首页> 外文期刊>Software >Enforcing direct communications between clients and Web servers to improve proxy performance and security
【24h】

Enforcing direct communications between clients and Web servers to improve proxy performance and security

机译:强制客户端和Web服务器之间的直接通信以提高代理性能和安全性

获取原文
获取原文并翻译 | 示例
           

摘要

The amount of dynamic Web contents and secured e-commerce transactions has been dramatically increasing on the Internet, where proxy servers between clients and Web servers are commonly used for the purpose of sharing commonly accessed data and reducing Internet traffic. A significant and unnecessary Web access delay is caused by the overhead in proxy servers to process two types of accesses, namely dynamic Web contents and secured transactions, not only increasing response time, but also raising some security concerns. Conducting experiments on Squid proxy 2.3STABLE4, we have quantified the unnecessary processing overhead to show its significant impact on increased client access response times. We have also analyzed the technical difficulties in eliminating or reducing the processing overhead and the security loopholes based on the existing proxy structure. In order to address these performance and security concerns, we propose a simple but effective technique from the client side that adds a detector interfacing with a browser. With this detector, a standard browser, such as the Netscape/Mozilla, will have simple detective and scheduling functions, called a detective browser. Upon an Internet request from a user, the detective browser can immediately determine whether the requested content is dynamic or secured. If so, the browser will bypass the proxy and forward the request directly to the Web server; otherwise, the request will be processed through the proxy. We implemented a detective browser prototype in Mozilla version 0.9.7, and tested its functionality and effectiveness. Since we have simply moved the necessary detective functions from a proxy server to a browser, the detective browser introduces little overhead to Internet accessing, and our software can be patched to existing browsers easily.
机译:Internet上动态Web内容和安全的电子商务交易的数量急剧增加,Internet上客户端和Web服务器之间的代理服务器通常用于共享常用数据和减少Internet流量的目的。代理服务器处理两种类型的访问(即动态Web内容和受保护的交易)的开销会导致大量不必要的Web访问延迟,这不仅增加了响应时间,而且引起了一些安全问题。在Squid代理2.3STABLE4上进行实验,我们已经量化了不必要的处理开销,以显示其对增加的客户端访问响应时间的重大影响。我们还分析了基于现有代理结构在消除或减少处理开销和安全漏洞方面的技术难题。为了解决这些性能和安全问题,我们从客户端提出了一种简单而有效的技术,该技术增加了与浏览器接口的检测器。使用此检测器,标准浏览器(例如Netscape / Mozilla)将具有简单的检测和调度功能,称为检测浏览器。根据用户的互联网请求,侦探性浏览器可以立即确定所请求的内容是动态的还是安全的。如果是这样,浏览器将绕过代理并将请求直接转发到Web服务器。否则,请求将通过代理进行处理。我们在Mozilla 0.9.7版中实现了侦探性浏览器原型,并测试了其功能性和有效性。由于我们仅将必要的侦探功能从代理服务器移到了浏览器,因此侦探浏览器对Internet访问的开销很小,并且我们的软件可以轻松地修补到现有的浏览器上。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号