Modeling and Analysis of Electronic Commerce Protocols Using Colored Petri Nets.

Yang Xu,Xiaoyao Xie,Huanguo Zhang
DOI: https://doi.org/10.4304/jsw.6.7.1181-1187
2011-01-01
Journal of Software
Abstract:Electronic commerce protocols are the basis of security in electronic commerce. Therefore, it is essential to ensure these protocols correctly. With the ideas of ZQ logic and the security protocols analysis method using Colored Petri Nets, a new method synthesizing ZQ logic and Colored Petri Nets is presented to analyze electronic commerce protocols. The new method is suitable for analyzing both accountability and fairness. However, it needs not to establish a dispute settlement model. Moreover, the ISI protocol is chosen to illustrate how an electronic commerce protocol is analyzed using the new method. An insecure state of the ISI protocol is found. Thus, the ISI protocol does not achieve accountability and fairness. The result is the same as the one in [10] where ZQ logic is used. These are stunning confirmations of the validity of the new method for analyzing electronic commerce protocols.
What problem does this paper attempt to address?