发明名称 Multi-level security software architecture
摘要 A multi-level security data processing architecture includes various components configured to provide full data separation across multiple processors while limiting the number and size of high assurance components. The architecture includes a domain separator for ensuring that messages exchanged between domains that are distributed on different microprocessors are securely routed between domain members. The domain separator verifies a message label including a domain identifier provided by a domain gateway and cryptographically binds the message label to each message via cryptographic keys. This prevents misrouting messages caused by accidental or malicious corruption of message labels. Additionally, the domain separator can encrypt messages as necessary to enforce data separation on shared network buses. The domain separator is also responsible for managing the cryptographic keys used to label or encrypt messages.
申请公布号 IL214831(A) 申请公布日期 2015.06.30
申请号 IL20110214831 申请日期 2011.08.25
申请人 RAYTHEON COMPANY 发明人
分类号 G06F 主分类号 G06F
代理机构 代理人
主权项
地址