290 likes | 366 Views
Paying via the Net. Jan Damsgaard Dept. of Informatics Copenhagen Business School http://www.cbs.dk/staff/damsgaard/. General features of payment systems. Means to exchange value between parties Different mechanisms Cash Documents (check, money orders, letters of credit)
E N D
Paying via the Net Jan Damsgaard Dept. of Informatics Copenhagen Business School http://www.cbs.dk/staff/damsgaard/
General features of payment systems • Means to exchange value between parties • Different mechanisms • Cash • Documents (check, money orders, letters of credit) • Means of identification and associated payment mechanisms (debit/credit cards) Jan Damsgaard, 2004
General features of payment systems • Features • Identity of the transaction and the payer • Cost of the payment method • Volume, amount of payment, distance of paying parties Jan Damsgaard, 2004
Requirements for digital payment systems • Flexibility (different types of payments, anonymity vs. traceability) • Usability • Conversion capabilities • Universal • Integration with financial institutions • Scalability • Security of the payment • Integrity, Confidentiality, Availability Non repudiation Jan Damsgaard, 2004
Different types of payments Jan Damsgaard, 2004
Four examples • The Internet Bookshop • Selling books on the net • The translation service • A freelance translator • The news agency • Delivers news on the Internet • Software Company • Sells and distribute its products on the Internet Jan Damsgaard, 2004
Payment methods • Pre-paid systems • digital cash, debit accounts • Instant paid systems • integration with bank accounts, digital brokers • Post paid systems • credit cards and checks Jan Damsgaard, 2004
Post-paid payment systems • Rely on the wide use of credit cards • Advantages • Widely known • Consumer protection • Currencies • Usability • Disadvantages • Cost • Security • Anonymity • Complex Jan Damsgaard, 2004
Post-paid payment systems • Requires transaction completeness which cannot be guaranteed with SSL only Jan Damsgaard, 2004
SET: Secure Electronic Transaction Protocol • Jointly developed by VISA and MASTERCARD • Backed by EU for secure transactions Jan Damsgaard, 2004
SET Features • Involves: • Cardholder (the buyer) • Merchant (the seller) • Payment gateway (Merchant’s bank that verifies the credit card) • Certification Authorities (authenticate cardholder to merchant and merchant to payment gateway) • Enables • secure communication on the Internet between a merchant and a payment gateway • information confidentiality, hide customer order information from bank since order is processed by merchant and hides card information from merchant since payment is processed by bank Jan Damsgaard, 2004
SET Features • Combines 3 products • Cardholders wallet • on the hard drive, contains digital certificate, or a smart card • Merchant gateway software • Gateway software for payment recipient • All 3 parties need SET compliant digital certificate Jan Damsgaard, 2004
SET cont. • Generates two messages, one for the acquirer and one for the merchant • Each message contains only the information that is essential to that particular party in order to protect the privacy of as much information as possible Jan Damsgaard, 2004
SET: Secure Electronic Transaction Protocol • Features • Highly secure • Low visibility (Merchant never receives any Credit Card numbers, and is protected despite lack of credit card imprint) • Recognized open standards • Non repudiation • Integration to other technological solutions (smartcards on credit cards, smart cards on mobile phones, enables easy distribution of keys and DS’s) Jan Damsgaard, 2004
Examples of SSL based Instant paid systems: Direct bank connections • Available in Europe where electronic funds transfers is common • Integrates Web banking solutions with ordering and payments on the web • Instant transfer of a payment from a customers’ account to a merchants’ account • Requires move from a merchant’s side to the bank site (and back) • Good security because of the use of session passwords and other means to ensure secure transactions Jan Damsgaard, 2004
Instant payment • Instant visibility and transfer of money • Good integration with other financial services • Requires well established infrastructure and good connections • Cumbersome with moves for small payments • Good for larger payments Jan Damsgaard, 2004
Micro payment systems • Equivalent of cash residing on the computing device (computer, mobile device or smart card) • Requires a means to prevent copying, or altering; means to restore money, means to guarantee anonymity • An “embossment” process is used to add value to a “coin” from a user’s account without recording any information linking the user to the embossed coin • Enables transferable, anonymous payments Jan Damsgaard, 2004
Digital Cash • Coins are purchased from the bank and stored on user’s hard drive • no accounts are required during the transaction • Encryption is used to transfer payments • Spent coins are redeemed by bank Jan Damsgaard, 2004
Remove $1 from Alice’s account & “emboss” the digital envelope and blank coin with validating signature 2. Place blank coin in digital envelope 1. Creates a blank coin Bank Removes coin from digital envelope Recognizes its own “emboss” (validating signature) and honors the coin Alice $1 $1 $1 $1 Redeem coin Spends Coin Merchant Blind Signature
Smart cards • Small cards which can be programmed to hold digital money • Money can be transferred between cards through readers, ATM’s or other devices (in future also mobile phones) • Can be loaded with value, stored and transferred • Sometimes controlled by a PIN-code • Resistant to cold, damp, electrical interference or x-rays Jan Damsgaard, 2004
Paypal • You start with setting up a PayPal account at paypal.com • Any credit card or bank account will do • Send money and your account is debited; receive money and it is credited • The only catch is that the person on the other end has to have a PayPal account, too … Jan Damsgaard, 2004
Paypal fees • It is free to send money • Open an account • Send money • Add funds • Withdraw money to a bank account Jan Damsgaard, 2004
www.DANMONT.dk • Owned jointly by Danish financial institutions • For use in the three largest Danish towns • Plus in a number of company cantinas • Stand alone solution • No account • No PIN • Rechargeable Jan Damsgaard, 2004
DANMONT cards are made of wood. Not plastic Transactions Pr. quarter Jan Damsgaard, 2004
Mobile Phones • Can be used to pay online • SIM card and PIN code together provide instant cash • Cellular phone companies are experts in micro payment • Instant paid for consumer goods Jan Damsgaard, 2004
Så er der film! • Sikker Nethandel • http://www.rgtv.dk/ • E-Shoppens sikkerhed • http://www.rgtv.dk/ Jan Damsgaard, 2004
Assessment Framework Jan Damsgaard, 2004
Other types of payment • Loyalty points • The gift economy • Closed loop communities • Cake clubs • Etc … Jan Damsgaard, 2004