Skip to main content

SPEED Protocol: Smartcard-Based Payment with Encrypted Electronic Delivery

  • Conference paper
  • First Online:
Information Security (ISC 2001)

Part of the book series: Lecture Notes in Computer Science ((LNCS,volume 2200))

Included in the following conference series:

Abstract

In these times of the dawning of e-commerce, many issues and barriers still remain to be solved before electronic transactions over the Web can be expected to be really successful. One important unresolved problem is the issue of having efficient and secure payment models based on e-purses and including electronic product delivery and price negotiation. In response to this need, the SPEED protocol specification has been proposed. This specification, which is described in this paper, provides a high level of security for all parties involved in e-commerce transactions over the Internet; at the same time, we have combined this aim with the use of highly-recognised standards and all the advantages of using e-purses implemented on multiaplication smart cards. Our work has also been tested in a real environment, providing us an interesting feedback based on technical and user-friendly matters.

Partially supported by TEL-IFD97-1426 EU FEDER project (PISCIS)

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. M. Abadi and R. Needham. Prudent engineering practice for cryptographic protocols. IEEE Transactions on Software Engineering, 1(22):6–15, January 1996.

    Article  Google Scholar 

  2. CEN/TC224/WG10. Inter-sector Electronic Purse, Part 3: Data Elementents for Interchanges, December 1995.

    Google Scholar 

  3. CEN/TC224/WG10. Inter-sector Electronic Purse, Part 2: Security Architecture, January 1996.

    Google Scholar 

  4. CEPSCO LLC. Common Electronic Purse Specifications, March 1999.

    Google Scholar 

  5. P. Cheng and R. Glenn. Tests Cases for HMAC-MD5 and HMAC-SHA-1, September 1997. Request For Comments (RFC) 2202.

    Google Scholar 

  6. Microsoft Corporation. CryptoAPI version 2.0. World Wide Web, http://msdn.microsoft.com/library/psdk/crypto, 2001.

  7. B. Cox, J. D. Tygar, and M. Sirbu. Netbill security and transaction protocol. In Proceedings of First USENIX Workshop on Electronic Commerce, 1995.

    Google Scholar 

  8. C. Ellison, B. Frantz, B. Lampson, R. Rivest, B. Thomas, and T. Ylonen. SPKI certificate theory, September 1999. Request For Comments (RFC) 2693.

    Google Scholar 

  9. S. Glassman et al. The Millicent protocol for inexpensive electronic commerce. World Wide Web Journal, Fourth International World Wide Web Conference Proceedings, pages 603–618, December 1995.

    Google Scholar 

  10. R. Housley, W. Ford, and D. Solo. Internet Public Key Infrastructure, Part I: X.509 Certificate and CRL Profile, January 1999. Request for Comments (RFC) 2459.

    Google Scholar 

  11. ITU-T. ASN.1 encoding rules: Specification of Basic Encoding Rules (BER), Canonical Encoding Rules (CER) and Distinguished Encoding Rules (DER), 1995. Recommendation X.690.

    Google Scholar 

  12. X. Lai. On the design and security of block ciphers, volume 2. ETH Series in Information Processing, 1992.

    Google Scholar 

  13. R. L. Rivest. The MD5 Message-Digest Algorithm, April 1992. Request For Comments (RFC) 1321.

    Google Scholar 

  14. R. L. Rivest and A. Shamir. Payword and MicroMint:two simple micropayment schemes. In Mark Lomas, editor, Proceedings of 1996 International Workshop on Security Protocols, number 1189 in Lecture Notes in Computer Science, pages 69–87. Springer, 1997.

    Google Scholar 

  15. RSA Laboratories,. PKCS#7: Cryptographic Message Syntax Standard, November 1993.

    Google Scholar 

  16. Sun Microsystems. JavaCard 2.1.1 Specifications, May 2000.

    Google Scholar 

  17. WAP Forum. Wireless Application Protocol Identity Module Specification, February 2000.

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2001 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Ruiz, A., Martínez, G., Cánovas, O., Gómez, A.F. (2001). SPEED Protocol: Smartcard-Based Payment with Encrypted Electronic Delivery. In: Davida, G.I., Frankel, Y. (eds) Information Security. ISC 2001. Lecture Notes in Computer Science, vol 2200. Springer, Berlin, Heidelberg. https://doi.org/10.1007/3-540-45439-X_31

Download citation

  • DOI: https://doi.org/10.1007/3-540-45439-X_31

  • Published:

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-42662-2

  • Online ISBN: 978-3-540-45439-7

  • eBook Packages: Springer Book Archive

Publish with us

Policies and ethics