首页> 外国专利> REVERSE PROXY SERVERS FOR IMPLEMENTING APPLICATION LAYER-BASED AND TRANSPORT LAYER-BASED SECURITY RULES

REVERSE PROXY SERVERS FOR IMPLEMENTING APPLICATION LAYER-BASED AND TRANSPORT LAYER-BASED SECURITY RULES

机译:反向代理服务器,用于实现基于应用层和基于传输层的安全规则

摘要

The implementation of application layer-based and transport-layer based security rules via a reverse proxy server chain is described. Each reverse proxy server in the chain is configured to perform a particular function with respect to client messages intended for a destination server and/or convey contextual information pertaining to the messages to a subsequent reverse proxy server in the chain. For instance, a first reverse proxy server in the chain is configured to include client-specific metadata in the transport layer of the message. A second reverse proxy server in the chain enforces transport layer-based policy rules based on the metadata. This enables the second reverse proxy server to manage transport layer connections on a client-by-client basis, thereby enabling the second reverse proxy server to block unauthorized clients, while maintaining the transport layer connections for authorized clients. A third reverse proxy server in the chain enforces application layer-based policy rules.
机译:描述了通过反向代理服务器链的基于应用层和传输层的安全规则的实现。链中的每个反向代理服务器被配置为对用于目的地服务器的客户消息和/或将与消息相关的上下文信息传送到链中的后续反向代理服务器的客户端消息执行特定函数。例如,链中的第一反向代理服务器被配置为在消息的传输层中包含特定于客户端的元数据。链中的第二反向代理服务器基于元数据强制基于传输层的策略规则。这使得第二反向代理服务器能够在客户端基础上管理传输层连接,从而使第二反向代理服务器能够阻止未授权的客户端,同时维护授权客户端的传输层连接。链中的第三个反向代理服务器强制执行基于应用层的策略规则。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号