• 沒有找到結果。

在網際網路上應用MIME整合EDI與電子郵件安全機制之可行性分析與系統實做---以金融EDI為例

N/A
N/A
Protected

Academic year: 2021

Share "在網際網路上應用MIME整合EDI與電子郵件安全機制之可行性分析與系統實做---以金融EDI為例"

Copied!
5
0
0

加載中.... (立即查看全文)

全文

(1)

(2)   MIME  EDI

(3) .  —  EDI ! Using MIME to Integrate EDI and Security Mechanisms of the Internet Electronic Mail – Feasibility Study and System Implementation with Case of Finanical EDI. 88-2416-H-009-019 87 8 1

(4) 88 7 31

(5)   ! However, an EDI document inevitably faces various threats; e.g., data stealing or manipulation, when electronic information is transmitted via open networks. Consequently, the security of EDI should be seriously concerned. This study will focus on applying Multipurpose Internet Mail Extensions (MIME) to integrate the EDI and the Internet e-mail security mechanisms.. "#$%&' "#$%&'()*+,-$./ 01Electronic Data Interchange, EDI2345 6789:;)<=(>?@AB EDI CD EFGHIJ(&'K-L Internet-MNO P/0Q5RSTU-VW;XY7Z [(<\A]^CDEFGHIJ&'K_ EDI `abcade(fg-hL/(i jklmnALoE Internet Kpq EDI  (rs-^FGtuv(wxAy z{E&|&'KN$.}~€ EDI  / ( e J-‚ƒ„ƒ &|&'†~‡ˆ 1 Multipurpose Internet Mail Extensions, MIME2Z‰ EDI Š$.}~rs‹Œ-O EDI /\E&|&'Krs(€A. Keyword: Electronic Data Interchange, Internet Electronic Mail Security Mechanisms, Multipurpose Internet Mail Extensions.. (#)* +, "#$%&'()*+,-$./ 01Electronic Data Interchange, EDI2345 6789:;)<=(>?@AB EDI CD EFGHIJ(&'K-L Internet-MNO P/0Q5RSTU-VW;XY7Z [(<\A]^CDEFGHIJ&'K_ EDI `abcade(fg-hL/(i jklmnALoE Internet Kpq EDI  (rs-^FGtuv(wxA RFC 1341 Ž„ƒ &|&'†~‡ ˆ 1 Multipurpose Internet Mail Extensions, MIME2AMIME ‘’“”&|&'$. }~(•\-–—Oƒ˜™š›œjžŸ  J( mail -Ž¡¢(£¤¥  JARFC 1767 ¦§?ƒ MIME €¨ EDI . $./0k$.}~rs‹ Œk„ƒ &|&'†~‡ˆ. Abstract As communication networks been highly developed, the Electronic Data Exchange(EDI) has become essential to the success of the operation of governments and enterprises. When an EDI document is transferred on an open network, such as the Internet, it can be exchanged more rapidly and conveniently; thus, the performance of the enterprise is improved. 1.

(6)  MIME  EDI  

(7)  ¦§Ú¹( EDI €öeJ8¬¬(&| &'$.}~rs‹Œ-ÒÓ;ÇFGZ‰ (CDL÷ 1 A     

(8) .  1  Internet EDI . B  

(9) .  Mapper.  Mapper.  .  . Translator. Translator. Èy( EDI €öøù‚ƒúaû[k £ü0û[8€öû[-WÒÓE€ ö_ýþKFrsû[Npq£( pÕ8€ö(rsÕA 1. ‚ƒúaû[ Mapper ‚ ƒ ú a û [^ú¯(‚ƒ Jk/ ìíŠü0û[ ( ~-•\ ^E€¨ EDI £Ç

(10) ã¡ê J ( Ê /ü04£ü0û[M( EDI £a/ (Flat file)-8B EDI £

(11) ã£ü0û[ü0ç( EDI £ a/ þü04ìíMœj( Ê/A 2. £ü0û[ Translator £ü0û[;³ EDI £(ü0-M ゃúaû[Y( EDI £a/ ü04( EDI  J Ê_Mã ( EDI  J Êü04 EDI £a/ (Flat file)A§¯ü0û[(Õ-ä ;³( EDI £ü0-ÑýOƒ ( 5 _ ý ú  ( UN/EDIFACT 8 ANSI X.12A 3. rsû[ ;³£/rs•\-Nk  !"neJ§€¨( EDI £;³ £åZÕkÁM#$Õk£%ÕnnA 4. €öû[ &' EDI /(€öAEy(ÒÓOƒ MIME  JN SMTP (eJ€ öA. £Ž©ª J-Nƒ MIME « EDI

(12) 

(13)  £(€¨-^F¬M(š­A]^®¯ MIME  Jy°±²;³$.}~rs‹Œ (´µ-¶§¯·¸rs( EDI-¹#   Communicator Communicator ‚ƒK(º»A¼Fea-¦§$.}~r s ‹ Œ - L Privacy Enhenced Message 1PEM2kPretty Good Privacy1PGP2n½^5F¾$.}~(¿ 1RFC 8222À -±Á\ÂÃOƒ¯ MIME  J($.} ~ K A Ä Å Æ  ¹ ; Ç N MIME multipart/signed k multipart/encrypted 1 RFC 1847 2 Š MIME Object Security Service 1MOSS21RFC 184825ÈÉ(Z‰eÊ L S/MIME Š PGP/MIME-]ËÌ+,Í -¹ÎÏFÐ(ŠmÏA yÑ(^-‚ƒ MIME Z‰ EDI Š &|&'$.}~rs‹ŒAÒÓ`Ô«M ÕÖ×ØÙ MIME ( J-Ö×Ú¹$ .}~rs‹Œ-{Û¶ÜݎErsÕ8 Þ|ßDK(àáâ-z{ MOSSkS/MIME Š PGP/MIME  J-LoãäŠ EDI « åæ(Z‰AEMÕÖ×ç-`NFèé EDI ê ë . ì í 5 î - ß ï F G N PGP/MIME 5ÈÉ(ðñìí-±Nòðñ ìíÞ|óô EDI Š$.}~rs‹Œ(Z ‰<õA.  PGP/MIME  1. ìíޚ)* ޚ8+,)*-(.[À/vø ù  Sun Ultra 10 Workstation F0  1¹ RJ-45 &'2_ Pentium PC 30. . 2.

(14) Þ š  ƒ  (©ªû[J8š7. EDI +¨ìí(ašE¯Vbcêë ( O ƒ ˜ ú a ö d - ã EDI /ü04 EDIFACT  J±« MIME ef-þg h‰ PGP/MIME ¿ (!"8-g® SMTP ã EDI /i¨Ç AZG EDI +¨ ìíMÖ5;jkGbl (1) Oƒ˜úa bcFWmìí((€¨êë.ìíEë(;³ Security ë_Oƒ˜ ^#!"8^#(n-±voOƒ˜ pŽ+¨(XèU Ê8Ã(WH èUMail Setting ëq;³Oƒ˜ödi ¨$.}~r-(A. 0  ; ³ E-mail ´ µ ( Sun Ultra 10 Workstation N SunOS 5.7 50  Client N Win95 OSR2/Win98 5J+ ,0  sendmail.8.8.8  RSAEURO 1.06 cryptography library  Borland C++ Builder 4.0 5JH+8 4)* 2. ޚìí¿  56ޚ(MÕ788¿ ›97 /(jP-ޚìí:ƒN;(¿   EDIUN/EDIFACT  MIME rs‹ŒPGP/MIME ANSI X.12 5æ<êŽ( EDI Ñý:ƒòF(=>5?æ UN/EDIFACT 5@‰<êŽ-Ñý3A< |Õ(B$8:ƒAN-ÒÓCŽ:ƒÃ D*)kOƒEFG( UN/EDIFACT 5ޚ ( EDI A E MIME r s ‹ Œ ( - Ò Ó   MOSSkS/MIME 8 PGP/MIMEAMOSS 5 FH( MIME rs‹Œ-v•ƒMI ^5 MIME rs‹Œ;³FGðñ8E î-S/MIME 8 PGP/MIME J97 MOSS W mÏAW S/MIME -vFGåZ( CA CD «$K(L+kŠšM-WE0NÑ ý ( ) * ( ± O • \ å Z ( CA - L N S/MIME ޚM\E CA PÖ`¹Þš(º »-NÒÓ:ƒÁ-v CA ( PGP/MIME 5ޚ( MIME rs‹ŒA .   . :';<=>?@AB@ACD  .EF. .

(15)  . GH 12675.    !"#$%. * & +,+-''.I7.  !$% &''(). GH 12/05. Zft. Op. Zft. > @TU@AVWX Y';<=>?@AB@A. 1234/05. * & +,+-''/0JK. Op. Zft. * & +,+-''./0. Op. ''().  !$% I''().  !"#$%  LC. . $%. 1234675 Zft. * & +,+-''.67. Op. 89. EDI . M.

(16) NO CP.. QRSLC . EDI .  2 EDI

(17) . !"#$%&'. (2) EDIFACT ü0bl v(aš^ãOƒ˜úaöÇ( EDI  / ü 0 4 h‰ EDIFACT  J( ÊA (3) EDIFACT ( MIME efbl v(aš^ã EDIFACT ü0bl öÇ( EDIFACT  J ÊK MIME e fA (4) PGP/MIME !"bl. ޚìí(Q-L÷ 2-MÖ5 EDI /+¨R EDI /Ã3ea-S EDI Center ;³( E-Mail Server TA 1. RSA èU§YJ v•\5Y+¨8ÃV -(WHèU8XèUAJYZ

(18) SÁ[(\š5]”^-_Á[Oƒ ˜P©`( RSA èU§A 2. EDI +¨ìíJ 3.

(19) BEOƒ˜úa(v!"

(20) ` òblAòbl(vaš5§ EDIFACT /« MD5 (£svç-þN+¨(X èU§£svš-å4 PGP/MIME (!"çþNtB( MIME Header efA (5) PGP/MIME bl BEOƒ˜úa(v

(21) ` òblAòbl(vaš5"‹YF IDEA uèU§ EDI /-þNÃe ( RSA WHèUuèUAçyž vþKtB( MIME Header efA (6) $.}~€öbl òbl(vaš^wåx( EDI /-g€öyçi¨pŽ( EDI  /Ã($.}~†zA 3. EDI ÃìíJ EDI Ãìí(aš®$.}~à JH”-Và EDI {ƒ($.}~† z(j EDI /}~-ã(g8 !"( EDI /«V8!"p$ç-þV EDIFACT  Jü04ÃOƒ( / J-|çNbcÃ(êëìí(O ƒ˜úa}Ú(êëAZG EDI à ìíMÖ5;j~Gbl (1) $.}~Ãbl òbl(vaš^à POP3 ServerÃ$.}~†z(( EDI /±V€ö y-ÃçVœ MIME Header €/^# k‚ƒ¹!"k‚^„ž€¨Ablø  POP3 ©ªÀŽ(ëA (2) PGP/MIME Vbl vaš€/g

(22) -Ô?ƒ Ã(XèUVÇuèU-þ§†ž «VA (3) PGP/MIME !"‡Kbl vaš^B€/g!"

(23) -Ô ?ƒ+¨(WHèUVÇ MD5 £svþ§!"ef(†ž« MD5 £svˆ§ £sv^#©hA (4) EDIFACT  Jü0bl. òbl(vaš^ãN EDIFACT   J}Ú( EDI /-ü04áê ( Ê J‚/  JA (5) Ãêëúa òêëúa5bcÃWm_Ãê ë.ìí(ÉñAvaš^ã3ü4 áê J(ê놊Nbc(úa} ÚA.  ã EDI CDE Internet KO EDI (‚ƒ EFPN‘-] EDI /(rs‹xŒQ ñuvAUN/EDIFACTkANSI X.12 n EDI (OƒO EDI ìíH+QeT8 W MOSSkS/MIME 8 PGP/MIME n MIME rs‹ŒM¦§Ž¬Y7 EDI -Á [*(rs-o;³t‰(´µ-Eü0 4 EDI  J( EDI /vK MIME r s‹ŒOP EDI /\E Internet KN$.} ~ ( e J r s ( €  A Ò Ó ? ƒ UN/EDIFACT 8 PGP/MIME bc3‹D (èé EDI êë€ö.ìí-VWp$E &|&'K‚ƒ MIME Z‰ EDI Š$.}~ rs‹Œ^M(A ²¹;aGeMN ‘’› z{“‰”( CA N‘‚ƒEF›Þ ƒÕkìíMŠ•–2(Smart Card)“‰-㠗e(XèU8˜K™I¯•–2K-B v™j•–2K(/

(24) ršÔödFGG ›œyM;³„F(qž-ˆãXè U™I¯Ÿ¹q (.¡‹(vPrsA. . [1]. [2] [3] [4]. 4. Andrew Fletcher, EDI-Electronic Commerce, EDI and the Internet, Reed Business Information, England 1997 R. Power. R., “UN/EDIFACT Syntax Implementation Guideline”, UNECE Paul Kimberley, Electronic Data interchange, McGRAW-HILL, 1991 N. Borenstein, N. Freed., “MIME (Multipurpose Internet Mail Extensions): Mechanisms for Specifying and Describing.

(25) [5] [6] [7]. [8]. [9] [10] [11] [12] [13]. [14] [15] [16]. the Format of Internet Message Bodies, RFC 1341”, June 1992 Zimmermann, p., “PGP User’s Guide, Vol.I Essential topics”, 1994 Zimmermann, p., “PGP User’s Guide, Vol.II Special topics”, 1994 D. Atkins, W. Stallings, P. Zimmermann, “PGP Message Exchange Formats, RFC 1991”, August 1996 J. Linn, “Privacy Enhancement for Internet Electronic Mail, Part I-IV, RFC 1421-1424”, IAB 1993 S. Crocker, “MIME Object Security Services, RFC 1848”, October 1995 J. Galvin , “Security Multiparts for MIME, RFC 1847”, October 1995 S. Dusse, “S/MIME Version 2 Message Specification, RFC 2311”, March 1998 B. Kaliski. “PKCS #1: RSA Encryption Version 1.5, RFC 2313”, March 1998 B. Kaliski, “PKCS #7: Cryptographic Message Syntax Version 1.5, RFC 2315”, March 1998 B. Kaliski. “PKCS 10: Certification Request Syntax Version 1.5, RFC 2314”, March 1998 M. Elkins, “MIME Security with Pretty Good Privacy, RFC 2015”, October 1996 Chuck Shih, “MIME-based Secure EDI, draft-ietf-ediint-as1-08”, May 1998. 5.

(26)

參考文獻

相關文件

電子郵件地址:[email protected] E-Mail: [email protected] 網頁地址:http:// www.dsec.gov.mo Home page: http:// www.dsec.gov.mo. 官方統計

1、 網路管理與通信技術整合實務、機電控制、網拍多媒體行銷及物流從業人員

進而能自行分析、設計與裝配各 種控制電路,並能應用本班已符 合機電整合術科技能檢定的實習 設備進行實務上的實習。本課程 可習得習得氣壓-機構連結控制

õT¤_ .â·&lt;íËju, Data Access Component Module 2FíŠ?. âÀÓ“, ©ø_ method úk’eé query v,

The following code calculates the sum of an array of 16-bit integers. mov edi,OFFSET intarray ; address of intarray mov ecx,LENGTHOF intarray ;

By using the case study and cross analysis of the results, The Purpose of this research is find out the Business implementing Supply Chain Management system project, Our study

服務提供者透過 SOAP 訊息將網路服務註冊在 UDDI 中,服務需求者也可以透 過 SOAP 向服務仲介者查詢所需的 Web Service 並取得 Web Service 的 WSDL 文件,2.

另外,透過表 4-2 的結果可以看出,金融業受訪者最不重視的五項評估準則 因素依序為「C 41 親友推薦我使用網路電子支付」(權重為 0.013)、 「C 44 消費金額