摘要
利用椭圆曲线密码体制同安全级别下具有更短密钥的优势,通过改进用户对银行发送过来的挑战的盲变换形式,提出了一种安全、高效的移动电子支付协议.同时为了有效控制银行电子现金支付信息数据库的规模,提出了在电子现金中嵌入有效使用期和用户、商家转存电子现金的最长使用时间.此外,设计时将面额信息嵌入至电子现金中,从而达到使用一套系统参数和银行公私钥对即可签发多种面额电子现金的效果.分析表明该协议具有较少的计算量和较高的在线处理效率,可抵抗多种伪造攻击,有效保护用户的消费隐私,且银行和商家数据库大小可以控制,大大缩短转账响应时间.
A safe and effictive mobile electronic payment protocol based on elliptic curve cryptography (ECC) was proposed, in which the blind transmission sent by banks was improved. In order to control the size of electronic payment database maintained by bank, the valid duration anct longest days for users and shops store electronic cash were introduced and embedded into electronic cash. Addition- ally, the denomination is also embedded into electronic cash, so that it is feasible to issue various denomination electronic cash using only one set of system parameters and public/secrete key pair of bank. The new protocol achieves high safety and efficiency by means of improving the form of blind transformation and embedded validity duration in electronic cash. The analysis shows that the compu- tation is decreased and the transaction efficiency is increased in on-line phase. Furthermore, the new protocol can effectively understand many kinds of forge and protects the consume privacy of mobile user. At the same time, the database scales of bank or shop can be controlled in a reasonable range, thus the response time of transfers is greatly shortened.
出处
《华中科技大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2008年第10期82-85,共4页
Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金
国家自然科学基金资助项目(60703048)
关键词
移动电子支付
电子现金
椭圆曲线密码体制
盲变换
支付请求
有效期
mobile electronic payment
electronic cash
elliptic curve cryptography (ECC)
blindtransformation
pay claim
validity duration