Periodical Payment Model Using Restricted Proxy Certificates

نویسنده

  • Grigori Goldman
چکیده

In this paper we shall introduce a new electronic payment concept based on the popular direct debit payment model, entitled periodical payments. The direct debit model currently in use online is neither secure nor flexible, and requires a leap of faith by the customer who must trust the merchant to behave honestly. Electronic direct debit request (DDR) forms are not signed by both parties in a binding manner, which means that merchants can change the terms of DDR agreements post-fact. Unsigned DDR agreements give the merchant unprecedented power over customer accounts with little recourse for dispute. In this paper we shall demonstrate how the use of restricted proxy certificates with cryptographic signatures can be adopted to support a new periodical payment model. A payment policy language is presented that is tailored towards specifying rules that govern precisely how and when merchants can access and transfer funds from customer accounts into their own. Using this model will ensure that mutually signed policies are instantly enforceable on every transaction within a payment period. There is a fundamental difference between this proposal and other electronic payment schemes. Most such schemes attempt to replicate the features of physical cash such as anonymity, and therefore focus on single payment transactions that simulate cash changing hands. Since direct debit is a popular payment choice, our proposal provides significant improvement to this essentially paper-based payment model that currently does not integrate well in a purely electronic world.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Analysis of the periodical payment framework using restricted proxy certificates

This paper discusses the design and implementation of a payment framework that is loosely based on the direct debit payment model. We define such payments as one in which customers can authorise merchants to bill them repeatedly for the provision of some service without further interaction with the customers being required. This paper aims to present a first working prototype of our periodical ...

متن کامل

An Application of Policy-Based Signature: Proof-Carrying Proxy Certificates

The term proxy certificate is used to describe a certificate that is issued by an end user for the purpose of delegating responsibility to another user so that the latter can perform certain actions on behalf of the former. Such certificates have been suggested for use in a number of applications, particularly in distributed computing environments where delegation of rights is common. In this p...

متن کامل

Agreement on cause of death between proxies, death certificates, and clinician adjudicators in the Reasons for Geographic and Racial Differences in Stroke (REGARDS) study.

Death certificates may lack accuracy and misclassify the cause of death. The validity of proxy-reported cause of death is not well established. The authors examined death records on 336 participants in the Reasons for Geographic and Racial Differences in Stroke (REGARDS) Study, a national cohort study of 30,239 community-dwelling US adults (2003-2010). Trained experts used study data, medical r...

متن کامل

Proof-Carrying Proxy Certificates

The term proxy certificate is used to describe a certificate that is issued by an end user for the purpose of delegating responsibility to another user so that the latter can perform certain actions on behalf of the former. Such certificates have been suggested for use in a number of applications, particularly in distributed computing environments where delegation of rights is common. In this p...

متن کامل

A Java API for X.509 Proxy Certificates

X.509 Proxy Certificates have been proposed for use in the Grid Security Infrastructure to allow dynamic delegation of rights and single sign-on for end users. We have evaluated proxy certificates to secure a service-oriented architecture for digital content based on Web Services. We describe how support for proxy certificates was implemented in Java through extensions to the Java Cryptography ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2007