“Trust engineering: ” from requirements to system design and maintenance – a working national lottery system experience

  • Authors:
  • Elisavet Konstantinou;Vasiliki Liagkou;Paul Spirakis;Yannis C. Stamatiou;Moti Yung

  • Affiliations:
  • Computer Technology Institute, Patras, Greece;Computer Technology Institute, Patras, Greece;Computer Technology Institute, Patras, Greece;Computer Technology Institute, Patras, Greece;Computer Science, Columbia University, New York, NY

  • Venue:
  • ISC'05 Proceedings of the 8th international conference on Information Security
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

Based on our experience in designing, building and maintaining an information system for supporting a large scale electronic lottery, we present in this paper a unified approach to the design and implementation of electronic lotteries with the focus on pragmatic trust establishment. This approach follows closely the methodologies commonly employed in the development of general information systems. However, central to the proposed approach is the decomposition of a security critical system into layers containing basic trust components so as to facilitate the management of trust, first along the layers, and then as we move from layer to layer. We believe that such a structured approach, based on layers and trust components, can help designers of security critical applications produce demonstrably robust and verifiable systems that people will not hesitate to use.