首页> 外文学位 >A secure on-line credit card transaction method based on Kerberos authentication protocol.
【24h】

A secure on-line credit card transaction method based on Kerberos authentication protocol.

机译:一种基于Kerberos身份验证协议的安全的在线信用卡交易方法。

获取原文
获取原文并翻译 | 示例

摘要

Nowadays, electronic payment system is an essential part of modern business. Credit cards or debit cards have been widely used for on-site or remote transactions, greatly reducing the need for inconvenient cash transactions. However, there have been a huge number of incidents of credit card frauds over the Internet due to the security weakness of electronic payment system. A number of solutions have been proposed in the past to prevent this problem, but most of them were inconvenient and did not satisfy the needs of cardholders and merchants at the same time.;In this thesis, we present a new secure card payment system called NNCC (No Number Credit Card) that significantly reduces the possibility of credit card frauds. This scheme is primarily designed for on-line shopping. NNCC is based on the Kerberos cryptographic framework that has been proven to be secure after being used in real world for decades. In this proposed system, instead of card numbers, only the payment tokens are exchanged between the buyers and merchants. The token is generated based on the payment amount, the client information, and merchant information. However it does not contain the credit card number, so the merchant cannot acquire and illegally use the credit card number. A token is cryptographically secure and valid only for the designated merchant, so it is robust against eavesdropping.;This thesis describes the underlying cryptographic schemes, the operating principles, and the system design. It explains the concept of Kerberos and the background in Cryptography. Then it discusses the new proposed system and the associated payment processes. We have implemented a proof-of-concept prototype comprised of ecommerce web sites, client modules, payment server, and database. We show the architecture and protocol of the system, and discuss the performance.
机译:如今,电子支付系统已成为现代业务的重要组成部分。信用卡或借记卡已广泛用于现场或远程交易,大大减少了不便的现金交易需求。但是,由于电子支付系统的安全性弱点,互联网上发生了大量信用卡欺诈事件。过去已经提出了许多解决方案来防止此问题,但是大多数解决方案是不方便的,并且不能同时满足持卡人和商户的需求。;本文中,我们提出了一种新的安全卡支付系统,称为NNCC(无编号信用卡),可大大减少信用卡欺诈的可能性。该方案主要用于在线购物。 NNCC基于Kerberos加密框架,该框架在现实世界中使用了数十年后,已被证明是安全的。在该提出的系统中,代替支付卡号,仅支付令牌在买卖双方之间交换。令牌是基于支付金额,客户信息和商家信息生成的。但是,它不包含信用卡号,因此商家无法获取和非法使用该信用卡号。令牌在密码学上是安全的,并且仅对指定的商家有效,因此它对于窃听具有鲁棒性。;本文描述了基本的密码方案,操作原理和系统设计。它解释了Kerberos的概念以及密码学的背景。然后讨论了新提议的系统以及相关的付款流程。我们已经实现了一个概念证明原型,其中包括电子商务网站,客户端模块,支付服务器和数据库。我们展示了系统的体系结构和协议,并讨论了性能。

著录项

  • 作者

    Kim, Jung Eun.;

  • 作者单位

    University of Nevada, Las Vegas.;

  • 授予单位 University of Nevada, Las Vegas.;
  • 学科 Web Studies.;Computer Science.
  • 学位 M.S.C.S.
  • 年度 2010
  • 页码 61 p.
  • 总页数 61
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-17 11:36:48

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号