Method and system for platform-based trust verifying service for multi-party verification
    1.
    发明专利
    Method and system for platform-based trust verifying service for multi-party verification 有权
    用于多方验证的基于平台的信任验证服务的方法和系统

    公开(公告)号:JP2010033563A

    公开(公告)日:2010-02-12

    申请号:JP2009153641

    申请日:2009-06-29

    Abstract: PROBLEM TO BE SOLVED: To provide a system preventing a service distributed to consumers by a service provider from being compromised though there are many malicious users on the WWW and the information provided by many devices is not fully reliable. SOLUTION: The system includes a client platform accessing a service provider over a network. The client platform receives a request from the service provider for platform assessment and verification. The client platform collects platform information and performs assessment and verification. The client platform may then receive the service of the service provider. If integrity manifest comparison indicates that the client platform state is not good, then the client platform will send a failure notification to the service provider indicating that the client platform has been compromised. COPYRIGHT: (C)2010,JPO&INPIT

    Abstract translation: 要解决的问题:为了提供一种防止由服务提供商分发给消费者的服务被破坏的系统,尽管在WWW上存在许多恶意用户,并且由许多设备提供的信息不是完全可靠的。 解决方案:系统包括通过网络访问服务提供商的客户端平台。 客户端平台接收来自服务提供商的平台评估和验证请求。 客户端平台收集平台信息,进行评估和验证。 然后,客户端平台可以接收服务提供商的服务。 如果完整性清单比较表明客户端平台状态不好,那么客户端平台将向服务提供商发送一个失败通知,指示客户端平台已被破坏。 版权所有(C)2010,JPO&INPIT

    End-to-end network security with traffic visibility
    2.
    发明专利
    End-to-end network security with traffic visibility 审中-公开
    具有交通可见性的端到端网络安全

    公开(公告)号:JP2009153111A

    公开(公告)日:2009-07-09

    申请号:JP2008284424

    申请日:2008-11-05

    Abstract: PROBLEM TO BE SOLVED: To achieve end-to-end security with traffic visibility. SOLUTION: A combined encryption-authentication unit includes a cipher unit and an authentication unit coupled in parallel to the cipher unit, and generates an authentication tag by using an authentication key, in parallel with the generation of the cipher text using an encryption key, where the authentication key and the encryption key have different key values. In various embodiments, the cipher unit operates in AES counter mode, and the authentication unit operates in parallel, in an AES-GMAC mode. Using a two key, single-pass combined mode algorithm preserves network performance by using a limited number of HW gates, while allowing an intermediate device to access to the encryption key for deciphering the data, without having to provide to that device the ability to compromise data integrity, which is preserved between the end to end devices. COPYRIGHT: (C)2009,JPO&INPIT

    Abstract translation: 要解决的问题:实现交通可见性的端到端安全。 解决方案:组合加密认证单元包括密码单元和与密码单元并行耦合的认证单元,并且通过使用认证密钥与使用加密的密文的生成并行地生成认证标签 密钥,其中认证密钥和加密密钥具有不同的密钥值。 在各种实施例中,密码单元以AES计数器模式工作,并且认证单元以AES-GMAC模式并行操作。 使用双键单通组合模式算法通过使用有限数量的HW门来保留网络性能,同时允许中间设备访问加密密钥来解密数据,而不必向该设备提供妥协的能力 数据完整性,保留在端到端设备之间。 版权所有(C)2009,JPO&INPIT

    Apparatus and method for managing subscription request for network interface component
    3.
    发明专利
    Apparatus and method for managing subscription request for network interface component 有权
    用于管理网络接口部件的订阅请求的装置和方法

    公开(公告)号:JP2010157226A

    公开(公告)日:2010-07-15

    申请号:JP2009290678

    申请日:2009-12-22

    CPC classification number: G06F9/45558 G06F2009/45595 H04L63/0227 H04L63/08

    Abstract: PROBLEM TO BE SOLVED: To provide a system, a device and a method, for effectively managing a subscription request for a network interface component. SOLUTION: The processor-based system includes: at least one processor, at least one memory coupled to the at least one processor, a network interface component, and a management controller. The management controller may be configured to receive information related to a subscription request for a virtual machine, generate configuration information for the network interface component based on the subscription request, and provide the configuration information to the network interface component. COPYRIGHT: (C)2010,JPO&INPIT

    Abstract translation: 要解决的问题:提供一种用于有效管理网络接口组件的订阅请求的系统,设备和方法。 解决方案:基于处理器的系统包括:至少一个处理器,耦合到至少一个处理器的至少一个存储器,网络接口组件和管理控制器。 管理控制器可以被配置为接收关于虚拟机的订阅请求的信息,基于订阅请求生成针对网络接口组件的配置信息,并将配置信息提供给网络接口组件。 版权所有(C)2010,JPO&INPIT

    PAGE COLORING TO ASSOCIATE MEMORY PAGES WITH PROGRAMS
    5.
    发明申请
    PAGE COLORING TO ASSOCIATE MEMORY PAGES WITH PROGRAMS 审中-公开
    PAGE COLORING将内存页与程序关联起来

    公开(公告)号:WO2007079011A3

    公开(公告)日:2007-11-22

    申请号:PCT/US2006048940

    申请日:2006-12-21

    CPC classification number: G06F12/1475 G06F12/1491 G06F21/74 G06F21/79

    Abstract: Apparatuses and methods for page coloring to associate memory pages with programs are disclosed. In one embodiment, an apparatus includes a paging unit and an interface to access a memory. The paging unit includes translation logic and comparison logic. The translation logic is to translate a first address to a second address. The first address is to be provided by an instruction stored in a first page in the memory. The translation is based on an entry in .a data structure, and the entry is to include a base address of a second page in the memory including the second address. The comparison logic is to compare the color of the first page to the color of the second page. The color o the first page is to indicate association of the first page with a first program including the first instruction. The data structure entry is also to include the color of the second page to indicate association of the second page with the first program or a second program.

    Abstract translation: 披露了用于页面着色以将存储器页面与程序相关联的设备和方法。 在一个实施例中,一种装置包括寻呼单元和访问存储器的接口。 寻呼单元包括翻译逻辑和比较逻辑。 翻译逻辑是将第一个地址翻译成第二个地址。 第一个地址由存储在存储器第一页中的指令提供。 该翻译基于.a数据结构中的条目,并且条目是在包括第二地址的存储器中包括第二页的基地址。 比较逻辑是比较第一页的颜色和第二页的颜色。 第一页的颜色用于指示第一页面与包括第一指令的第一程序的关联。 数据结构条目还包括第二页的颜色以指示第二页与第一程序或第二程序的关联。

    COOPERATIVE EMBEDDED AGENTS
    6.
    发明申请
    COOPERATIVE EMBEDDED AGENTS 审中-公开
    合作嵌入剂

    公开(公告)号:WO2005101197A3

    公开(公告)日:2006-06-01

    申请号:PCT/US2005008616

    申请日:2005-03-14

    CPC classification number: G06F9/4411

    Abstract: An electronic apparatus has an embeded firmware agent having instructions for selectively operating in a management mode and an embedded controller agent operating independent of a host operating system and selectively invoking the management mode. A bidirectional agent bus is coupled in between the embedded firmware agent and embedded controller agent to transmit messages between both the agents. Manageability and security operations that can be performed on a host system having these cooperative embedded agents.

    Abstract translation: 电子设备具有嵌入式固件代理,其具有用于选择性地以管理模式操作的指令,以及独立于主机操作系统操作并选择性地调用管理模式的嵌入式控制器代理。 双向代理总线耦合在嵌入式固件代理和嵌入式控制器代理之间,以在两个代理之间传输消息。 可以在具有这些协作嵌入式代理的主机系统上执行的可管理性和安全性操作。

    LOGARITHMIC TIME RANGE-BASED MULTIFIELD-CORRELATION PACKET CLASSIFICATION
    8.
    发明申请
    LOGARITHMIC TIME RANGE-BASED MULTIFIELD-CORRELATION PACKET CLASSIFICATION 审中-公开
    基于对数时域的多媒体相关分组

    公开(公告)号:WO2004015937A3

    公开(公告)日:2004-07-29

    申请号:PCT/US0324346

    申请日:2003-08-04

    Applicant: INTEL CORP

    CPC classification number: H04L47/2441 H04L47/10 H04L47/20 H04L69/22

    Abstract: Classification of network data packets includes a determination sets of one or more filter-identifiers where each set is associated with a respective data-packet classifier field. A result-set of filter-identifiers may be derived based on an intersection of the filter-identifier sets.

    Abstract translation: 网络数据分组的分类包括一个或多个过滤器标识符的确定集合,其中每个集合与相应的数据分组分类器字段相关联。 过滤器标识符的结果集可以基于过滤器标识符集合的交集来导出。

Patent Agency Ranking