PHYSICAL PRESENCE DETERMINATION IN A TRUSTED PLATFORM
    1.
    发明申请
    PHYSICAL PRESENCE DETERMINATION IN A TRUSTED PLATFORM 审中-公开
    在真实平台中的物理存在确定

    公开(公告)号:WO2004090701A2

    公开(公告)日:2004-10-21

    申请号:PCT/GB2004001531

    申请日:2004-04-08

    CPC classification number: G06F21/57 G06F21/575 H05K1/181

    Abstract: A computer system (and a motherboard for a computer system) is presented which provides a trusted platform by which operations can be performed with an increased level trust and confidence. The basis of trust for the computer system (or motherboard) is established by an encryption coprocessor and by code which interfaces with the encryption coprocessor and establishes root of trust metrics for the platform. The encryption coprocessor is built such that certain critical operations are allowed only if physical presence of an operator has been detected. Physical presence is determined by inference based upon the status of registers in the core chipset (e.g. on the motherboard).

    Abstract translation: 提供了一种计算机系统(以及用于计算机系统的主板),其提供可信赖的平台,通过该平台可以以更高级别的信任和置信度执行操作。 计算机系统(或主板)的信任基础由加密协处理器和与加密协处理器接口的代码建立,并为平台建立信任度量的根。 构建加密协处理器,使得仅当检测到操作者的物理存在时才允许某些关键操作。 基于核心芯片组(例如在主板上)的寄存器的状态通过推理确定物理存在。

    DATA PROCESSING SYSTEM AND METHOD FOR REMOTELY DISABLING NETWORK ACTIVITY IN A CLIENT COMPUTER SYSTEM
    2.
    发明申请
    DATA PROCESSING SYSTEM AND METHOD FOR REMOTELY DISABLING NETWORK ACTIVITY IN A CLIENT COMPUTER SYSTEM 审中-公开
    数据处理系统和远程停用客户端计算机系统网络活动的方法

    公开(公告)号:WO0033510A3

    公开(公告)日:2000-10-05

    申请号:PCT/GB9903982

    申请日:1999-11-30

    Applicant: IBM IBM UK

    Abstract: A data processing system and method are described for permitting a server computer system to remotely disable an ability of a client computer system to access a network which couples the client computer system to the server computer system. The server computer system transmits an indication to the client computer system utilizing the network that the ability of the client computer system to access said network be at least temporarily disabled. In response to a receipt of the indication by the client computer system, the ability of the client computer system to access the network is at least temporarily disabled. The client computer system is unable to transmit information utilizing the network while the client computer system is temporarily disabled.

    Abstract translation: 描述了一种数据处理系统和方法,用于允许服务器计算机系统远程禁用客户端计算机系统访问将客户端计算机系统耦合到服务器计算机系统的网络的能力。 服务器计算机系统使用网络向客户端计算机系统发送指示,使得客户端计算机系统访问所述网络的能力至少被暂时禁用。 响应于客户端计算机系统接收到指示,客户端计算机系统访问网络的能力至少被暂时禁用。 当客户端计算机系统暂时禁用时,客户端计算机系统无法使用网络传输信息。

    AUTONOMIC WIRELESS PRESENCE PING
    3.
    发明申请
    AUTONOMIC WIRELESS PRESENCE PING 审中-公开
    自动无线存在

    公开(公告)号:WO2005064878A3

    公开(公告)日:2005-09-09

    申请号:PCT/EP2004053169

    申请日:2004-11-30

    CPC classification number: H04W28/18 H04W8/245 H04W24/00

    Abstract: A system and method for autonomic wireless presence ping is presented. An IS administrator wishes to collect capacity requirement information corresponding to a wireless network, such as the number of packets a client sends to and receives from an access point. The IS administrator sends a request to the access point. In turn, the access point sends a control packet to client devices it supports, instructing them to enable an enhanced presence ping bit. Each client enables its enhanced presence ping bit, and collect enhanced status information. Each client device sends the enhanced status information to the access point either when a timer expires, or when the client device receives a ping request from the access point. The access point then forwards the enhanced status information to the IS administrator for analysis.

    Abstract translation: 提出了一种用于自主无线存在ping的系统和方法。 IS管理员希望收集对应于无线网络的容量需求信息,例如客户端从接入点发送和接收的分组数量。 IS管理员向接入点发送请求。 反过来,接入点向其支持的客户端设备发送控制包,指示他们启用增强的存在ping位。 每个客户端使其增强的存在ping位,并收集增强的状态信息。 当定时器到期时,或当客户端设备从接入点接收到ping请求时,每个客户端设备将增强状态信息发送到接入点。 接入点然后将增强状态信息转发给IS管理员进行分析。

    System and method for client reassignment in blade server
    4.
    发明专利
    System and method for client reassignment in blade server 审中-公开
    刀片服务器客户端重新配置的系统与方法

    公开(公告)号:JP2006228220A

    公开(公告)日:2006-08-31

    申请号:JP2006036807

    申请日:2006-02-14

    Abstract: PROBLEM TO BE SOLVED: To provide a system and method capable of balancing the load among blade servers.
    SOLUTION: When a first blade server that is servicing a client computer becomes congested, service is transferred to a second blade server potential in a different blade center. In this case, the first blade and client are frozen, and then a pointer to the currently addressed location in a client's virtual storage and an exact memory map in the first blade server that is associated with the client computer are sent to the second blade server along with a client's IP address. These are used to reconstruct the state of the first blade in the second blade, at which time the second blade resumes service to the client.
    COPYRIGHT: (C)2006,JPO&NCIPI

    Abstract translation: 要解决的问题:提供能够平衡刀片服务器之间的负载的系统和方法。 解决方案:当服务于客户端计算机的第一个刀片服务器变得拥塞时,将服务转移到另一个刀片服务器中的第二个刀片服务器电位。 在这种情况下,第一个刀片和客户端被冻结,然后将指向客户机虚拟存储器中的当前寻址位置的指针和与客户端计算机相关联的第一刀片服务器中的精确存储器映射被发送到第二刀片服务器 以及客户端的IP地址。 这些用于重建第二刀片中的第一刀片的状态,此时第二刀片恢复到客户端的服务。 版权所有(C)2006,JPO&NCIPI

    METHOD FOR SETTING SECURITY COMPUTER ENVIRONMENT AND COMPUTER SYSTEM

    公开(公告)号:JP2002358137A

    公开(公告)日:2002-12-13

    申请号:JP2002138434

    申请日:2002-05-14

    Applicant: IBM

    Abstract: PROBLEM TO BE SOLVED: To provide a computer system for making it impossible to use an in-circuit emulator(ICE) device in a security environment, and making it possible to use the ICE device in a manufacture environment or a non-security environment. SOLUTION: This processor is integrated with a special S latch which can be set according to a security signal. In one state of the S latch, the processor is set so as to be put in a security mode where only an instruction is performed, and any command from an ICE device is not performed. In the second state of the S latch, the processor is set so as to be put in a non-security state. Security data read by a boot block code stored in a BIOS storage device are written in a non-volatile random access memory(NVRAM). The book block code is made operable so that the security data in the NVRAM can be read, and the S latch is set so as to be put in a proper security state.

    SISTEMA Y METODO PARA CONECTAR UN DISPOSITIVO DE CONDUCTO SERIAL UNIVERSAL A UN SISTEMA DE COMPUTADORA ANFITRION.

    公开(公告)号:MXPA02008913A

    公开(公告)日:2005-08-16

    申请号:MXPA02008913

    申请日:2002-09-12

    Applicant: IBM

    Abstract: Un metodo y sistema para controlar la adicion de un dispositivo USB a un sistema de computadora anfitrion mediante un detector de enchufe caliente (conexion con la maquina encendida) de equipo fisico que monitorea a los puertos USB. Las lineas de senalizacion diferencial que conectan al dispositivo USB se les da compuerta logica O (OR) en conjunto, de manera tal que senales D+ o D- logicamente altas desde el dispositivo USB senalan a la linea de interrupcion del administracion del sistema (SMI) de la unidad de procesamiento central, UPC (CPU) para iniciar el modo de administracion de sistema (SMM). Al entrar el SMM, se transfiere control de sistema de computadora anfitrion a un BIOS de manejador de interrupciones SMI que reside en el espacio de direccion SMM del sistema de computadora anfitrion. El SMM BIOS, se carga en el espacio de direcciones SMM durante la autocomprobacion de energia (POST) y se asegura antes de inicio del Sistema Operativo SO (OS). El codigo SMM BIOS contiene instrucciones de si el dispositivo USB conectado o no debera hacerse visible al sistema operativo de la computadora. Si el dispositivo no esta autorizado, se desactivan, la lineas D+/D- no se conectan al controlador anfitrion USB, y la senal SMI se libera, permitiendo que la computadora continue su operacion sin que el sistema operativo nunca perciba al dispositivo USB.

Patent Agency Ranking