摘要 |
PURPOSE: A data transceiving method for supporting a security function in a world wide web(www), is provided to respectively apply a proxy supporting a public key encryption system and a common gateway interface(CGI) program to a web browser and a web server used in a www environment based on the Internet, so as to supply the security function in an application program level. CONSTITUTION: A request line, a header and a body included in a first request message are interpreted. Information on a method, hypertext transfer protocol(HTTP) address, HTTP version, security flag and system name is extracted. A key of a server system is obtained to encrypt the information on the method, HTTP address, HTTP version, header, body and random number, and a digital signature is performed. The encrypted information is transmitted to a web server in a second request message type. A request line included in the request message is analyzed to execute a corresponding common gateway interface(CGI) program. Information like a content-length is interpreted, and an environment variable value of a security request is calculated. Information received through the web server is decoded by using a secret key value of the server system. The second request message is encrypted, and the encrypted information is transmitted to the web server. A proxy server receiving the information, status line, content length generated from the CGI program checks a security version and a security response. The information received from the web server is decoded by using a secret key of the proxy server. Information for transmission is established based on the decoded information, and transmitted to a web browser.
|