• DocumentCode
    64776
  • Title

    Tailored Security: Building Nonrepudiable Security Service-Level Agreements

  • Author

    Takahashi, Tatsuro ; Kannisto, Joona ; Harju, Jarmo ; Heikkinen, S. ; Silverajan, Bilhanan ; Helenius, Mika ; Matsuo, Shoichiro

  • Volume
    8
  • Issue
    3
  • fYear
    2013
  • fDate
    Sept. 2013
  • Firstpage
    54
  • Lastpage
    62
  • Abstract
    The security features of current digital services are mostly defined and dictated by the service provider (SP). A user can always decline to use a service whose terms do not fulfill the expected criteria, but in many cases, even a simple negotiation might result in a more satisfying outcome. This article aims at building nonrepudiable security service-level agreements (SSLAs) between a user and an SP. The proposed mechanism provides a means to describe security requirements and capabilities in different dimensions, from overall targets and risks to technical specifications, and it also helps in translating between the dimensions. A negotiation protocol and a decision algorithm are then used to let the parties agree on the security features used in the service. This article demonstrates the feasibility and usability of the mechanism by describing its usage scenario and proof-of-concept implementation and analyzes its nonrepudiability and security aspects.
  • Keywords
    computer network security; protocols; DoS; SP; SSLA; current digital services; decision algorithm; negotiation protocol; nonrepudiability aspect; nonrepudiable security service-level agreements; risk analysis; security aspect; security requirements; service provider; tailored security; Dictionaries; Object recognition; Protocols; Security; Usability; Vehicular and wireless technologies; Vocabulary;
  • fLanguage
    English
  • Journal_Title
    Vehicular Technology Magazine, IEEE
  • Publisher
    ieee
  • ISSN
    1556-6072
  • Type

    jour

  • DOI
    10.1109/MVT.2013.2269188
  • Filename
    6572830