DocumentCode :
64776
Title :
Tailored Security: Building Nonrepudiable Security Service-Level Agreements
Author :
Takahashi, Tatsuro ; Kannisto, Joona ; Harju, Jarmo ; Heikkinen, S. ; Silverajan, Bilhanan ; Helenius, Mika ; Matsuo, Shoichiro
Volume :
8
Issue :
3
fYear :
2013
fDate :
Sept. 2013
Firstpage :
54
Lastpage :
62
Abstract :
The security features of current digital services are mostly defined and dictated by the service provider (SP). A user can always decline to use a service whose terms do not fulfill the expected criteria, but in many cases, even a simple negotiation might result in a more satisfying outcome. This article aims at building nonrepudiable security service-level agreements (SSLAs) between a user and an SP. The proposed mechanism provides a means to describe security requirements and capabilities in different dimensions, from overall targets and risks to technical specifications, and it also helps in translating between the dimensions. A negotiation protocol and a decision algorithm are then used to let the parties agree on the security features used in the service. This article demonstrates the feasibility and usability of the mechanism by describing its usage scenario and proof-of-concept implementation and analyzes its nonrepudiability and security aspects.
Keywords :
computer network security; protocols; DoS; SP; SSLA; current digital services; decision algorithm; negotiation protocol; nonrepudiability aspect; nonrepudiable security service-level agreements; risk analysis; security aspect; security requirements; service provider; tailored security; Dictionaries; Object recognition; Protocols; Security; Usability; Vehicular and wireless technologies; Vocabulary;
fLanguage :
English
Journal_Title :
Vehicular Technology Magazine, IEEE
Publisher :
ieee
ISSN :
1556-6072
Type :
jour
DOI :
10.1109/MVT.2013.2269188
Filename :
6572830
Link To Document :
بازگشت