Schneier on Security
A blog covering security and security technology.
« Poodle Identity Theft |
| See-Through Backpacks Required at School »
July 27, 2007
Security Analysis of a 13th Century Venetian Election Protocol
I love stuff like this: "Electing the Doge of Venice: Analysis of a 13th Century Protocol," by Miranda Mowbray and Dieter Gollmann.
This paper discusses the protocol used for electing the Doge of Venice between 1268 and the end of the Republic in 1797. We will show that it has some useful properties that in addition to being interesting in themselves, also suggest that its fundamental design principle is worth investigating for application to leader election protocols in computer science. For example it gives some opportunities to minorities while ensuring that more popular candidates are more likely to win, and offers some resistance to corruption of voters. The most obvious feature of this protocol is that it is complicated and would have taken a long time to carry out. We will advance a hypothesis as to why it is so complicated, and describe a simplified protocol with very similar features.
Venice was very clever about working to avoid the factionalism that tore apart a lot of its Italian rivals, while making the various factions feel represented.
Posted on July 27, 2007 at 12:08 PM
• 11 Comments
To receive these entries once a month by e-mail, sign up for the Crypto-Gram Newsletter.
"On the other hand, according to Maranini (, p.274), older candidates were preferred by voters in order to mitigate the risk of elections for life. Indeed, the Doges elected under this protocol did not tend to last long."
Sounds like your average papal election. Now my interest is piqued; how much of "elect the older guy" is based upon this factor, and how much is based upon reverse ageism - elect the older guy, since he has more experience?
"its general principle—that of repeatedly
reducing an electoral college by lot and then increasing it by election" sounds more like an S-box design than an electoral system!
The protocol "would have taken a long time to carry out." Well, it was used for over 500 years, that gives a lot of time!
So when the US electoral system is twice its present age it will still be almost a hundred years from enduring as long as the Venetian protocol - talk about standing the test of time...
You know, something like this could've come in handy for deciding who should have power over the Internet Domain Name Service, back in the '90s.
Nobody trusted one another, and people had to worry about a ginned-up electorate because of the money involved. It's still a hopeless situation, but now it's probably too late to do something like that, sigh, because money has captured it via Congress.
Schneier.com is a personal website. Opinions expressed are not necessarily those of Co3 Systems, Inc.