The Initial Costs and Maintenance Costs of Protocols

نویسنده

  • Ross J. Anderson
چکیده

Software-engineering academics focussed for many years on the costs of developing the first version of a product, and ignored the costs of subsequent maintenance. We taught our students the 'waterfall model', and biased research towards the sort of tools and ideas that complemented it, such as formal methods. Meanwhile the economics of software had changed. Software is now so complex that the only way to build version N is to start with version N-1. Iterative development methodologies now rule, and the tools that real developers say have helped them most in the last fifteen years are not theorem provers, but automated regression-testing and bug-reporting systems. Nowadays, the maintenance is the product. Security engineers have been falling into a similar trap. For years, we thought that the problem of authentication began and ended with trustworthy boot-strapping. Once Alice and Bob shared that elusive session key – and could prove mathematically that no-one else did – we could type up the research paper and head for the pub. Again, the real world has changed. Security maintainability is the elephant in the living room; people know there's an awful problem but are generally too polite to mention it (especially as we don't really know what to do with the beast). Vendors used to not care very much; after all, people replace their mobile phones every year, and their PCs every three to five years, so why not just wait for the vulnerable equipment to be thrown on the skip? With luck, vulnerability scares might even help stoke the upgrade cycle. But attitudes are changing. The hassles caused by vulnerable machines (both directly and indirectly) continue to grow, and consumer expectations harden. Meanwhile, all sorts of consumer durables are acquiring CPUs and communications. If an airconditioner turns out to have a stack overflow in its TCP/IP code, how do you patch it? If you don't, then how do you deal with a virus that switches millions of airconditoners on and off simultaneously, causing a cascade failure of the power grid? And even before we get to the nirvana of pervasive computing, the economics of patching ordinary PCs has become a large and growing topic in security economics. A number of ideas have emerged recently about designing protocols for maintainability. In [1], for example, we explored what happens when a principal deploys 'smart dust' in an area that is shortly afterwards attacked by an opponent. …

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Codifying A Proper Mathematical Model for Predicting The Replace Age of The Tractors Used in Shahid Beheshti Cultivation Firm of Dezfoul

Predicting the maintenance and management costs and replacement age of tractors in agricultural mechanized units, is important from several points. So, doing a timely agricultural operations, more accurate measure of the amount of income  including the cost of these items , determining the useful life of old tractors , replacement age, cost of the process changes and the possibility of examinin...

متن کامل

Codifying A Proper Mathematical Model for Predicting The Replace Age of The Tractors Used in Shahid Beheshti Cultivation Firm of Dezfoul

Predicting the maintenance and management costs and replacement age of tractors in agricultural mechanized units, is important from several points. So, doing a timely agricultural operations, more accurate measure of the amount of income  including the cost of these items , determining the useful life of old tractors , replacement age, cost of the process changes and the possibility of examinin...

متن کامل

Evaluating the Efficiency and Benchmarking of Regions in an Electricity Distribution Company Using a Public Lighting Asset Management Model

Public lighting networks are constructed and maintained to provide social security and traffic safety. Due to the expansion of cities, the development in public lighting is inevitable. In addition to new investment, the public lighting service and maintenance program imposes high costs on distribution companies. Since performance assessment methods focus on a combination of key performance indi...

متن کامل

Evaluation of the Effects of Maintenance and Rehabilitation Projects on Road User Costs via HDM-4 Software

Rapid growth in a number of vehicles on roadways accelerates pavement deterioration trends. Pavement inefficiency in carrying the applied load from passing vehicles results in spending significant costs on continues Maintenance and Rehabilitation (M&R) treatments. Lane closure owing to the implementation of M&R operations incurs enormous costs on road users. The research aimed to calculate, and...

متن کامل

An Integrated Aggregate Production Planning Model with Two-Phase Production System and Maintenance Costs

Aggregate production planning (APP) is one of the most important issues carried out in manufacturing environments which seeks efficient planning, scheduling and coordination of all production activities that optimizes the company's objectives. In this paper, we develop a mixed integer linear programming (MILP) model for an integrated aggregate production planning system with closed loop supply ...

متن کامل

Optimizing a reverse supply chain including transportation, operation, maintenance and remanufacturing costs

Reverse supply chain is a process dealing with the backward flows of used/damaged products or materials. Reverse supply chain includes activities such as collection, inspection, reprocess, disposal and redistribution. A well-organized reverse supply chain can provide important advantages such as economic and environmental ones. In this study, we propose a general framework and formulate a m...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2005