A Distributed Secure System

  • Authors:
  • J. M. Rushby;B. Randell

  • Affiliations:
  • -;-

  • Venue:
  • SP '83 Proceedings of the 1983 IEEE Symposium on Security and Privacy
  • Year:
  • 1983

Quantified Score

Hi-index 0.00

Visualization

Abstract

We describe the design of a distributed general-purposecomputing system that enforces a multilevel security policy.The system is composed of standard UNIX systems and smalltrustworthy security mechanisms linked together in such a wayas to provide a total system which, is not only demonstrablysecure, but also highly efficient and cost effective. Despite theheterogeneity of its components, the system as a whole appearsto be a single multilevel secure UNIX system, since the fact thatit is actually a distributed system is completely hidden from itsusers and their programs.This is achieved through the use ofthe "Newcastle Connection", a software subsystem that linkstogether multiple UNIX or UNIX-look-alike systems, withoutrequiring any changes to the source code of either the operatingsystem or any user programs. Construction of a prototypeimplementation is in progress.