摘要
现在所流行的安全电子商务协议(SET)是基于PKI构建的,购买者、商家和支付网关之间的身份认证靠传递和验证证书来实现,交互过程复杂,计算量大,效率不高,而且还不满足商品原子性和确认发送原子性。基于组合公钥算法和新型认证技术给出一种安全电子支付协议,能够简单地实现交易三方的相互身份认证,克服了SET存在的不足。通过安全性分析和与SET的比较,说明其具有更好的安全性、更高的效率且更容易实现。
Based on PKI, the popular secure electronic transaction protocol (SET) is constructed, the mutual identity authentication among the client, merchant and pay-gateway relies on transmission and verification of digital certificate, and this authentication, with complicated communications, high computation and low efficiency could hardly satisfy the goods atomicity and certified delivery atomicity. Due to these deficiencies, this paper presents a secure electronic transaction protocol based on CPK (CPK-SET), which could easily achieve mutual identity authentication among the client, merchant and pay-gateway, and overcome these deficiencies in SET. The security analysis and comparison with SET indicates that this protocol is of much higher security and efficiency, and easier implementation.
出处
《通信技术》
2010年第8期178-180,共3页
Communications Technology
基金
现代通信国家重点实验室基金(编号:9140C1103040902)
广东省信息安全产业基地基金(编号:2008A010100011-08)