Title :
Retrofitting and developing applications for a trusted computing base
Author :
Gambel, D. ; Walter, S.
Author_Institution :
Grumman Data Syst., McLean, VA, USA
Abstract :
The authors discuss the concept of a software analysis procedure to aid in the conversion of existing applications and in the development of applications for use with a trusted computing base (TCB). In this procedure, the system processes are broken down into small entities that permit detailed analysis to ensure that the trusted processes will be at the absolute minimum. The use of this analysis within two separate projects, one involving conversion of existing software and one involving development of software, is discussed to demonstrate the process. It is concluded that the processes identified and needing to be trusted were those which violated the security model; all other security-related processes are supplied by the TCB. It is further concluded that performance problems caused by TCB mediation brought about by security requirements can be somewhat alleviated by implementing larger object-level entities in a layered fashion
Keywords :
aerospace computing; security of data; software reusability; entities; existing applications; object-level entities; retrofitting; security model; security requirements; software analysis procedure; trusted computing base; trusted processes; Application software; Books; Computer network management; Computer security; Data systems; Disaster management; Investments; Multilevel systems; Protection; Software design;
Conference_Titel :
Aerospace Computer Security Applications Conference, 1988., Fourth
Conference_Location :
Orlando, FL
Print_ISBN :
0-8186-0895-1
DOI :
10.1109/ACSAC.1988.113443