Electronic Voting Systems

Similar documents
Secure Electronic Voting

Secure Electronic Voting: Capabilities and Limitations. Dimitris Gritzalis

Secure and Reliable Electronic Voting. Dimitris Gritzalis

Secure Electronic Voting: New trends, new threats, new options. Dimitris Gritzalis

Functional Requirements for a Secure Electronic Voting System

E- Voting System [2016]

E-Voting, a technical perspective

Union Elections. Online Voting. for Credit. Helping increase voter turnout & provide accessible, efficient and secure election processes.

CHAPTER 2 LITERATURE REVIEW

SEMINAR WORK: E- ELECTIONS AND E- VOTING - THE CASE OF SWITZERLAND AND FRANCE

L9. Electronic Voting

Ballot Reconciliation Procedure Guide

General Framework of Electronic Voting and Implementation thereof at National Elections in Estonia

STATE OF NEW JERSEY. SENATE, No th LEGISLATURE

Statement on Security & Auditability

Nevada Republican Party

Addressing the Challenges of e-voting Through Crypto Design

MICHIGAN S CONSTITUTION

Secure Voter Registration and Eligibility Checking for Nigerian Elections

Swiss E-Voting Workshop 2010

Audits: an in-depth review of Venezuela s automatic voting

Key Considerations for Implementing Bodies and Oversight Actors

IC Chapter 15. Ballot Card and Electronic Voting Systems; Additional Standards and Procedures for Approving System Changes

Designing issues and requirement to develop online e- voting system systems having a voter verifiable audit trail.

Should We Vote Online? Martyn Thomas CBE FREng Livery Company Professor of Information Technology Gresham College

PRESIDEN T /VICE PRESIDENT OF THE UNITED STATES Vote for One

A paramount concern in elections is how to regularly ensure that the vote count is accurate.

Mecklenburg County Department of Internal Audit. Mecklenburg County Board of Elections Elections Process Report 1476

Maryland State Board of Elections Comprehensive Audit Guidelines Revised: February 2018

PRIVACY PRESERVING IN ELECTRONIC VOTING

The California Voter s Choice Act: Managing Transformational Change with Voting System Technology

Fiscal Year Adopted Budget

Estonian National Electoral Committee. E-Voting System. General Overview

ASSEMBLY, No STATE OF NEW JERSEY. 217th LEGISLATURE INTRODUCED FEBRUARY 27, 2017

HOUSE BILL 1060 A BILL ENTITLED. Election Law Delay in Replacement of Voting Systems

VOTERGA SAFE COMMISSION RECOMMENDATIONS

Electronic Voting: An Electronic Voting Scheme using the Secure Payment card System Voke Augoye. Technical Report RHUL MA May 2013

ELECTION MANUAL FOR REGIONAL CONVENTIONS

Between Law and Technology: Internet Voting, Secret Suffrage and the European Electoral Heritage

The Future of Elections: Technology Policy & Funding Conference

THE PEOPLE OF THE STATE OF MICHIGAN ENACT:

COURAGEOUS LEADERSHIP Instilling Voter Confidence in Election Infrastructure

Recommendations of the Symposium. Facilitating Voting as People Age: Implications of Cognitive Impairment March 2006

The Administration of Elections

A Study on Ways to Apply the Blockchain-based Online Voting System 1

Municipality of Chatham-Kent. Legislative Services. Municipal Governance

Curriculum. Introduction into elections for students aged 12 to 16 years

Election Administration Manual for STRHA Elections for Table of Contents. General Information. Calendar. Candidates. Qualifications for Office

Introduction of Electronic Voting In Namibia

IC Chapter 3. Counting Ballot Card Votes

CRYPTOGRAPHIC PROTOCOLS FOR TRANSPARENCY AND AUDITABILITY IN REMOTE ELECTRONIC VOTING SCHEMES

Report of the National Workshop on Internet Voting: Issues and Research Agenda

Office for Democratic Institutions and Human Rights OSCE/ODIHR DISCUSSION PAPER IN PREPARATION OF GUIDELINES FOR THE OBSERVATION OF ELECTRONIC VOTING

Privacy Issues in an Electronic Voting Machine

SECURE REMOTE VOTER REGISTRATION

Speaker s Commission on Digital Democracy Inquiry into Electronic Voting

A Three Pronged Approach to Improving Civic Engagement

ARKANSAS SECRETARY OF STATE

DIRECTIVE November 20, All County Boards of Elections Directors, Deputy Directors, and Board Members. Post-Election Audits SUMMARY

E-Poll Books: The Next Certification Frontier

Libertarian Party of Oregon 2018 Primary Election Rules Adopted Amended

GENERAL RETENTION SCHEDULE #23 ELECTIONS RECORDS INTRODUCTION

Key Considerations for Oversight Actors

HAVA- Help America Vote Act of 2002

54th Convention August 6-10, 2018 Seattle, Washington INTERNATIONAL ASSOCIATION OF FIRE FIGHTERS

M-Vote (Online Voting System)

Challenges and Advances in E-voting Systems Technical and Socio-technical Aspects. Peter Y A Ryan Lorenzo Strigini. Outline

Citizen engagement and compliance with the legal, technical and operational measures in ivoting

The documents listed below were utilized in the development of this Test Report:

Cuyahoga County Board of Elections

SECURE e-voting The Current Landscape

IC Chapter 7. Municipal Elections in Small Towns Located Outside Marion County

GENERAL ASSEMBLY OF NORTH CAROLINA SESSION 2015 SENATE BILL 667 RATIFIED BILL

Privacy of E-Voting (Internet Voting) Erman Ayday

RULES OF PROCEDURE FOR THE STATE CONVENTION

Scytl. Enhancing Governance through ICT solutions World Bank, Washington, DC - September 2011

Chapter 2.2: Building the System for E-voting or E- counting

Volume I Appendix A. Table of Contents

Secretary of State Chapter STATE OF ALABAMA OFFICE OF THE SECRETARY OF STATE ADMINISTRATIVE CODE

Colorado s Risk-Limiting Audits (RLA) CO Risk-Limiting Audits -- Feb Neal McBurnett

Additional Case study UK electoral system

GAO ELECTIONS. States, Territories, and the District Are Taking a Range of Important Steps to Manage Their Varied Voting System Environments

Understanding Election Administration & Voting

*HB0348* H.B ELECTION CODE - ELECTRONIC VOTING 2 PROCEDURES AND REQUIREMENTS

REGISTRAR OF VOTERS. General Fund. FY11/12 Actual

A Candidate s Guide to the 2014 Statewide Primary and General Election Period. Important Dates

VERIFICATION OF VOTER REGISTRATION

OPERATING POLICY. POLICY TITLE: ANNUAL MEMBERSHIP MEETING VOTING PROCEDURES SECTION The Board of Directors NUMBER 2.1 DATE PROCEDURES

TO: Chair and Members REPORT NO. CS Committee of the Whole Operations & Administration

An Application of time stamped proxy blind signature in e-voting

IC Chapter 13. Voting by Ballot Card Voting System

ASCSM Bylaws: Article I Elections

June 28, Mr. HOYER introduced the following bill; which was referred to the Committee on House Administration

CALTECH/MIT VOTING TECHNOLOGY PROJECT A

AP Gov Chapter 09 Outline

ARKANSAS SECRETARY OF STATE. Rules on Vote Centers

E-Voting Systems Security Issues

CITIZEN ADVOCACY CENTER

ELECTION VALIDATION PROJECT Increasing Trust in Elections Through Audits, Standards, and Testing

COMMISSION CHECKLIST FOR NOVEMBER GENERAL ELECTIONS (Effective May 18, 2004; Revised July 15, 2015)

Transcription:

Electronic Voting Systems The Impact of System Actors to the Overall Security Level C. Lambrinoudakis *, V. Tsoumas +, M. Karyda +, D. Gritzalis +, S. Katsikas * * Dept. of Information and Communication Systems Engineering University of the Aegean + Dept. of Informatics Athens University of Economics & Business & e-vote Project European Commission, IST Program

What is electronic voting (system)? An electronic voting (e-voting) system is a voting system in which the election data is recorded, stored and processed primarily as digital information. Network Voting System Standards, VoteHere, Inc., April 2002 Voting Paper voting E-voting Paper ballots... Punch cards Polling place voting Internet voting Precinct voting Kiosk voting Note: Traditional electronic voting is 134 years old (T. Edison, Electrographic Vote Recorder, U.S. Patent, 1869). 2

Do we need electronic voting systems? * They could lead to increased voter turnout (USA 2001: 59%, 18-24 yrs: 39%), thus supporting democratic process. They could give elections new potential (by providing ballots in multiple languages, accommodating lengthy ballots, facilitate early and absentee voting, etc.) thus enhancing democratic process. They could open a new market, supporting the commerce and the employment. * D. Gritzalis (Ed.), Secure Electronic Voting, Kluwer Academic Publishers, USA, January 2003. 3

Generic voting principles Only eligible persons vote. No person can vote more than once. The vote is secret. Each (correctly cast) vote gets counted. The voters trust that their vote is counted. Internet Policy Institute, Report of the National Workshop on Internet Voting, March 2001 4

Identifying e-voting requirements An e-voting system may be specified: as a set of the guidelines to be adopted for ensuring conformance to the legislation. ( State Authority point of view) or in terms of the problems associated with the provision of the adequate level of security (anonymity, authentication, tractability, etc.). ( System Engineer point of view) 5

Identifying e-voting requirements none of these approaches is complete! Legal requirements abstract formulations (e.g. laws, principles, etc.) Functional requirements - Usability properties Non-functional requirements Security and System properties (e.g. flexibility, efficiency, etc.) 6

Identifying e-voting requirements A third approach, proposed by the e-vote project: Requirements elicitation based on a Generic Voting Model, taking into account the: European Union legislation. Organisational details of the conventional voting processes. Opportunities offered and the constraints imposed by stateof-the-art technologies. Aim of the developers is to express: The legal requirements. The security (non-functional) requirements. The functional requirements. as a User Requirements Specification document that sets specific Design Criteria. 7

Voting systems design criteria Authentication: Only authorized voters should be able to vote. Uniqueness: No voter should be able to vote more than once. Accuracy: Voting systems should record the votes correctly. Integrity: Votes should not be able to be modified without detection. Verifiability: Should be possible to verify that votes are correctly counted for in the final tally. Auditability: There should be reliable and demonstrably authentic election records. Reliability: Systems should work robustly, even in the face of numerous failures. 8

Secrecy: Voting systems design criteria No one should be able to determine how any individual voted. coercibility: Voters should not be able to prove how they voted. Equipment should allow for a variety of ballot question formats. Voters should be able to cast votes with minimal equipment and skills. Systems should be testable against essential criteria. Voters should be able to possess a general understanding of the whole process. effectiveness:systems should be affordable and efficient. Non-coercibility Flexibility: Convenience: Certifiability: Transparency: Cost-effectiveness 9

Voting Systems Functional Requirements Support all essential services for organizing and conducting an opinion expressing process: Poll Decision-making (e.g. Referenda) Internal election General election Depending on the specific process, the services may include voter registration, vote casting, voter authentication, calculation of the vote tally, versification of the election result, etc. 10

Requirements for different types of election process The General Election requirements are practically a superset of those regarding the other election processes Polls Decision-making procedures (e.g. Referenda) Internal elections General elections 11

e-vote System Use Cases for General Election 12

Is a Secure Voting Protocol Enough?? A lot of research effort has been spent on designing and building voting voting protocols that can support the voting process, while fulfilling the security requirements However, not much attention has been paid in the administrative part of an electronic voting system that supports the actors of the system to set-up the election. Possible security security gaps in the administrative workflow of the system may result in deteriorating the overall security level of the system. 13

Workflow 14

Identified System Actors Actors Election Organizers Election Personnel Judicial Officers Party Representatives Independent Third Parties Voters Description People responsible for organizing the election process and ensuring that it is properly conducted. People actually performing the system use-cases, under the supervision of Election Organizers. People responsible for monitoring the election process and ensuring that it is carried out in a legal way. People appointed by parties to monitor the election process. People neutral from participating parties, responsible for monitoring the election process and for providing reasonable assurance with regard to the integrity of it. People eligible to participate in the voting process. 15

Actors participation in e-voting: Authorization and Validation Use cases can only be performed by authorized actors ("roles") An additional validation phase is employed before committing the outcome of a use case The validation phase is implemented through the implementation of the separate use case "Validate Action" 16

Actors participation in e-voting Use Case Validate Action Use Case activation Participating Roles Election Organizer Party Representative Election Personnel Voter Judicial Officer Independent Third Party Authenticate Actor A A A A A A Validate Action N/A A A A A Modify System State A V V Manage Election Districts V A Provide Election System Parameters V A V 17

Actors participation in e-voting Use Case Validate Action Use Case activation Election Organizer Party Representative Participating Roles Election Personnel Voter Judicial Officer Independent Third Party Manage Voters V A Provide Authentication Means V A Manage Parties V A Manage Candidates V A Preview Ballots A A A Cast Vote A Tally Votes A V V V Verify Result Integrity A V V 18

(Secure) Electronic voting: (instead of) Conclusions Description of actor roles together with clear indication of what each actor is allowed to do with the system, formulate an operational framework that complements the technological security features of the system Rapidly emerging issue... Of a socio-technical nature... Contradicting views... Further experimentation is needed in the meantime, as complementary only! 19

Something like a moto... Electronic voting: Between pessimism (bureaucracy) and optimism (technology) we choose realism (democracy)! 20