发明授权
US09210131B2 Aggressive rehandshakes on unknown session identifiers for split SSL
有权
对分裂SSL的未知会话标识符的侵略性重写
- 专利标题: Aggressive rehandshakes on unknown session identifiers for split SSL
- 专利标题(中): 对分裂SSL的未知会话标识符的侵略性重写
-
申请号: US12848096申请日: 2010-07-30
-
公开(公告)号: US09210131B2公开(公告)日: 2015-12-08
- 发明人: Benn Sapin Bollay , Erick Nils Hammersmark
- 申请人: Benn Sapin Bollay , Erick Nils Hammersmark
- 申请人地址: US WA Seattle
- 专利权人: F5 Networks, Inc.
- 当前专利权人: F5 Networks, Inc.
- 当前专利权人地址: US WA Seattle
- 代理机构: Lowe Graham Jones PLLC
- 代理商 John W. Branch
- 主分类号: G06F21/00
- IPC分类号: G06F21/00 ; H04L29/06 ; H04L29/08 ; G06F21/60
摘要:
A traffic management device (TMD), system, and processor-readable storage medium are directed to monitoring an encrypted session between a client and a server, determining that the session identifier is unknown, and requesting a renegotiation of the session to acquire a session identifier for the renegotiated session. Determination that the session identifier is unknown may be based on interception and analysis of handshake messages sent by the client and/or the server. Following such determination, a renegotiation of the encrypted session may be triggered by sending a renegotiation request to the client, and a session identifier for the renegotiated session may be determined based on information extracted from subsequent handshake messages exchanged between the client and server during the renegotiation. Determination of the session identifier may enable decryption, encryption and modification of subsequent communications traffic, for example insertion of third party content into traffic sent to the client.
公开/授权文献
信息查询