A Multi-Layered Approach to Security in High Assurance Systems

HICSS(2004)

引用 64|浏览67
暂无评分
摘要
Past efforts at designing and implementing ultra high assurance systems for government security and safety have centered on the concept of a monolithic security kernel responsible for a system-wide security policy. This approach leads to inflexible, overly complex operating systems that are too large to evaluate at the highest assurance levels (e.g., Common Criteria EAL 5 and above). We describe a new multi-layered approach to the design and verification of embedded trustworthy systems that is currently being used in the implementation of real time, embedded applications. The framework supports multiple levels of safety and multiple levels of security, based on the principle of creating separate layers of responsibility and control, with each layer responsible for enforcing its own security policy.
更多
查看译文
关键词
highest assurance level,multi-layered approach,high assurance systems,ultra high assurance system,embedded trustworthy system,own security policy,monolithic security kernel,new multi-layered approach,system-wide security policy,multiple level,government security,embedded application,operating system,security policy,formal verification
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要