information security ch 6

70
資訊安全導論 資訊安全導論 委辦單位教育部顧問室資通安全聯盟 委辦單位教育部顧問室資通安全聯盟 委辦單位 教育部顧問室資通安全聯盟 委辦單位 教育部顧問室資通安全聯盟 執行單位:東海大學資訊工程學系 執行單位:東海大學資訊工程學系 資訊安全導論課程教材 6-1

Upload: vunga

Post on 30-Jan-2017

214 views

Category:

Documents


0 download

TRANSCRIPT

  • 6-1

  • Module 6-1

    6-2

  • Module 6Module 6 11Module 6Module 6--11

    ATM ATM

    6-3

  • ATMATM

    6-4

  • -

    http://shop.youthwant.com.tw/service.php?content=epay

    6-5

  • ATM ATM

    ATMATMATMPChomePChome

    http://shopping.pchome.com.tw/?m=myaccount&f=myaccount_showAtmGuide

    6-6

  • VisaMasterCard

    http://shop.youthwant.com.tw/service.php?content=epay

    6-7

  • http://www.fuji.com.tw/shownews.asp?RecordNo=588

    6-8

  • 50501000

    http://www.e-can.com.tw/service/service.asp#05

    6-9

  • (7-11)100 30x30x30107-11http://www.7-11.com.tw/product/e-shop/

    6-10

  • 7-117 11 7-11E-mail7 117-11

    http://www.7-11.com.tw/product/e-shop/

    6-11

  • OK

    http://web.cvs.com.tw/cvs/model_index.cfm?CONSULATENO=64

    6-12

  • HiNet HiNet

    http://aaaservice.hinet.net/User/index.htm

    6-13

  • ()

    6-14

    http://aaaservice.hinet.net/User/user_tele.htm

  • 24142414 so-nethttp://ebiz.so-net.net.tw/index_service.html?sAction=3&status=mmp

    6-15

  • 6-16

    http://ebiz.so-net.net.tw/index_service.html?sAction=3&status=mmp

  • Module 6 2Module 6-2

    6-17

  • Module 6Module 6 22Module 6Module 6--22

    by SSL by SSL VISA 3D

    6-18

  • by SSLby SSL

    VISA 3D

    6-19

  • http://shopping.pchome.com.tw

    6-20

  • 6-21

  • by SSL by SSL

    by SSLTCP/IPTCP/IPSecure Socket LayerSSLSSL

    6-22

  • by SSL by SSL

    by SSLVisaMasterCard SSLCACACA

    6-23

  • by SSL by SSL

    by SSLCASSL

    6-24

  • by SSL by SSL

    by SSLCACA

    http://www.hitrust.com.twCA

    http://www.taica.com.tw

    http://www.ssl.com.tw

    htt // t t t t

    http://www.entrust.net.tw

    6-25

  • by SSL by SSL

    by SSLSSL SSLSSL

    http://www.books.com.tw

    6-26

  • by SSL by SSL

    by SSL

    http://www.books.com.tw

    6-27

  • by SSL by SSL

    by SSL SSL

    http://www.books.com.tw

    6-28

  • by SSL by SSL

    by SSLCASSLhttp://www.books.com.tw

    6-29

  • by SSL by SSL

    by SSLSSL htt httpSSLhttps

    http://www.books.com.tw

    6-30

  • by SSL by SSL

    by SSL

    http://www.books.com.tw

    6-31

  • by SSL by SSL

    by SSL

    SSLSSL SSLSSLSET( )SSLSET

    http://www.books.com.tw

    6-32

  • by SSL by SSL

    by SSLAPI() )

    http://shopping.pchome.com.tw

    6-33

  • by SSL by SSL

    by SSLWeb (Payment Service Pro-vider, PSP)(iePay )iePay )http://www.thywords.com.tw/product_show.php?sid=1142214291

    6-34

  • VISA 3D VISA 3D

    VISA 3DSSL VISAVISA 3DVISA 3DVerified by VISA

    6-35

  • VISA 3D VISA 3D

    VISA 3D

    http://card.ubot.com.tw/Activity/visa/d-v2.htm

    6-36

  • VISA 3D VISA 3D

    VISA 3D

    http://card.ubot.com.tw/Activity/visa/d-v1.htm

    6-37

  • VISA 3D VISA 3D

    VISA 3D

    http://www.chinatrust.com/3d/index.htm

    https://acs.taishinbank.com.tw/ACS_CH/enrollmentservlet

    https://acs.nccc.com.tw/vpas/jihsunbank/enroll/index.jsp?l l h TW&id 17&b kid 6

    http://www.firstcard.com.tw/newentry/acs.htm

    ?locale=zh_TW&id=17&bankid=6

    http://card.ubot.com.tw/Activity/visa/index.htm p y

    https://acs.nccc.com.tw/vpas/macoto/enroll/index.jsp?locale=zh_TW&id=17&bankid=5

    https://www.ezpos.fisc.com.tw/acsenroll/index.aspx?ISSUER_BID=050

    6-38

  • 2003

    5

    3.

    5. 3.

    1.

    4 4.

    6-39

  • 500

    PSP

    1. HiTRUSTpay2 TWPay

    2. TWPay3. 4. e-Coin5 HyPOS EZ

    PSPPSP

    5. HyPOS EZ6. EZPOS7. ezPos8. PSP

    PSPPSP

    8. 9. OK!Payment10. TISNetGO11. PSP

    PSP

    12. ezPay

    6-40

  • HiTRUSTpaySSLVISA 3-D

    http://www.hitrustpay.com.tw/b_001_1.htm

    6-41

  • TWPay SSL

    http://www.twpay.com.tw/service_package.asp

    6-42

  • HyPOS EZ

    http://www.hyweb.com.tw/product/hyshop/final/hypos_ez_f.htm

    6-43

  • EZPOSVISA 3D SecureM t C d CVC2MasterCard CVC2SSL

    https://www.ezpos.fisc.com.tw/SSLAuthUI.cgi

    6-44

  • ezPos

    VISA 3D Secure WebATMWebATMMondex

    http://www.neweb.com.tw/product-b.htm

    6-45

  • http://www.ecpay.com.tw/g-001.htm

    6-46

  • OK!Payment

    http://www.gemfor.com.tw/Products/Products_scrm_3.htm

    6-47

  • TISNetGO

    http://www.tisnet.net.tw/ec/moneygo/

    6-48

  • OpenPay eCoinW bATMWebATM

    http://www.twv.com.tw/

    6-49

  • ezPay (C2C)(PayPal) ) ezPayE mail

    E-mail

    https://www.ezpay.com.tw/ezPay_C2C/faq/main.jsp

    6-50

  • BuySafei d WAPi-modeWAP

    http://www.esafe.com.tw/msts-UserGuide-buysafe.htm

    6-51

  • iePay

    OScommerce TWE-commerce XT-Commerc Commerc

    http://www.linkuswell.com.tw

    6-52

  • Module 6-3

    6-53

  • Module 6Module 6 33Module 6Module 6--33 42 9%(2005)42.9%(2005) 53.3%(2005)

    6-54

  • 42 9% 42.9%

    ATM 22%

    8.2% 8.2%

    6.8%

    5.4%

    2005200542.9%

    http://survey.yam.com/survey2005/chart/a.php?fid=46/

    6-55

  • 53 3% 53.3%

    2005 53.3%

    http://survey.yam.com/survey2005/chart/a.php?fid=46/

    6-56

  • 6-57

  • PSPPSP

    (ezPay)

    6-58

  • !!!

    !!!

    !!!

    !!!

    !!!

    !!!

    ServerServer

    !!!

    6-59

  • http://www.hitrust.com.tw

    http://www.taica.com.tw

    http://www.ssl.com.tw

    htt // t t t thttp://www.entrust.net.tw

    6-60

  • 6-61

  • http://gcis.nat.gov.tw/ec/net/news/news_detail.asp?NewsID=203

    6-62

  • 94 SOSA

    http://www.sosa.org.tw/store/storetransparency.asp?id=1

    6-63

  • PSP

    1. HiTRUSTpay2 TWPay

    PSP2. TWPay

    3. 4. e-Coin5 HyPOS EZ

    5. HyPOS EZ6. EZPOS7. ezPos8. 8. 9. OK!Payment10. TISNetGO11. 12. ezPay

    6-64

  • PSPOpenPay ezPay (Escrow)

    6-65

  • http://www.nca.org.tw/chhtml/newpage.asp?cid=130

    6-66

  • ()

    6-67

  • 6-68

  • ScanAlert HackerSafe

    https://www.scanalert.com/RatingVerify?ref=www.freepay.com.tw&lang=TW

    6-69

  • CNS 17799---CNS 17799

    CNS 27001--- -

    ISO/IEC 27001:2005 Information technology -- Security techniques -- Information security management systemstechniques -- Information security management systems Requirements.

    ISO 27001:2005 Information technology Security gy ytechniques Code of practice for information security management.HiN t htt // i hi t t/U /i d ht HiNethttp://aaaservice.hinet.net/User/index.htm

    So-nethttp://www.so-net.net.tw/

    6-70