Author :
Nguyen, Thuy D. ; Levin, Timothy E. ; Irvine, Cynthia E.
Author_Institution :
Dept. of Comput. Sci., Naval Postgraduate Sch., Monterey, CA, USA
Abstract :
The technical vision of the emerging net-centric global information grid (GIG) encompasses support for high assurance authentication and multilevel security (MLS) as well as flexible, dynamic security policies. The GIG is intended to address the inefficient exchange of information in current military and intelligence operations that utilize a variety of specialized (so-called "stove-piped") systems. In this context, secure information access problems are exacerbated by the need to share information from networks at different classifications (e.g., unclassified, secret, and top secret) and within multinational coalitions in episodic, ad hoc situations. These challenges provide the impetus for the creation of the Monterey security architecture (MYSEA) testbed. The purpose of this testbed is to support research in high assurance multilevel security (MLS) and dynamic security, two areas that are critical to the realization of the GIG\´s assured information sharing vision. Our experience to date regarding the construction of a test facility for high assurance MLS components and other emerging IA technologies associated with the GIG is summarized here. We have used the GIG as an exemplary framework, but any extended, rapidly evolving enterprise (e.g., government, or commercial) with information assets having a range of value and criticality as well as a range of users with different authorizations will have similar requirements.
Keywords :
authorisation; electronic data interchange; information retrieval; message authentication; military computing; MYSEA testbed; Monterey security architecture; artificial intelligence; assurance authentication; authorization; flexible dynamic security policy; information access security; information exchange; information sharing; intelligence operations; military operations; multilevel security; net-centric global information grid; stove-piped systems; top secret information; unclassified information; Authentication; Communication system security; Data security; Environmental management; Information security; Multilevel systems; System testing; Technology management; Web server; Workstations;
Conference_Titel :
Information Assurance Workshop, 2005. IAW '05. Proceedings from the Sixth Annual IEEE SMC
Print_ISBN :
0-7803-9290-6
DOI :
10.1109/IAW.2005.1495990