Patents by Inventor Galina Grunin
Galina Grunin has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20070289008Abstract: Method and system for verifying correctness of networking aspects of an Information Technology (IT) system that includes a host network of hosts. The hosts include servers and firewalls. A firewall connectivity indication of whether the host network includes an isolated firewall or a cross-zone connected firewall is determined. Determining for each host whether the host is isolated from a communication network to which the IT system is connected determines whether isolated network segments exit within the host network. For each host determined to be isolated from the communication network, the method identifies all network segments of the host network to which each host is connected, determines the unique network segments of the identified network segments, and designates the unique network segments as a set of isolated network segments. The firewall connectivity indication and the set of isolated network segments are stored in a storage medium of a computer system.Type: ApplicationFiled: April 30, 2007Publication date: December 13, 2007Inventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20070282627Abstract: A service element is defined and represented by a data structure. It includes one or more components and/or one or more other service elements. A service element providing a complete function is a service offering. Management of service elements and/or service offerings is facilitated by a Service Development Tool. In different aspects, the management includes various tasks associated with creating, modifying and deleting service elements, establishing relationships, error checking and optimization. In a further aspect, service elements are packaged and distributed to enable customers to deliver the service elements. Additionally, the hosting of software packages is facilitated.Type: ApplicationFiled: August 20, 2007Publication date: December 6, 2007Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Paul Greenstein, Galina Grunin, Luu Nguyen
-
Patent number: 7269599Abstract: A method and system for predicting a user activity level associated with an application. An activity level is a number of transactions performed by users utilizing the application per time period or a number of users utilizing the application per time period. Measurements of activity levels are assigned to a user activity metric (UAM) variable, and associated values are assigned to a set of factors. At least one correlation coefficient between each factor and the UAM is calculated. In response to a maximum correlation coefficient associated with a factor being less than a pre-defined threshold, the factor is excluded from the set of factors to facilitate forming a subset of factors associated with correlation coefficients whose absolute values are greater than or equal to the pre-defined threshold. A regression model utilizing the subset is generated to predict an activity level.Type: GrantFiled: December 1, 2005Date of Patent: September 11, 2007Assignee: International Business Machines CorporationInventors: Dmitry Andreev, Paul Gregory Greenstein, Galina Grunin, Gregory Vilshansky
-
System, method, and program product for providing local load balancing for high-availability servers
Publication number: 20070150594Abstract: The present invention is directed to a method, system, and computer program product for providing local load balancing for high-availability servers. In particular, the present invention is based on the use of an HACMP cluster of servers (for high availability) each running an instance of a TCP splitter (for load balancing). A cluster of servers is provided, wherein a Transport Control Protocol (TCP) splitter runs on each of the servers. Each TCP splitter is configured to split an incoming data stream to a respective server among a plurality of the servers for processing. Each server in the cluster has a different routable Internet Protocol (IP) address. Upon a failure of a server, the IP address of the failed server is reassigned to another server in the cluster.Type: ApplicationFiled: December 22, 2005Publication date: June 28, 2007Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Thomas Dauffenbach, Galina Grunin, Gregory Vilshansky -
Publication number: 20070130097Abstract: A method and system for predicting a user activity level associated with an application. An activity level is a number of transactions performed by users utilizing the application per time period or a number of users utilizing the application per time period. Measurements of activity levels are assigned to a user activity metric (UAM) variable, and associated values are assigned to a set of factors. At least one correlation coefficient between each factor and the UAM is calculated. In response to a maximum correlation coefficient associated with a factor being less than a pre-defined threshold, the factor is excluded from the set of factors to facilitate forming a subset of factors associated with correlation coefficients whose absolute values are greater than or equal to the pre-defined threshold. A regression model utilizing the subset is generated to predict an activity level.Type: ApplicationFiled: December 1, 2005Publication date: June 7, 2007Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20070100676Abstract: A method and system for optimally scheduling an activity managed by a web application. Date and time ranges are initialized with predefined values. A tentative start date included in the date range and a tentative start time included in the time range are automatically calculated, and are included in a tentative schedule for the activity. A time period is determined by the tentative schedule and a duration of the activity. The automatic calculation prevents the time period from overlapping a time interval during which the web application is to experience a peak load. The tentative schedule is presented to the user via the interface, and is recalculated and redisplayed in response to the user updating a load-related parameter. The user selects a final schedule, which is the tentative schedule or a user-specified schedule different from the tentative schedule.Type: ApplicationFiled: October 27, 2005Publication date: May 3, 2007Inventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060253609Abstract: A method and system is presented for bypassing a local Domain Name Server (DNS) when using edge caching servers. Domain names of frequently used business applications that are known to rely upon edge servers, together with the corresponding authoritative DNSs, are listed in both local hosts file and user defined FSFD local configuration file fsfd.conf. When the client computer's browser attempts to resolve a domain name, a File System Filtering Driver (FSFD) in the client computer intercepts the browser's request. If the domain name which is being resolved is found in a local FSFD configuration file fsfd.conf, then the FSFD initiates a DNS request directly to the appropriate authoritative DNS whose IP address gets extracted from the fsfd.conf record, thus bypassing the local DNS. The authoritative DNS returns the IP address for an edge caching server that is topographically proximate to the client computer's browser.Type: ApplicationFiled: May 3, 2005Publication date: November 9, 2006Inventors: Dmitry Andreev, Galina Grunin, Luu Nguyen, Gregory Vilshansky
-
Publication number: 20060248546Abstract: A method and system for adapting an Information Technology (IT) structure to maintain service levels. An IT structure is deployed in an IT delivery environment. A service level associated with the IT structure is specified. At least one operational characteristic of the IT structure corresponding to the specified service level is identified. For each identified operational characteristic, a corresponding threshold is established in such that if the corresponding threshold is violated then the specified service level is not sustained. After establishing the thresholds, operation of the IT structure is monitored. The monitoring detects a condition wherein a measured value of a first operational characteristic has violated the corresponding threshold associated with the first operational characteristic such that the specified service level is not sustained by the measured value of the first operational characteristic, causing degradation of the specified service level.Type: ApplicationFiled: June 13, 2006Publication date: November 2, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin
-
Publication number: 20060167969Abstract: A novel method and structure in which data caching is based on data contents. The method comprises the steps of (a) sending a data request from a processing circuit to a target server; (b) in response to the target server receiving the data request, sending a first response portion of a data response from the target server to the processing circuit; and {circle around (c)} in response to the processing circuit receiving the first response portion, using the processing circuit to examine the first response portion so as to determine whether the processing circuit contains a copy of the data response; and (d) in response to the processing circuit determining that the processing circuit contains a copy of the data response, sending the copy of the data response from the processing circuit to a client machine.Type: ApplicationFiled: January 25, 2005Publication date: July 27, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Marina Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060156274Abstract: A method for verifying correctness of an Information Technology (IT) structure instance D of an IT structure R, a method for detecting an unauthorized change in an operating instance X of an IT structure R, a method for verifying conformance of an IT structure to an IT delivery environment, associated computer program products, and associated processes for integrating computing infrastructure. The method for verifying correctness of an IT structure instance D determines whether a reverse specification RD for D differs from R. The method for detecting an unauthorized change in an operating instance X of an IT structure R determines whether authorized changes in R have occurred. The method for verifying conformance of an IT structure to an IT delivery environment verifies compliance of the IT structure relating to: product standard compliance, compliance of software elements of the IT structure primitive composition, software application type compliance, and network traffic compliance.Type: ApplicationFiled: May 23, 2005Publication date: July 13, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060150143Abstract: A method and associated computer program product for developing an Information Technology (IT) system. An abstract IT structure for the IT system is provided. A virtual IT structure for the IT system is generated from the abstract IT structure by a translator. A real IT structure for the IT system is generated from the virtual IT structure.Type: ApplicationFiled: December 14, 2004Publication date: July 6, 2006Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060129831Abstract: A system and method for facilitating identification of an attacking computer in a network is provided. A user attempting to login to a network application may be presented with a screen prior to the login which lists preconditions of gaining access to the application. If a user concurs with the preconditions, a security module is downloaded to the user's computer and executed which gathers various configuration settings and transmits the gathered information to a predetermined destination. The security module may also attempt to place a call to a predetermined destination over a modem in the computer to cause registration of caller-ID data when answered at the predetermined destination. Once the security check is completed, login may proceed with the network application. Any data gathered by the security module may be stored for later recall and use to identify the computer in the event of an attack.Type: ApplicationFiled: December 14, 2004Publication date: June 15, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060125847Abstract: An Information Technology (IT) system display method and computer program product. A description is provided of a configuration of devices, network segments, and vertical connectors relating to an IT structure. The devices are initially distributed to form a distribution of the devices in a matrix representing a display screen. A defined goal value of the configuration is a function of a length and weight of each network segment, a length and weight of each vertical connector, and a penalty for each crossing of a device by a network segment. An overlay pattern of the network segments and the vertical connectors overlayed on the matrix is displayed in accordance with the description and the final distribution of the devices in the matrix. The goal value for the final distribution is lower than for the initial distribution. The final distribution is displayed on the display screen together with the overlay pattern.Type: ApplicationFiled: February 17, 2005Publication date: June 15, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060130133Abstract: A firewall rule generation method, a load balancing rule generation method, and a wrapper generation method, for an Information Technology (IT) system, associated computer program products, and an associated processes for integrating computing infrastructure. The firewall rule generation method generates firewall rules allowing data transmission between a computer and a client, and subsequently assigns the firewall rules to firewalls of the IT system. The load balancing rule generation method assigns a load balancing mechanism to a load balanced group to which execution of an application is assigned, wherein the load balanced group has servers therein. For a client and computer having a communication protocol therebetween that is not allowed by a security policy, the wrapper generation method generates a communication protocol wrapper that opens a Transmission Control Protocol (TCP) connection between the client and the computer such that the TCP connection is allowed by the security policy.Type: ApplicationFiled: May 3, 2005Publication date: June 15, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060130123Abstract: Method, system, and product for authenticating database connections between a database server box having a database server and a database gateway; and an application server box having an application server and a connection authenticator. The application server and the connection authenticator are connected to the database server over an IP network. A TCP connection is established from the database gateway to the connection authenticator. The authenticator authenticates the application server and permits routing database requests and responses to and from the database server.Type: ApplicationFiled: December 14, 2004Publication date: June 15, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Galina Grunin, Gregory Vilshansky
-
Publication number: 20060129518Abstract: A computer-implemented method for optimizing an aspect of an Information Technology (IT) structure of an IT system, the aspect of the IT structure is optimized with respect to at least one control parameter. The IT structure includes a plurality of elements. Each element independently is a hardware element, a software element, or a combination of a hardware element and a software element. Each control parameter has a value that is specific to each element of the IT structure.Type: ApplicationFiled: October 31, 2005Publication date: June 15, 2006Applicant: International Business Machines CorporationInventors: Dmitry Andreev, Paul Greenstein, Galina Grunin, Gregory Vilshansky
-
Publication number: 20030195755Abstract: A service element is defined and represented by a data structure. It includes one or more components and/or one or more other service elements. A service element providing a complete function is a service offering. Management of service elements and/or service offerings is facilitated by a Service Development Tool. In different aspects, the management includes various tasks associated with creating, modifying and deleting service elements, establishing relationships, error checking and optimization. In a further aspect, service elements are packaged and distributed to enable customers to deliver the service elements. Additionally, the hosting of software packages is facilitated.Type: ApplicationFiled: April 12, 2002Publication date: October 16, 2003Applicant: International Business Machines CorporationInventors: Paul G. Greenstein, Galina Grunin, Luu Q. Nguyen
-
Publication number: 20030195777Abstract: A service element is defined and represented by a data structure. It includes one or more components and/or one or more other service elements. A service element providing a complete function is a service offering. Management of service elements and/or service offerings is facilitated by a Service Development Tool. In different aspects, the management includes various tasks associated with creating, modifying and deleting service elements, establishing relationships, error checking and optimization. In a further aspect, service elements are packaged and distributed to enable customers to deliver the service elements. Additionally, the hosting of software packages is facilitated.Type: ApplicationFiled: April 12, 2002Publication date: October 16, 2003Applicant: International Business Machines CorporationInventors: Paul G. Greenstein, Galina Grunin, Gregory Leytes, Luu Q. Nguyen
-
Publication number: 20030195756Abstract: A service element is defined and represented by a data structure. It includes one or more components and/or one or more other service elements. A service element providing a complete function is a service offering. Management of service elements and/or service offerings is facilitated by a Service Development Tool. In different aspects, the management includes various tasks associated with creating, modifying and deleting service elements, establishing relationships, error checking and optimization. In a further aspect, service elements are packaged and distributed to enable customers to deliver the service elements. Additionally, the hosting of software packages is facilitated.Type: ApplicationFiled: April 12, 2002Publication date: October 16, 2003Applicant: International Business Machines CorporationInventors: Paul G. Greenstein, Galina Grunin, Luu Q. Nguyen