首页> 外国专利> HTTP layer countermeasures against blockwise chosen boundary attack

HTTP layer countermeasures against blockwise chosen boundary attack

机译:HTTP层针对块选择边界攻击的对策

摘要

A client application, when executed by a processor, is operative to create a HyperText Transfer Protocol (HTTP) request containing a target header that includes a confidential value. The HTTP request is to be sent over a Secure Sockets Layer (SSL) 3.0 connection or a Transport Layer Security (TLS) 1.0 connection to a web server. The client application implements at its HTTP layer a countermeasure to a blockwise chosen-boundary attack. The client application generates an additional header having a header name that is not recognizable by the web server and inserts the additional header into the HTTP request ahead of the target header, thus creating a modified HTTP request. The modified HTTP request is to be sent, instead of the unmodified HTTP request, over the SSL 3.0 connection or the TLS 1.0 connection to the web server.
机译:客户端应用程序在由处理器执行时可用于创建包含目标标头的超文本传输​​协议(HTTP)请求,该目标标头包含机密值。 HTTP请求将通过安全套接字层(SSL)3.0连接或传输层安全性(TLS)1.0连接发送到Web服务器。客户端应用程序在其HTTP层实现对块选择边界攻击的对策。客户端应用程序将生成具有Web服务器无法识别的标头名称的附加标头,并将附加标头插入目标标头之前的HTTP请求中,从而创建修改后的HTTP请求。修改后的HTTP请求(而不是未修改的HTTP请求)将通过SSL 3.0连接或TLS 1.0连接发送到Web服务器。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号