Shortcomings
Log files log only partial details
Random number generator are not very good for
cryptographic purposes
The public key of merchant is sent over the network
in plain text and can easily be spoofed. Need to use
digital certificates for that