Communication method, server and terminal based on HTTP (Hypertext Transfer Protocol)

A technology of hypertext transmission and server, applied in terminal, communication method based on hypertext transmission protocol, server field, can solve the problem of not being able to identify whether the request is intercepted, replayed, etc.
CN102647461AActive Publication Date: 2012-08-22BEIJING QIHOO TECH CO LTD

Patent Information

Authority / Receiving Office
CN Β· China
Patent Type
Applications(China)
Current Assignee / Owner
BEIJING QIHOO TECH CO LTD
Publication Date
2012-08-22

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The application provides a network communication method, a system, a server and a terminal based on HTTP (Hypertext Transfer Protocol), aiming at resisting replay attack in HTTP network communication. The network communication method comprises the steps of sending a first time stamp to the terminal according to a terminal request; receiving network request information sent by the terminal, wherein the network request information includes the first time stamp and corresponding time stamp ciphertext, and the time stamp ciphertext is generated by encrypting algorithm factor containing the first time stamp according to a preset encryption algorithm at the terminal; and verifying whether the time stamp ciphertext is in effect or not according to the preset encryption algorithm, if no, judging the network request information is an invalid request. By verifying the validity and effectiveness of the time stamp ciphertext containing time stamp information, the possibility that the time stamp information in the network request is tampered can be further prevented, and occurrence of network replay attack can be avoided.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The present application relates to the technical field of network security, in particular to a hypertext transfer protocol-based communication method, server, and terminal. Background technique

[0002] At present, as the Internet affects people's daily work and life more and more deeply, the security of data communication based on the Internet is particularly important.

[0003] Among various factors affecting network communication security, replay attacks (Replay Attacks) are one of the most common attack methods. Replay attacks, also known as replay attacks, replay attacks, or freshness attacks, refer to attackers using network monitoring or other methods to steal authentication credentials, and then resend the disguised data packets to the server to achieve deception. purpose of the system. It is mostly used in the identity authentication process, destroying the correctness of authentication. This kind of attack repeats a valid data transmission...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More