Invention Grant
- Patent Title: Bot detection in an edge network using transport layer security (TLS) fingerprint
-
Application No.: US15973585Application Date: 2018-05-08
-
Publication No.: US11184390B2Publication Date: 2021-11-23
- Inventor: David Senecal , Andrew Kahn , Ory Segal , Elad Shuster , Duc Nguyen
- Applicant: Akamai Technologies, Inc.
- Applicant Address: US MA Cambridge
- Assignee: Akamai Technologies, Inc.
- Current Assignee: Akamai Technologies, Inc.
- Current Assignee Address: US MA Cambridge
- Agent David H. Judson
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06N20/00 ; H04L29/08

Abstract:
This disclosure describes a technique to fingerprint TLS connection information to facilitate bot detection. The notion is referred to herein as “TLS fingerprinting.” Preferably, TLS fingerprinting herein comprises combining different parameters from the initial “Hello” packet send by the client. In one embodiment, the different parameters from the Hello packet that are to create the fingerprint (the “TLS signature”) are: record layer version, client version, ordered TLS extensions, ordered cipher list, ordered elliptic curve list, and ordered signature algorithms list. Preferably, the edge server persists the TLS signature for the duration of a session.
Public/Granted literature
- US20190190950A1 Bot detection in an edge network using Transport Layer Security (TLS) fingerprint Public/Granted day:2019-06-20
Information query