• DocumentCode
    2563114
  • Title

    Compartmented Model Workstation: Results Through Prototyping

  • Author

    Cummings, P.T ; Fullan, D.A. ; Goldstien, M.J ; Gosse, M.J. ; Picciotto, J. ; Woodward, J.P.L ; Wynn, J.

  • fYear
    1987
  • fDate
    27-29 April 1987
  • Firstpage
    2
  • Lastpage
    2
  • Abstract
    The Defense Intelligence Agency (DIA) recognized that commercially available workstations could significantly enhance the capabilities of today´s Intelligence Data Handling Systems (IDHS) if they could be integrated with the IDHS systems in a secure manner. The Compartmented Mode Workstation (CMW) project was started at the request of the DIA to further the state-of-the-art of computer security in general and workstation security in particular. The prototype effort had two major purposes. The first purpose was to demonstrate that operationally useful implementations of each requirement could be designed and developed. The second, more general, purpose was to gain insight into what measures could be taken to augment commercially available workstations with meaningful security. Therefore, as the Security Requirements for System High and Compartmented Mode Workstations [CMWREQS] were stated, a development team attempted to implement thereon the CMW prototype. Viable approaches were found for all requirements thereby verifying the premise that a workstation and its associated operating system could be modified such that off-the-shelf software (distributed in binary form) could execute with adequate security .This paper describes compartmented mode operation, how the prototype satisfied each requirement, and the level of effort involved in the prototype implementation.
  • Keywords
    Access control; Labeling; Operating systems; Process control; Sensitivity; Workstations;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security and Privacy, 1987 IEEE Symposium on
  • Conference_Location
    Oakland, CA, USA
  • ISSN
    1540-7993
  • Print_ISBN
    0-8186-0771-8
  • Type

    conf

  • DOI
    10.1109/SP.1987.10010
  • Filename
    6234897