Security Goals And Evolving Standards

Security Standardisation Research: First International Conference, SSR 2014, London, UK, December 16-17, 2014. Proceedings(2014)

引用 2|浏览20
暂无评分
摘要
With security standards, as with software, we cannot expect to eliminate all security flaws prior to publication. Protocol standards are often updated because flaws are discovered after deployment. The constraints of the deployments, and variety of independent stakeholders, mean that different ways to mitigate a flaw may be proposed and debated.In this paper, we propose a criterion for one mitigation to be at least as good as another from the point of view of security. This criterion is supported by rigorous protocol analysis tools. We also show that the same idea is applicable even when some approaches to mitigating the flaw require cooperation between the protocol and its application-level caller.
更多
查看译文
关键词
Security Protocol, Evolve Standard, Expiration Time, Security Goal, Transport Layer Security
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要