IP Library Granted Patent US 9,992,226
Granted Patent B2
US 9,992,226 · App. 15/155,903 · Granted Jun 5, 2018

Enhanced thread handling in security handshaking

Inventors: Artur Bergman (San Francisco, CA); Alan Kasindorf (Mountain View, CA); Rogier Mulhuijzen (Den Haag, NL)
Assignee: Fastly Inc.
H04L63/168H04L63/166H04L63/205H04L67/2852
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,992,226
App. No.
15/155,903
Granted
Jun 5, 2018
Kind
B2
Abstract

Disclosed herein are methods, systems, and software for handling threaded processes in security handshaking between end users and content delivery nodes are presented. In one example, a method of operating a content delivery node includes identifying a secure layer connection request within an application thread, and initiating a new thread for a security handshake process based on the secure layer connection request. The method further includes, in response to completing the security handshake process, returning to the application thread.

Claims (26)

1. A method of operating a cache node in a content delivery network comprising:

in a processor, executing an application thread in association with a request for content cached in the content delivery network;

while the application thread executes, the processor monitoring for a secure layer connection request to occur within the application thread;

in response to the secure layer connection request occurring, the processor utilizing a handshake thread from a pool of idle handshake threads to execute a security handshake process in reply to the secure layer connection request; and

upon the handshake thread completing the security handshake process, the processor returning to the application thread and returning the handshake thread to the pool of idle handshake threads.

2. The method of claim 1 wherein the secure layer connection request comprises a secure sockets layer request.

3. The method of claim 1 wherein the secure layer connection request comprises a transport layer security request.

4. The method of claim 1 wherein the application thread comprises a data thread.

5. The method of claim 4 wherein the data thread comprises a thread that handles the request.

6. One or more non-transitory computer readable storage media having program instructions stored thereon for operating a cache node in a content delivery network that, when executed by a processing system, direct the processing system to at least:

execute an application thread in association with a request for content cached in the content delivery network;

while the application thread executes, monitor for a secure layer connection request to occur within the application thread;

in response to the secure layer connection request occurring, utilize a handshake thread from a pool of idle handshake threads to execute a security handshake process in reply to the secure layer connection request; and

upon the handshake thread completing the security handshake process, return to the application thread and return the handshake thread to the pool of idle handshake threads.

7. A computing apparatus comprising:

one or more non-transitory computer readable storage media;

a processing system operatively coupled with the one or more non-transitory computer readable storage media; and

program instructions stored on the one or more non-transitory computer readable storage media for operating a cache node in a content delivery network that, when executed by the processing system, direct the processing system to at least:

execute an application thread in association with a request for content cached in the content delivery network;

while the application thread executes, monitor for a secure layer connection request to occur within the application thread;

in response to the secure layer connection request occurring, utilize a handshake thread from a pool of idle handshake threads to execute a security handshake process in reply to the secure layer connection request; and

upon the handshake thread completing the security handshake process, return to the application thread and return the handshake thread to the pool of idle handshake threads.

8. The computing apparatus of claim 7 wherein the secure layer connection request comprises a secure sockets layer request.

9. The computing apparatus of claim 7 wherein the secure layer connection request comprises a transport layer security request.

10. The computing apparatus of claim 7 wherein the application thread comprises a data thread.

11. The computing apparatus of claim 10 wherein the data thread comprises a thread that handles the request.

Assignments (2)
SECURITY INTEREST Recorded Feb 17, 2021
From: FASTLY, INC.
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AND COLLATERAL AGENT
Reel/Frame 055316/0616 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 16, 2016
From: BERGMAN, ARTUR; KASINDORF, ALAN; MULHUIJZEN, ROGIER
To: FASTLY, INC.
Reel/Frame 038607/0627 →
Continuity (3)
Continuation 14347050 · Mar 25, 2014
Provisional Application 61766807 · Feb 20, 2013
Related Publication 20160261633A1 · Sep 8, 2016