Akamai Technologies, Inc.
Bot detection in an edge network using transport layer security (TLS) fingerprint

Last updated:

Abstract:

This disclosure describes a technique to fingerprint TLS connection information to facilitate bot detection. The notion is referred to herein as "TLS fingerprinting." Preferably, TLS fingerprinting herein comprises combining different parameters from the initial "Hello" packet send by the client. In one embodiment, the different parameters from the Hello packet that are to create the fingerprint (the "TLS signature") are: record layer version, client version, ordered TLS extensions, ordered cipher list, ordered elliptic curve list, and ordered signature algorithms list. Preferably, the edge server persists the TLS signature for the duration of a session.

Status:
Grant
Type:

Utility

Filling date:

8 May 2018

Issue date:

23 Nov 2021