针对SSLVPN在会话结束后会在远程主机上留下会话痕迹这一安全隐患,提出了一种基于磁盘过滤驱动的Cache Clean工作机制。该机制的核心思想是在对上层操作系统透明的情况下,重定向对磁盘操作的I/O请求包,在会话结束后自动清除会话数据,极大地增强了SSLVPN会话的安全性。
SSL VPN could leave the conversation trace on the remote host after SSL session. It doubtless results in latent safety threaten to the remote business access. According to it, put forward a method of Cache Clean based on disk filter driver, the kernel of it is redirecting the IRP transparently to the top OS, and erase all session data after session closed. It strengthens the security of remote access of SSL VPN.