ABSTRACT

Services ADSL Asymmetric Digital Subscriber Line AECE Asociación Española de Comercio Electrónico

(Spanish Association for Electronic Commerce) AES Advanced Encryption Standard AFCEE Association Française pour le Commerce et les

Échanges Électroniques (French Association for Electronic Commerce and Exchange)

AFNOR Association Française de Normalisation — French Association for Standardization

AH Authentication Header AIAG Automotive Industry Action Group AID Application Identifier AIR-IMP AIR Interline Message Procedures ANSI American National Standards Institute ANX® Automotive Network eXchange API Application Programming Interface APPEL A P3P Preference Exchange Language ARDP Asynchronous Reliable Delivery Protocol ARQC Authorization Request Cryptogram AS Authorization Server ASC Accredited Standards Committee ASN.1 Abstract Syntax Notation 1 ATM Asynchronous Transfer Mode ATM Automated Teller Machine ATR Answer to Reset BACS Banker’s Automated Clearing Service BC Biometric Consortium

BER Basic Encoding Rules BIN Bank Identification Number BIPS Bank Internet Payment System BIS Bank for International Settlements BSI Bundesamt für Sicherheit in der Information-

technik (Germany: Federal Information Security Agency)

BSP Bank Settlement Payment BTX Bildschirmtext CAC Confirmation and Authentication Challenge CAFE Conditional Access for Europe CALS Computer-Aided Acquisition and Logistics

Support, became Continuous Acquisition and Life-Cycle Support, then became Commerce at Light Speed

CAN Customer Account Number CAPI Cryptographic Application Programming Inter-

face CAR Confirmation and Authentication Response CARGO-IMP CARGO Interchange Message Procedures CAS Channel-Associated Signaling CASE Computer-Aided Systems Engineering CAVV Cardholder Authentication Verification Value CBC Cipher Block Chaining CBEFF Common Biometric Exchange File Format CCD Cash Concentration and Disbursement CCD Charge-Coupled Device CCITT Comité Consultatif International Télégraphique

et Téléphonique CCS Common Channel Signaling CDT Committee for Development of Trade CEFACT Center for Trade Facilitation and Electronic

Business CEFIC Conseil Européen des Fédérations de l’Industrie

Chimique — European Council of Industrial Chemistry Federations

CEN Comité Européen de Normalisation — European Committee for Standardization

CEPS Common Electronic Purse Specifications CFB Cipher Feedback CFONB Comité Français d’Organisation et de Normali-

sation Bancaires CGI Common Gateway Interface

CGM Computer Graphics Metafile CHAPS Clearing House Automated Payment System CHIPS Clearing House Interbank Payment System CID Cardholder ID CID Confidential Identity CIDX Chemical Industry Document Exchange CIIP Check Image Interchange Protocol CMC7 Caractères Magnétiques Codés à 7 Bâtonnets —

Magnetic Characters Coded with Seven Links CMP Certificate Management Protocol CMS Cryptographic Message Syntax CNIL Commission Nationale de l’Information et des

Libertés — National Commission on Information and Freedoms

COF Common Output Format COPPA Children Online Privacy Protection Act COST Computer Security Technologies CPRQ Condensed Payer Authentication Request CPRS Condensed Payer Authentication Request

Response CPS Certification Practice Statement CPTP Customer Payment Server Transaction Protocol Creic Centres Régionaux d’Échanges d’Images

Chèques — Regional Centers for the Exchange of Check Images

CRI Centrale des Règlements Interbancaires — Exchange for Interbanking Payments

CRL Certification Revocation List C-SET Chip-Secured Electronic Transaction CSM Chipcard Security Module CTI Computer Telephony Integration CTP Corporate Trade Payments CTX Corporate Trade Exchange CVQ Carte de Vie Quotidienne — Card for Daily Life CVV2 Customer Verification Value DAP Directory Access Protocol DDOS Distributed Denial of Service DEC Digital Equipment Corporation DEDICA Directory-Based EDI Certificate Access and

Management DER Distinguished Encoding Rules DES Data Encryption Standard DF Dedicated File

DGI Direction Générale des Impôts — General Directorate for Taxation

DIN Deutsches Institüt für Normung e.V. — German Institute for Standardization

DIR Directory DIS Draft International Standard DISA Data Interchange Standards Association DISP Directory Information Shadowing Protocol DNS Domain Name Service DOD Department of Defense DOI Domain of Interpretation DPA Differential Power Analysis DRAM Dynamic Random Access Memory DSA Digital Signature Algorithm DSA Directory System Agent DSL Digital Subscriber Line DSP Directory System Protocol DSS Digital Signature Standard DSSSL Document Style Semantics and Specification

Language DTD Document Type Definition DUA Directory User Agent EAI Enterprise Application Integration EAN European Article Numbering EBES European Board for EDI Standardization EBPP Electronic Bill Payment and Presentment EBS Elektronik Banking Systems GmBH ebXML Electronic Business XML ECB Electronic Code Book ECC Elliptic Curve Cryptography ECCHO Electronic Check Clearing House Organization ECDH Elliptic Curve Diffie-Hellman ECDSA Elliptic Curve Digital Signature Algorithm ECI Échange d’Images Chèques — Exchange of

Check Images ECML Electronic Commerce Modeling Language ECP Electronic Check Presentment EDE Encryption-Decryption-Encryption EDI Electronic Data Interchange EDIFACT Electronic Data Interchange for Administration,

Commerce and Transport EDIINT EDI Internet Integration

EEG EBES Expert Group EEPROM Electrically Erasable Programmable Read-Only

Memory EF Elementary File EFF Electronic Frontier Foundation EFT Electronic Funds Transfer EFTA European Free Trade Association EIC Échange d’Images Chèques — Exchange of

Truncated Checks EID Electronic Identity Card (in Sweden) EIPP Electronic Invoice Payment and Presentation EMV EuroPay, MasterCard, Visa EPC Every Penny Counts, Inc. EPH Electronic Payments Handler EPO Electronic Payment Order EPOID Electronic Payment Order Identifier EPROM Electrically Programmable Read-Only Memory ERCIM European Research Consortium for Informatics

and Mathematics ESP Encapsulating Security Payload ETEBAC Échange Télématique entre les Banques et Leurs

Clients — Telematic Exchange among Banks and Their Clients

ETSI European Telecommunications Standards Institute

ETSO European Science and Technology Observatory EWG EDIFACT Work Group FACNET Federal Acquisition Computer Network FAQ Frequently Asked Questions FeRAM Ferrite Random Access Memory FIC Federal Insurance Corporation FinXML Fixed Income Markup Language FIXML Financial Information Exchange Markup Lan-

guage FpML Financial Products Markup Language FSML Financial Services Markup Language FSTC Financial Services Technology Consortium FTP File Transfer Protocol GALIA Groupement pour l’Amélioration des Liens dans

GDS Goppinger Datenservice Gie Groupement d’Intérêt Économique

GMD Gesellschaft für Mathematik und Datenverarbeitung

GMT Greenwich Mean Time GOCPKI Government of Canada Public Key Infrastruc-

ture GPRS General Packet Radio Service GSM Groupe Spécial Mobile — Global System for

Mobile Communication GTA Global Trust Authority GTDI General-Purpose Trade Data Interchange HA-API Human Authentication-Application Program

Interface HEDIC Healthcare EDI Coalition HHA Handheld Authenticator HIBCC Health Industry Business Communications

Council HMAC Hashed Message Authentication Code HTML HyperText Markup Language HTTP HyperText Transfer Protocol HyTime Hypermedia/Time-Based Document Structur-

ing Language IAD Issuer Authentication Data IADF Internal Application Data File IANA Internet Assigned Numbers Authority IATA International Air Transport Association IBA Italian Banking Association IBIA International Biometric Industry Association ICMP Internet Control Message Protocol IDEA International Data Encryption Algorithm IEC International Electrotechnical Commission IETF Internet Engineering Task Force IETM Interactive Electronic Technical Manuals IFTM International Forwarding and Transport Mes-

sage IFX Interactive Financial Exchange IKE Internet Key Exchange IMAP Internet Message Access Protocol INCITS InterNational Committee for Information Tech-

nology Standards INRIA Institut National de Recherche en Informatique

et en Automatique InterNIC Internet Network Information Center IP Internet Protocol

IPSEC Internet Protocol Security IRC Internet Relay Chat IRML Investment Research Markup Language ISAKMP Internet Security Association and Key Manage-

ment Protocol ISDN Integrated Services Digital Network ISI IBM Smartcard Identification (protocol) ISI Information Science Institute ISITC Industry Standardization for Institutional Trade

Communications ISO International Organization for Standardization ISP Internet Service Provider ITAR International Traffic in Arms Regulation ITLS Integrated Transport Layer Security ITU International Telecommunication Union ITU-T International Telecommunication Union —

Telecommunication Standardization Sector JEPI Joint Electronic Payment Initiative JPEG Joint Photographic Expert Group JRT Joint Rapporteurs Team KEA Key Exchange Algorithm L2TP Layer 2 Tunneling Protocol LACES London Airport Cargo EDP Scheme LDAP X.500 Lightweight Directory Access Protocol LETS Local Exchange Trading System LICRA Ligue Internationale Contre le Racisme et

l’Antisémitisme — International League against Racism and Anti-Semitism

LSAM Loading Secure Application Module LVMH Louis Vuitton-Moët-Hennesy MAC Message Authentication Code MD Message Digest MDDL Market Data Definition Language MDG Message Development Group MEL MULTOS Executable Language MEMS Microelectromechanical System MF Master File MFC Multifunction Card MIA Merchant-Initiated Authorization MIA Mortgage Industry Architecture MIC Message Integrity Check MICR Magnetic Ink Character Recognition

MIME Multipurpose Internet Mail Extensions MISPC Minimum Interoperability Specification for PKI

Components MIT Massachusetts Institute of Technology MITL Multi-Industries Transport Label MOSET Merchant-Originated SET MPI Merchant Server Plug-in MRO Maintenance, Repair, and Operations MTA Message Transfer Agent (X.400 messaging) MUSCLE Movement for the Use of Smart Cards in a Linux

Environment NACHA National Automated Clearing House Association NAETEA Network-Assisted End-To-End Authentication NAS Network Access Server NASP National Association of State Purchasing

Officials NFS Network File System NIST National Institute of Standards and Technology NMAC Nested Message Authentication Code NMDS Narrowband Multiservice Delivery System NNTP Network News Transfer Protocol NPP Network Payment Protocol NSA National Security Agency NTM Network Trade Model NVM Nonvolatile Memory NWDA National Wholesale Druggists Association NYCH New York Clearing House OAEP Optimal Asymmetric Encryption Padding OASIS Organization for the Advancement of

Structured Information Standards OBI Open Buying on the Internet OCF Open Card Framework OCSP Online Certificate Status Protocol ODA Open Document Architecture ODETTE Organisation des Données Échangées par

Télétransmission en Europe — Organisation for Data Exchange and Teletransmission in Europe

OECD Organization for Economic Cooperation and Development

OFB Output Feedback OFTP ODETTE File Transfer Protocol OFX Open Finance Exchange OI Order Information

OSI Open Systems Interconnection OSPF Open Short Path First OTP Open Trading Protocol P3P Platform for Privacy Preference PACES Paperless Automated Check Exchange and

Settlement PACK Personal Authentication and Confirmation Kit PAN Primary Account Number PC Personal Computer PCA Primary Certification Authority PEDI Protocol EDI PEP Protocol Extension Protocol PESIT Protocole de Transfert de Fichier pour le

Système Interbancaire de Télécompensation — File Transfer Protocol for the Interbanking System for Remote Clearance and Settlement

PGP Pretty Good Privacy PI Payment Instructions PICS™ Platform for Internet Content Selection PIN Personal Identification Number PIP Partner Interface Processes PKCS Public Key Cryptography Standards PKI/PKIX Public Key Infrastructure PKP Public Key Partners PMI Privilege Management Infrastructure PNNI Private Network-to-Network Interface PNS Paris Net Settlement POP Post Office Protocol POSA/R Point-of-Sale Activation and Recharge POST Point-of-Sale Terminal PPP Point-to-Point Protocol PPT Payment Proof Ticket PROM Programmable Read-Only Memory PRT Payment Request Ticket PSAM Purchase Secure Application Module PSI Payment System Interface PSTN Public Switched Telephone Network RA Root Authority RADIUS Remote Authentication Dial-in User Service RADSL Rate-Adaptive Digital Subscriber Line RAM Random Access Memory RBAC Role-Based Access Control

RCP Reference Control Parameter RFC Request for Comment ROM Read-Only Memory RPC Remote-Procedure Call RPPS Remote Payment and Presentment Service RRES Réseaux Récriproques d'Échange de Savoirs RTGS Real-Time Gross Settlement RTP Real-Time Protocol S/MIME Secure Multipurpose Internet Mail Extensions

(Secure MIME) S/WAN Secure Wide Area Network SACK Server Authentication and Certification Kit SAFARI Système Automatisé pour les Fichiers Adminis-

tratifs et le Répertoire des Individus — Automated System for Administrative Files and Individuals Directory

SAGITTAIRE Système Automatique de Gestion Intégrée par Télétransmission de Transactions avec Imputation de Règlements Étrangers

SAIC Science Applications International Corporation SAM Security Application Module SAML Security Assertion Markup Language SAP Systems, Applications, Products SASL Simple Authentication and Security Layer SCSSI Service Central de la Sécurité des Systèmes d’In-

formation SDMI Secure Digital Music Initiative SDML Signed Document Markup Language SDSI Simple Distributed Security Infrastructure SEIS Secured Electronic Information in Society SEL Systèmes d'Échange Locaux SEMPER Secure Electronic Marketplace for Europe SET Secure Electronic Transaction SET SCCA SET Compliance Certification Authority SETREF SET Reference Implementation SGML Standard Generalized Markup Language S-HTTP Secure HyperText Transfer Protocol SHA Secure Hash Algorithm SIA Security Industry Association SIC Swiss Interbank Clearing

SIMPRORANCE Comité Français pour la Simplification des Procédures du Commerce Internationale — French Committee for the Simplification of Procedures of International Commerce

SIPS Service Internet de Paiement Sécurisé — Secure Internet Payment Service

SIT Système Interbancaire de Télécompensation — Interbanking Clearance and Settlement System

SITA Société Internationale de Télécommunications Aéronautiques — International Society for Aeronautical Telecommunications

SITPRO Simplification of International Trade Procedures SKIP Simple Key Management for Internet Protocols SMS Short Message Service SMTP Simple Mail Transfer Protocol SNMP Simple Network Management Protocol SNNTP Secure Network News Transfer Protocol SNP Système Net Protégé SOA Source of Authority SOAP Simple Object Access Protocol SRAM Static Random Access Memory SSB Società per i Servizi Banacari SSC Serial Shipment Container Code SSH® Secure Shell®

SSL Secure Sockets Layer SSO Single Sign-On STP Straight-through Processing STPEML Straight-through Processing Extensible Markup

Language SWIFT Society for Worldwide Interbank Financial Tele-

communications SwiftML Society for Worldwide Interbank Financial Tele-

communication Markup Language TACACS Terminal Access Controller Access System TARGET Trans-European Automated Real-Time Gross

Settlement Express Transfer System TBF Transferts Banque de France TC Transaction Certificate TCP Transmission Control Protocol TD Transaction Data TDCC Transportation Data Coordinating Committee TDFC Transfer de Données Fiscales et Comptables —

Transfer of Fiscal and Accounting Data

TDI Trade Data Interchange TEDIS Trade Electronic Data Interchange System TEK Token Encryption Key TEP Terminal for Electronic Payment Tep Titre Électronique de Paiement — Electronic

Payment Title TFM Transaction File Manager TGS Ticket Granting Server TID Transaction ID TIFF Tagged Image File Format Tip Titre Interbancaire de Paiement — Interbank

Payment Title TLS Transport Layer Security TMN Telecommunications Management Network TTC Terminal Transaction Counter UBL Universal Business Language UCC Uniform Code Council UCC Uniform Commercial Code UCS Uniform Communication Standards UDDI Universal Description, Discovery, and Integration UDEF Universal Data Element Framework UDP User Datagram Protocol UEJF Union des Étudiants Juifs de France — Jewish

Student Union of France UMTS Universal Mobile Telecommunication System UN/ECE United Nations Economic Commission for Eu-

rope UNCID United Nations Rules of Conduct for Inter-

change of Trade Data by Teletransmission UNCITRAL United Nations Commission on International

Trade Law UNCL United Nations Code List UN-JEDI United Nations Joint Electronic Data Interchange UN-TDI United Nations Trade Data Interchange UNI User Network Interface UPP Universal Payment Preamble URL Uniform Resource Locator USC University of Southern California VAN Value-Added Network VAT Value-Added Tax VDSL Very High bit Rate Digital Subscriber Line VLSI Very Large-Scale Integration

VPN Virtual Private Network W3C World Wide Web Consortium WAN Wide Area Network WAP Wireless Application Protocol WCT WIPO Copyright Treaty WDP Wireless Datagram Protocol WEEB West European EDIFACT Board WIM Wireless Identification Module WINS Warehouse Information Network Standard WIPO World Intellectual Property Organization WML Wireless Markup Language WOIP World Organization for Intellectual Property WPTT WIPO Performance and Phonogram Treaty WSDL Web Services Description Language WTLS Wireless Transport Layer Security WTP Wireless Transaction Protocol xBRL Extensible Business Reporting Language XDR External Data Representation XFRML Extensible Financial Reporting Markup

Language XHTML Extensible HypertText Markup Language XHTMLMP XHTML Mobile Profile X-KISS XML Key Information Service Specification XKMS XML Key Management Specification X-KRSS XML Key Registration Service Specification XML Extensible Markup Language XML-DSIG XML Digital Signature XOR Exclusive OR ZKA Zentraler Kreditausschuß