SSL VPN equipment-based Web resource authentication information management method

A technology of authentication information and management methods, which is applied in the field of authentication information management when remote access devices access web resources, can solve problems such as web resources cannot be accessed normally, and achieve the effect of avoiding transmission to the external network

Active Publication Date: 2011-02-16
北京神州数码云科信息技术有限公司
View PDF3 Cites 29 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] In SSL VPN, web resources need to be accessed through authentication. When many web resources are configured, if the web resources send authentication cookie information to the browser, the browser will limit the number of cookies and the length of the content, resulting in the need for authentication. Web resources cannot be accessed normally

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • SSL VPN equipment-based Web resource authentication information management method
  • SSL VPN equipment-based Web resource authentication information management method
  • SSL VPN equipment-based Web resource authentication information management method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] The present invention will be further described below in conjunction with the accompanying drawings and embodiments.

[0032] Such as figure 2 As shown, it is a schematic diagram of a system of the present invention to realize the unified management of Web resources through the gateway in the SSL VPN. Many peripheral devices on the public network, including PCs, laptops, PDAs, etc., access the SSL VPN gateway through their respective browsers by establishing SSL connections. Only considering the application scenario of users accessing web resources, the connection between the user and the SSL VPN is an HTTPS connection. SSL VPN gateway When the user wants to access the WEB SERVER inside the LAN through the gateway, an HTTP or HTTPS connection is established between the gateway and the Web server, and then the data is forwarded between the gateway and the connection established at both ends to complete the user The need for access to the internal web server.

[0033]...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for safely managing Web resource authentication information at a gateway end in a unified way when the web resource is accessed based on security socket layer virtual private network (SSL VPN) remote accessing equipment. In the method, web resource access authentication cookie information is saved at the gateway end of the SSL VPN and the content is reconstructed, so that the operation of the cookie by a script in the page content of a browser end can be updated to the gateway end in real time, and the correctness of cookie processing is ensured; the method breaks through the limitation of a browser on the cookie number of the same domain name and the length of a cookie item, so that the authenticated web resource of gateway configuration does not need to be limited to the browser end in cookie; and the authenticated cookie information of gateway intranet resource is not leaked to a public network and the intranet resource is protected well.

Description

technical field [0001] The present invention relates to the field of computer network technology, in particular to a method for managing authentication information when a remote access device accesses Web resources in a secure socket layer virtual private network (SSL VPN). Background technique [0002] SSL VPN is a technology that uses Secure Socket Layer (Security Socket Layer, abbreviated as SSL) technology for encrypted connection to realize remote access to a virtual private network (Virtual Private Network, abbreviated as VPN). Such as figure 1 As shown, in the case of only using browser authentication and only accessing Web resources in SSL VPN, an SSL channel is established between the user and the SSL VPN gateway, and the channel corresponds to a secure hypertext transfer protocol (HTTPS) connection at the application layer: When a user accesses a web resource, the SSL VPN gateway will establish a TCP or SSL channel with the web server, corresponding to the applica...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/46H04L29/08H04L29/06
Inventor 张希
Owner 北京神州数码云科信息技术有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products