DESIGN AND ASSURANCE STRATEGY FOR THE NRL PUMP

Citation
Mh. Kang et al., DESIGN AND ASSURANCE STRATEGY FOR THE NRL PUMP, Computer, 31(4), 1998, pp. 56
Citations number
10
Categorie Soggetti
Computer Science Software Graphycs Programming","Computer Science Hardware & Architecture","Computer Science Hardware & Architecture","Computer Science Software Graphycs Programming
Journal title
ISSN journal
00189162
Volume
31
Issue
4
Year of publication
1998
Database
ISI
SICI code
0018-9162(1998)31:4<56:DAASFT>2.0.ZU;2-#
Abstract
Such systems suffer a host of disadvantages: They cost too much, lack user-friendly features and development environments, take too much tim e to evaluate and certify, and do not scale well for secure distribute d computing. This lack of satisfactory security solutions is disturbin g in light of the trend toward open and distributed computing, which i ncreases a system's vulnerability to attack. The authors propose basin g security solutions instead on a multiple single-level security archi tecture, which uses commercial (nonsecure) products for general-purpos e computing and special-purpose high-assurance devices to separate dat a at different security levels. A multiple single-level architecture i s a viable and practical solution to distributed multilevel secure com puting. The keystone of this architecture is a trusted device that ''p umps'' data from a low security level to a higher one. The authors des cribe the software design and assurance argument strategy for this dev ice, the Network NRL Pump, which can be used in any multilevel secure distributed architecture.