Improving security of SET protocol based on ECC

  • Authors:
  • Lai-Cheng Cao

  • Affiliations:
  • School of Computer and Communication, Lanzhou University of Technology, Lanzhou, China

  • Venue:
  • WISM'11 Proceedings of the 2011 international conference on Web information systems and mining - Volume Part I
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

SET (Secure Electronic Transaction) is a standard protocol for the credit card transaction in e-commerce. In order to improve the security and authentication efficiency of SET, a scheme was put forward. Adopting ECC (Elliptic Curve Cryptography) instead RSA performed authentication and verified the integrity of data, and the public key and private key of cardholder, merchant, payment gateway, and certificate authority were distributed based on ECC. Using dual signature, the payment information of cardholder was confidential to the merchant, the order information of cardholder kept secret to the payment gateway. Cardholder, merchant and payment gateway could authorize and verify message integrity each other in payment processing. Security analysis shows that this scheme has high security and efficient authentication.