Beruflich Dokumente
Kultur Dokumente
1
Security for E-Payments (cont.)
http://www.uic.edu/depts/accc/newsletter/adn26/index.html
2
Security for E-Payments (cont.)
3
Key Sizes & Time to Try All Possible Keys
4
Security for E-Payments (cont.)
5
Digital Signatures
6
Crypto, Digital Signature and Digital
Certificates
z Cryptography provides security by using
encryption
{Ensures privacy
z Digital Signatures are just like a real signature
{DCMA makes them just as legally binding as a signed
paper document
z Digital Certificates uses Cryptographic
techniques to prove Identity
Digital Signature
DS Plaintext
Sender
Receiver
7
Digital Signature: Sender
Digital Signature
DS Plaintext
Sender
Receiver
Encrypts
Transmission Decrypts
8
Digital Signature: Receiver
1. Hash the received
plaintext with the same
Received Plaintext DS hashing algorithm the
sender used. This gives
2. the message digest
1. Decrypt with
Hash True Party’s 2. Decrypt the digital
Public Key signature with the sender’s
public key. This also should
MD give the message digest.
MD
3.
Are they Equal? 3. If the two match, the
message is authenticated;
The sender has the true
Party’s private key
Impostor Verifier
9
Digital Certificates
DS Plaintext
Verifier
10
Standards for E-Payments
11
Electronic Cards and Smart Cards
zThe Players
{Cardholder
{Merchant (seller)
{Issuer (your bank)
{Acquirer (merchant’s financial institution,
acquires the sales slips)
{Card association (VISA, MasterCard)
{Third-party processors (outsourcers performing
same duties formerly provided by issuers, etc.)
12
Online Credit Card Processing
13
Electronic Cards and Smart Cards (cont.)
14
Electronic Cards and Smart Cards (cont.)
zPurchasing cards—special-purpose
payment cards issued to a company’s
employees to be used solely for
purchasing nonstrategic materials and
services up to a preset dollar limit
Instrument of choice for B2B purchasing
E-Cards (cont.)
15
Participants & Process of Using a Purchasing Card
Smart Cards
16
Smart Cards (cont.)
17
Smart Cards (cont.)
E-Cash and
Innovative Payment Methods
18
E-Coin.net
E-Cash and
Payment Card Alternatives (cont.)
zWireless payments
Vodafone “m-pay bill” system that enables
wireless subscribers to use their mobile phones to
make micropayments
zQpass (qpass.com)
Charges to qpass account, are charged to a
specified credit card on a monthly basis
19
Stored-Value Cards
Person-to-Person Payments
20
Global B2B Payments
21
TradeCard Payments
22