Performance and Security Tradeoff

نویسندگان

  • Katinka Wolter
  • Philipp Reinecke
چکیده

A tradeoff is a situation that involves losing one quality or aspect of something in return for gaining another quality or aspect. Speaking about the tradeoff between performance and security indicates that both, performance and security, can be measured, and that to increase one, we have to pay in terms of the other. While established metrics for performance of systems exist this is not quite the case for security. In this chapter we present standard performance metrics and discuss proposed security metrics that are suitable for quantification. The dilemma of inferior metrics can be solved by considering indirect metrics such as computation cost of security mechanisms. Security mechanisms such as encryption or security protocols come at a cost in terms of computing resources. Quantification of performance has long been done by means of stochastic models. With growing interest in the quantification of security stochastic modelling has been applied to security issues as well. This chapter reviews existing approaches in the combined analysis and evaluation of performance and security. We find that most existing approaches take either security or performance as given and investigate the respective other. For instance [34] investigates the performance of a server running a security protocol, while [21] quantifies security without considering the cost of increased security. For special applications, mobile Ad-hoc networks in [5] and the email system in [32] we will see that models exist which can be used to explore the performance-security tradeoff. To illustrate general aspects of the security-performance tradeoff we set up a simple Generalised Stochastic Petri Net (GSPN) model that allows us to study both, performance and security and especially the tradeoff between both. We formulate metrics, such as cost and an abstract combined performance and security measure that explicitly express the tradeoff and we show that system parameters can be found that optimise those metrics. These parameters are optimal for neither performance nor security, but for the combination of both.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

An Adaptive Model for Tradeoff Between Service Performance and Security in Service-based Environments

The messages-based communication among services in Service Oriented Architecture (SOA) is vulnerable to various security attacks, and has to be well protected by security mechanisms, which may sacrifice the service performance due to limited system resources. In this paper, an adaptive model for the tradeoff between service performance and security in service-based environments is presented. Th...

متن کامل

An Adaptive Approach to Optimizing Tradeoff Between Service Performance and Security in Service-Based Systems

The message-based communication among services in Service-based Systems (SBS) is vulnerable to various security attacks and must be well protected by security mechanisms, which may affect performance due to available system resources. In this paper, an adaptive approach is presented to optimize the tradeoff between service performance and security according to SBS users’ requirements and prefer...

متن کامل

A Hybrid Secure Scheme for Wireless Sensor Networks against Timing Attacks Using Continuous-Time Markov Chain and Queueing Model

Wireless sensor networks (WSNs) have recently gained popularity for a wide spectrum of applications. Monitoring tasks can be performed in various environments. This may be beneficial in many scenarios, but it certainly exhibits new challenges in terms of security due to increased data transmission over the wireless channel with potentially unknown threats. Among possible security issues are tim...

متن کامل

Performance Analysis of BGP Security Proposals

Border Gateway Protocol (BGP), the only standard for interdomain routing in the Internet, is used to exchange information between Autonomous Systems (ASes). BGP possesses many security vulnerabilities, as it works with the information received from the neighboring routers, and neighbors can lie, deliberately or mistakenly. Many security approaches have been proposed, but due to reasons like inc...

متن کامل

Design of Service-Based Systems with Adaptive Tradeoff Between Security and Service Delay

Service-based Systems (SBS) have the advantage of composing distributed systems from various services provided by multiple providers transparently. In addition to functional correctness, multiple non-functional QoS requirements should also be satisfied in such systems. Among these QoS requirements, security protection and real-time performance are the two major concerns. However, neither applic...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010