摘要 |
<p>A security-preserving proxy tunnel is disposed between a client computer and a trusted secure server. The proxy tunnel operates over an insecure network, in which the connection is as secure as if it were direct, but in which techniques for improving the efficiency of network communication can be applied. Particular embodiments of the invention do not need to transmit PKI private keys over any network link or expose them in any location that is not trusted; do not require modification or special configuration of the client process; do not require any modification of secure servers; and transparently bypass communications to secure servers not explicitly chosen for proxying, without being able to inspect their content. The client processes can be web browsers and the secure servers can be secure web servers.</p> |