Building a Trusted Environment for E-Business: A Malaysian Perspective

Authors

  • Norshida M. M. Din Department of Electrical Engineering, College of Engineering, Universiti Tenaga Nasional, Malaysia
  • Md Z.aid Jamaluddin Department of Electrical Engineering, College of Engineering, Universiti Tenaga Nasional, Malaysia

DOI:

https://doi.org/10.32890/jict2002.1.1.3

Keywords:

Public key infrastructure, digital certificates, information security, e-business

Abstract

Almost all studies conducted on network economy and the Internet identify ‘security’ as a major concern for businesses. In general, the level of security in any network environment is closely linked to the level of trust assigned to a particular individual or organization within that environment. It is the trust element that is crucial in ensuring a secure environment. Besides physical security, security technology needs to be utilised to provide a trusted environment for e-business. Network security components for perimeter defense, i.e., Virtual Private Networks, firewalls and Intrusion Detection Systems, need to be complemented by security components at the applications and user level, e.g., authentication of user. ID or password security solution may be an option but now with the availability of legally binding digital certificates, security in e-business transactions can be further improved. Time and date stamping of e-business transactions are also of concern to prove at a later date that the transactions took place at the stipulated date and time. Digital certificates are part of Public Key Infrastructure (PKI) scheme, which is an enabling technology for building a trusted environment. PKI comprise policies and procedures for establishing a secure method for exchanging information over a network environment. The Digital Signature Act 1997 (DSA 1997) facilitates the PKI implementation Malaysia. Following the DSA 1997, Certification Authorities (CAs) were set up in Malaysia. This paper describes a trusted platform for spurring e-business and provides a Malaysian perspective of it.

References

Ali Yusny Daud & Mohd Aizaini Maarof (2001). Application Framework for E-Business: E-Business Security Requirements. In Proceedings of the 2" Conference on Information Technology in Asia, 288-299. Universiti Malaysia Sarawak.

Cheswick, W.R., & Bellovin, S.M.(1994). Firewalls and Internet Security. Reading, Massachusetts.

Datum (2002). Time Stamping. http://www.datum.com/tt/trustedtime/index.html.

CDC (2002). http://www.commercedotcom.com. my/.

Digicert (2001). http://www.digicert.com.my.

DSA (1997). Digital Signature Act. http://www.mycert.mimos.my/.

Forcht, K. (1994). Computer Security Management. Course Technology, Cambridge.

Ford, W., & Baum, M.S. (1997). Secure Electronic Commerce, 94, New Jersey.

GMPC (2002). http://www.jpn.gov.my/gmpc/index.htm.

Kaeo, M. (1999). Designing Network Security, 158, Indianapolis: Cisco Press, Macmillan.

Merill, C. B.(1999). Time is of the essence: Establishing the critical elements of electronic commerce, http://www.pkilaw.com/surety time long 3.htm.

Msctrustgate (2001). http:/Awww.msctrustgate.com/.

Netscape (2001). Secure Socket Layer, http://home.netcape.com/security/tech-briefs/ss1.html.

Nooritawati Md Tahir, Norashidah Md Din & Md Zaini Jamaluddin (2001). Development of Public Key Infrastructure Implementation in Malaysia. Proceedings of the International Conference on Information Technology and Multimedia at UNITEN, Recent Advances and Future Trends in Information Technology and Multimedia, Universiti Tenaga Nasional. t.uum.edu.my/ //ic http Journal of ICT, 1(1), pp: 33-

PKIX, (2002). Internet X.509 Public Key Infrastructure: Roadmap, http://www. ietf.org/internet-drafts/draft-ietf-pkix-roadmap-07.txt.

Report of PKI Conference (2001). Korea PKI Scheme and PKI Policy and Framework in Korea, PKI Conference, Ministry of Information and Communication, Seoul, Korea.

Stallings, W. (1998). Cryptography and Network Security, 9-11. Prentice Hall.

Verisign White Paper (2001). Extending Managed PKI Services to Smart Cards for Greater Convenience and Security. http://verisign.com/products/ smartcard/SmartCard.pdf.

Wassenaar (1995). http://www.wassenaar.org/.

Downloads

Published

03-06-2002

How to Cite

M. Din , N. M., & Jamaluddin, M. Z. (2002). Building a Trusted Environment for E-Business: A Malaysian Perspective. Journal of Information and Communication Technology, 1(1), 33-44. https://doi.org/10.32890/jict2002.1.1.3

Research impact

Harvested 2026-09-06
0 citations recorded so far

Counts differ between services because each indexes a different body of literature. None of them is the whole picture.

Identifiers DOI 10.32890/jict2002.1.1.3 OpenAlex W4362600923