首页> 外国专利> SECURE USER SESSION MANAGING METHOD UNDER WEB ENVIRONMENT AND RECORDING MEDIUM RECORDED PROGRAM EXECUTING IT

SECURE USER SESSION MANAGING METHOD UNDER WEB ENVIRONMENT AND RECORDING MEDIUM RECORDED PROGRAM EXECUTING IT

机译:Web环境下的安全用户会话管理方法,并记录执行该程序的中等记录程序

摘要

A user session managing method and a recording medium recording a program by using an authentication algorithm of trial-response method on web are provided to protect the session of the user by applying authentication algorithm to HTTP(HyperText Transfer Protocol). A server calculates a first server authentication value by using a sharing key stored in a server and random number(S11). The server newly produces the random number. The server uses the shared key stored in the random number and server and the second server authenticator is calculated(S15). The server including random number transmits the HTTP response to the client. The HTTP request including server is the cookie from the client is received. The cookie comprises the client authentication value. By using the random number included in the shared key stored in client and the HTTP response which client is transmitted, the client authentication value is calculated.
机译:提供了一种用户会话管理方法和一种通过使用网络上的尝试响应方法的认证算法来记录程序的记录介质,以通过将认证算法应用于HTTP(超文本传输​​协议)来保护用户的会话。服务器通过使用存储在服务器中的共享密钥和随机数来计算第一服务器认证值(S11)。服务器新产生随机数。服务器使用存储在随机数中的共享密钥和服务器,并且计算第二服务器认证符(S15)。包括随机数的服务器将HTTP响应发送到客户端。包含服务器的HTTP请求是从客户端收到的cookie。 Cookie包含客户端身份验证值。通过使用客户端中存储的共享密钥中包含的随机数和发送客户端的HTTP响应,可以计算出客户端身份验证值。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号