首页> 美国政府科技报告 >Class C2 Security Evaluation Procedure for Local Area Networks
【24h】

Class C2 Security Evaluation Procedure for Local Area Networks

机译:局域网C2类安全评估程序

获取原文

摘要

The National Computer Security Center's (NCSC) 'Computer Security Requirements,' CSC-STD-003-85 (Yellow Book) specifies 'Class C2' as the required protection level for computer systems running at a 'system high' level of Top Secret. Methodology exists to determine if a computer system provides class C2 protection, however, there are no general procedures available to determine if a Local Area Network (LAN) provides class C2 protection. This thesis effort reviewed the criteria necessary for a C2 rating and developed a checklist based on the three types of security features required (discretionary access control, identification/authentication and audit capabilities) in a C2 system. HQ USAF/SCTT and the Air Force Cryptologic Support Center (AFCSC) reviewed the proposed checklist to identify deficiencies and inconsistencies. Their comments were addressed and the checklist modified as required. The checklist was then applied to a LAN used in the US Air Force to verify the capabilities of the checklist and determine if the LAN provided class C2 protection. Problems in applying the checklist were identified and changes were incorporated into the checklist. The checklist can now be used to determine if a LAN provides class C2 security. (FR)

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号