首页> 外文期刊>IEEE Journal on Selected Areas in Communications >Verifying the SET registration protocols
【24h】

Verifying the SET registration protocols

机译:验证SET注册协议

获取原文
获取原文并翻译 | 示例
           

摘要

Secure electronic transaction (SET) is an immense e-commerce protocol designed to improve the security of credit card purchases. In this paper, we focus on the initial bootstrapping phases of SET, whose objective is the registration of cardholders and merchants with a SET certificate authority. The aim of registration is twofold: getting the approval of the cardholder's or merchant's bank and replacing traditional credit card numbers with electronic credentials that cardholders can present to the merchant so that their privacy is protected. These registration subprotocols present a number of challenges to current formal verification methods. First, they do not assume that each agent knows the public keys of the other agents. Key distribution is one of the protocols' tasks. Second, SET uses complex encryption primitives (digital envelopes) which introduce dependency chains: the loss of one secret key can lead to potentially unlimited losses. Building upon our previous work, we have been able to model and formally verify SETs registration with the inductive method in Isabelle/HOL (T. Nipkow et al., 2002). We have solved its challenges with very general techniques.
机译:安全电子交易(SET)是一种旨在提高信用卡购买安全性的庞大电子商务协议。在本文中,我们将重点放在SET的初始引导阶段,其目的是向具有SET证书颁发机构的持卡人和商人进行注册。注册的目的是双重的:获得持卡人或商人的银行的批准,并用持卡人可以向商人提供的电子凭证代替传统的信用卡号,从而保护他们的隐私。这些注册子协议对当前的形式验证方法提出了许多挑战。首先,他们不假定每个代理都知道其他代理的公钥。密钥分发是协议的任务之一。其次,SET使用复杂的加密原语(数字信封),这些原语引入了依赖关系链:丢失一个秘密密钥可能导致潜在的无限损失。在我们之前的工作的基础上,我们已经能够使用Isabelle / HOL中的归纳方法对SET注册进行建模和正式验证(T. Nipkow等,2002)。我们已经通过非常通用的技术解决了它的挑战。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号