Abstract: | 隨著網際網路發展以及個人行動電話普遍化的趨勢,利用行動裝置進行網路拍賣的商機需求,無論是在服務的品質或者服務的需求量上,都具有相當可期的潛力。設計一套符合行動裝置需求與限制的拍賣模式,一方面可以滿足行動裝置使用者的需求,另一方面,也可以擴大市場需求,其中所隱藏的商機,誠為可觀。依據此一市場需求,本計畫擬提出行動代理拍賣模式的概念,使競標者透過代理人的方式參與拍賣與競標;同時,也力求提升產生金鑰與出價的速度、驗證的效率,並且減少行動裝置的計算量與伺服器的負載量,從而增進網路拍賣系統的便利性。而本計畫選用了橢圓曲線密碼系統來做為加解密的方法,因其具有短金鑰、低運算量、使用的網路頻寬較少等特性,易於達到上述的便利性,且其安全性足可與其他系統比擬,因此,本計畫將應用橢圓曲線密碼系統於網路拍賣協定的設計上。本計畫使用英式拍賣機制建置網路拍賣環境,主要是能提供使用者一個安全、公平及有效率的網路拍賣環境。在此機制之下,包含四方參與者,包括註冊單位、代理人管理者、拍賣所管理者、競標者,並且以符合電子拍賣協定中的種種安全需求為研究目標,包括匿名性、可追蹤性、不可陷害性、不可偽造性、不可否認性、公平性、可公開驗證性、在不同拍賣中無關聯性、同一拍賣中有關聯性、投標有效率、單次註冊、容易註銷。 With the development of the internet and the generalization of mobile phone use, internet auction through installation of mobile devices is potentially promising in its demand for both qualitative and quantitative services. Likewise, commercial opportunities are substantial for an application that satisfies the needs of mobile services and restricted internet auction ? one that satisfies the needs of mobile service users, and also increases market demand. With this market demand in mind, this project proposes a concept of mobile agent internet auction that enables bidders to participate in bids through mobile agents, and at the same time improves convenience in internet auction system through faster key generation and speed bid, authentication efficiency, and reduction in mobile service calculations and server load. This project chooses elliptic curve cryptography for encryption/decryption due to its shorter keys, lower calculation load, lower bandwidth usage, in that it not only answer the need for convenience, but its high security is commendable for comparison with other systems. Hence, this project will apply elliptic curve cryptography in its internet auction protocol designs. This project will use the English auction system to construct an internet auction environment primarily for providing users a safe, impartial, and efficient internet auction environment. This system consists of four parties including, the registration unit, agent moderator, auction moderation, and bidder. The project’s objective strives to meet the various safety requirements in electronic auction protocols, including anonymity, traceability, non-frameability, unforgeability, non-repudiation, fairness, public verifiability, non-relation between different auctions, relationship in same auctions, bid efficiency, single registration, and easy cancellation. |