会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明授权
    • Secure packet management for bare metal access
    • 安全的数据包管理用于裸机访问
    • US08959611B1
    • 2015-02-17
    • US12556432
    • 2009-09-09
    • Pradeep VincentMichael David Marr
    • Pradeep VincentMichael David Marr
    • H04L29/06
    • H04L63/107H04L12/4633H04L45/74H04L61/103H04L61/25H04L67/10
    • Secure networking processes, such as packet encapsulation and decapsulation, can be executed upstream of a user or guest operating system provisioned on a host machine, where the user has substantially full access to that machine. The processing can be performed on a device such as a network interface card (NIC), which can have a separate network port for communicating with mapping systems or other devices across a cloud or secure network. A virtual image of the NIC can be provided to the user such that the user can still utilize at least some of the NIC functionality. In some embodiments, the NIC can work with a standalone processor or control host in order to offload much of the processing to the control host. The NIC can further handle headers and payload separately where possible, in order to improve the efficiency of processing the various packets.
    • 可以在主机上提供的用户或客户机操作系统的上游执行诸如分组封装和解封装之类的安全联网过程,其中用户具有对该机器的基本完全访问。 该处理可以在诸如网络接口卡(NIC)的设备上执行,该网络接口卡(NIC)可以具有用于通过云或安全网络与映射系统或其他设备通信的单独的网络端口。 可以向用户提供NIC的虚拟映像,使得用户仍然可以利用NIC功能中的至少一些。 在一些实施例中,NIC可以与独立处理器或控制主机一起工作,以将大部分处理卸载到控制主机。 NIC可以在可能的情况下进一步处理头部和净荷,以提高处理各种数据包的效率。
    • 5. 发明授权
    • Leveraging physical network interface functionality for packet processing
    • 利用物理网络接口功能进行数据包处理
    • US08483221B1
    • 2013-07-09
    • US13402062
    • 2012-02-22
    • Pradeep VincentMichael David Marr
    • Pradeep VincentMichael David Marr
    • H04L12/56
    • H04L69/22H04L61/1505H04L61/1511H04L61/2007H04L67/1097
    • High-speed processing of packets to, and from, a virtualization environment can be provided while utilizing segmentation offload and other such functionality of commodity hardware. Virtualization information can be added to extension portions of protocol headers, for example, such that the payload portion is unchanged and, when physical address information is added to a frame, a frame can be processed using commodity hardware. In some embodiments, the virtualization information can be hashed and added to the payload or stream at, or relative to, various segmentation boundaries, such that the virtualization or additional header information will only be added to a subset of the packets once segmented, thereby reducing the necessary overhead. Further, the hashing of the information can allow for reconstruction of the virtualization information upon desegmentation even in the event of packet loss.
    • 可以在利用商品硬件的分段卸载和其他此类功能的同时提供到虚拟化环境的数据包的高速处理。 虚拟化信息可以被添加到协议报头的扩展部分,例如,使得有效载荷部分不变,并且当物理地址信息被添加到帧时,可以使用商品硬件来处理帧。 在一些实施例中,虚拟化信息可以在各种分段边界处或相对于各种分段边界被散列并添加到有效载荷或流中,使得虚拟化或附加报头信息将仅被分段添加到分组的子集,从而减少 必要的开销。 此外,即使在分组丢失的情况下,信息的散列也可以在分段时重建虚拟化信息。
    • 6. 发明授权
    • Stateless packet segmentation and processing
    • 无状态分组和处理
    • US08155146B1
    • 2012-04-10
    • US12556453
    • 2009-09-09
    • Pradeep VincentMichael David Marr
    • Pradeep VincentMichael David Marr
    • H04J3/24
    • H04L12/4633H04L69/161
    • High-speed processing of packets to, and from, a virtualization environment can be provided while utilizing segmentation offload and other such functionality of commodity hardware. Virtualization information can be added to extension portions of protocol headers, for example, such that the payload portion is unchanged and, when physical address information is added to a frame, a frame can be processed using commodity hardware. In some embodiments, the virtualization information can be hashed and added to the payload or stream at, or relative to, various segmentation boundaries, such that the virtualization or additional header information will only be added to a subset of the packets once segmented, thereby reducing the necessary overhead. Further, the hashing of the information can allow for reconstruction of the virtualization information upon desegmentation even in the event of packet loss.
    • 可以在利用商品硬件的分段卸载和其他此类功能的同时提供到虚拟化环境的数据包的高速处理。 虚拟化信息可以被添加到协议报头的扩展部分,例如,使得有效载荷部分不变,并且当物理地址信息被添加到帧时,可以使用商品硬件来处理帧。 在一些实施例中,虚拟化信息可以在各种分段边界处或相对于各种分段边界被散列并添加到有效载荷或流中,使得虚拟化或附加报头信息将仅被分段添加到分组的子集,从而减少 必要的开销。 此外,即使在分组丢失的情况下,信息的散列也可以在分段时重建虚拟化信息。
    • 8. 发明授权
    • Leveraging physical network interface functionality for packet processing
    • 利用物理网络接口功能进行数据包处理
    • US08300641B1
    • 2012-10-30
    • US12556447
    • 2009-09-09
    • Pradeep VincentMichael David Marr
    • Pradeep VincentMichael David Marr
    • H04L12/56
    • H04L69/22H04L61/1505H04L61/1511H04L61/2007H04L67/1097
    • High-speed processing of packets to, and from, a virtualization environment can be provided while utilizing segmentation offload and other such functionality of commodity hardware. Virtualization information can be added to extension portions of protocol headers, for example, such that the payload portion is unchanged and, when physical address information is added to a frame, a frame can be processed using commodity hardware. In some embodiments, the virtualization information can be hashed and added to the payload or stream at, or relative to, various segmentation boundaries, such that the virtualization or additional header information will only be added to a subset of the packets once segmented, thereby reducing the necessary overhead. Further, the hashing of the information can allow for reconstruction of the virtualization information upon desegmentation even in the event of packet loss.
    • 可以在利用商品硬件的分段卸载和其他此类功能的同时提供到虚拟化环境的数据包的高速处理。 虚拟化信息可以被添加到协议报头的扩展部分,例如,使得有效载荷部分不变,并且当物理地址信息被添加到帧时,可以使用商品硬件来处理帧。 在一些实施例中,虚拟化信息可以在各种分段边界处或相对于各种分段边界被散列并添加到有效载荷或流中,使得虚拟化或附加报头信息将仅被分段添加到分组的子集,从而减少 必要的开销。 此外,即使在分组丢失的情况下,信息的散列也可以在分段时重建虚拟化信息。
    • 10. 发明授权
    • Co-operative secure packet management
    • 合作安全包管理
    • US08640220B1
    • 2014-01-28
    • US12556421
    • 2009-09-09
    • Pradeep VincentMichael David Marr
    • Pradeep VincentMichael David Marr
    • G06F9/00G06F15/16G06F17/00
    • G06F17/00G06F9/5027G06F2209/509H04L63/0272H04L69/12H04L69/22H04L69/321
    • Secure networking processes, such as packet encapsulation and decapsulation, can be executed upstream of a user or guest operating system provisioned on a host machine, where the user has substantially full access to that machine. The processing can be performed on a device such as a network interface card (NIC), which can have a separate network port for communicating with mapping systems or other devices across a cloud or secure network. A virtual image of the NIC can be provided to the user such that the user can still utilize at least some of the NIC functionality. In some embodiments, the NIC can work with a standalone processor or control host in order to offload much of the processing to the control host. The NIC can further handle headers and payload separately where possible, in order to improve the efficiency of processing the various packets.
    • 可以在主机上提供的用户或客户机操作系统的上游执行诸如分组封装和解封装之类的安全联网过程,其中用户具有对该机器的基本完全访问。 该处理可以在诸如网络接口卡(NIC)的设备上执行,该网络接口卡(NIC)可以具有用于通过云或安全网络与映射系统或其他设备通信的单独的网络端口。 可以向用户提供NIC的虚拟映像,使得用户仍然可以利用NIC功能中的至少一些。 在一些实施例中,NIC可以与独立处理器或控制主机一起工作,以将大部分处理卸载到控制主机。 NIC可以在可能的情况下进一步处理头部和净荷,以提高处理各种数据包的效率。