I've got an idea against mitm(man-in-the-middle) attacks that i'd like to implement to my site, so i decided to ask you how secure this is. First i'd get 10 page loading times from the client computer in seconds. Then i'd calculate the standard with all those loading times. Then each time the user loads a new page i check if his/her ip address has changed and if it has i recalculate that standard and compare it to the previous standard. If this standard is 1 or 2 bigger that doesn't really matter, but if it's 4 i can log out the user. Then if the attacker has a slower internet connection he would get logged out. I'm sure i'm not the only one who has thought of this, but i don't know if this is used.
There are a lot of reasons why this is a bad idea, but:
are the biggest two.