Everything you want to know about the Internet, secure e- commerce, e-business, and other new...

48
Everything you want to know about the Internet, secure e-commerce, e-business, and other new digital economy but were afraid to ask Looking at current situation and future opportunities Budi Rahardjo
  • date post

    19-Dec-2015
  • Category

    Documents

  • view

    212
  • download

    0

Transcript of Everything you want to know about the Internet, secure e- commerce, e-business, and other new...

Page 1: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Everything you want to know about the Internet, secure e-commerce, e-business, and other new digital economy but were afraid to ask

Looking at current situation and future opportunities

Budi Rahardjo

Page 2: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Current affiliations

Bandung High-Tech Valley (BHTV)

Page 3: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Introduction to the Internet

Page 4: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

The Internet … means

Information Bahn, the net, … a global system connecting public and private network to share information among universities, governments, business, individuals

Technology based on TCP/IP, web oriented

Page 5: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

The Internet

Recognized as foundation of the “New Digital Networked Economy”

Important!Numerous IT / Internet initiatives in

the USA to guarantee their domination

Page 6: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

The History of the Internet

ARPANET (1969) MILNET (1980) NSFNET (1986)

National Science Foundation Network (NSFNET) linked researchers across the country with five supercomputer centers

Commercial Internet (1995-Now)

Let the game begins...

Page 7: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Internet Technology

LAN

LAN LAN

LAN

WAN

WAN

Internet

Page 8: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Internet Growth

Exponential Matthew Gray of the Massachusetts Institute of

Technologyhttp://www.mit.edu/people/mkgray/net/

Internet Statistics and Demographicshttp://lcweb.loc.gov/global/internet/inet-stats.html

Page 9: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.
Page 10: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Connection from home

Internet

ISP

Client

ISP

Client

• Modem• Phone Line• Computer• ISP Connection

Page 11: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Internet Services

World Wide Web (WWW)Electronic Mail (Email)File Transfer Protocol (FTP)Internet Relay Chat (IRC), MUDMultimedia ApplicationsNewsgroupWide Area Information Systemand many more...

Page 12: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Internet Apps

Distance Learning

Electronic Commerce

Voice Over Internet

Video On Demand

WebTV/InternetTV

Page 13: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

New Internet Devices

Page 14: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Introduction to e-commerce, e-business

Page 15: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

What is e-commerce?

Commerce based on electronics / information technology

e-commerce to commerce is like email to conventional mail Things that were not possible are now

possible How many conventional mails you send

to your friends monthly? You send more emails.

Page 16: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

What is e-business

Business utilizes electronics or ITE-business or Out-of-business

Page 17: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Things that make you hmm…

Computers were only used to replace typewriter

Computers can do more (not just an electronic typewriter) Save, recall, easy editing Transfer files without changing the format,

layout, content File sharring Desktop publishing, arts Features that were difficult to

interpolate from typewriter

Page 18: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

E-commerce & E-business then…

Uses Internet (media & technology, web)

Internet and computer networks are not just replacement of telephone and fax

The ability to exploit technology (information, computing, communication) will win Save cost, reduce time, reach the whole

world, better supply chain, …

Page 19: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Implications

Advances in computing, communication should increase our quality of life. Is it? Longer working hours. Work even at home No “life” (family) Wider gaps between the have and the

have notsAre you really ready for this?

Page 20: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

E-commerce & E-Business in Indonesia

Depends on readiness in Economy: understanding the New Digital

Economy Legal framework: Cyberlaw (eg. Digital

signature law, IPR) Hard infrastructure: telcos, power, human

resources Soft infrastructure: IDNIC (domain), IDCERT

(security) Community: culture, ethics

Page 21: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Indonesia Cybercommunity

Define “Indonesia cybercommunity”!Since the Indonesian digital

population is still small, opportunity to create a better community. No “burden of size”.

Ethics!

Page 22: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Ethics: Do well or do right?

“Business ethics” is oxymoronDo the right thing!Corporate must have values

From “Silicon Valley”, magazine of San Jose Mercury News, 4.16.2000http://www.svmagazine.com/2000/week17/features/Story01.html

Page 23: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Example: Propel.com 13 commandments

Think and act like an owner Have fun Recognize accomplishment Keep a balance in your life Teach and learn from each other Communicate without fear of retribution Require quality beyond customer expectations Improve continuously Go the extra mile to take care of customer Play to win-win Act with sense of urgency Make and meet commitments Give back to the community

Page 24: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Something to ponder

In the end, your integrity is all you’ve got(Jack Welch, GE)

Page 25: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Reading materials

From Business to E-Business in 8 Stepshttp://www.cognitiative.com

Page 26: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Secure E-Commerce

Page 27: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

E-commerce & Security

Trust, security and confidence are esential to underpin e-commerce

E-commerce will be accepted if the security is at an acceptable level

Are we there yet? Is it acceptable?Business cannot wait

Page 28: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

E-security Statistics

Difficult to get exact numbers due to negative publicity

1996. FBI National Computer Crime Squad, detected computer crime 15%, only 10% of that number is reported.

1996. American Bar Association: survey of 1000 companies, 48% experienced computer fraud in the last 5 years.

1996. Di Inggris, NCC Information Security Breaches Survey: computer crime increased 200% from1995 to 1996.

1997. FBI: computer crime case in court increased 950% from 1996 to 1997, convicted in court increased 88%.

Page 29: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

More Statistics

1999 CSI/FBI Computer Crime and Security SurveyDisgruntled employees 86%

Independent hackers 74%US Competitors 53%Foreign corp. 30%Foreign gov. 21%

http://www.gosci.com

Page 30: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

The Point …

Security awareness is still low.No budget!

Information Week (survey in USA, 1999), 1271 system or network manager, only 22% think that security is important

Page 31: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Vandalized Indonesian Sites

Polri, Satelindo, BEJ, BCADoS attack to various web sites

Page 32: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Security Services

Privacy / confidentialityIntegrityAuthenticationAvailabilityNon-repudiationAccess controlSome can be achived with cryptography

Page 33: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Privacy / confidentiality

Proteksi data [pribadi] yang sensitif Nama, tempat tanggal lahir, agama,

hobby, penyakit yang pernah diderita, status perkawinan

Data pelanggan Sangat sensitif dalam e-commerce,

healthcareSerangan: sniffer

Page 34: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Integrity

Informasi tidak berubah tanpa ijin (tampered, altered, modified)

Serangan: spoof, virus, trojan horse

Page 35: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Authentication

Meyakinkan keaslian data, sumber data, orang yang mengakses data, server yang digunakan penggunaan digital signature,

biometricsSerangan: password palsu

Page 36: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Availability

Informasi harus dapat tersedia ketika dibutuhkan server dibuat hang, down, crash Serangan terhadap Yahoo!, ebay, CNN

Serangan: Denial of Service (DoS) attack

Page 37: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Non-repudiation

Tidak dapat menyangkal (telah melakukan transaksi) menggunakan digital signature perlu pengaturan masalah hukum

Page 38: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Access Control

Mekanisme untuk mengatur siapa boleh melakukan apa biasanya menggunakan password adanya kelas / klasifikasi

Page 39: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Jenis Serangan (attack)

Menurut W. Stallings Interruption Interception Modification Fabrication

Page 40: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Teknologi Kriptografi

Penggunaan enkripsi untuk meningkatkan keamanan

Private key vs public keyContoh: DES, RSA

Page 41: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Private Key Cryptosystem

Encryption DecryptionPlaintextCiphertext

Shared (secret) key

Y$3*@My phone555-1234

My phone555-1234

Plaintext

Page 42: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Private Key Cryptosystem

Uses one secret key to encrypt and decrypt

Problem in key distribution and management Key distribution requires separate channel The number of keys grows exponentially

Advantage: fast operationExamples: DES, IDEA

Page 43: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Public Key Cryptosystem

Encryption DecryptionPlaintextCiphertext

Y$3*@My phone555-1234

My phone555-1234

Plaintext

Public key

Private key

Public key repositoryCertificate Authority (CA)

Page 44: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Public Key Cryptosystem

Uses different keys to encrypt and decrypt

Less number of keysRequires extensive computing power to

calculateRequires key repositoryKey management may be complicatedExamples: RSA, ECC

Page 45: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Public Key Cryptosystem

Public Key Infrastructure (PKI)Infrastruktur Kunci Publik (IKP)

Now the foundation of secure e-commerce. Standard.

Certification Authority Verisign Indosign (recently launced)

Page 46: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Studying Hackers

Who are they?What are their motives?How do they get in?What do they do after they got in?

Page 47: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

Other Security Issues

USA export restriction for strong cryptography

Cyberlaw: Legal to use cryptography? Digital signature law? Privacy issues Intellectual Proverty Rights

National Critical Infrastructure Protection

Page 48: Everything you want to know about the Internet, secure e- commerce, e-business, and other new digital economy but were afraid to ask Looking at current.

ID-CERT

Indonesia’s first computer emergency response coordination

VolunteersNeed more supporthttp://[email protected]