Reliability and Security for Safety-Critical Service Compositions

Kevin Theuermann*

*Korrespondierende/r Autor/-in für diese Arbeit

Publikation: Beitrag in Buch/Bericht/KonferenzbandBeitrag in einem KonferenzbandBegutachtung

Abstract

Service composition represents the combination of individual distributed services, which are operated by different organizations. A composite service may include security or safety-critical services, which could have a serious impact on individuals and thus, require correctness of generated outputs as a crucial property. For this reason, service composition systems must avoid a manipulation of critical services and have to guarantee high reliability of computed outputs as well as availability. Secure multiparty computation and verifiable secret sharing enables a privacy-preserving computation of service outputs jointly generated by several parties, which makes it possible to prevent a single point of failure for critical services and guarantees correctness of a generated output. In this work, we introduce a concept for privacy-preserving and reliable service compositions through the application of secure multiparty computation in combination with threshold signatures. Threshold signatures make it possible to define a maximum number of allowed unavailable actors, which do not participate in the mulitparty computation protocol. This mechanism enables a flexible definition of security or safety requirements for critical services. The feasibility of the proposed solution is demonstrated by an implemented proof-of-concept for a composite medical alert service.
Originalspracheenglisch
TitelInformation Systems Security - 16th International Conference, ICISS 2020, Proceedings
Untertitel16th International Conference, ICISS 2020, Jammu, India, December 16–20, 2020, Proceedings
Redakteure/-innenSalil Kanhere, Vishwas T Patil, Shamik Sural, Manoj S Gaur
Herausgeber (Verlag)Springer, Cham
Seiten45-65
Seitenumfang21
ISBN (elektronisch)978-3-030-65610-2
ISBN (Print)978-3-030-65609-6
DOIs
PublikationsstatusVeröffentlicht - 6 Dez. 2020
Veranstaltung16th International Conference on Information Systems Security: ICISS 2020 - Virtuell, Indien
Dauer: 16 Dez. 202019 Dez. 2020

Publikationsreihe

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Band12553 LNCS
ISSN (Print)0302-9743
ISSN (elektronisch)1611-3349

Konferenz

Konferenz16th International Conference on Information Systems Security
KurztitelICISS 2020
Land/GebietIndien
OrtVirtuell
Zeitraum16/12/2019/12/20

ASJC Scopus subject areas

  • Information systems
  • Theoretische Informatik
  • Informatik (insg.)

Fields of Expertise

  • Information, Communication & Computing

Treatment code (Nähere Zuordnung)

  • Application

Fingerprint

Untersuchen Sie die Forschungsthemen von „Reliability and Security for Safety-Critical Service Compositions“. Zusammen bilden sie einen einzigartigen Fingerprint.

Dieses zitieren