透過您的圖書館登入
IP:18.117.152.251
  • 期刊

Incorporating Robust Authentication Scheme in P2P E-Commerce Applications

應用安全強固的驗證機制於對等互聯網路電子商務環境

摘要


隨著點對點式(P2P)的技術崛起,使用者已運用這種互聯網的架構快速與便利的從事各種電子商務(EC)上的應用。雖然這種網路架構具有自我組織的能力和彈性,不過仍面臨來自開放通訊環境的威脅及挑戰,例如動態的拓撲結構、無線的連結、自主漫遊的環境,均暴露其危險與弱點。如何辨識身份及使用端互相確認,實為重要的安全議題。本文提出了一種運用橢圓曲線密碼學的計算原理,並植基於身分加密的認證機制,適用於這類P2P無線及有線電腦通訊網路的環境,亦提供了增進安全強度、快速且低耗量效果的優點,藉由本文認證機制加值於P2P的架構,可以強固EC環境的安全性顧慮。

並列摘要


Due to lack of effective trust management mechanism, heaps of deceptions exist in peer-to-peer (P2P) e-commerce (EC) environments, which seriously damage authenticity and availability of the systems. There are various challenges that are faced in the open autonomous environments. These existing challenges are mostly owing to the scarcity of correct authentication in P2P networks. Generally speaking, structured P2P networks are assumed to be accessible by allowing heterogeneous nodes or clients to interact and share one another. The identity (ID) authentication problem for this type of network has now become important. The paper presents a specific authentication key exchange scheme for P2P networks. Theoretic analysis shows that, a robust evaluation scheme based on elliptic curve cryptography (ECC) is proposed for P2P e-commerce networks with better secure identifying-and-authenticating features.

參考文獻


Bresson, E.,Chevassut, O.,Pointcheval, D.(2007).Provably secure authenticated group Diffie-Hellman key exchange.ACM Transactions on Information and System Security.10(3),1-45.
Castro, M.,Druschel, P.,Ganesh, A.,Rowstron, A.,Wallach, D. S.(2002).Secure routing for structured peer-to-peer overlay networks.Proceedings of the 5th Usenix Symposium on Operating Systems Design and Implementation.(Proceedings of the 5th Usenix Symposium on Operating Systems Design and Implementation).:
Chou, C.C.,Wei, S.L.,Kuo, C.C.,Naik, K.(2007).An efficient anonymous communication protocol for peer-to-peer applications over mobile ad-hoc networks.IEEE Journal on selected areas in communications.25(1),192-203.
Dingledine, R.,Freedman, M.,Molnar, D.(2000).The FreeHaven project: Distributed anonymous storage service.Proceedings of the Workshop on Design Issues in Anonymity and Unobservability.(Proceedings of the Workshop on Design Issues in Anonymity and Unobservability).:
Fahrenholtz, D.,Lamersdorf, W.(2002).Transactional security for a distributed reputation management system.EC-Web '02.(EC-Web '02).

延伸閱讀