发明名称 Selectively passing network addresses through a server
摘要 A method of securely communicating a network address of a client that issues service requests to a first server that proxies the service requests for a second server. A network address of the client is received. A processor determines whether a first network address of the first server is equal to a second network address of the second server. The network address of the client is sent from the first server to the second server in a secure request message only when the first network address of the first server is equal to the second network address of the second server. Accordingly, a secure communications protocol is provided in which an address of a requesting client, e.g., an IP address, is passed in the protocol only among a responding server and its proxy, thereby preventing interception of the client IP address by unauthorized processes. By enforcing a policy that permits the network address of an originating host to pass from a first server to a second server only when the network address of the second server meets specified criteria (e.g., it is the same network address as that of the first server), the originating host address can be passed securely through a proxy server.
申请公布号 US7016964(B1) 申请公布日期 2006.03.21
申请号 US20000636392 申请日期 2000.08.09
申请人 CISCO TECHNOLOGY, INC. 发明人 STILL DAVID N.;DENG MINGQI;RODEN THOMAS A.
分类号 G06F15/16;H04L29/06;H04L29/08 主分类号 G06F15/16
代理机构 代理人
主权项
地址