发明名称 Remote browsing session management
摘要 A process is directed to the generation and processing of server identification data by a network computing provider. A client computing device transmits data identifying a server associated with a content source. The identification data can include a digital certificate signed by a third-party certificate authority, a DNS record from a third-party DNS server, etc. The network computing provider comprises one or more physical computing devices for processing the identification data received from any number of client computing devices. The network computing provider can alert the client computing device, content source, or DNS server when erroneous or potentially fraudulent identification data is detected. The network computing provider can also store the identification data and provide content sources and DNS servers with access to the identification data received from client computing devices.
申请公布号 US9374244(B1) 申请公布日期 2016.06.21
申请号 US201213406112 申请日期 2012.02.27
申请人 Amazon Technologies, Inc. 发明人 Brandwine Eric Jason
分类号 H04L21/00 主分类号 H04L21/00
代理机构 Knobbe, Martens, Olson & Bear, LLP 代理人 Knobbe, Martens, Olson & Bear, LLP
主权项 1. A computer-implemented method for detecting differences between digital certificates, the method comprising: under the control of a server system comprising one or more hardware-based computer processors configured to execute specific instructions, wherein the server system is separate from a content source and a user computing device, receiving, by the server system, a first certificate data from the user computing device, the first certificate data comprising a first digital certificate asserting the identity of the content source, wherein the first digital certificate is signed by a certificate authority, and wherein the first digital certificate was previously obtained by the user computing device in connection with a secure content request, originating from the user computing device, for content hosted by the content source; andin response to receiving the first certificate data from the user computing device: retrieving, by the server system, a second certificate data from the content source responsive to a request transmitted by the server system to the content source, the second certificate data comprising a second digital certificate identifying the same content source as the first digital certificate, the second digital certificate signed by a certificate authority; anddetermining, by the server system, that the first digital certificate is fraudulent based at least partly on comparing the first certificate data to the second certificate data and identifying a difference.
地址 Seattle WA US