摘要
总结了基于移动代理的电子交易安全需求,在未指定代理者的强代理签名方案的基础上,提出了一种新的安全电子交易方案.新方案增加了客户隐私保护功能,能有效解决代理在多个备选商家主机之间移动时的安全问题,保证了客户和商家双方身份的不可伪造性和交易信息的不可拆分性,可抗重放攻击,实现了各商家之间身份和交易信息的保密.分析表明,新方案满足所有电子交易安全需求,更具实用性.
The security requirement for mobile agent-based electronic commerce transactions is summarized. An improved scheme based upon the strong non-designated proxy signature scheme is proposed. The new scheme adds new feature for customer privacy protection and effectively addresses security requirements when mobile agent moves between multiple optional hosts; it also can ensure the unforgeability of customer and shop's identity, prevent reply attack, moreover, it will secret one shop's identity and transaction information against others. The security analysis of the proposed scheme shows that it meets all security requirements summarized in section one.
出处
《北京邮电大学学报》
EI
CAS
CSCD
北大核心
2006年第4期81-85,共5页
Journal of Beijing University of Posts and Telecommunications
基金
国家自然科学基金项目(60372094)
关键词
移动代理
电子交易
强代理签名
mobile agent
electronic transactions
strong proxy signature