发明授权
- 专利标题: Method for client delegation of security to a proxy
- 专利标题(中): 用于将安全性委托给代理的方法
-
申请号: US09282633申请日: 1999-03-31
-
公开(公告)号: US07249377B1公开(公告)日: 2007-07-24
- 发明人: Christian Lita , Linas Vepstas
- 申请人: Christian Lita , Linas Vepstas
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 代理机构: Hamilton & Terrile, LLP
- 代理商 Stephen A. Terrile
- 主分类号: H04L9/00
- IPC分类号: H04L9/00 ; H04L29/00 ; H04L29/02 ; G06F21/22
摘要:
A method of enabling a proxy to participate in a secure communication between a client and a server. The method begins by establishing a first secure session between the client and the proxy. Upon verifying the first secure session, the method continues by establishing a second secure session between the client and the proxy. In the second secure session, the client requests the proxy to act as a conduit to the server. Thereafter, the client and the server negotiate a session master secret. Using the first secure session, this session master secret is then provided by the client to the proxy to enable the proxy to participate in secure communications between the client and the server. After receiving the session master secret, the proxy generates cryptographic information that enables it to provide a given service (e.g., transcoding, monitoring, encryption/decryption, caching, or the like) on the client's behalf and without the server's knowledge or participation. The first secure session is maintained between the client and the proxy during such communications.
信息查询