发明授权
- 专利标题: Accessing SSL connection data by a third-party
- 专利标题(中): 由第三方访问SSL连接数据
-
申请号: US11420677申请日: 2006-05-26
-
公开(公告)号: US08782393B1公开(公告)日: 2014-07-15
- 发明人: Jesse Abraham Rothstein , Arindum Mukerji , David D. Schmitt , John R. Hughes
- 申请人: Jesse Abraham Rothstein , Arindum Mukerji , David D. Schmitt , John R. Hughes
- 申请人地址: US WA Seattle
- 专利权人: F5 Networks, Inc.
- 当前专利权人: F5 Networks, Inc.
- 当前专利权人地址: US WA Seattle
- 代理机构: Lowe Graham Jones PLLC
- 代理商 John W. Branch
- 主分类号: G06F21/00
- IPC分类号: G06F21/00
摘要:
A method, system, and apparatus are directed towards enabling access to payload by a third-party sent over an SSL session. The third-party may be a proxy situated between a client and a server. SSL handshake messages are sent between the client and the server to establish the SSL connection. As the SSL handshake messages are routed through the proxy, the proxy may extract data. In addition, one of the client or the server may send another message within, or out-of-band to, the series of SSL handshake message directly to the proxy. The other SSL message may include secret data that the proxy may use to generate a session key for the SSL connection. With the session key, the proxy may receive SSL messages over the SSL connection, modify and/or transpose the payload within the received SSL messages, and/or terminate the SSL connection at the proxy.
信息查询