{"title":"LOCK trek: navigating uncharted space","authors":"O. S. Saydjari, J. Beckman, J. R. Leaman","doi":"10.1109/SECPRI.1989.36291","DOIUrl":null,"url":null,"abstract":"The design principles of the logical coprocessing kernel (LOCK) project are considered. LOCK is an advanced development of hardware-based computer security and cryptographic service modules. Much of the design and some of the implementation specifications are complete. The formal top level specification (FTLS) also is complete and the advanced noninterference proofs are beginning. This hardware-based approach has brought the LOCK project into many uncharted areas in the design, verification, and evaluation of an integrated information security system. System integration currently appears to be the single largest programatic problem. The authors examine two important design areas: design verification and porting Unix System V to a LOCK host. The verification tools seem able to verify design only and not implementation.<<ETX>>","PeriodicalId":126792,"journal":{"name":"Proceedings. 1989 IEEE Symposium on Security and Privacy","volume":"159 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1989-05-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"38","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings. 1989 IEEE Symposium on Security and Privacy","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SECPRI.1989.36291","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 38
Abstract
The design principles of the logical coprocessing kernel (LOCK) project are considered. LOCK is an advanced development of hardware-based computer security and cryptographic service modules. Much of the design and some of the implementation specifications are complete. The formal top level specification (FTLS) also is complete and the advanced noninterference proofs are beginning. This hardware-based approach has brought the LOCK project into many uncharted areas in the design, verification, and evaluation of an integrated information security system. System integration currently appears to be the single largest programatic problem. The authors examine two important design areas: design verification and porting Unix System V to a LOCK host. The verification tools seem able to verify design only and not implementation.<>
讨论了逻辑协处理内核(LOCK)方案的设计原则。LOCK是一种先进的基于硬件开发的计算机安全和密码服务模块。大部分设计和一些实现规范已经完成。正式的顶层规范(FTLS)也已经完成,高级抗干扰证明已经开始。这种基于硬件的方法使LOCK项目在集成信息安全系统的设计、验证和评估方面进入了许多未知的领域。系统集成目前似乎是最大的编程问题。作者研究了两个重要的设计领域:设计验证和将Unix System V移植到LOCK主机上。验证工具似乎只能验证设计而不能验证实现