摘要
根据对移动Agent在恶意主机上安全问题的分析 ,给出了一个安全的电子交易方案 .该方案改进了强代理签名安全机制 ,使用不可拆分数字签名技术、公钥加密算法和时间戳 ,可以保证客户身份不可仿冒且要求不可拆分、商家身份不可仿冒且开价不可拆分、商家的身份和开价信息对其他商家保密 ,同时还可以抵抗客户或商家通过重放攻击来迫使对方进行额外的交易 .
Based on the analysis of security problems in malicious hosts,a scheme of secure electronic transactions is proposed.This scheme has improved the strong proxy signature scheme by using undetachable digital signatures technique,public key encryption algorithms and time stamps.It achieved following characteristics:first,the identity of a shop and a customer can not be forged;second,the requirements of a customer and the bid of a shop can not be detached;third,the identity and the bid information of a shop keep private against other shops;finally,it's able to resist replay attacks.
出处
《同济大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2004年第8期1080-1082,共3页
Journal of Tongji University:Natural Science
基金
国家自然科学基金资助项目 (70 1710 61)
关键词
移动AGENT
电子交易
不可拆分数字签名
mobile Agents
electronic transactions
undetachable digital signatures