发明公开
- 专利标题: METHODS AND APPARATUSES FOR AVOIDING DAMAGE IN NETWORK ATTACKS
- 专利标题(中): 用于避免网络攻击中的损害的方法和设备
-
申请号: EP17159302.3申请日: 2011-07-06
-
公开(公告)号: EP3193523A1公开(公告)日: 2017-07-19
- 发明人: NORRMAN, Karl , MATTSSON, John , LEHTOVIRTA, Vesa , OHLSSON, Oscar
- 申请人: Telefonaktiebolaget LM Ericsson (publ)
- 申请人地址: 164 83 Stockholm SE
- 专利权人: Telefonaktiebolaget LM Ericsson (publ)
- 当前专利权人: Telefonaktiebolaget LM Ericsson (publ)
- 当前专利权人地址: 164 83 Stockholm SE
- 代理机构: Ericsson
- 优先权: US201161470709P 20110401
- 主分类号: H04W12/04
- IPC分类号: H04W12/04 ; H04L29/06
摘要:
Methods and apparatuses in a client terminal (400) and a web server (402) for enabling safe communication between said terminal and server. When the terminal obtains a web page from the server in a session, the terminal creates a context specific key, Ks_NAF', based on one or more context parameters, P1,...Pn, pertaining to said session and/or web page. The terminal then indicates the context specific key in a login request to the server, and the server determines a context specific key, Ks_NAF', in the same manner to verify the client if the context specific key determined in the web server matches the context specific key received from the client terminal. The context specific key is thus bound to and valid for the present context or session only and cannot be used in other contexts or sessions.
信息查询