Abstract
Mobile commerce is more than a mobile and wireless extension of the Web-based e-commerce. It is being spurred by the mobile phone industry’s widespread support of the Wireless Application Protocol. WTLS (Wireless Transport Layer Security) is based on the industry-standard TLS protocol, is optimised for use over narrow-band communication channels and is used with the WAP transport protocols. Since mobile commerce differs to “fixed” commerce in instantaneous delivery, micro payment and mobile context, a userfriendly payment scheme and user authentication is required. But poor power and memory of mobile terminals must be taken into account when cryptographic algorithms are chosen. Through mobile application survey, we found that the security levels of request and response data are different and request data is more important. In order to upgrade both total security level and performance, we proposed a security enhancement mechanism, in which security parameters of request and response data are processed separately. We made algorithms code value changed with meaningful most left two bits in WTLS handshake.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
WAP Forum: Wireless Application Protocol Architecture Specification, version 1.2, WAP Forum (1998)
T. Dierks, C. Allen: The TLS Protocol Version 1.0, RFC2246 (1999)
Understanding Security on the Wireless Internet, Phone.com (2000)
WAP Forum: Wireless Transport Layer Security Specification, version 1.2 (1999)
Martin Christinat, Markus Lsler: WTLS-The security layer in the WAP stack, keyon (2000)
H. Krawczyk, M. Bellare, R. Canetti: HMAC: Keyed-Hashing for Message Authentication, RFC2104 (1997)
D. Stinson: Cryptography Theory and Practice, CRC Press, Boca Raton (1995)
B. Schneier: Applied Cryptography, 2nd ed., Wiley, New York (1995)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2001 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Kwon, EK., Cho, YG., Chae, KJ. (2001). Security Enhancement on Mobile Commerce. In: Kim, W., Ling, TW., Lee, YJ., Park, SS. (eds) The Human Society and the Internet Internet-Related Socio-Economic Issues. HSI 2001. Lecture Notes in Computer Science, vol 2105. Springer, Berlin, Heidelberg. https://doi.org/10.1007/3-540-47749-7_13
Download citation
DOI: https://doi.org/10.1007/3-540-47749-7_13
Published:
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-42313-3
Online ISBN: 978-3-540-47749-5
eBook Packages: Springer Book Archive