Accountability in Electronic Commerce Protocols

نویسنده

  • Rajashekar Kailar
چکیده

| In most commercial and legal transactions, the ability to hold individuals or organizations accountable for transactions is important. Hence, electronic protocols that implement commercial transactions must be designed to provide adequate accountability assurances for transacting parties. Without such assurances, electronic transactions can be susceptible to disputes. Currently, protocol design for electronic commerce is done in an ad-hoc manner, a technique which has been shown to be error-prone by past experience with key distribution protocols 4]. Despite the importance of accountability in electronic commerce, and the subtlety of designing error-free protocols, currently, there are no analysis methods to examine whether a protocol design conforms to the accountability goals of the transaction that it implements. Since most current protocol analysis methods have been developed to analyze key management protocols, they focus on properties such as message replay detection, and key origin authentication (e. In this paper 1 , a new framework is proposed for the analysis of communication protocols that require accountability, such as those for electronic commerce. This framework can be used to analyze protocol designs to detect accountability (or lack thereof). Arguments are presented to show that a heretofore un-explored property \provability" is pertinent to examining the potential use of communication protocols in the context of litigation, and in the context of audit. A set of postulates which are applicable to the analysis of proofs in general and the proofs of accountability in particular, are proposed. The proposed approach is more natural for the analysis of accountability than the existing belief logics (e.g., 4]) that have been used in the past for the analysis of key distribution protocols. Some recently proposed protocols for electronic commerce and public-key delegation are analyzed to illustrate the use of the new analysis framework in detecting (and suggesting remedies for eliminating) their lack of accountability, and in detecting and eliminating redundancies .

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Accountability as Fundamental property for Electronic Commerce Protocols

Accountability in electronic commerce (e-commerce) protocols is concerned with the ability to show that particular parties who engage in the protocols are responsible for some transactions. Traditionally, it is used only for resolving payment disputes amongst parties. In this thesis, we argue that the accountability is not just a property for resolving disputes but a fundamental and critical pr...

متن کامل

Delegation Protocols for Electronic Commerce

Many commercial and financial activities in the real-life require reliable mechansisms to provide accountability for the transactions that has been executed. If electronic commerce aim to substitute or support similar activities in the electronic world, it has to provide the same degree of accountability. Despite this requirement is crucial, we observe that many existing security mechanisms and...

متن کامل

Modeling and Analysis of Electronic Commerce Protocols Using Colored Petri Nets

Electronic commerce protocols are the basis of security in electronic commerce. Therefore, it is essential to ensure these protocols correctly. With the ideas of ZQ logic and the security protocols analysis method using Colored Petri Nets, a new method synthesizing ZQ logic and Colored Petri Nets is presented to analyze electronic commerce protocols. The new method is suitable for analyzing bot...

متن کامل

Novel Logical Method for Security Analysis of Electronic Payment Protocols

Electronic payment protocols play a vital role in electronic commerce security, which is essential for secure operation of electronic commerce activities. Formal method is an effective way to verify the security of protocols. But current formal method lacks the description and analysis of timeliness in electronic payment protocols. In order to improve analysis ability, a novel approach to analy...

متن کامل

Electronic Banking Industry and Accountability (Case of Study: Employees of Refah Bank)

As industrial processes have changed with the advent of e-commerce, banking industry, in turn, has changed. Implementation of electronic banking in any country requires different infrastructures including its material and human resources that the growth of technology and innovation in banks on the one hand, have increased the speed and quality of operations and services, and on the other hand, ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • IEEE Trans. Software Eng.

دوره 22  شماره 

صفحات  -

تاریخ انتشار 1996