论文部分内容阅读
可信平台互联互通及支付安全是移动支付中的重要课题.设计出一种公共服务平台、多应用开发平台和SE金融认证安全域相结合的安全架构,该架构能提供不同平台的互联互通、进行交易双方身份认证和应用合法性检测.同时采用更可靠的安全通道协议SCP10来保证交易数据的秘密性和完整性.采用支持NFC功能的USIM卡为硬件平台,实现了支持该架构的SE,设计出支持金融认证安全域和SCP10协议的智能卡操作系统.为了提高USIM卡身份认证的效率,采用一种小巧的数字证书来提高验证速度和节约存储空间.实验结果和安全性测试表明,该USIM卡操作系统有很好的安全性和可靠性,并具有实际的商用价值.“,”The interconnection and interworking of different trusted service manager platform and payment security are major topics in mobile payment.A security architecture combined with Public Service platform,TSM and SE FCSD was designed.The architecture can make interconnection between different platforms and verify the ID of the transaction parties and detect legality of the application.A more reliable secure channel protocol SCP10 was used to secure the confidentiality and integrity of the data.Using the NFC USIM card as the hardware platform, a Security Element supporting the architecture was implemented, and also a USIM COS supporting financial certification security domain and SCP10 protocol was designed.In order to improve the efficiency of ID Authentication of USIM card, a small digital certification was adopted to improve the verification speed and save the space of memory.The experiment results and security tests show that the USIM COS has advantages of more security and reliability, and it has commercial value and a good effect in mobile payment.