ABSTRACT

The security of electronic commerce transactions covers the security of access to the service, the correct identification and authentication of participants, the integrity of the exchanges, and, if needed, their confidentiality. This chapter presents a short review of the architectures and algorithms used to secure electronic commerce. It deals with the themes: definition of security services in open networks, security functions and their possible location in the various layers of the distribution network, mechanisms to implement security services, certification of the participants, and the management of encryption keys. Commercial transactions depend on the participants' trust in their mutual integrity, in the quality of the exchanged goods, and in the systems for payment transfer or for purchase delivery. The network architecture must be capable to withstand potential faults without important service degradation, and the physical protection of the network must be insured against fires, earthquakes, flooding, vandalism, or terrorism.