Patents by Inventor Yukinobu Moriya
Yukinobu Moriya has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 11165869Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: GrantFiled: August 21, 2019Date of Patent: November 2, 2021Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Publication number: 20190379745Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: August 21, 2019Publication date: December 12, 2019Inventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 10469596Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: GrantFiled: August 10, 2018Date of Patent: November 5, 2019Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Publication number: 20190007501Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: August 10, 2018Publication date: January 3, 2019Inventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 10079894Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: GrantFiled: April 18, 2016Date of Patent: September 18, 2018Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Publication number: 20160234315Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: April 18, 2016Publication date: August 11, 2016Inventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 9374392Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: GrantFiled: June 11, 2015Date of Patent: June 21, 2016Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 9160771Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: GrantFiled: August 13, 2013Date of Patent: October 13, 2015Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Publication number: 20150281207Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: June 11, 2015Publication date: October 1, 2015Inventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Publication number: 20130332617Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: August 13, 2013Publication date: December 12, 2013Applicant: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 7924850Abstract: The present invention provides a system which maintains a function of monitoring and controlling a network regardless of an increase of data to be downloaded by a computer whose access to the network is restricted.Type: GrantFiled: September 25, 2007Date of Patent: April 12, 2011Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Katsuhiko Shimada, Naoto Shimizu, Hideki Sugiyama
-
Patent number: 7912048Abstract: The method is that of detecting a network address translation device which transfers network data to a first device. This method includes: obtaining an address of a second device connected to the network; generating pseudo network data in which an address is set as a destination address, and in which a number of times that the network data can be transferred is set as a number of transfers required to reach the first device; transmitting the pseudo network data to the second device; detecting a message from the second device, the message indicating that the pseudo network data cannot be further transferred; and determining that the second device is operating the network address translation device in response to the detection of the message.Type: GrantFiled: March 20, 2007Date of Patent: March 22, 2011Assignee: International Business Machines CorporationInventors: Naoto Shimizu, Kentaro Aoki, Yukinobu Moriya, Hideo Yasuniwa
-
Publication number: 20110023087Abstract: An arrangement to direct a packet sent out from an arbitrary apparatus connected to a network to a predetermined authentication server without changing the configuration of a computer network. A packet transmitted from apparatus, such as a personal computer, newly connected to the network, is guided to an authentication server via communication control apparatus. The communication control apparatus replaces a MAC address of the destination addresses of another server, which is included in the ARP cache of the personal computer, with the MAC address of the communication control apparatus to guide the packet from the personal computer to the communication control apparatus. The communication control apparatus further transmits the received packet to a predetermined authentication server.Type: ApplicationFiled: May 28, 2010Publication date: January 27, 2011Applicant: International Business machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Naoto Shimizu, Shinichiroh Saitoh
-
Patent number: 7725932Abstract: In response to a command to start restrictions on a communication service of a computer, the communication service is restricted by a countermeasures apparatus which replaces the communication address of a second computer, which has been stored in a first computer, with the communication address of the countermeasures apparatus, and replaces a communication address of the first computer, which has been stored in the second computer, with the communication address of the countermeasures apparatus. Accordingly, the countermeasures apparatus acquires a packet from the first computer to the second computer and determines whether or not this acquired packet is to be transmitted to the second computer.Type: GrantFiled: September 5, 2008Date of Patent: May 25, 2010Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Yukinobu Moriya, Izumi Kagawa
-
Patent number: 7660269Abstract: An apparatus for creating network configuration information from data including packet transmission time between one or more relay devices and a terminal, the relay devices relaying a signal which runs through a network and is measured by the terminal connected to the network, to another network, information about the relay devices and information about the terminal. The apparatus includes systems for: receiving the data from the terminal; arranging the relay devices in the network configuration information based on information about the relay devices; arranging the terminal in the network configuration information based on information about the terminal; arranging packet transmission time between the terminal and the relay devices in the network configuration information; and identifying a subnetwork from the data.Type: GrantFiled: December 22, 2005Date of Patent: February 9, 2010Assignee: International Business Machines CorporationInventors: Kentaro Aoki, Takeshi Ohmori, Kunio Okuda, Yukinobu Moriya, Hideo Yasuniwa
-
Patent number: 7623527Abstract: A processor and program for analyzing network trace with the use of data packets transmitted via a network includes: a memory section 32 for storing trace data generated from the data packets; a packet analyzing section 34 for retrieving a pair of packets belonging to the same session from the trace data to generate an order relation between nodes; an array data generating section 36 for using packet pair data and order relation data to generate and store array data used for estimating time difference of the specific time axis of each node; and a solution engine section 38 for calculating an estimated value of the time difference with the use of the array data to store the estimated value in a memory.Type: GrantFiled: June 29, 2004Date of Patent: November 24, 2009Assignee: International Business Machines CorporationInventors: Masako Mitani, Yukio Miura, Yukinobu Moriya, Hiroyuki Wada
-
Publication number: 20090007254Abstract: In response to a command to start restrictions on a communication service of a computer, the communication service is restricted by a countermeasures apparatus which replaces the communication address of a second computer, which has been stored in a first computer, with the communication address of the countermeasures apparatus, and replaces a communication address of the first computer, which has been stored in the second computer, with the communication address of the countermeasures apparatus. Accordingly, the countermeasures apparatus acquires a packet from the first computer to the second computer and determines whether or not this acquired packet is to be transmitted to the second computer.Type: ApplicationFiled: September 5, 2008Publication date: January 1, 2009Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: KENTARO AOKI, YUKINOBU MORIYA, IZUMI KAGAWA
-
Publication number: 20080084820Abstract: The present invention provides a system which maintains a function of monitoring and controlling a network regardless of an increase of data to be downloaded by a computer whose access to the network is restricted.Type: ApplicationFiled: September 25, 2007Publication date: April 10, 2008Inventors: Kentaro Aoki, Yukinobu Moriya, Katsuhiko Shimada, Naoto Shimizu, Hideki Sugiyama
-
Publication number: 20070258452Abstract: The method is that of detecting a network address translation device which transfers network data to a first device. This method includes: obtaining an address of a second device connected to the network; generating pseudo network data in which an address is set as a destination address, and in which a number of times that the network data can be transferred is set as a number of transfers required to reach the first device; transmitting the pseudo network data to the second device; detecting a message from the second device, the message indicating that the pseudo network data cannot be further transferred; and determining that the second device is operating the network address translation device in response to the detection of the message.Type: ApplicationFiled: March 20, 2007Publication date: November 8, 2007Inventors: Naoto Shimizu, Kentaro Aoki, Yukinobu Moriya, Hideo Yasuniwa
-
Publication number: 20060206720Abstract: A method of limiting I/O access of a client to prevent data in a client connected to the system from being leaked and stolen, the method further canceling the limitation under a predetermined condition even if the client can not communicate with a server is provided. The method comprising the steps of locking I/O access of the client, determining whether the client is connectable to the server via a network, unlocking I/O access of the client in response to a determination of the client being connectable, by authenticating the client by the server, and unlocking I/O access of the client in response to the client not being connectable, by connecting a portable authentication device to the client to authenticate the client by the portable authentication device.Type: ApplicationFiled: March 7, 2006Publication date: September 14, 2006Inventors: Hideki Harada, Takeshi Ohmori, Yukinobu Moriya, Taizoh Ueda, Kunio Okuda