriented computing environments 有权
    面向服务的计算环境中访问控制的方法和设备

    公开(公告)号:US08977845B2

    公开(公告)日:2015-03-10

    申请号:US11734319

    申请日:2007-04-12

    CPC classification number: H04L63/102 G06F21/31 G06F2221/2105 G06F2221/2119

    Abstract: Improved access control techniques for use in a service-oriented computing environment are disclosed. For example, one method for authenticating a client in a service-oriented environment, wherein the service-oriented environment includes a plurality of services, includes the following steps. At least one service of the plurality of services is invoked. State information is associated with the at least one service invoked. The state information is used to authenticate a client with at least one service. Further, a method for access control in a service-oriented environment, wherein the service-oriented environment includes a plurality of services, includes the following steps. A rule specification language is provided. At least one rule is specified using the rule specification language. A verification is performed to determine whether or not the client satisfies the at least one rule. The client is granted access to a service when the client satisfies the at least one rule.

    Abstract translation: 公开了一种用于面向服务的计算环境中的改进的访问控制技术。 例如,一种用于在面向服务的环境中验证客户端的方法,其中面向服务的环境包括多个服务,包括以下步骤。 调用多个服务中的至少一个服务。 状态信息与所调用的至少一个服务相关联。 状态信息用于对至少一个服务的客户端进行身份验证。 此外,一种面向服务的环境中的访问控制方法,其中面向服务的环境包括多个服务,包括以下步骤。 提供规则规范语言。 使用规则规范语言指定至少一个规则。 执行验证以确定客户端是否满足至少一个规则。 当客户端满足至少一个规则时,客户端被授予对服务的访问权限。

    Methods and Apparatus for Adaptively Determining Trust in Client-Server Environments
    4.
    发明申请
    Methods and Apparatus for Adaptively Determining Trust in Client-Server Environments 有权
    自适应确定客户端 - 服务器环境信任的方法和装置

    公开(公告)号:US20090100504A1

    公开(公告)日:2009-04-16

    申请号:US11873144

    申请日:2007-10-16

    Abstract: Techniques are disclosed for adaptively determining trust in client-server environments. By way of example, a method for assigning a trust level to a client in a client-server environment including at least one client communicating with a plurality of servers includes the following steps. Information associated with a server s1 and a server s2 different from s1 is obtained regarding a request r1 sent by a client and received by s1 and a request r2 sent by the client and received by s2. The obtained information is utilized to assign at least one trust level to the client.

    Abstract translation: 公开了用于自适应地确定客户机 - 服务器环境中的信任的技术。 作为示例,用于在包括与多个服务器通信的至少一个客户端的客户机 - 服务器环境中的客户端分配信任级别的方法包括以下步骤。 关于与s1不同的服务器s1和服务器s2的信息关于由客户端发送并由s1接收的请求r1和由客户端发送并由s2接收的请求r2获得。 所获得的信息用于向客户端分配至少一个信任级别。

    Information-handling system, method, and article of manufacture including and object search mechanism that provides constraint-based filtering in a distributed object system
    5.
    发明授权
    Information-handling system, method, and article of manufacture including and object search mechanism that provides constraint-based filtering in a distributed object system 失效
    在分布式对象系统中提供基于约束的过滤的信息处理系统,方法和制品包括对象搜索机制

    公开(公告)号:US06697826B1

    公开(公告)日:2004-02-24

    申请号:US08619060

    申请日:1996-03-20

    CPC classification number: G06F17/30607 Y10S707/99944

    Abstract: An information-handling system operable within a distributed object computing environment (DOCE) is disclosed that includes an object-based program for controlling object searching in a constraint-based filtering mode over said DOCE. The object-based program for controlling object searching further comprises means for providing hierarchical storage of a name/binding value during a search. Additionally, the object-based program includes a means for providing the addition of properties as name/value pair sequence to each node within a tree search performed by the object-based program. Further, the search mechanism includes means for providing recursive searching of the group properties as well as means for providing meta-knowledge of the class within the DOCE for attribute search. Moreover, the system includes means for invoking a base-filterable class, which introduces methods that verify whether an object satisfies a given filter, and where the base-filterable class further provides a filterable subclass that provides the methods needed to build a filter.

    Abstract translation: 公开了一种在分布式对象计算环境(DOCE)内可操作的信息处理系统,其包括基于对象的程序,用于通过所述DOCE在基于约束的过滤模式中控制对象搜索。 用于控制对象搜索的基于对象的程序还包括用于在搜索期间提供名称/绑定值的分层存储的装置。 此外,基于对象的程序包括用于向由基于对象的程序执行的树搜索中的每个节点提供作为名称/值对序列的属性的添加的装置。 此外,搜索机制包括用于提供组属性的递归搜索的装置以及用于提供用于属性搜索的DOCE内的类的元知识的装置。 此外,该系统包括用于调用基本可过滤类的方法,该类引入了验证对象是否满足给定过滤器的方法,以及基础可过滤类进一步提供可过滤的子类,以提供构建过滤器所需的方法。

    METHODS AND APPARATUS FOR ACCESS CONTROL IN SERVICE-ORIENTED COMPUTING ENVIRONMENTS
    6.
    发明申请
    METHODS AND APPARATUS FOR ACCESS CONTROL IN SERVICE-ORIENTED COMPUTING ENVIRONMENTS 有权
    面向服务的计算环境中访问控制的方法和设备

    公开(公告)号:US20080256357A1

    公开(公告)日:2008-10-16

    申请号:US11734319

    申请日:2007-04-12

    CPC classification number: H04L63/102 G06F21/31 G06F2221/2105 G06F2221/2119

    Abstract: Improved access control techniques for use in a service-oriented computing environment are disclosed. For example, one method for authenticating a client in a service-oriented environment, wherein the service-oriented environment includes a plurality of services, includes the following steps. At least one service of the plurality of services is invoked. State information is associated with the at least one service invoked. The state information is used to authenticate a client with at least one service. Further, a method for access control in a service-oriented environment, wherein the service-oriented environment includes a plurality of services, includes the following steps. A rule specification language is provided. At least one rule is specified using the rule specification language. A verification is performed to determine whether or not the client satisfies the at least one rule. The client is granted access to a service when the client satisfies the at least one rule.

    Abstract translation: 公开了一种用于面向服务的计算环境中的改进的访问控制技术。 例如,一种用于在面向服务的环境中验证客户端的方法,其中面向服务的环境包括多个服务,包括以下步骤。 调用多个服务中的至少一个服务。 状态信息与所调用的至少一个服务相关联。 状态信息用于对至少一个服务的客户端进行身份验证。 此外,一种面向服务的环境中的访问控制方法,其中面向服务的环境包括多个服务,包括以下步骤。 提供规则规范语言。 使用规则规范语言指定至少一个规则。 执行验证以确定客户端是否满足至少一个规则。 当客户端满足至少一个规则时,客户端被授予对服务的访问权限。

    Methods and systems for consistently replicating data
    7.
    发明授权
    Methods and systems for consistently replicating data 有权
    持续复制数据的方法和系统

    公开(公告)号:US09317432B2

    公开(公告)日:2016-04-19

    申请号:US11971607

    申请日:2008-01-09

    CPC classification number: G06F12/082 G06F12/0813 G06F12/0815 G06F12/0822

    Abstract: Techniques for maintaining consistent replicas of data are disclosed. By way of example, a method for managing copies of objects within caches, in a system including multiple caches, includes the following steps. Consistent copies of objects are maintained within the caches. A home cache for each object is maintained, wherein the home cache maintains information identifying other caches likely containing a copy of the object. In response to a request to update an object, the home cache for the object is contacted to identify other caches which might have copies of the object.

    Abstract translation: 公开了维持数据一致复制的技术。 作为示例,用于在包括多个高速缓存的系统中管理高速缓存内的对象的副本的方法包括以下步骤。 缓存内部维护对象的一致副本。 维护每个对象的家用高速缓存,其中家庭缓存维护识别可能包含对象的副本的其他高速缓存的信息。 响应于更新对象的请求,联系对象的家用高速缓存以识别可能具有对象的副本的其他高速缓存。

    Method and apparatus for deploying a set of virtual software resource templates to a set of nodes
    9.
    发明授权
    Method and apparatus for deploying a set of virtual software resource templates to a set of nodes 有权
    将一组虚拟软件资源模板部署到一组节点的方法和装置

    公开(公告)号:US08108855B2

    公开(公告)日:2012-01-31

    申请号:US11854185

    申请日:2007-09-12

    CPC classification number: G06F9/5077 G06F8/60

    Abstract: Deploying a set of virtual software resource templates to a plurality of nodes is provided. The process identifies a set of virtual machine images and metadata to form a set of virtual software resource templates. The process creates a model that indicates a performance metric based on a number of nodes on which a number of virtual machine images is deployed. The process receives a quality of service requirement. The process determines, using the model, a sufficient number of virtual software resource templates in the set of virtual software resource templates and a sufficient number of nodes in the plurality of nodes to fulfill the quality of service requirement. The process deploys the sufficient number of virtual software resource templates on the sufficient number of nodes using the metadata.

    Abstract translation: 提供了将一组虚拟软件资源模板部署到多个节点。 该过程识别一组虚拟机映像和元数据,以形成一组虚拟软件资源模板。 该过程创建一个模型,该模型基于多个虚拟机映像部署在其上的节点数量来指示性能指标。 该过程接收服务质量要求。 该过程使用该模型确定虚拟软件资源模板集合中足够数量的虚拟软件资源模板以及多个节点中足够数量的节点以满足服务质量要求。 该过程使用元数据在足够数量的节点上部署足够数量的虚拟软件资源模板。

    Methods and Systems for Consistently Replicating Data
    10.
    发明申请
    Methods and Systems for Consistently Replicating Data 有权
    一致性复制数据的方法和系统

    公开(公告)号:US20090177841A1

    公开(公告)日:2009-07-09

    申请号:US11971607

    申请日:2008-01-09

    CPC classification number: G06F12/082 G06F12/0813 G06F12/0815 G06F12/0822

    Abstract: Techniques for maintaining consistent replicas of data are disclosed. By way of example, a method for managing copies of objects within caches, in a system including multiple caches, includes the following steps. Consistent copies of objects are maintained within the caches. A home cache for each object is maintained, wherein the home cache maintains information identifying other caches likely containing a copy of the object. In response to a request to update an object, the home cache for the object is contacted to identify other caches which might have copies of the object.

    Abstract translation: 公开了维持数据一致复制的技术。 作为示例,用于在包括多个高速缓存的系统中管理高速缓存内的对象的副本的方法包括以下步骤。 缓存内部维护对象的一致副本。 维护每个对象的家用高速缓存,其中家庭缓存维护识别可能包含对象的副本的其他高速缓存的信息。 响应于更新对象的请求,联系对象的家用高速缓存以识别可能具有对象的副本的其他高速缓存。

Patent Agency Ranking