Trusted Operating Systems
All TCS software products require a trusted operating system as a primary mechanism for security policy enforcement. Trusted operating systems extend the capabilities found in standard operating systems by providing additional safeguards against internal and external threats. The employment of Discretionary Access Controls (DAC), Mandatory Access Controls (MAC), Multi-Level Security (MLS), and Type Enforcement (TE) offers powerful and customizable levels of protection for users and data. Additional security policy enforcement mechanisms are required to meet the “trusted” designation and include protection profiles that must be engineered in the operating system. These protection profiles include Labeled Security Protection Profile (LSPP), Controlled Access Protection Profile (CAPP), and Role Based Access Control (RBAC).
|