• DocumentCode
    1327982
  • Title

    Design, implementation, and deployment of the iKP secure electronic payment system

  • Author

    Bellare, Mihir ; Garay, Juan A. ; Hauser, Ralf ; Herzberg, Amir ; Krawczyk, Hugo ; Steiner, Michael ; Tsudik, Gene ; Van Herreweghen, Els ; Waidner, Michael

  • Author_Institution
    Dept. of Comput. Sci. & Eng., California Univ., San Diego, La Jolla, CA, USA
  • Volume
    18
  • Issue
    4
  • fYear
    2000
  • fDate
    4/1/2000 12:00:00 AM
  • Firstpage
    611
  • Lastpage
    627
  • Abstract
    This paper discusses the design, implementation, and deployment of a secure and practical payment system for electronic commerce on the Internet. The system is based on the iKP family of protocols-(i=1,2,3)-developed at IBM Research. The protocols implement credit card-based transactions between buyers and merchants while the existing financial network is used for payment clearing and authorization. The protocols are extensible and can be readily applied to other account-based payment models, such as debit cards. They are based on careful and minimal use of public-key cryptography, and can be implemented in either software or hardware. Individual protocols differ in both complexity and degree of security. In addition to being both a precursor and a direct ancestor of the well-known SET standard, iKP-based payment systems have been in continuous operation on the Internet since mid-1996. This longevity-as well as the security and relative simplicity of the underlying mechanisms-makes the iKP experience unique. For this reason, this paper also reports on, and addresses, a number of practical issues arising in the course of implementation and real-world deployment of a secure payment system.
  • Keywords
    Internet; credit transactions; debit transactions; electronic commerce; protocols; public key cryptography; IBM Research; Internet; SET standard; account-based payment models; complexity; credit card-based transactions; debit cards; electronic commerce; electronic payment system deployment; electronic payment system design; electronic payment system implementation; financial network; iKP secure electronic payment system; payment authorization; payment clearing; protocols; public-key cryptography; real-world deployment; security; software; Authorization; Computer science; Credit cards; Cryptographic protocols; Electronic commerce; Hardware; Internet; Laboratories; Public key cryptography; Security;
  • fLanguage
    English
  • Journal_Title
    Selected Areas in Communications, IEEE Journal on
  • Publisher
    ieee
  • ISSN
    0733-8716
  • Type

    jour

  • DOI
    10.1109/49.839936
  • Filename
    839936