发明名称 Secure data transfer in a virtual environment
摘要 In one embodiment, a method includes receiving at one of a plurality of servers, a request from a client for a secure communication session, storing context information associated with the secure communication session at a virtual context server in communication with the servers, and establishing the secure communication session between one of the servers and the client. The context information includes a session identifier, a secret, and a session state. The stored context information is available to the servers to allow the secure communication session to move between the servers. An apparatus for secure data transfer in a virtual environment is also disclosed.
申请公布号 US8856317(B2) 申请公布日期 2014.10.07
申请号 US201012804177 申请日期 2010.07.15
申请人 Cisco Technology, Inc. 发明人 Robertson Matthew;Hebbani Raghavendra Rao Sandeep;Li Qingqing
分类号 G06F15/173;H04L29/06;H04L29/08 主分类号 G06F15/173
代理机构 代理人 Kaplan Cindy
主权项 1. A method comprising: receiving at one of a plurality of servers, a request from a client for a secure communication session comprising a Secure Socket Layer (SSL) or Transport Layer Security (TLS) session; establishing said secure communication session directly between one of said plurality of servers and the client; sharing context information associated with said secure communication session with a virtual context server in communication with said plurality of servers and operable to store said context information, said context information comprising a session identifier, a secret, and a session state, wherein said context information stored at the virtual context server is available to said plurality of servers to allow said secure communication session to move between said plurality of servers; and moving said secure communication session with said client from one of said plurality of servers to another of said plurality of servers; wherein said plurality of servers belong to a trusted group configured to have access to said secure communication session and said secret, said secret used in said secure communication session to provide data integrity and confidentiality.
地址 San Jose CA US