Interlayer fast authentication or re-authentication for network communication
    11.
    发明申请
    Interlayer fast authentication or re-authentication for network communication 有权
    中间层快速认证或重新认证网络通信

    公开(公告)号:US20040098588A1

    公开(公告)日:2004-05-20

    申请号:US10609685

    申请日:2003-07-01

    CPC classification number: H04L63/08 H04L63/16 H04L63/162 H04L63/166

    Abstract: A system and method are provided for establishing a network communication session using fast authentication. In a network system a client or user device may establish a communication session with a server using full authentication. If the session is interrupted or discontinued and resumption of the session is requested, a session identifier of the previously established session may be compared to the session identifier of the requested session. If a match is detected, the session may be resumed using a fast authentication (or re-authentication) procedure such that the session is resumed more efficiently and expediently. Fast authentication may be performed, for example, even when the first session and the resumed second session are of different authentication layers, different types of network interfaces and/or different locations. Thus, a session, such as a TLS session, may resume functionality among multiple defined authentication protocols or technologies such as 802.1X, PANA or cellular based systems.

    Abstract translation: 提供了一种用于使用快速认证建立网络通信会话的系统和方法。 在网络系统中,客户机或用户设备可以使用完全认证与服务器建立通信会话。 如果会话被中断或中止,并且请求恢复会话,则可以将先前建立的会话的会话标识符与所请求会话的会话标识符进行比较。 如果检测到匹配,则可以使用快速认证(或重新认证)过程恢复会话,使得会话更有效和方便地恢复。 例如,即使当第一会话和恢复的第二会话具有不同的认证层,不同类型的网络接口和/或不同的位置时,也可以执行快速认证。 因此,诸如TLS会话的会话可以在诸如802.1X,PANA或基于蜂窝的系统的多个定义的认证协议或技术中恢复功能。

    Quality of service (QoS) assurance system using data transmission control
    12.
    发明申请
    Quality of service (QoS) assurance system using data transmission control 有权
    使用数据传输控制的服务质量(QoS)保证系统

    公开(公告)号:US20040095914A1

    公开(公告)日:2004-05-20

    申请号:US10444953

    申请日:2003-05-27

    CPC classification number: H04W28/24 H04W28/22 H04W48/20

    Abstract: The present invention provides improved quality of service through data transmission rate control in a network. Data rate control may be in the downlink or uplink direction and may be statically or dynamically configured. Rate control may be implemented at varying points in the network including but not limited to at the wireless host, at the access point, at a separate device such as a server or at a separate location within the network. In one example of the present invention, a rate enforcement function is provided for identifying data packets to be enforced or identifying mapping between each packet and corresponding access point. Also, a rate decision function is also provided for determining the data rate to be enforced for each of the access points or each of the wireless hosts.

    Abstract translation: 本发明通过网络中的数据传输速率控制来提供改进的服务质量。 数据速率控制可以在下行链路或上行链路方向上,并且可以是静态或动态配置的。 速率控制可以在网络中的不同点实现,包括但不限于在无线主机,在接入点处,在诸如服务器的单独设备或网络内的单独位置。 在本发明的一个示例中,提供了一种速率执行功能,用于识别要强制实施的数据分组或识别每个分组与对应接入点之间的映射。 此外,还提供速率确定功能,用于确定要为每个接入点或每个无线主机执行的数据速率。

    Architecture for Open Communication in a Heterogeneous Network
    14.
    发明申请
    Architecture for Open Communication in a Heterogeneous Network 有权
    在异构网络中开放通信的架构

    公开(公告)号:US20140133402A1

    公开(公告)日:2014-05-15

    申请号:US14152185

    申请日:2014-01-10

    CPC classification number: H04L61/10 H04L45/16 H04L45/306 H04L45/741 H04W40/20

    Abstract: Network architecture configured for open communication between a plurality of sub-networks. Each of the plurality of sub-networks has a different routable network addressing scheme. The architecture includes at least one broker node adapted to communicate using at least two different routable network addressing schemes. The broker node comprises an identification management module configured to collect peer-application addresses for nodes currently accessing a specific application, the peer-application addresses being associated with a specific application, an address resolution module configured to map each of the peer-application addresses to a sub-network specific routable network address and a network coordination module configured to monitor and coordinate sub-network communication capabilities between the broker node and at least one other broker node and elect a primary broker node for each sub-network which the broker node and at least one other broker node is capable of communication.

    Abstract translation: 配置为在多个子网之间开放通信的网络架构。 多个子网络中的每一个具有不同的可路由网络寻址方案。 该架构包括适于使用至少两个不同的可路由网络寻址方案进行通信的至少一个代理节点。 代理节点包括识别管理模块,其被配置为收集当前正在访问特定应用的节点的对等应用地址,所述对等应用地址与特定应用相关联,地址解析模块被配置为将每个所述对等应用地址映射到 子网特定可路由网络地址和网络协调模块,被配置为监视和协调代理节点与至少一个其他代理节点之间的子网络通信能力,并为每个子网选择代理节点和 至少一个其他代理节点能够进行通信。

    Automated Determination of Quasi-Identifiers Using Program Analysis
    15.
    发明申请
    Automated Determination of Quasi-Identifiers Using Program Analysis 审中-公开
    使用程序分析自动确定准标识符

    公开(公告)号:US20140130178A1

    公开(公告)日:2014-05-08

    申请号:US14151474

    申请日:2014-01-09

    CPC classification number: G06F21/6254 G06F21/566 G06F21/6209

    Abstract: A system and method for automated determination of quasi-identifiers for sensitive data fields in a dataset are provided. In one aspect, the system and method identifies quasi-identifier fields in the dataset based upon a static analysis of program statements in a computer program having access to - sensitive data fields in the dataset. In another aspect, the system and method identifies quasi-identifier fields based upon a dynamic analysis of program statements in a computer program having access to -sensitive data fields in the dataset. Once such quasi-identifiers have been identified, the data stored in such fields may be anonymized using techniques such as k-anonymity. As a result, the data in the anonymized quasi-identifiers fields cannot be used to infer a value stored in a sensitive data field in the dataset.

    Abstract translation: 提供了一种用于自动确定数据集中敏感数据字段的准标识符的系统和方法。 在一个方面,系统和方法基于在具有对数据集中的敏感数据字段的访问的计算机程序中的程序语句的静态分析来识别数据集中的准标识符字段。 在另一方面,系统和方法基于对具有对数据集中的敏感数据字段的访问的计算机程序中的程序语句的动态分析来识别准标识符字段。 一旦这样的准识别符被识别,存储在这些字段中的数据可以使用诸如k-匿名的技术进行匿名化。 因此,匿名准标识符字段中的数据不能用于推断存储在数据集中的敏感数据字段中的值。

    Optimizing Evaluation Patterns and Data Acquisition for Stream Analytics in Resource-Constrained Wireless Environments
    16.
    发明申请
    Optimizing Evaluation Patterns and Data Acquisition for Stream Analytics in Resource-Constrained Wireless Environments 有权
    优化资源约束无线环境中流分析的评估模式和数据采集

    公开(公告)号:US20140074982A1

    公开(公告)日:2014-03-13

    申请号:US14081308

    申请日:2013-11-15

    Abstract: Mobile wireless devices may receive data streams from multiple remote sensors. The sensors may have limited power supplies and memory capacity. Aspects of the invention use statistical characteristics of the sensor data streams and the cost of acquiring a single element of each stream to determine what sequence the sensors should send their data streams in. The cost of acquiring the data may be modified dynamically, depending on parameters such as block size. Additional factors, such as a sensor's buffer capacity, may limit the amount of stream elements that may be cached and affect the sensors' stream transmit sequence. The evaluation order may be dynamically modified using an event processing engine, to reflect both changing statistics of underlying sensor stream tuples and time-varying acquisition costs associated with individual streams. This helps to increase in the operational lifetime of the sensors and associated monitoring applications.

    Abstract translation: 移动无线设备可以从多个远程传感器接收数据流。 传感器可能具有有限的电源和存储容量。 本发明的各方面使用传感器数据流的统计特征和获取每个流的单个元素的成本来确定传感器应该发送其数据流的顺序。获取数据的成本可以根据参数动态地修改 如块大小。 附加因素,如传感器的缓冲区容量,可能会限制可能被缓存的流元素的数量,并影响传感器的流传输顺序。 可以使用事件处理引擎来动态地修改评估顺序,以反映底层传感器流元组的变化的统计信息和与各个流相关联的时变获取成本。 这有助于增加传感器和相关监控应用的使用寿命。

    Self-Organizing Distributed Service Overlay for Wireless Ad Hoc Networks
    19.
    发明申请
    Self-Organizing Distributed Service Overlay for Wireless Ad Hoc Networks 审中-公开
    自组织分布式服务覆盖无线Ad Hoc网络

    公开(公告)号:US20150304411A1

    公开(公告)日:2015-10-22

    申请号:US13623434

    申请日:2012-09-20

    Abstract: An apparatus and a method are operable to enable peer-to-peer communication between a first communication node having a first server application and an associated first client application and a second communication node having a second server application and an associated second client application in a wireless ad hoc network. In one embodiment, the apparatus includes memory including computer program code configured to, with a processor, cause the apparatus to determine an identity and service capability of the second communication node, initiate the first client application on the first communication node, enable the first server application with the first client application on the first communication node to communicate with the second client application via the second server application on the second communication node, and provide a service associated with the first client application and the second client application between the first server application and the second server application.

    Abstract translation: 一种装置和方法可操作以实现具有第一服务器应用的第一通信节点和相关联的第一客户端应用之间的对等通信,以及具有第二服务器应用的第二通信节点和无线中的相关联的第二客户端应用 ad hoc网络 在一个实施例中,该设备包括存储器,其包括计算机程序代码,该计算机程序代码被配置为与处理器一起使得设备确定第二通信节点的身份和服务能力,在第一通信节点上启动第一客户端应用,使第一服务器 应用程序与第一通信节点上的第一客户端应用通过第二通信节点上的第二服务器应用与第二客户端应用通信,并且在第一服务器应用和第一客户端应用之间提供与第一客户端应用和第二客户端应用相关联的服务 第二个服务器应用程序。

    Method for systematic modeling and evaluation of application flows
    20.
    发明授权
    Method for systematic modeling and evaluation of application flows 有权
    系统建模与应用流程评估方法

    公开(公告)号:US09053448B2

    公开(公告)日:2015-06-09

    申请号:US14018296

    申请日:2013-09-04

    CPC classification number: G06Q10/0633 H04L12/66

    Abstract: A system and method for modeling and evaluating resource requirements of services is disclosed. The system and method in one aspect enable describing an application session in a software model, for example, as a sequence of events in a sequence diagram, annotating the sequence diagram with information and using the sequence diagram and the information to create a mathematical model such as a Markov model that represents the application session. Once in Markov form the service can be analyzed. The system may include a user interface for allowing a user to enter annotations to the sequence diagram.

    Abstract translation: 披露了一种用于建模和评估服务资源需求的系统和方法。 在一个方面中的系统和方法能够描述软件模型中的应用会话,例如,作为序列图中的事件序列,用信息注释序列图并使用序列图和信息来创建数学模型 作为表示应用程序会话的马尔可夫模型。 一旦在马尔科夫形成服务可以分析。 系统可以包括允许用户输入序列图的注释的用户界面。

Patent Agency Ranking