发明名称 SPLIT TERMINATION OF SECURE COMMUNICATION SESSIONS WITH MUTUAL CERTIFICATE-BASED AUTHENTICATION
摘要 A method and apparatus are provided for split-terminating a secure client-server communication connection when the client and server perform mutual authentication by exchanging certificates, such as within a Lotus Notes environment. When the client submits a certificate to the server, an intermediary device intercepts the certificate and submits to the server a substitute client certificate generated by that intermediary. A certificate authority's private key is previously installed on the intermediary to enable it to generate public keys, private keys and digital certificates. With the private key corresponding to the substitute certificate, the intermediary extracts a temporary key from a subsequent server message. The intermediary uses the temporary key to read a session key issued later by the server. Thereafter, the intermediary shares the session key with another intermediary, and together they use the session keys to access and optimize (e.g., accelerate) messages sent by the client and the server.
申请公布号 US2010228968(A1) 申请公布日期 2010.09.09
申请号 US20090396904 申请日期 2009.03.03
申请人 RIVERBED TECHNOLOGY, INC. 发明人 WASON PRASHANT;GUPTA NITIN;ADLER ROBERT
分类号 H04L9/00 主分类号 H04L9/00
代理机构 代理人
主权项
地址