DocumentCode :
3096273
Title :
Using The GSM/UMTS SIM to Secure Web Services
Author :
MacDonald, John A. ; Mitchell, Chris J.
Author_Institution :
Inf. Security Group, London Univ.
fYear :
2005
fDate :
19-19 July 2005
Firstpage :
70
Lastpage :
78
Abstract :
In this paper we present a mobile operator endorsed authentication and payment platform for the consumption of Web services by a mobile station. We propose a protocol where the mobile operator plays the role of dusted third party to issue authentication and authenticated payment authorisation tokens to facilitate a transaction between a mobile station and a Web service provider. We consider the structure and syntax of these tokens to minimise service latency, and provide security services to protect against the threat model. To validate our proposal we have developed code to create a Web service test scenario utilising readily available J2ME, Java Card, J2SE and J2EE platforms, Wtb Services tools from Apache, the KToolBar emulator from Sun, and a Gem-plus Java Card
Keywords :
3G mobile communication; Internet; authorisation; cellular radio; GSM; UMTS SIM; Web services; authenticated payment authorisation tokens; mobile operator endorsed authentication; mobile operator endorsed payment; mobile station; security services; 3G mobile communication; Authentication; Authorization; Delay; GSM; Java; Protection; Protocols; Security; Web services;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Mobile Commerce and Services, 2005. WMCS '05. The Second IEEE International Workshop on
Conference_Location :
Munich
Print_ISBN :
0-7695-2391-9
Type :
conf
DOI :
10.1109/WMCS.2005.28
Filename :
1581578
Link To Document :
بازگشت