首页> 外国专利> Graceful termination of security-violation client connections in a network protection system (NPS)

Graceful termination of security-violation client connections in a network protection system (NPS)

机译:在网络保护系统(NPS)中的安全违规客户端连接的优常终止

摘要

A network protection system (NPS) is augmented to provide additional functionality—preferably within the SSL/TLS connection at the OSI presentation layer—to enable efficient management and handling of security-violating client connections. When the NPS determines to suspend a suspect application client connection, the NPS modifies the request (the TLS encrypted packet) at a random offset to include a random byte value. When the modified request is then received at the server, a TLS decryption error occurs. In response, the server drops the request gracefully and, in particular, a termination response is returned from the server to the NPS, which then passes the termination response back to the requesting client.
机译:扩充网络保护系统(NPS)以提供额外的功能 - 优选地在OSI呈现层的SSL / TLS连接内 - 以实现有效的管理和处理安全违规的客户端连接。当NPS确定暂停可疑应用客户端连接时,NPS在随机偏移中修改请求(TLS加密分组)以包括随机字节值。当然后在服务器处接收修改后的请求时,发生TLS解密错误。作为响应,服务器优雅地丢弃请求,特别是从服务器返回到NPS的终止响应,然后将终止响应转回请求客户端。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号