针对移动环境中网络及计算条件受限的情况,在考虑有效性和支付效率的基础上,设计了一个适应于移动环境的公平移动支付协议.该协议由认证、支付、恢复、结算四个子协议构成.在认证协议中通过基于Hash函数的动态ID机制满足了双向认证、有限的匿名性和不可追踪性,并获取不可伪造性的、可重用的支付证书.在支付过程中基于变色龙Hash函数和双Hash链,实现了交易的匿名性、可追究性和公平性.最后利用Kailar逻辑对协议的可追究性和公平性进行形式化分析,结果表明:协议在保持较高执行效率的同时,能满足可追究性和公平性,适用于在移动环境以及类似的通信、计算条件受限的环境中使用.
Considering the conditions that the network and calculation capability of mobile terminals are limited in the mobile environment, the novel fair mobile payment protocol was proposed. The protocol was composed of four sub-protocols of authentication, payment, recovery and withdraw. In the authentication sub-protocol, the dynamic ID mechanism based on the hash function was adopted to satisfy mutual authentication, limited an- onymity and intractability. Simultaneously, the unforgeable and reusable payment certificate was obtained. In the process of payment, the attributes of anonymity, non-repudiation and fairness were achieved on the basis of the Chameleon Hash functions and double Hash chains. Finally, through formally analyzing the security attrib- utes by the Kailar logic, the result declares that the protocol can fulfill non-repudiation and fairness while main- taining high efficiency in implementation. The protoeol can be applied in mobile environments and similar com- munication and calculation constrained environments.