首页> 外国专利> ACHIEVING CERTIFICATE PINNING SECURITY IN REDUCED TRUST NETWORKS

ACHIEVING CERTIFICATE PINNING SECURITY IN REDUCED TRUST NETWORKS

机译:在减少信任网络中实现证书循环安全性

摘要

Achieving certificate pinning security in reduced trust networks. A client receives a second certificate from a server over a first secured communications channel. The first secured communications channel is established based at least upon a first digital certificate associated with the first secured communications channel being certified by a pinned certificate. The client sends a request towards the server via a second communications channel with an untrusted computer system, and the request is received by the server. The server generates a response comprising a timestamp, a URI portion, and a signature that is generated using the second certificate. The server sends the response via the second communications channel. The client receives the response, and uses the second certificate to verify that the response is authentic and that the timestamp and URI portion are valid. The client then processes the payload.
机译:在减少信任网络中实现证书循环安全性。 客户端通过第一安全通信信道从服务器接收第二证书。 第一安全通信信道至少基于与由固定证书认证的第一安全通信信道相关联的第一数字证书。 客户端通过第二通信信道向服务器发送请求,其中具有不可信的计算机系统,并且服务器接收请求。 服务器生成包括使用第二证书生成的时间戳,URI部分和签名的响应。 服务器通过第二通信通道发送响应。 客户端收到响应,并使用第二个证书验证响应是真实的,并且时间戳和URI部分是有效的。 然后,客户端处理有效载荷。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号