Zero-trust single packet authentication system and method based on universal browser

The invention discloses a zero-trust single-packet authentication system based on a universal browser. The zero-trust single-packet authentication system comprises the universal browser, a single-packet authentication proxy server and a security access gateway, the single packet authentication proxy...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: XIAO XIANGSHENG, LI XINSHUN, LI JIN, YANG WANGXING, DAI XIANGCHUN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention discloses a zero-trust single-packet authentication system based on a universal browser. The zero-trust single-packet authentication system comprises the universal browser, a single-packet authentication proxy server and a security access gateway, the single packet authentication proxy server comprises a TCP proxy service module and a UDP proxy service module, the TCP proxy service module is used for supporting the initiation of direct connection with the general browser, and the UDP proxy service module is used for realizing protocol conversion from TCP to UDP. Through the technical scheme of the invention, all business service ports of the security access gateway do not accept the TCP connection request before any user passes the single packet authentication, various handshake attacks, TLS vulnerability attacks, various port sniffing and DOS attacks of the TCP protocol are avoided, and high security protection of first authentication and second connection is realized. 本发明公开了一种基于通用浏览器的零信任单包认证系统