Synchronizing user sessions in a session environment having multiple web services
    16.
    发明授权
    Synchronizing user sessions in a session environment having multiple web services 失效
    在具有多个Web服务的会话环境中同步用户会话

    公开(公告)号:US08640202B2

    公开(公告)日:2014-01-28

    申请号:US11867348

    申请日:2007-10-04

    申请人: Patrick Roy

    发明人: Patrick Roy

    IPC分类号: H04L29/06

    摘要: A mechanism is provided for synchronizing a first user session and a second user session in a client-server system. The first user session is between a first Web service and a client and the second user session is between a second Web service and the same client. A request is received with a first session value by the second Web service. An indicator of the first session value is assigned to a shadow, and the shadow is sent in a response to the client. A subsequent request with the shadow and a subsequent session value is received from the client. The indicator is used to verify the subsequent session value at the second Web service. The second user session is terminated if the indicator in the shadow does not correspond to the subsequent session value.

    摘要翻译: 提供了一种用于在客户机 - 服务器系统中同步第一用户会话和第二用户会话的机制。 第一个用户会话在第一个Web服务和一个客户端之间,第二个用户会话在第二个Web服务和同一个客户端之间。 第二个Web服务接收到具有第一个会话值的请求。 第一个会话值的指示符被分配给阴影,并且阴影是在响应中发送给客户端的。 从客户端接收到带有影子和后续会话值的后续请求。 该指示器用于验证第二个Web服务的后续会话值。 如果阴影中的指示符不对应于后续会话值,则第二个用户会话将终止。

    Web application response cloaking
    17.
    发明授权
    Web application response cloaking 失效
    Web应用程序响应隐藏

    公开(公告)号:US08478894B2

    公开(公告)日:2013-07-02

    申请号:US11186537

    申请日:2005-07-21

    IPC分类号: G06F15/16 G06F9/00

    CPC分类号: H04L63/029 H04L67/02

    摘要: Method and system for centralized control of data transfers between a Web client and a Web application by receiving a response from the Web application. After determining an offending character is present, cloaking the response from the Web application to a request from a Web client, and sending the cloaked response to the Web client through a security product which otherwise rejects the offending character.

    摘要翻译: 通过接收来自Web应用程序的响应来集中控制Web客户机和Web应用程序之间的数据传输的方法和系统。 在确定存在违规字符之后,将来自Web应用的响应从Web客户端请求发送到Web客户端,并通过安全产品发送隐藏的响应,否则拒绝该违规字符。