Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

291 results about "Information access" patented technology

Information access is the freedom or ability to identify, obtain and make use of database or information effectively. There are various research efforts in information access for which the objective is to simplify and make it more effective for human users to access and further process large and unwieldy amounts of data and information.

Integrated dispatch decision-making system and method for hub supporting multi-modal transportation coordination, and device

The present invention relates to an integrated dispatch decision-making system and method for a hub supporting multi-modal transportation coordination, and a device. The system comprises: a multi-modal hub passenger flow data fusion and analysis module, which is used for arranging and classifying collected multi-modal hub passenger flow data, performing preprocessing, performing conversion and mapping to obtain normalized passenger flow data, and finally extracting a data fusion feature, and using a normalized transport passenger flow model to perform multi-dimensional data fusion and analysis computation; a hub transportation coordination decision-making module, which is used for performing transport capacity and volume assessment on the basis of the fusion and analysis of the multi-modal passenger flow data, and using an optimal decision-making model to compute an optimal strategy result; and a hub coordination dispatch and command application module, which is used for providing an intelligent command assistance function to a rail transit dispatch and command personnel on the basis of information access of hub-line-network, and the normalized transport passenger flow model. Compared with the prior art, the present invention has the advantages of improving the connectivity and coordinated dispatch of multi-modal transportation in a complex hub scenario, etc.
Owner:CASCO SIGNAL LTD

Power grid engineering supplier information access control method based on zero-trust architecture

The invention discloses a power grid project supplier information access control method based on a zero-trust architecture, and the method comprises the following steps: S1, receiving an access request, and executing identity verification; s2, extracting supplier related information from the verified access request, and generating access context information; s3, generating an access control strategy according to the access context information; s4, a resource access path is established, and access connection is completed through an encryption communication mode; s5, collecting operation behavior data of the suppliers in the access process; s6, calculating a deviation degree between the operation behavior data and a preset behavior baseline, and generating a risk score; s7, when the risk score exceeds a set threshold value, executing a corresponding security processing operation; and S8, archiving the operation behavior data and the security processing record in the access process. According to the method, a dynamic access control and behavior risk response system is constructed based on a zero-trust architecture, and the method has the advantages of fine authorization, continuous verification and high security.
Owner:JILIN JI NENG INVITE TENDERS

Information access security control method and system

The invention relates to the technical field of energy efficiency management, in particular to an information access security control method and system. The method comprises the following steps: performing secure physical space authorization on a target access environment, and deploying a secure environment acquisition network; performing access environment benchmark monitoring by using a secure environment acquisition network to obtain environment benchmark feature data; a user carries out real-time access environment monitoring through user terminal equipment to generate real-time access environment monitoring data; performing multi-dimensional access risk assessment on the real-time access environment monitoring data through the environment reference feature data, and performing dynamic information security access execution to obtain access control execution data; and monitoring an operation behavior of the user in real time based on the access control execution data so as to realize information access security control. According to the invention, information access in an unauthorized physical environment can be effectively prevented, and the capability of resisting position cheating, illegal invasion and potential internal threats is remarkably improved.
Owner:BEIJING XIN INTERNET TECHNOLOGY CO LTD

Response information generation method and device, equipment, storage medium and product

The embodiment of the invention discloses a response information generation method and device, equipment, a storage medium and a product. The method comprises the following steps: determining calling interface information from pre-stored interface configuration information of at least one service party based on received task information sent by a model protocol client; wherein the model protocol client is a client connected with the model protocol server in the model context protocol architecture; accessing a calling service party corresponding to the calling interface information based on the calling interface information so as to obtain associated service data related to the task information from service data of the calling service party; and sending the associated service data to a model protocol client, so that the model protocol client inputs the associated service data and the task information into a pre-trained task execution model, and determining response information corresponding to the task information based on a first output result of the task execution model. According to the technical scheme, the transformation cost can be reduced.
Owner:BEIJING WODONG TIANJUN INFORMATION TECH CO LTD +1

Information access control in workspace ecosystems

Systems and methods for hierarchical workspace orchestration are described. In an illustrative, non-limiting embodiment, an Information Handling System (IHS) may include: a processor and a memory coupled to the processor, the memory having program instructions stored thereon that, upon execution by the processor, cause the IHS to: determine, by a local management agent configured to instantiate a primary workspace, that an operation involving a subordinate workspace instantiated by a peripheral device coupled to the IHS comprises sensitive data; and determine whether to process the sensitive data prior to execution of the operation.
Owner:DELL PROD LP

Continuously updating mortgage ready data

A system and computer-implemented method of continuously updating information about one or more of a customer approved for a mortgage and a real estate property identified as mortgage ready. The method includes monitoring information accessed from a memory storage location corresponding to a customer identification number, the information used to determine the customer is approved for a mortgage, and receiving new information about the customer, the new information used to determine the customer is approved for a mortgage. The method also includes updating, at a memory coupled to the one or more processors, the memory storage location to include the new information. The method still further includes recalculating the amount in which the customer is approved for a mortgage based upon the new information received.
Owner:STATE FARM MUTAL AUTOMOBILE INSURANCE COMPANY

Ensemble communication method, system and equipment based on hybrid expert model

The invention provides an aggregate communication method, system and device based on a hybrid expert model, and relates to the technical field of communication, in particular to the technical fields of chip processors, computing power clusters, aggregate communication operation, large models and the like. The set communication method is applied to a communication receiving end and comprises the steps that a data writing instruction is received, and the data writing instruction comprises to-be-processed data and first address information; accessing a virtual expert address in a pre-created virtual address space according to the first address information; based on the size of the to-be-processed data, applying for a corresponding actual physical space for the virtual expert address; and writing the to-be-processed data into the actual physical space. According to the set communication method provided by the invention, set communication can be realized without memory information synchronization.
Owner:BEIJING BAIDU NETCOM SCI & TECH CO LTD

Multi-level data storage and mixed query method and system, storage medium and equipment

The invention relates to the technical field of big data storage, and discloses a multi-level data storage and mixed query method and system, a storage medium and equipment, and the method comprises the steps: collecting original buried point data, carrying out real-time stream processing, storing the processed real-time data in a hot storage layer, carrying out timing offline batch processing on historical buried point data, and storing the processed real-time data in a hot storage layer; converting into an optimized storage format and storing in an object storage system; an extended metadata management system is constructed, and structure information, partition information and access frequency information of data in the object storage system are automatically extracted and managed; executing query, and reducing the data scanning amount through a query optimization strategy; automatically migrating data among different storage layers through a dynamic cold and hot data layering mechanism; a unified query interface is provided, a query request is distributed to a corresponding real-time processing system or an offline query system based on an intelligent routing strategy, and a query result is cached and returned, so that high-performance and low-cost storage and second-level query of data are realized.
Owner:LINKPLAY TECHNOLOGY INC NANJING

Hard disk access method of hard disk backboard, substrate management controller, server and storage medium

The invention discloses a hard disk access method of a hard disk backboard, a substrate management controller, a server and a storage medium, and relates to the technical field of server hardware management, and the method comprises the following steps: accessing a register of a programmable logic device with a first preset fixed address in a target hard disk backboard, and obtaining topological information of the target hard disk backboard; determining a target hard disk adaptation type of the target hard disk backboard from a plurality of hard disk adaptation types based on the NVME support state of each port contained in the topological information; and accessing the in-place target hard disk based on the access strategy information matched with the target hard disk adaptation type. The problem of high coupling of the BMC code and the hard disk backboard adaptation type is effectively solved, and the flexibility and expandability of server hardware adaptation are improved.
Owner:INSPUR SUZHOU INTELLIGENT TECH CO LTD

Dynamic real time gross rate monitoring through subsurface and surface data

Continuous gross rate of each of a plurality of wells is estimated. Information provided by sensors configured with each of a plurality of electrical submersible pumps is received. Information associated with a respective model of each of the plurality of electrical submersible pumps is accessed. Utilizing at least one of artificial intelligence and machine learning, the information provided by sensors and the information associated with the respective model of each of the plurality of electrical submersible pumps is processed to estimate a first gross rate of each of the plurality of wells. A second gross rate of each of the plurality of wells is estimated via a pipeline simulation that applies a physics-based model. A continuous gross rate for each of the plurality of wells is estimated as a function the first gross rate and the second gross rate.
Owner:SAUDI ARABIAN OIL CO

Data query method based on cloud search service, medium, equipment and product

A data query method based on a cloud search service, a medium, a device and a product belong to the technical field of computers, under the condition that a computing node of a main fragment deploying the cloud search service receives a data write-in request, index data corresponding to the data write-in request is written into remote storage in a storage node independent of the computing node through the main fragment. And maintaining meta information corresponding to the index data in the main fragment, and synchronizing the meta information to the copy fragment corresponding to the main fragment through the main fragment so as to access the index data in the remote storage according to the meta information when the main fragment or the copy fragment receives a query request, and reading a field value corresponding to the query request from the index data, by means of the method, local diskless storage calculation separation can be achieved, the main fragment and the copy fragment are supported to directly read and write remote storage, the local storage cost is greatly reduced, when the cluster scale of the cloud search service changes, data migration is not needed, and the migration speed is greatly increased.
Owner:BEIJING VOLCANO ENGINE TECH CO LTD

Hardware resource scheduling method, device and system, storage medium and program product

The invention relates to the technical field of pre-silicon verification, and provides a hardware resource scheduling method, device and system, a storage medium and a program product. The method comprises the following steps: recording access information of hardware resources of target hardware in an execution process of a user mode drive program in real time; analyzing based on the recorded access information to obtain operation instruction information; the hardware resource is accessed through playback operation instruction information to obtain a hardware execution result, the process of playback operation instruction information is realized by sending an instruction to PCIe in a user mode, and a firmware or kernel mode driver does not need to participate in; and determining a test result of the target hardware according to the hardware execution result and the expected execution result. According to the embodiment of the invention, the method can achieve the decoupling of the development of a user mode drive program and a kernel mode drive program, reduces the software development cost of a pre-silicon verification stage, optimizes the scheduling mechanism of hardware resources, and improves the testing flexibility and verification efficiency.
Owner:MOORE THREADS TECH CO LTD

Graph database storage and management method and system and electronic equipment

The invention relates to a graph database storage and management method, and the method comprises the steps: determining a cluster deployment strategy based on a cluster creation instruction, creating a corresponding Zone according to the cluster deployment strategy, and determining the number of copies of each Zone; according to the number of copies of each Zone and the total number of fragments configured by the graph database, distributing fragment copies on a physical machine of each Zone in a polling manner to obtain a fragment distribution scheme, and creating corresponding fragment copies on the physical machine according to the fragment distribution scheme; and in response to a query instruction initiated by a client, obtaining a routing strategy and the latest fragmentation distribution view information from the management node, and accessing a storage engine of the Zone by a query engine in each Zone based on the routing strategy and the fragmentation distribution view information. Through the method and the device, the problem of low availability when the graph database deploys the service is solved. The graph database service is deployed based on the Zone, and the granularity of the Zone can be self-defined, so that the cross-rack / machine room level and cross-region level high availability is realized.
Owner:杭州悦数科技有限公司

Information access handover

A computerized method of information access handover between a first device and a second device of a user is presented. The method comprises displaying, on the first device, a QR code generated by a synchronizer. The method further comprises capturing the QR code with the second device for displaying the data record and providing a registration option for associating the data record with the user at a relying party. The method further comprises performing a web authentication registration and, in response to that the web authentication registration flow has been performed successfully, performing an information access handover and securing process. The information access handover and securing process comprises sharing, by the second device, the unique user identifier and the device identifier with the first device, storing them at the first device, and securing access to the data record. A corresponding system and computer program are provided, too.
Owner:AMADEUS SAS

Systems and methods for accessing records via derivative locators

ActiveUS12430651B2Database updatingFinanceIssuing bankInternet privacy
Systems and methods are provided for accessing records using derivative locators. An open financial transaction may be initiated by a consumer at a merchant. The merchant may provide transaction information to the acquiring bank, which may provide transaction to the global financial network, which may provide transaction information to an issuing bank. One or more requesting party (e.g., one or more of the acquiring bank, global financial network, or issuing bank) may formulate a derivative locator based on the transaction information received. The derivative locator may function as an index through which records in the repository may be accessed by the requesting party. A time comparison may be made in assisting with accessing the correct record in the repository. The requesting party may determine whether to accept or decline the transaction, optionally with the aid of the information accessed from the repository.
Owner:THE 41ST PARAMETER

Information security data monitoring method and system based on encryption algorithm

The invention relates to the technical field of information security data monitoring, and particularly discloses an information security data monitoring method and system based on an encryption algorithm, and the method comprises the steps: collecting an original information data byte stream, carrying out the wavelet domain feature enhancement preprocessing, carrying out the feature extraction, and obtaining environment sensor data; performing context-aware dynamic encryption by combining an information data block and an information feature matrix to obtain an information ciphertext and metadata, performing multi-modal ciphertext feature extraction, outputting a feature vector, performing federated collaborative anomaly detection, constructing a multi-factor confidence decision framework, and outputting an information access confidence score and an information access strategy. And adjusting a context-aware dynamic encryption mode. According to the method, the problems that the accuracy and recall rate of a detection model still need to be improved due to insufficient real-time performance of traditional data monitoring and difficulty in multi-source data fusion, and the information security data monitoring effect is influenced due to the occurrence of missing report or false report are solved.
Owner:NAN CHENG YUN QU (BEI JING) XIN XI JI SHU YOU XIAN GONG SI

Building full life cycle management method and system based on AI and BIM

The invention discloses a building full life cycle management method and system based on AI and BIM, and particularly relates to the technical field of building information, and the method comprises the steps of component information access and semantic standardization, spatio-temporal data collection and registration and multi-objective optimization, version monitoring and difference influence evaluation and influence management and control. Component attributes are automatically extracted through natural language processing, and precise mapping between the BIM model and field sensing and detection data is achieved; the graph neural network and the long and short term memory network are combined to identify collision risk and performance deviation, and a multi-target optimal solution optimization scheme is generated through an evolutionary algorithm; a graph neural network is utilized to extract difference sub-graphs, and change influence scores are quantified in three dimensions of progress, cost and safety, so that a basis is provided for auditing and backspacing; people, machines, materials and early warning are dispatched based on the change influence score, and the risk management and control and resource utilization efficiency in building full life cycle management is improved.
Owner:RUNYANG (SHENZHEN) TECH HLDG CO LTD

Generating engagement scores using machine learning models for users interacting with virtual objects

Provided are a computer program product, system, and method for generating engagement scores using machine learning models for users interacting with virtual objects. Movement parameters are received from tracking devices from a user in a real-world while the user is interacting with a virtual object in the extended-reality environment. The movement parameters are processed to determine a first engagement score indicating user interest in the real-world entity represented by the virtual object. A determination is made of on user information access requests with respect to the real-world entity. The information on the user information access requests is inputted to an engagement machine learning model to output a second engagement score indicating user interest in the real-world entity. The first engagement score and the second engagement score are outputted to provide information on an efficacy of the virtual object in promoting interest in the real-world entity.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Information access control method and system based on digital signature

The invention discloses a digital signature-based information access control method and system. The method comprises the following steps of: generating a digital signature; a unified token generation step; and an access verification step. Three advanced benefits are synchronously realized through a digital signature dynamic token mechanism: password memory burden on a user side is avoided, and login time consumption is reduced from a minute level to a second level; the management side meets the GDPR minimum permission principle, and the data exposure surface is reduced; a system side realizes encryption system standardization through a key management center, and a zero-accident safety template is provided for strong supervision industries such as medical treatment and finance.
Owner:GUANGDONG CHENGZHI TECH CO LTD

Data access method, exchange subsystem, data access system and electronic equipment

Disclosed are a data access method, an exchange subsystem, a data access system and an electronic device, relating to the technical field of information transmission, comprising: for a configuration information access request of a target endpoint device located in a different host domain from a target host device, a configuration information response device can respond to the configuration information access request, although the target endpoint device is not in the host domain where the target host device is located, the target virtual configuration information fed back by the configuration information response device can enable the target host device to identify the target endpoint device as an endpoint device in the host domain of the target host device, and the target virtual configuration information is utilized to execute the address data conversion operation. Therefore, when the bridge device obtains the actual address data in the target address field, the cross-address-field addressing operation can be automatically carried out, and the target endpoint device can be accessed. Therefore, the development efficiency of the drive program can be improved only by adding the conversion code of the address data on the basis of the original drive program.
Owner:SHANDONG YUNHAI GUOCHUANG CLOUD COMPUTING EQUIP IND INNOVATION CENT CO LTD

Cross-tenant order combination processing method, cross-border e-commerce platform and electronic equipment

The embodiment of the invention provides a cross-tenant order combination processing method, a cross-border e-commerce platform, electronic equipment, a storage medium and a computer program product. The method comprises the following steps: in response to a settlement operation executed for a selected commodity in a shopping cart, based on user information of a current user and first associated information of the selected commodity, accessing a preset order generation service of a server to obtain view data of a cross-tenant order; an order preview page is rendered based on the view data of the cross-tenant order, so that the cross-tenant order is displayed on the order preview page, and the cross-tenant order comprises commodities of a plurality of national or regional merchants; and submitting the cross-tenant order to the server in response to an order submission operation executed for the cross-tenant order. According to the method, one-key submission of orders of multiple countries or regions is realized, and the order placing efficiency is effectively improved.
Owner:HANGZHOU ALIBABA INT INTERNET IND CO LTD

Information access handover

A computerized method of information access handover between a first device and a second device of a user is presented. The method comprises displaying, on the first device, a QR code generated by a synchronizer. The method further comprises capturing the QR code with the second device for displaying the data record and providing a registration option for associating the data record with the user at a relying party. The method further comprises performing a web authentication registration and, in response to that the web authentication registration flow has been performed successfully, performing an information access handover and securing process. The information access handover and securing process comprises sharing, by the second device, the unique user identifier and the device identifier with the first device, storing them at the first device, and securing access to the data record. A corresponding system and computer program are provided, too.
Owner:AMADEUS SAS

Multi-agent cooperative workflow construction method for English customs consultation

The invention relates to the field of English customs consultation, and discloses an English customs consultation-oriented multi-agent collaborative workflow construction method, which comprises the following steps of constructing a four-dimensional dynamic hypergraph; converting the four-dimensional dynamic hypergraph into tensor representation, performing tensor decomposition, and identifying key agent role nodes under a high weight dimension; constructing an alliance value function and carrying out optimization solution; respectively representing Chinese and English input by adopting an encoder, generating a semantic representation vector, and obtaining a structured semantic fusion result; and carrying out incremental updating on system weight parameters to realize model synchronization of dynamic policy contents. According to the invention, a multi-agent cooperation mechanism and a dynamic hypergraph construction technology are adopted, and real-time information integration in English customs affair consultation is realized. According to the technology, the accuracy of policy interpretation is remarkably improved, and compared with an existing information access information processing technology based on a static database, the problem of information isolated island is solved, and customer requirements are responded in time.
Owner:周旭逸

Metadata federal management system and method under unified namespace

The invention provides a metadata federation management system and method under a unified namespace. The system comprises a data storage unit, a data directory unit, a metadata federation unit and a data gateway unit. The data storage unit comprises a plurality of heterogeneous storage systems, and the types of the heterogeneous storage systems are different. The data directory unit is used for managing business metadata of each heterogeneous storage system; the business metadata is used for describing the data content, the data source and the data association relationship. The metadata federation unit is used for managing technical metadata of each heterogeneous storage system, and the technical metadata is used for describing logic-to-physical mapping information, access protocol and endpoint information and authentication and authorization information of data. The data gateway unit is used for providing protocol conversion and is responsible for data routing to read and cache data. Through unified management of the metadata by the metadata federation unit, the problem of data islands in a heterogeneous storage environment can be avoided.
Owner:ZHEJIANG LAB

Communication software information access control method, computer device and medium

The invention discloses a communication software information access control method, a computer device and a medium. The method comprises the following steps: in response to a communication software information access request, determining an access user ID, a to-be-queried organization ID and an access personnel permission type, if the access user ID exists in communication software, obtaining the organization ID to which the access user ID belongs, and combining the access user ID and the to-be-queried organization ID into an organization ID list; obtaining a preset organization identifier of each organization ID in the list, and adding the preset organization identifiers to obtain a query organization identifier; if the identifier is consistent with an organization identifier transmitted by the client, calling an organization structure and personnel information corresponding to the to-be-queried organization ID from a local data storage library of the client and feeding back the organization structure and personnel information to the requester; if not, obtaining the on-off state of the organization strategy to be inquired, and feeding back access information according to the first access strategy when the on-off state of the on-off state; and when the switch is turned on, feeding back access information according to the second access strategy. According to the method, high-flexibility, high-security, efficient and accurate access control can be realized.
Owner:BEIJING VRV SOFTWARE CO LTD

Vector slicing service level-to-level management system based on multi-scale power distribution network model

The invention relates to the technical field of power distribution network management, and discloses a vector slicing service level-to-level management system based on a multi-scale power distribution network model, and the system comprises a semantic vector slicing generation module which is used for generating an asset layer, writing an electric power semantic attribute, and calculating a tile sensitivity level; the incremental slice pushing module is used for generating incremental tile data according to the operation event information of the power distribution network and updating a real-time state identifier and a tile sensitivity level; the attribute access control module is used for calculating a user permission score according to the role information, the access qualification and the geographical location information, and performing desensitization or encryption processing; the front-end display module is used for receiving map tile data and completing decryption, verification and layer display; and the strategy monitoring and regulating module is used for dynamically adjusting a weight parameter in user permission score calculation based on the access record. According to the invention, fine visual, safe access and efficient management of the map data of the power distribution network are realized.
Owner:XIAMEN YIHE HENGTUO INFORMATION TECH CO LTD

Data processing method capable of being injected into multi-dimensional tabular interface

The invention provides a data processing method capable of being injected into a multi-dimensional tabulation interface, which comprises the following steps of: S1, configuring a table: configuring interface parameters into an interface parameter table according to a tabulation mode, and configuring information processing parameters into a processing parameter table; s2, parameter injection: configuring an equipment interface working mode according to data in an interface parameter table, and configuring equipment data processing parameters according to a processing parameter table; s3, acquiring interface data: performing communication by using the configured equipment interface to acquire communication data; and S4, processing mapping. According to the method, after the multi-dimensional tabular parameters for different system architectures are created, the information admission table or the instruction sequence table or the instruction series table of the instruction is ingeniously utilized, the purposes of efficient design and test of the system and reduction of the error rate can be achieved, and high-quality development and rapid design of the system are achieved.
Owner:GUIZHOU AEROSPACE TIANMA ELECTRICAL TECH

Data acquisition method and device, computer equipment, readable storage medium and program product

The invention relates to a data acquisition method and device, computer equipment, a computer readable storage medium and a computer program product. The method comprises the steps of obtaining current collection data item information through a target interface; generating collection configuration information based on the current collection data item information and a preset template, accessing an endpoint of the data agent collection tool according to the collection configuration information, and obtaining an index name and label data in a target format through the endpoint; the data agent acquisition tool determines a data provider by reading the acquisition configuration information, acquires to-be-processed data from the data provider, screens out target data from the to-be-processed data based on the acquisition configuration information, and converts the target data into an index name and label data in a target format; and sending the index name of the target format and the label data to a target database to complete data acquisition. By adopting the method, the efficiency of data acquisition configuration can be improved, so that the flexibility and expandability of data acquisition configuration are improved.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Interface authority control method and device, electronic equipment and storage medium

The invention relates to the technical field of interface control, in particular to an interface authority control method and device, electronic equipment and a storage medium. The interface permission control method comprises the steps of receiving user request information in response to determining that a target interface has a permission password; extracting token information and a target character string in the user request information; traversing the local cache information and the remote cache information, and determining a target permission list corresponding to the token information; and in response to determining that the target character string has corresponding information in the target permission list, allowing the user to request the information to access the target interface. According to the interface authority control method provided by the invention, the flexibility and expansibility of the system can be effectively improved while the system configuration is simple.
Owner:HEFEI ZHONGKE LEINAO INTELLIGENCE TECH CO LTD +1

Container allocation, access method, information display method and container allocation system

Embodiments of the present invention provide a container allocation method, a container access method, an information display method, a container allocation system, a computing device, and a computer storage medium. The container allocation method includes: obtaining a container allocation request sent by a request initiator; determining a target container from at least one container in response to the container allocation request; obtaining network access information for the target container from a database; and transmitting the network access information to the request initiator so that the request initiator can access the target container based on the network access information. The technical solution provided by the embodiments of the present invention enables, after a target container is allocated to a request initiator, the request initiator to use the obtained network access information to permanently access the allocated target container.
Owner:ALIBABA (CHINA) CO LTD