发明名称 Piggy-backed key exchange protocol for providing secure, low-overhead browser connections when a server will not use a message encoding scheme proposed by a client
摘要 A method, system, and computer program product for establishing security parameters that are used to exchange data on a secure connection. A piggy-backed key exchange protocol is defined, with which these security parameters are advantageously exchanged. By piggy-backing the key exchange onto other already-required messages (such as a client's HTTP GET request, or the server's response thereto), the overhead associated with setting up a secure browser-to-server connection is minimized. This technique is defined for a number of different scenarios, where the client and server may or may not share an encoding scheme, and is designed to maintain the integrity of application layer communication protocols. In one scenario, a client proposes a message encoding scheme, but the server will not use this proposed scheme. The server proposes a different scheme, after which the client re-issues its request for secure content.
申请公布号 US6694431(B1) 申请公布日期 2004.02.17
申请号 US19990416100 申请日期 1999.10.12
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 BINDING CARL;HILD STEFAN GEORG;HUANG YEN-MIN;O'CONNOR LUKE JAMES;SINGHAL SANDEEP K.;SHOUP VICTOR JOHN;STEINER MICHAEL
分类号 H04L29/06;(IPC1-7):H04L9/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址