Invention Grant
- Patent Title: Client fingerprinting for information system security
-
Application No.: US15589220Application Date: 2017-05-08
-
Publication No.: US10536439B2Publication Date: 2020-01-14
- Inventor: John Brooke Althouse , Jeffrey S. Atkinson , Joshua Atkins
- Applicant: salesforce.com, inc.
- Applicant Address: US CA San Francisco
- Assignee: SALESFORCE.COM, INC.
- Current Assignee: SALESFORCE.COM, INC.
- Current Assignee Address: US CA San Francisco
- Agency: Schwabe, Williamson & Wyatt
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06 ; H04L12/26

Abstract:
Client fingerprints can be used to detect and defend against malware and hacking into information systems more effectively than using IP addresses. A unique client fingerprint can be based on data found in the client's SSL client hello packet. SSL version, cipher suites, and other fields of the packet can be utilized, preferably utilizing individual field values in the order in which they appear in the packet. The ordered values are converted to decimal values, separated by delimiters, and concatenated to form an identifier string. The identifier string may be mapped, preferably by a hash function, to form the client fingerprint. The client fingerprint may be logged, and whitelists and blacklists may be formed using client fingerprints so formed.
Public/Granted literature
- US20180324153A1 CLIENT FINGERPRINTING FOR INFORMATION SYSTEM SECURITY Public/Granted day:2018-11-08
Information query