Building a Trusted Environment for E-Business: A Malaysian Perspective
DOI:
https://doi.org/10.32890/jict2002.1.1.3Keywords:
Public key infrastructure, digital certificates, information security, e-businessAbstract
Almost all studies conducted on network economy and the Internet identify ‘security’ as a major concern for businesses. In general, the level of security in any network environment is closely linked to the level of trust assigned to a particular individual or organization within that environment. It is the trust element that is crucial in ensuring a secure environment. Besides physical security, security technology needs to be utilised to provide a trusted environment for e-business. Network security components for perimeter defense, i.e., Virtual Private Networks, firewalls and Intrusion Detection Systems, need to be complemented by security components at the applications and user level, e.g., authentication of user. ID or password security solution may be an option but now with the availability of legally binding digital certificates, security in e-business transactions can be further improved. Time and date stamping of e-business transactions are also of concern to prove at a later date that the transactions took place at the stipulated date and time. Digital certificates are part of Public Key Infrastructure (PKI) scheme, which is an enabling technology for building a trusted environment. PKI comprise policies and procedures for establishing a secure method for exchanging information over a network environment. The Digital Signature Act 1997 (DSA 1997) facilitates the PKI implementation Malaysia. Following the DSA 1997, Certification Authorities (CAs) were set up in Malaysia. This paper describes a trusted platform for spurring e-business and provides a Malaysian perspective of it.
References
Ali Yusny Daud & Mohd Aizaini Maarof (2001). Application Framework for E-Business: E-Business Security Requirements. In Proceedings of the 2" Conference on Information Technology in Asia, 288-299. Universiti Malaysia Sarawak.
Cheswick, W.R., & Bellovin, S.M.(1994). Firewalls and Internet Security. Reading, Massachusetts.
Datum (2002). Time Stamping. http://www.datum.com/tt/trustedtime/index.html.
CDC (2002). http://www.commercedotcom.com. my/.
Digicert (2001). http://www.digicert.com.my.
DSA (1997). Digital Signature Act. http://www.mycert.mimos.my/.
Forcht, K. (1994). Computer Security Management. Course Technology, Cambridge.
Ford, W., & Baum, M.S. (1997). Secure Electronic Commerce, 94, New Jersey.
GMPC (2002). http://www.jpn.gov.my/gmpc/index.htm.
Kaeo, M. (1999). Designing Network Security, 158, Indianapolis: Cisco Press, Macmillan.
Merill, C. B.(1999). Time is of the essence: Establishing the critical elements of electronic commerce, http://www.pkilaw.com/surety time long 3.htm.
Msctrustgate (2001). http:/Awww.msctrustgate.com/.
Netscape (2001). Secure Socket Layer, http://home.netcape.com/security/tech-briefs/ss1.html.
Nooritawati Md Tahir, Norashidah Md Din & Md Zaini Jamaluddin (2001). Development of Public Key Infrastructure Implementation in Malaysia. Proceedings of the International Conference on Information Technology and Multimedia at UNITEN, Recent Advances and Future Trends in Information Technology and Multimedia, Universiti Tenaga Nasional. t.uum.edu.my/ //ic http Journal of ICT, 1(1), pp: 33-
PKIX, (2002). Internet X.509 Public Key Infrastructure: Roadmap, http://www. ietf.org/internet-drafts/draft-ietf-pkix-roadmap-07.txt.
Report of PKI Conference (2001). Korea PKI Scheme and PKI Policy and Framework in Korea, PKI Conference, Ministry of Information and Communication, Seoul, Korea.
Stallings, W. (1998). Cryptography and Network Security, 9-11. Prentice Hall.
Verisign White Paper (2001). Extending Managed PKI Services to Smart Cards for Greater Convenience and Security. http://verisign.com/products/ smartcard/SmartCard.pdf.
Wassenaar (1995). http://www.wassenaar.org/.
Published
Issue
Section
How to Cite
Research impact
Harvested 2026-09-06Counts differ between services because each indexes a different body of literature. None of them is the whole picture.

2002 - 2020






















