DocumentCode :
2566181
Title :
A Trusted Authorization Scheme for E-Commerce Systems
Author :
Hu Ronglei ; Duan Xiaoyi ; Li Zhaobin
Author_Institution :
Dept. of Commun. Eng., Beijing Electron. Sci. & Technol. Inst., Beijing, China
fYear :
2010
fDate :
23-25 Sept. 2010
Firstpage :
1
Lastpage :
4
Abstract :
The trusted authorization scheme is core content of e-commerce. Authorization refers to a kind of mechanism that specific authenticated users can access secure resources. Authorization system relies on the authentication system to confirm the identity of legitimate users and prevent unauthorized users. In order to solve the trusted problem of authorization, TPM1.2 specification published by TCG organization contains a series of protocols to resist all forms of attack. However, there are some security flaws in these protocols. A new trusted authorization protocol securer than OIAP protocol is proposed in the paper. The scheme ensures that only if the returned message is received and identified by the application the authorized access can be executed. This make the subject is credible when accessing key data in the trusted terminal and this can ensure the credibility of the e-commerce transactions. The security of the scheme is analyzed using formal logic method.
Keywords :
authorisation; electronic commerce; formal logic; e-commerce system; formal logic method; trusted authorization protocol; Authentication; Authorization; Protocols; Resists; Tin;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Wireless Communications Networking and Mobile Computing (WiCOM), 2010 6th International Conference on
Conference_Location :
Chengdu
Print_ISBN :
978-1-4244-3708-5
Electronic_ISBN :
978-1-4244-3709-2
Type :
conf
DOI :
10.1109/WICOM.2010.5601313
Filename :
5601313
Link To Document :
بازگشت