发明名称 Server preventing attacks by generating a challenge having a computational request and a secure cookie for processing by a client
摘要 A server is configured for preventing flood attacks by a client having sent a request, by dynamically generating a challenge to be performed by the client before the server will perform any work for the client. The challenge includes a dynamically generated computational request and a dynamically generated secure cookie. The server generates a first hash result based on hashing a first random number, having a prescribed length, with a second random number having a dynamically selected length. A secure cookie is generated based on hashing the first hash result with a prescribed secure key known only by the server, and a unique identifier for the request such as the client network address with a time stamp. The challenge requires the client to determine the second random number based on the first random number and the hash result. The server validates the challenge results using the secure cookie.
申请公布号 US7694335(B1) 申请公布日期 2010.04.06
申请号 US20040795312 申请日期 2004.03.09
申请人 CISCO TECHNOLOGY, INC. 发明人 TURNER BRYAN C.;TOEBES JOHN
分类号 G06F9/00 主分类号 G06F9/00
代理机构 代理人
主权项
地址