摘要
在互联网和移动互联网支付领域,SET协议起着至关重要的作用。它通过对用户、商家、支付网关、收单行、发卡行关系的合理处理,为整个网络支付过程提供了安全、可靠的保障。但是,SET协议自身由于设计时代的局限,存在一定的效率和应用障碍的问题。文中对SET协议在移动支付中的安全性进行了研究,在保证原SET协议安全性的基础上,提出了一个改进方案。该方案的最大特点在于,通过将动态口令技术应用于SET协议的流程中,改进了SET协议的执行状况。通过分析,改进后的方案不仅是安全的,同时也是高效的,从而更好地保证了网上支付的安全性。
SET protocol plays a vital role in the payment field of Internet and mobile Internet. This protocol, by properly treating the relationship among between the users, merchants, payment gateway, acquirers, issuers, provides a safe and reliable protection for the process of the entire network payment. However, there are still some problems in efficiency and application of the SET protocol for its design limitation in its times. The security of the SET protocol in mobile payment is studied, and on the basis of ensuring the safety of original SET protocol, an improved scheme is proposed. The most important feature of the scheme lies in that OTP (One-Time Password) technology in the SET protocol process, the implementation status of the SET protocol is improved. Experiment and analysis indicate that the improved scheme is safe and efficient, and could fairly ensure the security of online payment.