Palo Alto Networks, Inc.
REDUCING MEMORY FOOTPRINT AFTER TLS CONNECTION ESTABLISHMENT

Last updated:

Abstract:

For connection establishment, a system allocates memory that will be occupied by the data and handshake sub-protocol infrastructure that facilitates establishing a TLS connection. After connection establishment, the system allocates memory space for the data and record sub-protocol infrastructure that facilitates the asynchronous communication of application traffic. The memory space for the TLS session (i.e., the communication information separate from the handshake) has a substantially smaller footprint than the memory space for the TLS handshake. The TLS handshake memory space can be released and recycled for other connections while application communications use the smaller memory space allocated and populated with the TLS session data and infrastructure.

Status:
Application
Type:

Utility

Filling date:

29 May 2020

Issue date:

2 Dec 2021