Summary: | 碩士 === 國立臺灣科技大學 === 資訊管理系 === 105 === The advance technology of current smartphones has generated a new and scalable mobile payment environment. In this thesis, we propose an indoor location-based authentication protocol for mobile payment system with point of sale (POS) using tokenization payment system and Bluetooth Low Energy (BLE) technology. The customer in the proposed system uses a token as a reference to their credit card information when making a payment with a POS terminal. The proposed authentication protocol ensures that the customer and the POS terminal are mutually authenticate before payment process is carried out. The proposed authentication protocol is divided into three stages: initialization phase, key agreement phase, and authentication phase. In the initialization phase, the position of customer towards the payment area is assessed. Based on the assessment result, the customer would be given a secret key that can be used to establish an authenticated communication session with POS to perform the payment process. A prototype is implemented to assess the performance of the proposed design for mobile payment system. Furthermore, security analysis is conducted to evaluate the security strength of the proposed protocol.
|