System and method for identifying encrypted conference media traffic
    1.
    发明授权
    System and method for identifying encrypted conference media traffic 有权
    用于识别加密的会议媒体流量的系统和方法

    公开(公告)号:US08417942B2

    公开(公告)日:2013-04-09

    申请号:US11848650

    申请日:2007-08-31

    IPC分类号: H04L29/06

    摘要: A method for identifying conference media traffic includes receiving a plurality of dummy packets and matching a series of the plurality of dummy packets to a signature key. The method also includes extracting a first identification from one or more of the plurality of dummy packets in response to matching a series of the plurality of dummy packets to a signature key and determining that a second identification associated with one or more encrypted media packets matches the first identification. The method also includes associating one or more encrypted media packets with a conference in response to determining that the first identification matches the second identification.

    摘要翻译: 用于识别会议媒体业务的方法包括:接收多个虚拟分组,并将一系列所述多个虚拟分组匹配到签名密钥。 该方法还包括响应于将一系列多个虚拟分组匹配到签名密钥来从多个虚拟分组中的一个或多个虚拟分组中提取第一标识,并确定与一个或多个加密的媒体分组相关联的第二标识与 首先识别。 该方法还包括响应于确定第一标识与第二标识匹配而将一个或多个加密的媒体分组与会议相关联。

    System and Method for Identifying Encrypted Conference Media Traffic
    2.
    发明申请
    System and Method for Identifying Encrypted Conference Media Traffic 有权
    识别加密会议媒体流量的系统和方法

    公开(公告)号:US20090063856A1

    公开(公告)日:2009-03-05

    申请号:US11848650

    申请日:2007-08-31

    IPC分类号: G06F21/00 H04L9/00

    摘要: A method for identifying conference media traffic includes receiving a plurality of dummy packets and matching a series of the plurality of dummy packets to a signature key. The method also includes extracting a first identification from one or more of the plurality of dummy packets in response to matching a series of the plurality of dummy packets to a signature key and determining that a second identification associated with one or more encrypted media packets matches the first identification. The method also includes associating one or more encrypted media packets with a conference in response to determining that the first identification matches the second identification.

    摘要翻译: 用于识别会议媒体业务的方法包括:接收多个虚拟分组,并将一系列所述多个虚拟分组匹配到签名密钥。 该方法还包括响应于将一系列多个虚拟分组匹配到签名密钥来从多个虚拟分组中的一个或多个虚拟分组中提取第一标识,并确定与一个或多个加密的媒体分组相关联的第二标识与 首先识别。 该方法还包括响应于确定第一标识与第二标识匹配而将一个或多个加密的媒体分组与会议相关联。

    Initialization and acquisition of peers in a peers' list in a peer-to-peer network
    3.
    发明申请
    Initialization and acquisition of peers in a peers' list in a peer-to-peer network 有权
    在对等网络中的对等体列表中初始化和获取对等体

    公开(公告)号:US20050105476A1

    公开(公告)日:2005-05-19

    申请号:US10951727

    申请日:2004-09-29

    摘要: A method for creating an initial list of peers in a peer-to-peer (P2P) network comprising initiating a connection from a spy node to a suspect node in the network. A peer list is updated if a transaction between said spy node and said suspect node is successful. If the transaction is not successful; the method is started from the beginning if it is necessary to continue initialization process. On the other hand, if the transaction is not successful and if it is not necessary to continue the initialization process the execution is terminated.

    摘要翻译: 一种用于在对等(P2P)网络中创建对等体的初始列表的方法,包括发起从间谍节点到网络中的可疑节点的连接。 如果所述间谍节点和所述可疑节点之间的事务成功,则更新对等体列表。 如果交易不成功; 如果需要继续初始化过程,则从一开始就启动该方法。 另一方面,如果事务不成功,并且如果不需要继续初始化处理,则终止执行。

    Stream recognition and filtering
    4.
    发明授权

    公开(公告)号:US10068017B2

    公开(公告)日:2018-09-04

    申请号:US14671695

    申请日:2015-03-27

    摘要: A method obtains a first data item signature for a first data item, the first data item signature comprising an association between a plurality of synch points in the first data item and a corresponding plurality of block signatures. The process attempts to find one of the synch points in a second data item; and, if such a synch point is found, then a block signature of a corresponding block of bits in the second data item is determined. The process ascertains whether the synch point and corresponding block signature from the second data item correspond to a synch point and block signature in the first data item. If a predetermined number of synch points and corresponding block signatures match, the first and second data items are considered to match. In response to said determining, one or more actions associated with the first data item are performed.

    Behavioral classification of communication sessions using active session initiation
    5.
    发明申请
    Behavioral classification of communication sessions using active session initiation 有权
    使用活动会话启动的通信会话的行为分类

    公开(公告)号:US20090077228A1

    公开(公告)日:2009-03-19

    申请号:US11901993

    申请日:2007-09-19

    IPC分类号: G06F15/173 G06F21/00

    摘要: A method includes measuring behavioral characteristics of a plurality of communication sessions in a communication network. A subset of the sessions is identified using the behavioral characteristics, such that the sessions in the subset are suspected of using a target communication protocol. A candidate session is selected from the subset. A trial communication session is initiated with a node of the communication network, which participates in the candidate session, using the target communication protocol. Responsively to receiving a positive response from the node to initiation of the trial communication session, it is determined that one or more further sessions in the plurality are using the target communication protocol. The one or more further sessions are controlled responsively to a predetermined control criterion that is applicable to the target communication protocol.

    摘要翻译: 一种方法包括测量通信网络中的多个通信会话的行为特征。 使用行为特征识别会话的子集,使得子集中的会话被怀疑使用目标通信协议。 从子集中选择候选会话。 使用目标通信协议,使用参与候选会话的通信网络的节点发起试用通信会话。 响应于从节点接收到启动试用通信会话的肯定响应,确定多个中的一个或多个其他会话正在使用目标通信协议。 响应于可应用于目标通信协议的预定控制标准来控制一个或多个其它会话。

    Prevention of protocol imitation in peer-to-peer systems
    6.
    发明申请
    Prevention of protocol imitation in peer-to-peer systems 有权
    防止对等系统中的协议模仿

    公开(公告)号:US20080031148A1

    公开(公告)日:2008-02-07

    申请号:US11497683

    申请日:2006-08-01

    申请人: Ravid Sagy

    发明人: Ravid Sagy

    IPC分类号: H04J1/16

    CPC分类号: H04L67/104 H04L67/1085

    摘要: A method for allocating a resource in a computer network includes accepting from a peer a request to download a data item using a P2P protocol via the computer network from one or more other peers that store the data item, and determining whether the P2P protocol used by the request is a preferred P2P protocol. When the P2P protocol is determined to be the preferred P2P protocol, up to a maximum data quota derived from a size of the data item is allowed to be downloaded using a first allocation level of the resource. When the P2P protocol is determined not to be the preferred P2P protocol, only a second allocation level, smaller than the first allocation level, is allowed to be used for downloading the data item.

    摘要翻译: 一种用于在计算机网络中分配资源的方法包括从对等体接收来自存储数据项的一个或多个其他对等体经由计算机网络使用P2P协议的数据项的请求,以及确定是否由 该请求是首选的P2P协议。 当P2P协议被确定为优选的P2P协议时,允许使用该资源的第一分配级别来下载从数据项的大小导出的最大数据配额。 当P2P协议被确定为不是优选的P2P协议时,仅允许小于第一分配级别的第二分配级别用于下载数据项。

    Behavioral classification of communication sessions using active session initiation
    7.
    发明授权
    Behavioral classification of communication sessions using active session initiation 有权
    使用活动会话启动的通信会话的行为分类

    公开(公告)号:US07996520B2

    公开(公告)日:2011-08-09

    申请号:US11901993

    申请日:2007-09-19

    IPC分类号: G06F15/173

    摘要: A method includes measuring behavioral characteristics of a plurality of communication sessions in a communication network. A subset of the sessions is identified using the behavioral characteristics, such that the sessions in the subset are suspected of using a target communication protocol. A candidate session is selected from the subset. A trial communication session is initiated with a node of the communication network, which participates in the candidate session, using the target communication protocol. Responsively to receiving a positive response from the node to initiation of the trial communication session, it is determined that one or more further sessions in the plurality are using the target communication protocol. The one or more further sessions are controlled responsively to a predetermined control criterion that is applicable to the target communication protocol.

    摘要翻译: 一种方法包括测量通信网络中的多个通信会话的行为特征。 使用行为特征识别会话的子集,使得子集中的会话被怀疑使用目标通信协议。 从子集中选择候选会话。 使用目标通信协议,使用参与候选会话的通信网络的节点发起试用通信会话。 响应于从节点接收到启动试用通信会话的肯定响应,确定多个中的一个或多个其他会话正在使用目标通信协议。 响应于可应用于目标通信协议的预定控制标准来控制一个或多个其它会话。

    Initialization and acquisition of peers in a peers' list in a peer-to-peer network
    8.
    发明授权
    Initialization and acquisition of peers in a peers' list in a peer-to-peer network 有权
    在对等网络中的对等体列表中初始化和获取对等体

    公开(公告)号:US07660889B2

    公开(公告)日:2010-02-09

    申请号:US10951727

    申请日:2004-09-29

    IPC分类号: G06F15/173

    摘要: A method for creating an initial list of peers in a peer-to-peer (P2P) network comprising initiating a connection from a spy node to a suspect node in the network. A peer list is updated if a transaction between said spy node and said suspect node is successful. If the transaction is not successful; the method is started from the beginning if it is necessary to continue initialization process. On the other hand, if the transaction is not successful and if it is not necessary to continue the initialization process the execution is terminated.

    摘要翻译: 一种用于在对等(P2P)网络中创建对等体的初始列表的方法,包括发起从间谍节点到网络中的可疑节点的连接。 如果所述间谍节点和所述可疑节点之间的事务成功,则更新对等体列表。 如果交易不成功; 如果需要继续初始化过程,则从一开始就启动该方法。 另一方面,如果事务不成功,并且如果不需要继续初始化处理,则终止执行。

    NAT and proxy device detection
    10.
    发明授权
    NAT and proxy device detection 有权
    NAT和代理设备检测

    公开(公告)号:US07433325B1

    公开(公告)日:2008-10-07

    申请号:US11430689

    申请日:2006-05-09

    IPC分类号: H04L12/28

    摘要: Multiple networked devices behind a NAT device are identified by sampling a proportion of data packets traversing the network and comparing the packet IP Identification fields. Depending on proximity of the values in different packets, each sampled packet is associated with one of currently known devices using the NAT, or identified with a newly recognized device.

    摘要翻译: NAT设备后面的多个网络设备通过对穿过网络的一部分数据分组进行采样来识别,并比较分组IP标识字段。 取决于不同分组中的值的接近度,每个采样的分组与使用NAT的当前已知的设备之一相关联,或者与新识别的设备相关联。