IP Library Granted Patent US 7,216,225
Granted Patent B2
US 7,216,225 · App. 09/863,423 · Granted May 8, 2007

Filtered application-to-application communication

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,216,225
App. No.
09/863,423
Granted
May 8, 2007
Kind
B2
Abstract

Some embodiments of the present invention are directed to a system that enables filtered application-to-application communication in a server farm in a multi-channel reliable hardware environment (e.g. InfiniBand). The system may also improve the performance of application-to-application communication between servers in the farm. The implementation of multi-channel reliable communication hardware may reduce the number of communication software layers above.

Claims (40)

1. A method for filtered application-to-application communication of applications running on computing platforms including an operating system kernel, said method comprising:

providing a communication interface to an application, wherein the communication interface bypasses a portion of the operating system kernel associated with communication resources;

filtering application data received from a process of said application according to a predetermined policy; and

providing said filtered application data directly to communication hardware by bypassing a portion of the operating system kernel associated with communication resources.

2. The method of claim 1 further comprising:

verifying the identity of said application prior to providing said filtered application data.

3. The method of claim 2 further comprising:

sending at least one security token.

4. The method of claim 1 further comprising:

verifying the identity of a machine participating in said process prior to providing said filtered application data.

5. The method of claim 4 further comprising:

sending at least one security token.

6. The method of claim 1 , wherein providing said filtered application data comprises providing said filtered application data directly to a multi-channel network interface card having direct user-to-hardware access.

7. The method of claim 6 , wherein said multi-channel network interface card is an InfiniBand card.

8. A method for filtered application-to-application communication of applications running on computing platforms including an operating system kernel, said method comprising:

providing a communication interface to an application, wherein the communication interface bypasses a portion of the operating system kernel associated with communication resources;

filtering application data received from a process of said application sending an authentication request to an authentication service;

receiving authentication information; and

providing said filtered application data directly to communication hardware by bypassing a portion of the operating system kernel associated with communication resources.

9. The method of claim 8 further comprising:

verifying the identity of said application prior to providing said filtered application data.

10. The method of claim 9 further comprising:

sending at least one security token.

11. The method of claim 8 further comprising:

verifying the identity of a machine participating in said process prior to providing said filtered application data.

12. The meted of claim 11 further comprising:

sending at least one security token.

13. The method of claim 8 , wherein providing said filtered application data comprises providing said filtered application data directly to a multi-channel network interface card having direct user-to-hardware access.

14. The method of claim 13 , wherein said multi-channel network interface card is an InfiniBand card.

15. A method for filtered application-to-application communication of applications running on computing platforms including an operating system kernel, said method comprising:

multi-channel communication hardware; and

at least one application interface and filter operative to provide filtered data from an application process directly to said multi-channel communication hardware by bypassing a portion of the operating system kernel associated with communication resources.

16. The system of claim 15 , wherein said communication hardware is a multi-channel network interface card having direct user-to-hardware access.

17. The system of claim 16 , wherein said multi-channel network interface card is an InfiniBand card.

18. A method for filtered application-to-application communication of applications running on computing platforms including an operating system kernel, said method comprising:

multi-channel communication hardware;

at least one application interface and filter operative to provide filtered data from an application process directly to said multi-channel communication hardware by bypassing a portion of the operating system kernel associated with communication resources; and

at least one an authentication service adapted to determine whether said application process is genuine and/or whether at least one machine participating in said application process is genuine.

19. The system of claim 18 , wherein said communication hardware is a multi-channel network interface card having a direct user-to-hardware access.

20. The system of claim 19 , wherein said multi-channel network interface card is an InfiniBand card.

Assignments (2)
RELEASE OF SECURITY INTEREST IN PATENT COLLATERAL AT REEL/FRAME NO. 37898/0959 Recorded Jul 13, 2018
From: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
To: MELLANOX TECHNOLOGIES TLV LTD.
Reel/Frame 046542/0699 →
PATENT SECURITY AGREEMENT Recorded Feb 23, 2016
From: MELLANOX TECHNOLOGIES TLV LTD.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 037898/0959 →