The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 21, 2020

Filed:

Jun. 01, 2017
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Cheng-Ta Lee, Taipei, TW;

Wei-Hsiang Hsiung, Taipei, TW;

Wei-Shiau Suen, Taichung, TW;

Ming-Hsun Wu, New Taipei, TW;

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/30 (2006.01); H04L 9/08 (2006.01); H04L 9/32 (2006.01); H04L 29/08 (2006.01);
U.S. Cl.
CPC ...
H04L 63/166 (2013.01); H04L 9/0861 (2013.01); H04L 9/302 (2013.01); H04L 9/3263 (2013.01); H04L 63/0428 (2013.01); H04L 63/1466 (2013.01); H04L 67/146 (2013.01); H04L 67/42 (2013.01);
Abstract

A network-based appliance includes a mechanism to provide TLS inspection with session resumption, but without requiring that a session cache be maintained. To this end, the inspector is configured to cause the TLS client to participate in maintaining the session context, in effect on behalf of the TLS inspector. In operation, when the inspector first receives the session ticket from the TLS server, and in lieu of caching it, the inspector generates and issues to the client a composited ticket that includes the original ticket and session context information that contains the session key. The composited ticket is encrypted by the inspector to secure the session information. When the TLS client presents the composited session ticket to resume the TLS connection, the inspector decrypts the ticket and retrieves the session context from it directly. The inspector then uses the original session ticket to resume the TLS session.


Find Patent Forward Citations

Loading…