发明名称 AGGRESSIVE REHANDSHAKES ON UNKNOWN SESSION IDENTIFIERS FOR SPLIT SSL
摘要 A traffic management device (TMD), system, and processor-readable storage medium are directed to monitoring an encrypted session between a client and a server, determining that the session identifier is unknown, and requesting a renegotiation of the session to acquire a session identifier for the renegotiated session. Determination that the session identifier is unknown may be based on interception and analysis of handshake messages sent by the client and/or the server. Following such determination, a renegotiation of the encrypted session may be triggered by sending a renegotiation request to the client, and a session identifier for the renegotiated session may be determined based on information extracted from subsequent handshake messages exchanged between the client and server during the renegotiation. Determination of the session identifier may enable decryption, encryption and modification of subsequent communications traffic, for example insertion of third party content into traffic sent to the client.
申请公布号 US2011231649(A1) 申请公布日期 2011.09.22
申请号 US20100848096 申请日期 2010.07.30
申请人 F5 NETWORKS, INC. 发明人 BOLLAY BENN SAPIN;HAMMERSMARK ERICK NILS
分类号 H04L29/06;H04L9/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址