研究生(外文):Kuo-Hsin Hu
論文名稱(外文):Designing Secure On-Line Auction Schemes Using Self-Certified Public Key Cryptosystems
指導教授(外文):Woei-Jiunn Tsaur
外文關鍵詞:Electronic commerceInformation securitySelf-certified public key systemAuctionElliptic curve cryptosystems
現在大部分看到的拍賣網站都是屬於離線式 (Off-Line)的拍賣。但我們在一般日常生活中所見到的拍賣活動是屬於英式拍賣,亦即所有競標者於同一時間,聚集在同一地點進行競標,由出席的競標者以喊價的方式來決定得標者及得價之價格與數量。這和現行的網站拍賣機制多不相同,所以本論文以英式拍賣為主軸,建立出可以適用於這類拍賣的安全機制。現行多數拍賣網站中,如拍賣王、eBay等,其交易安全是以SSL(Secure Socket Layer)安全機制為基礎,且其電子憑證是由公正的第三單位所簽發,也就是說僅達到Girault [18]所提出的level 2安全等級 (即公正第三單位有機會偽造出一不存在的使用者)。
The style of most auction web sites is an off-line auction. However, most of auction activities in our real life belong to English auction. That is, all of the bidder bid at the same place and time, and the winner’s article price and quantity depend on bidders’ bidding. Therefore, this thesis will construct secure auction schemes suitable for English auction. At present, the certificate-based public key cryptosystem is employed by most auction web sites. Its security is based on the SSL (Secure Socket Layer) scheme and digital certificate scheme which is signed by a trusted third party, and reach only security level 2 proposed by Girault [18].
The thesis uses a self-certified public key cryptosystem so that the system authority cannot impersonate any legal bidder. Moreover, the auction chairman cannot know who joins the auction since bidders join it with pseudonym for anonymity. For the considerations of efficiency, the schemes are developed by using elliptic curve cryptosystems instead of modular exponentiation, because it possesses faster computation and fewer bits achieving the same security degree as other public key cryptosystems. In this thesis, we design security schemes in an on-line auction environment using the self-certified public key cryptosystem based on elliptic curve cryptosystems. The schemes make the on-line auction securely workable.
授權書          iii
中文摘要 v
英文摘要 vi
誌謝 vii
目錄 viii
表目錄 x
第一章 緒論
第一節 研究動機 1
第二節 研究背景及目的 2
第三節 論文架構 4
第二章 文獻探討
第一節 拍賣的種類 6
第二節 數學理論及密碼背景 9
第三節 公開金鑰密碼系統 13
第三章 具自我驗證之線上拍賣安全機制
第一節 線上拍賣的安全需求 24
第二節 植基於橢圓曲線密碼系統之具自我驗證公開金鑰系統 26
第三節 線上拍賣的安全機制 31
第四章 安全及計算複雜度分析
第一節 植基於橢圓曲線密碼系統之具自我驗證公開金鑰系統及其相關安全機制的安全度分析 33
第二節 拍賣會議的安全分析 35
第三節 安全線上拍賣之時間複雜度分析 37
第五章 結論 41
參考文獻 43
附錄一 橢圓曲線方程式 49
