Invention Grant
- Patent Title: Multi-level security software architecture
- Patent Title (中): 多级安全软件架构
-
Application No.: US12879800Application Date: 2010-09-10
-
Publication No.: US08478997B2Publication Date: 2013-07-02
- Inventor: Douglas Edward Lapp , Thomas Robert Woodall
- Applicant: Douglas Edward Lapp , Thomas Robert Woodall
- Applicant Address: US MA Waltham
- Assignee: Raytheon Company
- Current Assignee: Raytheon Company
- Current Assignee Address: US MA Waltham
- Agency: Christie, Parker & Hale, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A multi-level security software architecture includes various components configured to provide full data separation across multiple processors while limiting the number and size of high assurance components. The architecture includes a domain separator for ensuring that messages exchanged between domains that are distributed on different microprocessors are securely routed between domain members. The domain separator verifies a message label including a domain identifier provided by a domain gateway and cryptographically binds the message label to each message via cryptographic keys. This prevents misrouting messages caused by accidental or malicious corruption of message labels. Additionally, the domain separator can encrypt messages as necessary to enforce data separation on shared network buses. The domain separator is also responsible for managing the cryptographic keys used to label or encrypt messages.
Public/Granted literature
- US20120066509A1 MULTI-LEVEL SECURITY SOFTWARE ARCHITECTURE Public/Granted day:2012-03-15
Information query