CENTRALIZED PUBLISHING OF NETWORK RESOURCES
    1.
    发明申请
    CENTRALIZED PUBLISHING OF NETWORK RESOURCES 审中-公开
    网络资源的集中发布

    公开(公告)号:WO2009108450A2

    公开(公告)日:2009-09-03

    申请号:PCT/US2009032593

    申请日:2009-01-30

    Applicant: MICROSOFT CORP

    CPC classification number: H04L63/101

    Abstract: Techniques for centralized publishing of network resources within computer networks are described. Publication of and access to the network resources are controlled from a single, centralized location, advantageously improving the uniformity of network administration responsibilities, and overall robustness of the network.

    Abstract translation: 描述了计算机网络中网络资源集中发布的技术。 从单个集中的位置控制对网络资源的发布和访问,有利于提高网络管理责任的统一性和网络的整体鲁棒性。

    POLICY DRIVEN, CREDENTIAL DELEGATION FOR SINGLE SIGN ON AND SECURE ACCESS TO NETWORK RESOURCES
    2.
    发明申请
    POLICY DRIVEN, CREDENTIAL DELEGATION FOR SINGLE SIGN ON AND SECURE ACCESS TO NETWORK RESOURCES 审中-公开
    政策驱动,单一登录和安全访问网络资源的认证代表

    公开(公告)号:WO2007139944A3

    公开(公告)日:2008-02-14

    申请号:PCT/US2007012512

    申请日:2007-05-25

    Applicant: MICROSOFT CORP

    CPC classification number: H04L63/0815 H04L9/3273 H04L63/20 H04L2209/80

    Abstract: A credential security support provider (Cred SSP) enables any application to securely delegate a user's credentials from the client, via client side Security Support Provider (SSP) software, to a target server, via server side SSP software. The Cred SSP provides a secure solution based in part upon a set of policies. The policies can be for any type of user credentials and the different policies are designed to mitigate a broad range of attacks so that appropriate delegation can occur for given delegation circumstances, network conditions, trust levels, etc. Additionally, only a trusted subsystem, e.g., a trusted subsystem of the Local Security Authority (LSA), has access to the clear text credentials such that neither the calling application of the Cred SSP APIs on the server side nor the calling application of the Cred SSP APIs on the client side have access to clear text credentials.

    Abstract translation: 凭证安全支持提供商(Cred SSP)使任何应用程序能够通过客户端安全支持提供商(SSP)软件将用户的凭据安全地委派给目标服务器,通过服务器端SSP软件。 Cred SSP提供了一部分基于一组策略的安全解决方案。 这些策略可以用于任何类型的用户凭证,并且不同的策略被设计为减轻广泛的攻击,从而可以针对给定的授权情况,网络条件,信任级别等进行适当的委托。此外,只有可信的子系统,例如 ,本地安全机构(LSA)的受信任的子系统可以访问明文凭据,使得服务器端的Cred SSP API的呼叫应用程序和客户端的Cred SSP API的呼叫应用都不具有访问权限 清除文本凭据。

    SERVER OPERATING SYSTEM FOR SUPPORTING MULTIPLE CLIENT-SERVER SESSIONS AND DYNAMIC RECONNECTION OF USERS TO PREVIOUS SESSIONS
    3.
    发明申请
    SERVER OPERATING SYSTEM FOR SUPPORTING MULTIPLE CLIENT-SERVER SESSIONS AND DYNAMIC RECONNECTION OF USERS TO PREVIOUS SESSIONS 审中-公开
    服务器操作系统,用于支持多个客户 - 服务器会话和用户动态重新分配以前的会话

    公开(公告)号:WO9926159A3

    公开(公告)日:1999-08-05

    申请号:PCT/US9823347

    申请日:1998-11-02

    Applicant: MICROSOFT CORP

    Abstract: A server operating system supports multiple client-server sessions and enables a user to begin a session and later dynamically reconnect to that session even if the user uses two different client computers. The operating system has a multi-user session manager to enable multiple client-server sessions on the server and a multi-user stack protocol manager to manage one or more protocol stacks used in communicating with the clients. When a user connects to the server via a first client, the stack protocol manager assigns a first protocol stack to this first client-server connection and the session manager creates a first session for the user. When the user subsequently reconnects to the server using a second client that is different from the first client, the stack manager assigns a second protocol stack to a second client-server connection and the session begins creating a second session for the user. During this latter process, however, the session manager recognizes that the user is affiliated with the first session. The session manager adapts the first session to conform to the system configuration of the second client. The session manager then reassociates the second protocol stack with the reconfigured first session so that the user is returned to his/her original session, even though they logged on from a different client.

    Abstract translation: 服务器操作系统支持多个客户端 - 服务器会话,并使用户能够开始会话,并且以后动态地重新连接到该会话,即使用户使用两台不同的客户端计算机。 操作系统具有多用户会话管理器以在服务器上启用多个客户端 - 服务器会话,并且多用户堆栈协议管理器管理用于与客户端通信的一个或多个协议栈。 当用户通过第一客户端连接到服务器时,堆栈协议管理器为该第一客户端 - 服务器连接分配第一协议栈,并且会话管理器为该用户创建第一会话。 当用户随后使用不同于第一客户端的第二客户端重新连接到服务器时,堆栈管理器将第二协议栈分配给第二客户端 - 服务器连接,并且会话开始为用户创建第二会话。 然而,在后面的过程中,会话管理器认识到用户与第一次会话有关。 会话管理器调整第一个会话以符合第二个客户端的系统配置。 然后,会话管理器将第二个协议栈与重新配置的第一个会话重新关联,以便用户返回到他/她的原始会话,即使他们从不同的客户端登录。

    EFFICIENT ENCODING OF ALTERNATIVE GRAPHIC SETS
    7.
    发明公开
    EFFICIENT ENCODING OF ALTERNATIVE GRAPHIC SETS 审中-公开
    EFFIZIENTE CODIERUNG ALTERNATIVER GRAFISCHERSÄTZE

    公开(公告)号:EP2005310A4

    公开(公告)日:2012-01-04

    申请号:EP07716664

    申请日:2007-01-16

    Applicant: MICROSOFT CORP

    CPC classification number: H03M7/30 G06F9/542 G06F2209/545

    Abstract: Embodiments provide for efficient encoding and rendering of remote graphic displays by applying one or more of the following: (1) field encoding for identifying fields of a graphics set such that commonalities of various fields across different graphics languages are identified; (2) resource caching, which treats heterogeneous resources in a homogeneous way when it comes to storing them; (3) determining the type of encoding for remoting items within a graphics set based upon the types of compression mechanisms supported by a remote device; (4) improving responsiveness by rendering with partially sent resources; (5) a mechanism for determining what portions (if any) of a graphics set should be sent to a remote device and in what order; and (6) use of dedicated resources already on a remote device in order to eliminate the transfer of a resource between a local device and the remote device when rendering such resource.

    Abstract translation: 实施例通过应用以下一个或多个来提供对远程图形显示的有效编码和呈现:(1)用于识别图形集的字段的字段编码,以便识别跨越不同图形语言的各种字段的共同点; (2)资源缓存,在存储它们时以均匀的方式处理异构资源; (3)基于由远程设备支持的压缩机制的类型,确定用于远程处理图形集合内的项目的编码类型; (4)通过部分派发资源提高响应能力; (5)用于确定图形集合的哪些部分(如果有的话)应当被发送到远程设备并以什么顺序的机制; 和(6)使用已经在远程设备上的专用资源,以便在呈现这样的资源时消除本地设备和远程设备之间的资源传输。

    EFFICIENT ENCODING OF ALTERNATIVE GRAPHIC SETS

    公开(公告)号:MY149001A

    公开(公告)日:2013-06-28

    申请号:MYPI20083517

    申请日:2007-01-16

    Applicant: MICROSOFT CORP

    Abstract: EMBODIMENTS PROVIDE FOR EFFICIENT ENCODING AND RENDERING OF REMOTE GRAPHIC DISPLAYS BY APPLYING ONE OR MORE OF THE FOLLOWING: (1) FIELD ENCODING FOR IDENTIFYING FIELDS OF A GRAPHICS SET (155) SUCH THAT COMMONALITIES OF VARIOUS FIELDS ACROSS DIFFERENT GRAPHICS LANGUAGES ARE IDENTIFIED; (2) RESOURCE CACHING, WHICH TREATS HETEROGENEOUS RESOURCES IN A HOMOGENEOUS WAY WHEN IT COMES TO STORING THEM; (3) DETERMINING THE TYPE OF ENCODING FOR REMOTING ITEMS WITHIN A GRAPHICS SET (155) BASED UPON THE TYPES OF COMPRESSION MECHANISMS SUPPORTED BY A REMOTE DEVICE (110); (4) IMPROVING RESPONSIVENESS BY RENDERING WITH PARTIALLY SENT RESOURCES; (5) A MECHANISM FOR DETERMINING WHAT PORTIONS (IF ANY) OF A GRAPHICS SET SHOULD BE SENT TO A REMOTE DEVICE (110) AND IN WHAT ORDER; AND (6) USE OF DEDICATED RESOURCES ALREADY ON A REMOTE DEVICE (110) IN ORDER TO ELIMINATE THE TRANSFER OF A RESOURCE BETWEEN A LOCAL DEVICE (105) AND THE REMOTE DEVICE (110) WHEN RENDERING SUCH RESOURCE.

    POLICY DRIVEN, CREDENTIAL DELEGATION FOR SINGLE SIGN ON AND SECURE ACCESS TO NETWORK RESOURCES

    公开(公告)号:MY148801A

    公开(公告)日:2013-05-31

    申请号:MYPI20084402

    申请日:2007-05-25

    Applicant: MICROSOFT CORP

    Abstract: A CREDENTIAL SECURITY SUPPORT PROVIDER (CRED SSP) IS PROVIDED THAT ENABLES ANY APPLICATION TO SECURELY DELEGATE A USER'S CREDENTIALS FROM THE CLIENT, VIA CLIENT SIDE SECURITY SUPPORT PROVIDER (SSP) SOFTWARE, TO A TARGET SERVER, VIA SERVER SIDE SSP SOFTWARE IN A NETWORKED COMPUTING ENVIRONMENT. THE CRED SSP OF THE INVENTION PROVIDES A SECURE SOLUTION THAT IS BASED IN PART UPON A SET OF POLICIES, INCLUDING A DEFAULT POLICY THAT IS SECURE AGAINST A BROAD RANGE OF ATTACKS, WHICH ARE USED TO CONTROL AND RESTRICT THE DELEGATION OF USER CREDENTIALS FROM A CLIENT TO A SERVER. THE POLICIES CAN BE FOR ANY TYPE OF USER CREDENTIALS AND THE DIFFERENT POLICIES ARE DESIGNED TO MITIGATE A BROAD RANGE OF ATTACKS SO THAT APPROPRIATE DELEGATION CAN OCCUR FOR GIVEN DELEGATION CIRCUMSTANCES, NETWORK CONDITIONS, TRUST LEVELS, ETC. ADDITIONALLY, ONLY A TRUSTED SUBSYSTEM, E.G., A TRUSTED SUBSYSTEM OF THE LOCAL SECURITY AUTHORITY (LSA), HAS ACCESS TO THE CLEAR TEXT CREDENTIALS SUCH THAT NEITHER THE CALLING APPLICATION OF THE CRED SSP APIs ON THE SERVER SIDE NOR THE CALLING APPLICATION OF THE CRED SSP APIs ON THE CLIENT SIDE HAVE ACCESS TO CLEAR TEXT CREDENTIALS.

Patent Agency Ranking