发明名称 METHOD AND SYSTEM FOR SECURELY PERMITTING MOBILE CODE TO ACCESS NETWORK RESOURCES
摘要 A system and methods are disclosed that permit mobile code, such as an applet, to create a network connection with a content server on a network, without exposing the client computer that is running the applet, or other computers with which the client computer may communicate, to a DNS spoofing attack. This is achieved in accordance with the principles of the present invention by using network restriction software in the execution engine or runtime system under which the applet executes. When the applet attempts to create a network connection to a content server, the network restriction software checks a "name directory" on the content server for the presence of an entry whose name corresponds to the name of the computer from which the applet was downloaded. If such an entry is present, then the network restriction software permits the network connection between the applet and the content server to be created. If not, the applet may not create a network connection with the content server. Additionally, address checks may be applied to assist in preventing DNS spoofing attacks from succeeding.
申请公布号 WO02078293(A1) 申请公布日期 2002.10.03
申请号 WO2002US09266 申请日期 2002.03.25
申请人 CURL CORPORATION 发明人 DAVIS, DONALD, T.;KRANZ, DAVID, A.;MARTIN, ELIZABETH, A.
分类号 G06F9/46;H04L29/06;(IPC1-7):H04L29/06;G06F9/445;G06F1/00 主分类号 G06F9/46
代理机构 代理人
主权项
地址