Secure Electronic Transaction Creating Debts Online with Confidence.

17
Secure Electronic Transaction Creating Debts Online with Confidence

Transcript of Secure Electronic Transaction Creating Debts Online with Confidence.

Page 1: Secure Electronic Transaction Creating Debts Online with Confidence.

Secure Electronic Transaction

Creating Debts Online with Confidence

Page 2: Secure Electronic Transaction Creating Debts Online with Confidence.

SET Objectives

To encrypt critical information over the internet

To separate the merchant from credit card information

To link payment and order information

Page 3: Secure Electronic Transaction Creating Debts Online with Confidence.

SET

Alice as the Cardholder

Bob’s Beer Delivery as the Merchant

Visa as the Issuer

Wachovia as the Acquirer/Payment Gateway

Starring

Page 4: Secure Electronic Transaction Creating Debts Online with Confidence.

Dual Signature

How Bob can prove Alice paid for Natural Light and not Samuel Adams

Page 5: Secure Electronic Transaction Creating Debts Online with Confidence.

Dual Signature Creation

PI

OI

||

H PIMD

H OIMD

POMDH

DSE kra

Page 6: Secure Electronic Transaction Creating Debts Online with Confidence.

How Bob Uses the DS

DS PIMD OI

DS = Ekra[ H( H(PI) || H(OI) ) ]

Ekua [ Ekra[ H( H(PI) || H(OI) ) ] ]

H( H(PI) || H(OI) )

H( PIMD || H(OI) )

=!

Page 7: Secure Electronic Transaction Creating Debts Online with Confidence.

=

How Wachovia Uses the DS

DS PI OIMD

DS = Ekra[ H( H(PI) || H(OI) ) ]

Ekua [ Ekra[ H( H(PI) || H(OI) ) ] ]

H( H(PI) || H(OI) )

!

H( H(PI) || OIMD )

Page 8: Secure Electronic Transaction Creating Debts Online with Confidence.

Payment Processing

Purchase RequestAlice to Bob’s Beer Delivery

Payment AuthorizationBob’s Beer Delivery to WachoviaWachovia to Visa

Page 9: Secure Electronic Transaction Creating Debts Online with Confidence.

From Alice To Bob’s Beer

Dig Envelope

PIMD

Order Info

Dual Sig

+

+

+

+

+

Alice’sCert.

Used by Bob’s Beer Delivery(Order Related)

Sent on by Bob’s Beer Delivery to Wachovia (Money Related)

Contains Key To Decrypt Dual Sig(KPUB-Alice )

Page 10: Secure Electronic Transaction Creating Debts Online with Confidence.

Payment Processing

Purchase RequestAlice to Bob’s Beer Delivery

Payment AuthorizationBob’s Beer Delivery to Wachovia Wachovia to Visa

Page 11: Secure Electronic Transaction Creating Debts Online with Confidence.

From Alice To Bob’s Beer

Dig Envelope

PIMD

Order Info

Dual Sig

+

+

+

+

+

Alice’sCert.

Used by Bob’s Beer Delivery(Order Related)

Sent on by Bob’s Beer Delivery to Wachovia (Money Related)

Contains Key To Decrypt Dual Sig(KPUB-Alice )

Page 12: Secure Electronic Transaction Creating Debts Online with Confidence.

From Alice Through Bob To Wachovia

Dig Envelope

+

Money Info Encrypted UsingSymmetric Key

Symmetric Key Encrypted UsingWachovia’s Public Key

Page 13: Secure Electronic Transaction Creating Debts Online with Confidence.

Bob’s Beer To Wachovia

PaymentInfo

Dual Sig

OIMD

E

Temporary Symmetric Key Generated by Alice

KS

Page 14: Secure Electronic Transaction Creating Debts Online with Confidence.

Digital Envelope

EKSDig Envelope

KPUB-Wachovia

Page 15: Secure Electronic Transaction Creating Debts Online with Confidence.

Obtaining The Payment Info

D

PaymentInfo

Dual Sig

OIMD

Dig Envelope KSD

KPRI-Wachovia

KS

Page 16: Secure Electronic Transaction Creating Debts Online with Confidence.

SET Interoperability

Software development on SET protocol– Brokat, Entrust, Globeset, GTE, IBM,

TrinTech, Verisign

SET costs– Software development– Hardware and runtime increases with high

volume of transactions

Page 17: Secure Electronic Transaction Creating Debts Online with Confidence.

Conclusion

Non-repudiation

Inherited credit card risks

Not widely used