首页> 外文会议> >Multiple independent levels of safety and security: high assurance architecture for MSLS/MLS
【24h】

Multiple independent levels of safety and security: high assurance architecture for MSLS/MLS

机译:多个独立级别的安全性:MSLS / MLS的高保证体系结构

获取原文

摘要

With the advent of the global information grid and the move towards service oriented architectures, the need for systems to process and share information at a wide range of classification levels has become paramount. The multiple independent levels of security/safety (MILS) architecture greatly reduce the amount of privileged security enforcing code while simultaneously making that code more effective. By providing extremely robust data isolation and control of information flow, MILS enables security functions to be layered among a kernel, middleware, and applications. The reduced amount of security critical code makes it more practical to mathematically prove that security policy enforcement is NEAT, an acronym for non-bypassable, evaluatable, always invoked, and tamper-proof. A key additional benefit of MLS is that, for the first time, application developers can implement their own security policy enforcement and be guaranteed their own protections are also NEAT without invalidating the kernel 's or middleware's prior certifications.
机译:随着全球信息网格的出现以及向面向服务的体系结构的迁移,对系统进行处理以在广泛的分类级别上共享信息的需求变得尤为重要。多个独立级别的安全性(MILS)体系结构大大减少了特权安全实施代码的数量,同时使该代码更有效。通过提供极其强大的数据隔离和信息流控制,MILS使安全功能可以在内核,中间件和应用程序之间分层。减少的安全关键代码数量使在数学上证明安全策略实施是NEAT更加实用,NEAT是不可绕过,可评估,始终被调用和防篡改的首字母缩写。 MLS的另一个关键好处是,应用程序开发人员首次可以实施自己的安全策略实施,并确保自己的保护也是NEAT,而不会使内核或中间件的先前认证无效。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号