Font Size: a A A

Research And Implement Of Mobile Internet Secure Payment Technology

Posted on:2017-01-27Degree:MasterType:Thesis
Country:ChinaCandidate:X YangFull Text:PDF
GTID:2309330485478310Subject:Computer Science and Technology
Abstract/Summary:PDF Full Text Request
Mobile payment security protocol is the basis for mobile e-commerce activities carried out safety. However, mobile payment is usually dependent on the handheld device and the terminal device has its own unique hardware environment, you need to pay for the agreement to facilitate the implementation of the communication and has low computational complexity. Traditional mobile payment security protocol, usually based on public key cryptography and identity cryptography to secure the payment, but the former certificate management inherent problems caused additional burden of computing and communications, there are security risks which key escrow.This paper analyzed the existing mobile payment security protocol, proposed an improved mobile payment agreement, and implement a mobile payment system based on Android.The main work includes:1. We propose an improved non-certificate-based public key cryptography technology, mobile payment agreement. No certificate using public key cryptography technology instead of the traditional way certificate authentication, and authentication times between the constituent entities of the simplified model is based on the mobile "Pre-trust" to pay. According to security analysis, this protocol can effectively resist replay attack, impersonation attack, and capable of ensuring authentication both non-repudiation. According to the performance analysis, the agreements with other similar agreements compared to a good performance for the mobile environment.2. It implements a mobile payment system based on Android. In accordance with the development process of software engineering for mobile payment services system needs analysis and given use case diagram, on the basis of the needs analysis in the form of a flow chart of the system function further outline design. Detailed design, in the form of a timing diagram shows the various functional modules of the interactive system. The last part of the system implemented in the client based on the Android platform to achieve, the server is based on HTTP protocol to communicate with the client and data exchange. The system functional testing and performance testing. Functional testing section, write tests verify that the system can operate normally and be able to respond to abnormal situations. Performance testing part, write test scripts to test the landing, register, pay the overall performance of the module. In addition, a separate test of the actual performance of the encryption algorithm used in this paper. Finally, a good performance test results prove that the realization of this article apply to mobile payment system terminal device operating environment.Thesis innovation include:1. By introducing "pre-trusted" mobile payment model, under the premise to ensure endpoint security, streamline operations end-user needs. Certification body along only "Pre-trust" relationship in passing, with the hierarchy chain transfer layer authentication layer. Transport chain two adjacent body having a relationship of trust and constraints in the real world.2. According to the characteristics of mobile transactions, proposed to use dual key to divide login and payment process. In addition to landing the key used to complete the two-way authentication landing outside, it will be used to partially private key encryption transmission without a certificate of public key cryptography. In addition, the dual key design also makes the protocol compatible with existing mobile payment system.3. Reference improved mobile payment protocol for mobile payment system is the most critical of registration, login, payment authentication process to do a special design and implementation. After the realization of the function to do performance testing, it proved to be suitable for the mobile environment.
Keywords/Search Tags:Mobile payment, no public key certificate, Mobile Internet, Payment agreement, Payment system
PDF Full Text Request
Related items