发明名称 METHOD FOR DEFENDING AGAINST SESSION HIJACKING ATTACKS AND FIREWALL
摘要 The present disclosure provides a method for defending against session hijacking attacks, including: receiving a first access request transmitted from a legal client side and transmitting the first access request to a server; receiving a first response comprising a first authentication token returned from the server; generating a first sequence value according to a network address of the legal client side and an identification code of the legal client side, and recombining the first authentication token and the first sequence value to form a second authentication token; and replacing the first authentication token in the first response with the second authentication token, and transmitting the first response comprising the second authentication token to the legal client side.
申请公布号 US2014189842(A1) 申请公布日期 2014.07.03
申请号 US201314086983 申请日期 2013.11.22
申请人 Sangfor Technologies Company Limited 发明人 Wang Pengtao
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method for defending against session hijacking attacks, comprising: receiving a first access request transmitted from a legal client side and transmitting the first access request to a server; receiving a first response comprising a first authentication token returned from the server; generating a first sequence value according to a network address of the legal client side and an identification code of the legal client side, and recombining the first authentication token and the first sequence value to form a second authentication token; and replacing the first authentication token in the first response with the second authentication token, and transmitting the first response comprising the second authentication token to the legal client side.
地址 Shenzhen CN