Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

495 results about "Namespace" patented technology

In computing, a namespace is a set of symbols that are used to organize objects of various kinds, so that these objects may be referred to by name. A namespace ensures that all the identifiers within it have unique names so that they can be easily identified.

Adaptive Network Framework For Modular, Dynamic, and Decentralized Systems

A distributed indexing and resolution architecture is disclosed for decentralized systems requiring modular, trust-scoped mutation control and dynamic alias governance. The system comprises a plurality of index entries arranged in a parent-child hierarchy, each associated with a structured alias and governed by one or more anchor nodes. Anchors perform localized resolution, mutation validation, and restructuring operations under deterministic policy constraints, enabling semantic scope enforcement and entropy-sensitive adaptation without requiring global consensus or centralized control. The architecture supports scoped alias traversal, asynchronous mutation proposals, and elastic anchor registration based on system state metrics. The indexing substrate may be integrated into heterogeneous infrastructures, including systems comprising distributed software agents, semantic execution platforms, or pseudonymous identity frameworks. Anchors coordinate within defined trust domains to ensure lineage continuity, dynamic rekeying, and semantic integrity across independently governed segments of a decentralized namespace.
Owner:CLARK NICHOLAS

Management of discrete namespaces by nonvolatile memory controller

This disclosure provides techniques for managing memory which match per-data metrics to those of other data or to memory destination. In one embodiment, wear data is tracked for at least one tier of nonvolatile memory (e.g., flash memory) and a measure of data persistence (e.g., age, write frequency, etc.) is generated or tracked for each data item. Memory wear management based on these individually-generated or tracked metrics is enhanced by storing or migrating data in a manner where persistent data is stored in relatively worn memory locations (e.g., relatively more-worn flash memory) while temporary data is stored in memory that is less worn or is less susceptible to wear. Other data placement or migration techniques are also disclosed.
Owner:RADIAN MEMORY SYSTEMS INC

Cross-product transplantation method and device for secondary development codes, computer equipment and medium

The invention relates to the technical field of electric digital data processing, and provides a secondary development code cross-product transplantation method and device, computer equipment and a medium. The method comprises the steps of loading a source project, screening a to-be-transplanted source code file, identifying an original API type, determining a mapping relation between the original API type and a target API type, and generating an adaptation layer code framework according to the mapping relation; copying the to-be-transplanted source code file into the target project; on the premise of keeping the project hierarchical structure of the source project, replacing the calling node of the original API type with the calling node of the adapter type, and replacing the namespace reference with the corresponding namespace in the target project to obtain a migrated source code file; and obtaining a secondary development project of the target project based on the second product API according to the adaptation layer code framework and the migrated source code file. According to the method and the device, the transplantation efficiency and accuracy of the transplantation of the cross-product secondary development codes are improved.
Owner:GLODON CO LTD

Linux container-based Android and open source gap dual-system cooperative operation method

The invention discloses a Linux container-based Android and open source gap dual-system collaborative operation method, relates to the technical field of operation system collaboration, and aims to reduce resource occupation and improve collaboration and switching coherence, and the method comprises the following steps: step 1, by taking an Android as a host, creating a container isolation running domain, starting a namespace and managing resources by a control group; the method comprises the following steps: presetting a binder virtualization and three-state template; 2, deploying an open source gap in a container, mounting a shared directory in a directory binding manner, configuring bridging or address translation, and establishing copy-on-write and snapshot identifiers; and step 3, establishing a cross-system binder channel, and setting a service registration agent in a service manager and completing mapping of a handle and an authority domain by combining a shared memory and a local socket. And step 4, executing system switching without restarting, enabling one foreground and the other background through a foreground interface and continuous quota assignment, freezing a background session, limiting the speed of background heartbeat, and returning according to a snapshot when an exception occurs.
Owner:JIAXING JIASAI INFORMATION TECH CO LTD

Tracking data center build health

Skills and skills metadata may be used to define a process for building a data center. Skills of one service may depend on skills corresponding to the same or different service. A dependency graph may be generated based on these dependencies. The graph may specify an order by which orchestration operations are to be performed to build the services, thereby building the data center. During execution of the process for building the data center, health states corresponding to the skills may be tracked (based at least in part on alarms and / or namespaces associated with the skills). When an unhealthy skill is identified, the system may traverse the dependency graph to identify a root cause (e.g., failed operations corresponding to a skill on which the unhealthy skill directly / indirectly depends). A notification and / or various options may be provided to address the unhealthy state of one or both skills.
Owner:ORACLE INT CORP

Multi-channel APP automatic packaging system

The invention relates to the technical field of mobile application continuous integration automation, and discloses a multi-channel APP automatic packaging system which comprises the steps that byte code files in a released mobile terminal APP installation package are acquired, and an occupied symbol space set is generated; generating an available confusion namespace by using set complementary operation; extracting method-level code change by using an abstract syntax tree difference algorithm, and generating a change method set; generating a patch special confusion rule for the change method set by using a namespace allocation algorithm; compiling and obfuscating the change method set by applying a patch special obfuscating rule to generate a safe obfuscating patch byte code; performing packaging and signature operation on the safe obfuscation patch byte code, and outputting a minimized obfuscation safe hot repair patch pack; according to the method, the technical problems that class definition conflicts or method calling errors occur after the hot repair patch is loaded, and the downloading success rate of a user is affected due to the overlarge size of the hot repair patch are solved.
Owner:ANHUI DUOXIAO INFORMATION TECH CO LTD

Migrate command associated with tagged capacity in a compute express link (CXL) memory device coupled with a nonvolatile memory express (NVME) memory device

A system can include a first memory device comprising a plurality of dynamic capacity devices, a second memory device, and a processing device, operatively coupled with the first and second memory devices. The processing device is configured to perform operations including receiving a host command to move first data associated with a first tag to the second memory device, wherein the first tag is associated with a first memory section of the plurality of dynamic capacity devices, and wherein the first memory section is allocated to a first host system to store the first data; responsive to receiving the host command to move, determining a second memory section of the second memory device, wherein the second memory section is associated with a namespace of the second memory device; and storing the first data in the second memory section associated with the namespace.
Owner:MICRON TECHNOLOGY INC

Automatic arrangement system based on event driving and context management and implementation method

The invention relates to the technical field of process orchestration, and discloses an automatic orchestration system and implementation method based on event driving and context management, and the system comprises a model orchestration module which receives an external request through an OpenAPI, carries out the model packaging based on namespace attributes, and abstracts the workflow execution capability into a configurable model entity; the workflow engine module is used for providing a dynamic arrangement and execution mechanism based on a directed graph structure and carrying out unified context management; the parameter configuration module is used for constructing a global data constraint and management mechanism of a parameter-result double-layer model, and establishing a data mapping relation between an execution layer and a display layer of the process; and the data source management module uniformly manages and configures the external service capability units which can be called by the nodes in the workflow. According to the method, asynchronous, self-driven and distributed parallel execution of the workflow nodes can be realized, the operation efficiency in a high-concurrency scene is improved, and organic unification of performance, stability and expansibility is realized.
Owner:ASPIRE INFORMATION TECH BEIJING

Novel traffic information dynamic time sequence diagram topological structure

The invention provides a novel traffic information dynamic time sequence diagram topological structure, which relates to the technical field of dynamic time sequence diagrams, and comprises the following steps: configuring a namespace and time granularity system of a traffic information dynamic time sequence diagram, setting a global timestamp rule and a propulsion strategy, defining an information identification bit structure, and setting a visibility and consistency control strategy. And a unified time window scheduling and snapshot life cycle management mechanism is configured. A dynamic extensible time sequence naming system is formed by establishing a unified naming space, time granularity delta t and a global timestamp rule, windowed organization and snapshot chain management of traffic information are achieved, the structure can automatically advance snapshot in a time driving mode and a data driving mode, time sequence consistency and real-time performance are guaranteed, and the time sequence naming efficiency is improved. The problems that node time management is disordered and data cannot be traced in a traditional traffic map model are solved.
Owner:BEIJING HANTANG TIANCHUANG FINANCIAL CONSULTING CO LTD

Multi-system ai repository controller

PendingUS20260064396A1Program controlTransmissionDocument modelEngineering
Systems and methods are provided for creating a machine learning (ML) model staging repository, where ML models are stored as an open container image (OCI). The OCI comprises layers or portions of the complete ML model, so that the model can be stored separately and as a smaller files. The ML models may be pre-packaged for automated downloads and integration at the customer site. In some examples, the OCI can identify / store the model in a directory structure that defines the model and its profile. The OCI can comprise a combination of layers and profiles that allows the AI platform to optimize the storage and simplify the process of downloading or updating the given user namespace instead of downloading a single large file for the model.
Owner:HEWLETT PACKARD ENTERPRISE DEV LP

Single namespace for high performance computing system

A data processing architecture controls data processing arbitration in a high performance computing system that includes one or more premises. Individual premises can include one or more server computers executing an instance of a local file system and including one or more temporary data storage devices. Individual instances of the local file system can access files stored in objects of a primary data store. Individual objects of the primary data store can be accessed using a common identifier indicating a storage location of the individual objects in the primary data store.
Owner:GUARDANT HEALTH INC

Bandwidth allocation method and device for namespace

The invention discloses a bandwidth allocation method and device for a namespace, and the method comprises the steps: receiving an operation request, and determining a target namespace for which the operation request aims in an SSD (Solid State Disk); obtaining the capacity of the target namespace and the total bandwidth of the NAND Flash end of the SSD, determining active namespaces when the operation request is received, and obtaining the sum of the capacities of all the active namespaces; wherein the active namespace refers to a namespace with data operation in a preset time period; obtaining a capacity ratio between the capacity of the target namespace and the determined sum of the capacities of all the active namespaces; and allocating bandwidth for the target command space according to the total bandwidth of the NAND Flash end and the obtained capacity ratio, and executing the received operation request according to the allocated bandwidth. Therefore, the overall bandwidth utilization rate is improved.
Owner:HEFEI DATANG STORAGE TECH CO LTD

Data migration system and method, electronic equipment and storage medium

The invention discloses a data migration system and method, electronic equipment and a storage medium, and relates to the technical field of computers.The method comprises the steps that under the condition that a target data disk meets a data migration session establishment request sent by the source data disk, a corresponding target namespace of to-be-migrated data of the source data disk is established, the information of successful establishment of the data migration session is sent to the corresponding source data disk; the source data disk writes to-be-migrated data into a target namespace of a corresponding target data disk according to a corresponding source logic address of the to-be-migrated data in the source data disk based on the data migration session, and the storage cluster management module stores the to-be-migrated data in the target namespace of the corresponding target data disk under the condition that the data migration task is completed. And recording a corresponding relationship between the source logic address of the to-be-migrated data and the target namespace of the target data disk corresponding to the to-be-migrated data in a system layer. The technical problem that the performance of the storage system is reduced due to the fact that data migration needs to modify a large amount of metadata in the related technology is solved, and the technical effect of improving the performance of the storage system is achieved.
Owner:JINAN INSPUR DATA TECH CO LTD

Cluster tenant resource scheduling method and device, electronic equipment and storage medium

The embodiment of the invention discloses a cluster tenant resource scheduling method and device, electronic equipment and a storage medium, relates to a cloud computing technology and can be used in the field of financial science and technology, and the method comprises the following steps: predicting a future resource demand of a target tenant namespace based on historical resource use data of the target tenant namespace in a cluster, the target tenant namespace comprises a tenant namespace bearing a key service; determining a real-time resource quota of the target tenant namespace based on the available resources of the shared pool and the future resource demand predicted value, the service level and the comprehensive priority of the target tenant namespace; and performing real-time resource scheduling on the target tenant namespace based on the real-time resource quota. According to the embodiment of the invention, the service quality of key services in a multi-tenant mixed deployment scene can be improved, and the resource utilization rate can be effectively improved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Resource mounting method and data system

The embodiment of the invention provides a resource mounting method and a data system, and the method comprises the steps: obtaining the mapping information of a plurality of namespaces in response to a resource configuration event for a target container; determining a target namespace from the plurality of namespaces based on the mapping information of the plurality of namespaces; based on the target namespace, the target computing resource is mounted to the target container, and the target computing resource is configured through the target namespace. According to the technical scheme, software stack mounting through a virtualization layer is avoided, the mounting speed is increased, mounting can be achieved without installing components, and invasion to a bare metal server is avoided.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Cross-realm proxying services in a virtual bootstrap environment

Techniques are disclosed for enabling cross-realm communications using a virtual bootstrap environment. A computing system can deploy a cross-realm proxy service in a virtual bootstrap environment. The cross-realm proxy service can receive, from a first service in a target region data center, a first request that includes a first credential of the first service. The first credential can be associated with a first namespace of the target region data center. The cross-realm proxy service can authenticate the first credential and, based at least in part on the authentication of the first credential, send a second request to a second service in a host region data center. The second request can include a second credential of the cross-realm proxy service. The second credential can be associated with a second namespace of the host region data center.
Owner:ORACLE INT CORP

File system management method based on pre-distribution and direct addressing and related device

The invention provides a file system management method based on pre-distribution and direct addressing and a related device, and relates to the technical field of computers. The technical problems of high access delay and high I / O (Input / Output) overhead caused by chain traversal and dynamic allocation of a traditional file system are solved by pre-allocating all index metadata at one time in a file creation stage, converting file offset by adopting a direct addressing mechanism, and implementing flattened namespace management and decoupling metadata and data operation; the method has the advantages that the file system access efficiency is improved, the I / O operation frequency is reduced, and quick addressing is realized.
Owner:HUNAN KYLIN XINAN TECH CO LTD

Container resource configuration method, computing resource access processing method and data system

Provided in the present disclosure are a container resource configuration method, a computing resource access processing method and a data system. The container resource configuration method comprises: determining a target virtual partition corresponding to a target computing resource of a target container; on the basis of the target virtual partition, querying a target namespace that has a binding relationship with the target virtual partition; acquiring a resource configuration file corresponding to the target namespace; and loading the target virtual partition and, on the basis of the resource configuration file, configuring the target computing resource of the target container. By means of namespaces and virtual partitions that have a binding relationship, the present disclosure binds the namespaces and computing resources and, on this basis, configures the computing resources, thus ensuring secure isolation of the computing resources of containers, effectively avoiding unauthorized access, ensuring direct and highly-efficient access of target containers to configured target computing resources, and improving the isolation and access performance of the container resources.
Owner:CLOUD INTELLIGENCE ASSETS HOLDING (SINGAPORE) PTE LTD

Desktop environment-oriented interactive management and control method for Linux sandbox lightweight process auditing

The invention relates to the technical field of computer security, in particular to a desktop environment-oriented interactive management and control method for Linux sandbox lightweight process auditing. Comprising the following steps: constructing a dynamic hierarchical sandbox environment based on a namespace and a control group of a Linux kernel, and carrying out bidirectional binding on a specified directory of a host machine and a virtual directory in a sandbox through a preset environment variable mapping rule to realize isolation and dynamic adaptation of a process running environment; loading an intelligent file filter driver with context sensing capability, and performing multi-dimensional monitoring on file operation behaviors of processes in the sandbox in combination with a dynamic probe technology of a kernel mode; constructing a real-time auditing model based on the behavior feature vector, performing security level evaluation on the process operation behavior through the model, and triggering a corresponding management and control strategy according to an evaluation result; according to the method and the device, accurate auditing and dynamic management and control of process behaviors can be realized, so that the safety and the flexibility of the sandbox are improved.
Owner:ZHEJIANG ELECTRONIC INFORMATION PROD INSPECTION & RES INST (ZHEJIANG INFORMATIZATION & INDUSTRIALIZATION INTEGRATION PROMOTION CENT)

Process control software security architecture based on least privileges

A process control system software security architecture, that is more effective at preventing zero-day or other types of malware attacks, implements the use of “least privileges” when executing the applications and services run within a computer device. The least privileges based architecture separates “service” processes from desktop applications that run on behalf of a logged-on user by partitioning the global namespace of the software system into service namespaces and logged-on user namespaces, and by strictly controlling communications between the applications and services in these different namespaces using interprocess communications. Moreover, the security architecture uses custom accounts to assure that each service process has the least set of privileges that are needed for implementing its function regardless of the privileges associated with the calling application or user.
Owner:FISHER ROSEMOUNT SYST INC

Metadata federal management system and method under unified namespace

The invention provides a metadata federation management system and method under a unified namespace. The system comprises a data storage unit, a data directory unit, a metadata federation unit and a data gateway unit. The data storage unit comprises a plurality of heterogeneous storage systems, and the types of the heterogeneous storage systems are different. The data directory unit is used for managing business metadata of each heterogeneous storage system; the business metadata is used for describing the data content, the data source and the data association relationship. The metadata federation unit is used for managing technical metadata of each heterogeneous storage system, and the technical metadata is used for describing logic-to-physical mapping information, access protocol and endpoint information and authentication and authorization information of data. The data gateway unit is used for providing protocol conversion and is responsible for data routing to read and cache data. Through unified management of the metadata by the metadata federation unit, the problem of data islands in a heterogeneous storage environment can be avoided.
Owner:ZHEJIANG LAB

Hadoop tenant-level encryption isolation implementation method and device

The invention discloses a Hadoop tenant-level encryption isolation implementation method, and aims to solve the problems of single key leakage risk, namespace planarization, encryption area unauthorized binding, no tenant dimension auditing and the like existing in an existing Ranger-KMS scheme. The method comprises the following steps: creating an independent master key for each tenant to realize physical isolation; the key alias, the encryption area paths and the strategy resources are forced to carry tenant prefixes, and the consistency is verified; a tenant context is transmitted through a thread local variable; when an encryption area is created, tenant attributes are persisted, and operation consistency is verified; and the key plaintext is only stored in the KMS memory and is safely reset after being used. According to the method, full-dimension isolation of keys, data, strategies and auditing is realized, single-tenant key leakage does not influence the cluster, unauthorized access and information leakage are completely eradicated, compliance auditing requirements are met, single-cluster multi-tenant safe coexistence is supported, and hardware cost is reduced.
Owner:CHINA ELECTRONICS CLOUD DIGITAL INTELLIGENCE TECH CO LTD

Method for effectively preventing virtual machine from being maliciously tampered in secret-related intranet environment

The invention belongs to the technical field of network security, and discloses a method for effectively preventing a virtual machine from being maliciously tampered in a secret-related intranet environment, which comprises the following steps of: acquiring an XML (Extensible Markup Language) configuration file through a virtualized API (Application Program Interface), carrying out structured analysis on the XML configuration file, carrying out Hash aggregation calculation to obtain a reference characteristic value data packet, and embedding the reference characteristic value data packet into a user-defined namespace; constructing an event monitoring hook, performing integrity detection on the XML configuration file of the virtual machine based on the event monitoring hook to obtain a real-time reference feature value data packet, performing multi-level comparison with the reference feature value data packet, performing change legality verification according to a comparison result, and triggering automatic isolation and alarm response; legal change management and characteristic value closed-loop updating are executed, and the configuration recovery process of the virtual machine is isolated; according to the method, the real-time, intelligent and automatic security protection of the secret-related intranet virtual machine is realized, and the accuracy and response efficiency of malicious tampering detection are remarkably improved.
Owner:SHANGHAI KANRONG INFORMATION TECH DEV CO LTD

Multi-stage cascade semantic analysis framework for kernel security level control code generation tool

The invention discloses a multi-stage cascade semantic analysis framework of a nuclear security level control code generation tool, which comprises an input layer, an analysis module layer, an error processing layer and an output layer, and is characterized in that the input layer is used for receiving and preprocessing a control model xml file, verifying a file format and preliminarily checking grammar; the analysis module layer is used for analyzing post grammar, namespace, type, clock, causal relationship and initialized semantic analysis tasks of the file after receiving the analysis request to obtain analysis results; the error processing layer is used for collecting, classifying, positioning and report generating various error information appearing in the analysis module layer; and the output layer is used for generating and outputting a standardized analysis report and an optimization suggestion. And a pipelined cascade structure is adopted, so that efficient semantic analysis is realized. Through an innovative error processing mechanism and an optimization strategy, the analysis efficiency and accuracy are remarkably improved, and a reliable guarantee is provided for software development of a digital instrument control system of the nuclear power station.
Owner:NUCLEAR POWER INSTITUTE OF CHINA

Namespace management using mastership in multi-host storage systems

Systems, methods, and storage interface controllers for namespace management using mastership in multi-host storage systems are described. The storage interface controllers, such as NVMeOF controllers, determine the set of host systems connected to a namespace and indicate one of them has having mastership. Only the host system with mastership may delete the namespace and delete commands from other host systems are rejected. Logic for determining and migrating mastership is also described.
Owner:WESTERN DIGITAL TECHNOLOGIES INC

Methods and systems for storing data in a memory device having dynamic namespace with different indirection unit sizes

PCT designated stageWO2026147623A1Computer hardwareUnit size
A system and method for storing data in a memory device. The method includes transmitting, to a host, information indicative of a first allowable maximum size of a first namespace associated with a first IU and a second allowable maximum size of a second namespace associated with a second IU. The first and the second IUs may be of different sizes. The includes comprise receiving configuration information comprising one or more instructions to: generate a first L2P table associated with the first IU based on the first allowable maximum size, and generate a second L2P table associated with the second IU based on the second allowable maximum size and generating the first L2P table and the second L2P table based on the configuration information; and causing first data and second data to be stored in the first namespace and the second namespace using the first and second L2P tables respectively.
Owner:SK HYNIX NAND PRODUCT SOLUTIONS CORP

Unified Resolution-as-Evidence Protocol and System for Policy-Enforced DNS Resolution with Knowledge Graph Injection, Global Identity and Object-Key Anchoring, and Time-Value Minting Based on a Pre-Established Identifier Reservoir.

A policy-governed network resolution system generates a cryptographically verifiable Resolution Receipt (RR) for each identifier request. An identifier (e.g., a domain name under a BEIDNS / BEIDomain / BEITLD namespace) is routed to a resolver gateway, matched to a basepoint within a curated identifier reservoir, evaluated under a versioned policy container, and authorized by a signed scope token to enforce selective disclosure. The resolver may enrich the context with a knowledge-graph entity identifier, derive a decentralized identity root for Behavioral Economics Identity (BEI), and mint a content-addressable global object key. Minute-grade activity is metered and recorded in the RR, including policy version, reason codes, lifecycle state, audit anchors, and a signature chain, further supporting denial receipts with remediation steps. RR digests may be recorded in append-only logs and optionally anchored to a distributed ledger. Aggregated RR metrics may be streamed for real-time indexing, resource governance, and bounded rollback in IoT and real-estate embodiments.
Owner:BEI FURONG

Electronic system, computing storage device, host and operating method

The application discloses an electronic system, a computing storage device, a host and an operation method, and belongs to the technical field of data storage. The electronic system comprises a computing storage device and a host, wherein the computing storage device and the host are coupled; the host is configured to send a command comprising indication information to the computing storage device; the computing storage device is configured to acquire the indication information; and based on the indication information, the cache data in the memory namespace is generated into snapshot information and stored into a non-volatile memory (NVM) namespace.
Owner:YANGTZE MEMORY TECH CO LTD

HDFS (Hadoop Distributed File System) intelligent hierarchical storage method and system based on multi-dimensional popularity perception and tape library integration

The invention discloses an HDFS (Hadoop Distributed File System) intelligent hierarchical storage method and system based on multi-dimensional popularity perception and tape library integration, and belongs to the technical field of distributed file systems, and the method comprises the following steps: expanding HDFS metadata to construct a unified namespace; acquiring data block access features and dynamically dividing hot, warm and cold data by using a K-means clustering algorithm; executing a self-adaptive grading strategy: adding a copy to hot data and storing in an SSD (Solid State Disk), maintaining a default copy to warm data and storing in a disk, and migrating cold data to a tape library and storing by adopting an erasure code; scattered storage and fault tolerance of relevance perception are realized through a message queue; metadata persistence and periodical re-evaluation are carried out, and automatic migration and dynamic adjustment of data among the SSD layer, the disk layer and the tape library layer are achieved. By adopting the method and the system, the storage strategy and the data access value are accurately matched, the storage cost is finally reduced, and the system I / O performance and the resource utilization rate are improved.
Owner:CHANGSHU INSTITUTE OF TECHNOLOGY

Memory system for binding data to a memory namespace

A computer system includes physical memory devices of different types that store randomly-accessible data in a main memory of the computer system. In one approach, an operating system allocates memory from a namespace for use by an application. The namespace is a logical reference to physical memory devices in which physical addresses are defined. The namespace is bound to a memory type. In response to binding the namespace to the memory type, the operating system adjusts a page table to map a logical memory address in the namespace to a memory device of the memory type.
Owner:MICRON TECHNOLOGY INC