首页> 外文会议>International conference on availability, reliability and security >A Usable Android Application Implementing Distributed Cryptography for Election Authorities
【24h】

A Usable Android Application Implementing Distributed Cryptography for Election Authorities

机译:为选举机构实现分布式密码学的可用Android应用程序

获取原文

摘要

Although many electronic voting protocols have been proposed, their practical application faces various challenges. One of these challenges is, that these protocols require election authorities to perform complex tasks like generating keys in a distributed manner and decrypting votes in a distributed and verifiable manner. Although corresponding key generation and decryption protocols exist, they are not used in real-world elections for several reasons: The few existing implementations of these protocols and their corresponding interfaces are not designed for people with non technical background and thus not suitable for use by most election authorities. In addition, it is difficult to explain the security model of the protocols, but legal provisions generally require transparency. We implemented a smartphone application for election authorities featuring distributed key generation and verifiable distributed decryption of votes. In addition, we prepared education material throughout based on formulated metaphors for election authorities in order to explain the security of the application. We evaluated the usability of the application and understanding of the underlying security model, concluding that the application is usable for non-experts in computer science. While the participants were able to carry out the tasks, it became clear, that they did not have a clear understanding of the underlying security model, despite having viewed our educational material. We suggest improvements to this material as future work.
机译:尽管已经提出了许多电子投票协议,但是它们的实际应用面临各种挑战。这些挑战之一是,这些协议要求选举机构执行复杂的任务,例如以分布式方式生成密钥以及以分布式且可验证的方式解密投票。尽管存在相应的密钥生成和解密协议,但由于以下几个原因,它们并未在实际的选举中使用:这些协议的少数现有实现及其对应的接口不是为非技术背景的人员设计的,因此不适合大多数人使用选举当局。另外,很难解释协议的安全模型,但是法律规定通常要求透明。我们为选举管理机构实施了智能手机应用程序,具有分布式密钥生成和可验证的分布式投票解密功能。此外,我们还根据选举主管部门的隐喻准备了全文的教育材料,以说明申请的安全性。我们评估了该应用程序的可用性,并了解了底层安全模型,并得出结论认为该应用程序可用于计算机科学领域的非专家。尽管参与者能够执行任务,但很明显,尽管他们已经阅读了我们的教学材料,但对底层安全模型没有清晰的了解。我们建议在以后的工作中对此材料进行改进。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号