[comp.os.research] O.S. Security

darrell@sdcsvax.UUCP (05/27/87)

    It is difficult, if not impossible, to develop secure operating systems
for conventional machines.  We are currently developing a machine
architecture and operating system that are provably secure according
multilevel security policies models.   The Bell and La Padula Model is an
example multilevel security policy model.

    Multilevel Secure systems enforce policies that characterize information
flow across mandatory sensitivity levels.  "Secure" systems typically have a
few low-bandwidth covert channels.  We have proposed an achitecture and an
operating system design that guarantee a multilevel security policy and an
upper limit on the bandwidth of any covert channels.  An intended application
of this system is a Secure Network Front End that enforces security in a
local area network.

     For a description of this system write to:

     Georgia Institute of Technology
     School of Information and Computer Science
     Karen Hutchenson 
     Technical Report Librarian
     Atlanta, GA 30332

The title of the report is:

     A Multilevel Secure Architecture
     Technical Report: GIT-ICS-87/21
     Authors: Glenn Benson, Umakishore Ramachandran, Bill Appelbe