Great Circle Associates Firewalls
(September 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Subject: C2 certified OS that can run a firewall
From: nabadm @ odo . acdnj . itt . com (set chaos/total)
Date: Fri, 6 Sep 1996 09:40:33 -0400
To: Firewalls @ greatcircle . com

>
>Digital UNIX is a C2 certified OS. The Alta Vista Firewall Software runs on
>it.
>

As far as I know Digital UNIX is NOT C2 certified.  (Which reminds me, my NSA
catalog hasn't arrived.)  However, it was designed to be C2 compliant.  When we
went to run Digital UNIX in classified system high mode we had to sit down with
the DIS AIS representative and demonstrate to him every aspect of C2 compliance
in order to get permission to use it.  Object reuse was especially difficult to
demonstrate, since we had to show that blocks on the disk were zeroed when
deallocated.  (I believe Digital UNIX satisfies the object reuse requirement by
zeroing on deallocate.  Some OSs do zero on allocate, some can do both.)


---------------------------------------------------------------------------
		     "Crisis over back to panic mode!"
---------------------------------------------------------------------------
N.A. Bogart				nabadm @
 odo .
 acdnj .
 itt .
 com
OpenVMS & Security Systems Manager	nbogart @
 avionics .
 itt .
 com
ITT Avionics				(201) 284-5117 VOICE(MAIL)
100 Kingsland Road			(201) 284-3947 FAX
Clifton NJ 07014			(201) 730-2681 PAGER
---------------------------------------------------------------------------
-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: 4.0 Business Edition

mQCNAjHhYaQAAAEEAMOlLciHvPWZbfk53ih4NjUfLvJAMs2ABD/njhYMM99zlwf0
76PJ8ItYVD97Fmbtd8iNN61PZQ0YiwHqPRDeKx+JAKsMGgh+X+VA2S2CRL+jT+s3
dOypfX3LBs1GzB5sEKjjf4S4uadoEXkgBXHEhIuUaRcpP3veDtuPMEONq1pZAAUR
tCpOYW5jeSBBLiBCb2dhcnQgPG5ib2dhcnRAYXZpb25pY3MuaXR0LmNvbT4=
=6sdj
-----END PGP PUBLIC KEY BLOCK-----

Indexed By Date Previous: Re: C2 Myths
From: "Bryan D. Boyle" <bdboyle @ erenj . com>
Next: Re: C2 certified OS that can run a firewall
From: mdr @ vodka . sse . att . com
Indexed By Thread Previous: RE: Subject: C2 certified OS that can run a firewall
From: mcnabb @ argus . cu-online . com (Paul McNabb)
Next: Firewall-1 Logs
From: "Wojno, Jim" <jwojn @ telxon . com>

Google
 
Search Internet Search www.greatcircle.com