摘要
为解决传统移动微支付协议因注重效率而导致协议存在安全隐患的缺陷,根据移动电子商务所应具备的安全性,通过对移动微支付协议Millicent的研究,发现其存在严重的用户欺骗问题。针对该协议存在的不足,增加商家与用户间的确认过程,使协议具有不可否认性。最后,对改进的移动微支付协议Millicent建模并使用SMV模型检测工具进行分析。分析结果表明,改进的协议除具有原协议的保密性和认证性外还具有不否认性和公平性,相比原协议更优越。
To solve the defect of the potential security risk caused by emphasizing the efficiency in the traditional mobile micro-payment protocol, according to the security that the mobile electronic business should have, the paper studies the mobile micro-payment protocol Millicent and discovers that it cheats customers. For the sake of the shortage, increasing the confirmation process between Vendor and Custom makes the protocol non-repudiate. Finally, the improved mobile micro-payment protocol Millicent is modeled and is analyzed with the model checking tool SMV. The analysis results show that the improved protocol owns non-repudiation and fairness besides possessing private and authenticating of the former, so it is better.
出处
《计算机工程与科学》
CSCD
北大核心
2012年第12期22-26,共5页
Computer Engineering & Science
基金
国家自然科学基金资助项目[2011]61163049号
贵州省自然科学基金项目黔科合J字[2011]2197号
关键词
微支付
不可否认性
公平性
模型检测
协议分析
micro-payment
non-repudiation
fairness
model checking
protocol analysis