LOCK - A trusted computing system

July 18th 2007

The LOCK project (short for LOgical Coprocessing Kernel) developed a “trusted computing system” that implemented multilevel security. LOCK was intended to exceed the requirements for an “A1″ system as defined by the old Trusted Computing System Evaluation Criteria (a.k.a. the TCSEC or “Orange Book”). Continue Reading »

Posted under Information Security | Comments Off

Multilevel Security and Internet Servers

June 18th 2007

I wrote the following message as part of a discussion on the old Firewalls mailing list in 1996. The message was part of a discussion on the use of MLS technology to protect Internet servers from attack. The basic concepts still apply in some ways, though the threats have evolved in many other ways. Continue Reading »

Posted under Information Security | Comments Off