The proposal of improved secure cookies system based on public-key certificate 


Vol. 27,  No. 11, pp. 1090-1096, Nov.  2002


PDF
  Abstract

The HTTP does not support continuity for browser-server interaction between successive visits of a user due to a stateless feature. Cookies were invented to maintain continuity and state on the Web. Because cookies are transmitted in plain and contain text-character strings encoding relevant information about the user, the attacker can easily copy and moify them for his undue profit. In this paper, we design a secure cookies scheme based on X.509 public key cenificate for solving these security weakness of typical web cookies. Our secure cookies scheme provides not only mutual authentication between client and server but also confidentiality and integrity of user information. Additionally, we implement our secure cookies scheme and compare it to the performance with SSL(Secure Socket Layer) protocol that is widely used for security of HTTP environment.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Yang and K. Rhee, "The proposal of improved secure cookies system based on public-key certificate," The Journal of Korean Institute of Communications and Information Sciences, vol. 27, no. 11, pp. 1090-1096, 2002. DOI: .

[ACM Style]

Jong-Phil Yang and Kyung-Hyune Rhee. 2002. The proposal of improved secure cookies system based on public-key certificate. The Journal of Korean Institute of Communications and Information Sciences, 27, 11, (2002), 1090-1096. DOI: .

[KICS Style]

Jong-Phil Yang and Kyung-Hyune Rhee, "The proposal of improved secure cookies system based on public-key certificate," The Journal of Korean Institute of Communications and Information Sciences, vol. 27, no. 11, pp. 1090-1096, 11. 2002.