Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

24 results about "Server agent" patented technology

User Agent Server (UAS) is a Voice over Internet Protocol (VoIP) application that responds to User Agent Client (UAC) service requests based on input or other external stimuli in Session Initiation Protocol (SIP) systems.

Power transaction auxiliary decision-making method based on MCP

The invention belongs to the technical field of power transaction management, and particularly relates to an MCP-based power transaction aid decision-making method, which comprises the following steps of: receiving and standardizing a user request through an MCP client layer; the MCP arrangement gateway analyzes the request, and dispatches and activates a corresponding MCP server agent group; the agent group obtains power operation data, historical transaction data, prediction model data and policy support information by calling the service API group, and completes data processing and task execution; the arrangement gateway integrates, verifies and formats the processing results of the intelligent agents; and finally, feeding back a unified response result to the user. According to the invention, standardized interaction and context sharing among multi-source data, heterogeneous models and business functions are realized through the MCP protocol, a modularized and extensible agent collaborative decision framework is constructed, and the efficiency, accuracy and policy compliance of power transaction decision are effectively improved.
Owner:HANGZHOU ZERO CARBON INTELLIGENT TECH CO LTD

Assignment of high-performance workloads to compute nodes in a cluster

PendingUS20260050491A1Program initiation/switchingResource allocationServer agentServer allocation
Described herein are systems, methods, and other techniques for assigning high-performance workloads to compute nodes in a compute infrastructure. The workloads are received at a workload scheduler. Each workload of the workloads includes a workload specification indicating requested resources to run the workload. Server statuses indicating resource usages and availabilities at the compute nodes are generated by a set of server agents running on a set of servers containing the compute nodes. The server statuses are sent from the set of server agents to the workload scheduler. Server assignments for the workloads are generated by the workload scheduler based on the requested resources and the resource usages and availabilities. Compute node assignments for the workloads are generated by one or more of the set of server agents based on the requested resources and the resource usages and availabilities.
Owner:KRATOS INTEGRAL HOLDINGS LLC

Intelligent scheduling system and method for security and protection video streams of smart television

The invention relates to an intelligent scheduling system and method for security and protection video streams of an intelligent television. The intelligent scheduling system comprises a user, an Android TV client (TV client for short), a Web signaling server, a Relay proxy server and a camera. The user interacts with the TV client through an input device of the remote controller and initiates a watching instruction; the TV client is used for receiving a user instruction, performing signaling interaction with the Web signaling server, and establishing video stream connection with the camera or the Relay proxy server; the Web signaling server is used as a control center of the system and is used for receiving a request of the client, carrying out intelligent scheduling decision making and issuing a control instruction to the downstream camera and the client; the Relay proxy server serves as a video stream transfer node and is used for forwarding video stream data when P2P direct connection is unavailable; and the camera is used for collecting a video stream and pushing the video stream to the TV client or the Relay proxy server according to an instruction of the Web signaling server.
Owner:TIANJIN TIANDY DIGITAL TECH

System and Method for Secure Mobile Photo Exchange Application

PendingUS20260189395A1Server agentEngineering
This invention utilizes one-time use, time-limited codes to eliminate the need for physical device exchange and handover for taking photos for other users; utilizes encrypted communication for secure device-to-device data exchange through a cloud-based server / broker service; and features permission controls allowing users to manage access.
Owner:CHOGYOJI ANTHONY HIROSHI

Server-initiated secure sessions

ActiveUS12587502B2Securing communicationServer agentSecure communication
Methods, systems, and devices for server-initiated secure sessions are described. A browser application may connect to a portal, where the portal may transmit a command to a server agent to initiate a secure session with an endpoint device. The server agent may be housed in a destination server, and may establish a secure connection with an intermediary server using a secure communication protocol. The secure connection may be made by directing the destination server to open an out-bound connection through a firewall of the destination server. A browser session may be redirected to the intermediary server from the browser application, and the intermediary server may route the browser session traffic to the secure connection.
Owner:JUMPCLOUD INC

Autonomous server agents

ActiveUS12647310B2Securing communicationServer agentEngineering
Methods, systems, and devices are described for orchestrating server management in a modern IT network. The described techniques may be implemented to manage any number of networked severs, whether local, remote, or both. Server orchestration may leverage a central, cloud-based management system and / or one or more autonomous agents installed on servers with the network. The autonomous agents may each be registered with the supervisory server and may have awareness of one another.
Owner:JUMPCLOUD INC

An authorized branchable self-controlled path proxy re-encryption method

PendingCN122372319AServer agentPathPing
This invention proposes a self-controlled path proxy re-encryption method with authoritative branches, aiming to solve the problems of existing self-controlled path proxy re-encryption schemes being unable to simultaneously resist fork attacks and branch key leakage attacks, and being inefficient. The method includes: a key generation center generating system public parameters; users generating public-private key pairs; the delegator generating a delegation path according to priority, and generating a re-encryption key based on a secret value and a unique branch key for the privileged delegate; the delegator encrypting plaintext to generate the original ciphertext; after the cloud server proxy verifies the validity of the ciphertext, it uses the re-encryption key to convert the ciphertext to the next delegate; the delegate uses the private key to decrypt; the privileged delegate generates branch ciphertext using the branch key to establish a new delegation branch. This invention uses only bilinear mapping, effectively resisting fork attacks and branch key leakage attacks, and is suitable for multi-user secure data sharing in cloud storage environments.
Owner:HEILONGJIANG UNIV

Self-adaptive identity authentication method and system based on intelligent risk quantification

PendingCN121690795ASecuring communicationClient agentServer agent
The invention discloses a self-adaptive identity authentication method and system based on intelligent risk quantification, and relates to the field of computer information security, and the method comprises the steps: collecting context data of a user through a lightweight client agent embedded in a client application, and sending the context data to an authorization server; performing risk quantitative evaluation on the context data based on a server agent in the authorization server, and determining corresponding target identity authentication intensity according to a risk score; providing an identity authentication module corresponding to the target identity authentication intensity for the user; after the user identity authentication succeeds, continuously collecting behavior characteristic data of the user during the session duration, and sending the behavior characteristic data to a server agent so as to perform comparative analysis on the behavior characteristic data and a behavior baseline corresponding to the user; and if the analysis result shows that abnormity exists, terminating the session and guiding the user to perform identity authentication again. According to the invention, a more intelligent, more dynamic and more elastic identity authentication process is realized.
Owner:CETC CYBERSPACE SECURITY TECH CO LTD

Active Speaker Proxy Presentation for Sign Language Interpreters

PendingUS20260122118A1Substation equipmentTransmissionServer agentSpeech translation
Methods and systems provide for an active server proxy presentation for sign language interpreters within a video communication session. In one embodiment, a method presents a user interface for each of a number of client devices connected to a communication session, with each UI including one or more video feeds associated with participants of the communication session. The method receives an indication that a first participant is designating a second participant as a sign language interpreter who will perform voicing for the first participant. The method then determines that the second participant is performing voicing for the first participant, then presents, within the UIs of at least a subset of the client devices, a video feed associated with the first participant in a highlighted fashion concurrently to the second participant performing the voicing for the first participant.
Owner:ZOOM VIDEO COMM INC

Method for optimizing connection query of encrypted database in hash-based trusted execution environment

The application discloses a kind of based on hash-based trusted execution environment under encrypted database connection query optimization method, comprising: data provider selects security level for the encrypted data in each row in data table, determines the hash value of the encrypted data of this row according to security level;From key manager, obtain preset key, and determine the ciphertext of the encrypted data of this row, store ciphertext, security level and hash value to data table after storing data table to database, save the key and the row and data table mapping relationship to key manager;Server agent determines the hash value of the data to be queried according to the security level after querying from database according to query request;According to the hash value, the corresponding data table is inquired, and the query result is obtained;Trusted execution environment component obtains key based on the ciphertext in query result, and obtains target information according to the obtained key, ciphertext and data to be queried;Server agent sends the data corresponding to target information in query result to client.
Owner:XIDIAN UNIV

Obfuscation of personally identifiable information

ActiveUS12619777B2Digital data protectionServer agentEngineering
A method, including defining rules for protecting sensitive data, each of the rules including a reference URL and a reference JSON data mapping to an item of the sensitive data in a JSON payload. A proxy receives, from an application executing on a host computer, a query including a URL for data hosted by a server, and forwards the URL to the server. The proxy receives, from the server, a response to the forwarded URL, the response including a set of values stored in respective mappings. The URL and the mappings in the response are compared to the rules; and upon detecting a match between a given rule and a combination including the URL and a given mapping in the response, the proxy anonymizes by the proxy, the value stored at the given mapping in the response, and forwards the response, including the anonymized value, to the software application.
Owner:DEMOSTACK INC

System and method to enhance pin security by adding hidden factors

Provided is a system (100) to enhance Personal Identification Number (PIN) security with hidden factors (271, 272, 273, 274) comprises a client agent (111) and a server agent (130). The client agent (111) manages a touchscreen or keypad, handles display layout, detects and tracks a finger movement on the touchscreen, and collects input entry of a PIN (311) from the finger movement based on hidden factors that configure use of the touchscreen or keypad, where the input entry (310) consists of an entered PIN, and information (312) on how the PIN was entered. The server agent (133) can be communicatively coupled to the client agent (111), and receives the input entry for the PIN, and validates the PIN that was entered in view of the information (312) on how the PIN was entered based on a policy configuration (410, 420, 430, 440) for the hidden factors for the input entry on said touchscreen or keypad. Other embodiments disclosed.
Owner:THALES DIS CPL USA INC

Confrontation data packet generation and application method aiming at encrypted traffic character features

PendingCN121261944ASecuring communicationServer agentData pack
The invention relates to an adversarial data packet generation and application method for encrypted traffic character features. The method comprises the steps of training an ET-BERT-based disturbance vector generator, designing an agent-based adversarial data packet application framework, constructing an adversarial data packet based on disturbance vector embedding and analyzing the adversarial data packet based on disturbance vector extraction. The disturbance vector generator generates disturbance vectors by modeling feature relationships among different types of data packets. And the application framework realizes real-time generation and recovery of an adversarial data packet through a SOCKS5-based symmetric proxy architecture. According to confrontation data packet construction, a disturbance vector is embedded between an original data packet transmission layer head and a load, and a protocol field is updated to ensure format correctness. The adversarial data packet analysis extracts and removes the disturbance vector at the server agent, and completely recovers the original data packet. According to the invention, aiming at the threat of the encrypted traffic identification model, the anti-analysis capability in the user communication process is improved through the black box design while the data transmission reliability is ensured.
Owner:SOUTHEAST UNIV

Agent prevention augmentation based on organizational learning

A method, including collecting, by a security server, reports from multiple computing devices of events belonging to a set of specified event types occurring in execution of software processes on the devices, and collating the reports in the server to extract context information with respect to each of the events. Upon detecting an event occurring in execution of a process on a given device and matching one of the types, a software agent executing on the given device extracts, one or more features from the detected event, and conveys a query with respect to the detected event from the agent to the server. Upon receiving, from the server in response to the query, the context information with respect to the detected event, the agent decides to initiate a protective action on the given device based on the received context information and the one or more features extracted by the agent.
Owner:PALO ALTO NETWORKS INC

Determining and Enforcing Data Location of Internet Traffic Routing Using Transport Layer Security (TLS) Server Name Indication (SNI)

PendingUS20260100970A1Securing communicationServer agentInternet traffic
A compute server receives a secure session request as part of a secure session handshake. The request includes a Server Name Indication (SNI) field. The compute server determines a hostname from the SNI field and determines that a policy is applicable for the determined hostname. The policy indicates a first location where decrypting and servicing traffic for the determined hostname is permitted. The compute server determines that its location does not satisfy the determined policy. The compute server proxies the secure session handshake between the client network application and a second server that satisfies the determined policy. The compute server proxies layer 4 traffic transmitted over the secure session between the client network application and the second server.
Owner:CLOUDFLARE INC

Media server proxy for switching streaming media protocols

A media server proxy switches a streaming media protocol ("SMP") during streaming of media segments. The media server proxy receives a request from a playback tool to provide information about outgoing media segments of the media sequence in accordance with the first SMP. The media server agent generates information about outgoing media segments and sends the information to a playback tool. The media server proxy also retrieves incoming media content of the media sequence from the remote server according to a second SMP different from the first SMP. The media server agent assembles outgoing media segments based at least in part on the incoming media content. The media server proxy streams outgoing media segments to the playback tool according to the first SMP. In this manner, the media server proxy may deliver media segments with very low latency even when the first SMP typically has a much higher latency.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

MySQL public network encryption transmission method and system based on X.509 certificate and Stunnel

The invention discloses a MySQL public network encryption transmission method and system based on an X.509 certificate and Srunnel, and relates to the technical field of network security and database communication, secure communication of a MySQL database in a public network environment is realized by deploying a Srunnel encryption agent module at a client and a server and establishing a bidirectional authentication TLS encryption tunnel based on the X.509 digital certificate, and the security of the MySQL database in the public network environment is improved. The method comprises the steps that a certificate issuing mechanism root certificate is generated, a server certificate and a client certificate are signed and issued, a Srunnel server agent module and a client agent module are configured, a certificate path and a verification level are set, a MySQL client carries out TLS handshake and two-way certificate verification through a local Srunnel agent and a server Srunnel agent, after an encryption tunnel is established, data are transmitted in an encrypted mode, and the data are transmitted to the server Srunnel agent. The method supports an RSA and SM2 dual-certificate system, end-to-end encryption and strong identity authentication are realized, man-in-the-middle attack and data leakage risks are effectively defended, and the method is suitable for the fields of finance, government affairs and the like which have strict requirements on data security.
Owner:SHANGHAI TERRESTRIAL INFORMATION NETWORK CO LTD

Cross-network data transmission method, device, equipment, medium and program product

PendingCN121603470ASecuring communicationServer agentClient agent
The invention discloses a cross-network data transmission method, device and equipment, a medium and a program product, and belongs to the field of communication transmission. The method is executed by a server proxy, and comprises the steps that a data request forwarded by a client proxy is received through at least one special data channel, and the data request is used for requesting cross-network data transmission between a mailbox client and a mailbox server; forwarding the data request to a mailbox server; receiving a data response sent by the mailbox server; and forwarding the data response to the client proxy through the at least one dedicated data channel. According to the method, the data request forwarded by the client agent is received through the special data channel, the data response is forwarded to the client agent, the received and transmitted data is limited, and the data request of any client agent cannot be forwarded to the mailbox server, so that the data transmission efficiency is improved on the basis of realizing cross-network data transmission. And the security of data transmission is improved.
Owner:TENCENT TECHNOLOGY (SHENZHEN) CO LTD

Data acquisition methods, devices, equipment and storage media

ActiveCN116346379BSecuring communicationServer agentData acquisition
This disclosure presents a data acquisition method, apparatus, device, and storage medium. The method includes: activating a local server proxy within a preset application; acquiring a preset connection function and replacing the destination address in the function with the target address corresponding to the local server proxy to establish a connection between the preset application and the local server proxy; establishing a connection between the local server proxy and a real server corresponding to the target address based on connection information sent by the preset application; forwarding data between the real server and the preset application; and acquiring the data. By adopting this technical solution, the acquisition mechanism can be implemented within the application without the need for external tools. The local server proxy within the application forwards data between the application and the real server, allowing for the acquisition of more accurate and readable network data during the forwarding process, facilitating data analysis.
Owner:DOUYIN VISION CO LTD

System and method for automated authentication

There is provided a method and system for automating a user authentication process. A server assigns an access request for a service from a user to a computer-implemented worker agent. The agent may store a current verification code value prior to performing the access request. The agent may be programmed to perform various operations at a login screen for the service. Upon requesting a verification code, the contents of a verification message are forwarded to a server configured to retrieve and store the verification code. The worker may poll a memory location storing the most recently received verification code until the previously stored verification code is different from the contents of the memory location. The worker may enter the newly received code into an authentication window and complete the authentication process using the verification code.
Owner:ROYAL BANK OF CANADA

Smart home equipment batch pre-networking method and system

The invention relates to the technical field of home equipment batch networking, and discloses a smart home equipment batch pre-networking method and system, and the method comprises the steps: building TCP network basic information in a factory, generating a signature private key, a signature public key and a wireless Bluetooth gateway key, and uploading the keys to a server; the proxy gateway executes mesh network access on the target equipment to obtain wireless network configuration data, encodes the wireless network configuration data and TCP network basic information into a voucher packet and encrypts the voucher packet to obtain a voucher packet ciphertext; the proxy gateway generates an instruction sequence based on the voucher packet, performs digital signature on the instruction sequence and the voucher packet ciphertext, and sends the instruction sequence, the voucher packet ciphertext and the digital signature to a server; and the target gateway obtains data from the server, verifies the digital signature and checks the instruction sequence, decrypts the ciphertext of the certificate packet and registers the target equipment, and the target equipment realizes communication after being electrified on site. According to the method, the field debugging and reworking cost during batch delivery is remarkably reduced, meanwhile, the networking consistency is improved, and the sensitive information exposure surface is narrowed.
Owner:SHANDONG BITTEL INTELLIGENT TECH CO LTD

Assignment of high-performance workloads to compute nodes in a cluster

PCT designated stageWO2026043683A1Resource allocationServer agentServer allocation
Described herein are systems, methods, and other techniques for assigning high-performance workloads to compute nodes in a compute infrastructure. The workloads are received at a workload scheduler. Each workload of the workloads includes a workload specification indicating requested resources to run the workload. Server statuses indicating resource usages and availabilities at the compute nodes are generated by a set of server agents running on a set of servers containing the compute nodes. The server statuses are sent from the set of server agents to the workload scheduler. Server assignments for the workloads are generated by the workload scheduler based on the requested resources and the resource usages and availabilities. Compute node assignments for the workloads are generated by one or more of the set of server agents based on the requested resources and the resource usages and availabilities.
Owner:KRATOS INTEGRAL HOLDINGS LLC

Novel Network Infrastructure and Connectivity for Participating Edge Devices

PendingUS20260019303A1Resource allocationNetwork traffic/resource managementServer agentTransit network
A novel approach for configuring network infrastructure and connectivity that allows custom, adaptive, and cooperative interplay between all provisioned members is identified. It introduces the term “Vapornet” that represents a network cloud that extends to edge devices that may be dynamically added, removed, and configured to provide services to participants. Every Vapornet user has a distinct view of services provided by the traditional cloud along with mobile and other edge devices via his own name space. Service entities may be in the network infrastructure, or distributed within multiple edge devices, networks, or Internet. Additionally, it identifies instantiating and / or activating physical or virtual functions opportunistically in transit networks and user devices for improving service availability and quality of experience. It identifies instantiating server agents in client devices that facilitate connectivity and resource access functions in a partitioned network when connectivity to original servers is lost.
Owner:SCHMITT RICHARD +1

Power and computing power collaborative optimization scheduling method and system for data center microgrid

PendingCN122363896AServer agentQuality of service
The application discloses a power and computing power cooperative optimization scheduling method and system for a data center microgrid, and relates to the technical field of intelligent scheduling and reinforcement learning. The application firstly constructs a heterogeneous multi-agent cooperative decision system composed of server agents and energy storage agents, uniformly models the computing resources and energy resources of the data center, then introduces a random order policy update mechanism based on a heterogeneous multi-agent proximal policy optimization algorithm, realizes stable cooperative learning and policy optimization among different types of agents, constructs a constraint evaluation network to depict quality of service constraints, and realizes constraint embedded policy optimization by combining a Lagrange multiplier method, so that the scheduling strategy is jointly optimized while meeting the quality of service constraints. The application utilizes the policy optimization mechanism in reinforcement learning to realize efficient cooperative configuration of computing resources and energy resources in a dynamic and uncertain environment, and is suitable for a data center microgrid scene containing renewable energy and energy storage systems.
Owner:SOUTHEAST UNIV