Title :
Building higher resolution synthetic clocks for signaling in covert timing channels
Author :
Janeri, John V A ; Darby, Daylan B. ; Schnackenberg, Daniel D.
Author_Institution :
Mitre Corp., Bedford, MA, USA
Abstract :
We report on our study of a timing channel countermeasure within the context of the National Computer Security Center´s evaluation of the Boeing multilevel secure local area network (MLS LAN) secure network server (SNS). The countermeasure restricts the throughput of internal timing channels by explicitly limiting the time reference clock granularity that is made available to untrusted processes running on the SNS. We describe details of an internal covert timing channel implementation experiment, which was used to informally validate certain assumptions and results in the formal mathematical covert channel analysis. More specifically, we describe a method used for synthetically generating a fine-grained signaling clock to achieve timing channel throughput that approaches the capacity derived in Boeing´s worst-case analysis of timing channel capacities
Keywords :
local area networks; security of data; Boeing multilevel secure local area network; covert timing channels; fine-grained signaling clock; higher resolution synthetic clocks; internal timing channels; secure network server; time reference clock granularity; timing channel capacities; timing channel countermeasure; timing channel throughput; worst-case analysis; Clocks; Computer security; Local area networks; Multilevel systems; Network servers; Signal analysis; Signal generators; Signal resolution; Throughput; Timing;
Conference_Titel :
Computer Security Foundations Workshop, 1995. Proceedings., Eighth IEEE
Conference_Location :
County Kerry
Print_ISBN :
0-8186-7033-9
DOI :
10.1109/CSFW.1995.518555