International Business Machines Corporation
Transport layer security session man-in-the-middle attack prevention
Last updated:
Abstract:
Preventing Transport Layer Security session man-in-the-middle attacks is provided. A first security digest generated by an endpoint device is compared with a second security digest received from a peer device. It is determined whether a match exists between the first security digest and the second security digest based on the comparison. In response to determining that a match does not exist between the first security digest and the second security digest, a man-in-the-middle attack is detected and a network connection for a Transport Layer Security session is terminated with the peer device.
Status:
Grant
Type:
Utility
Filling date:
9 Nov 2018
Issue date:
5 Jul 2022