Security Basics mailing list archives
Re: Re: One computer two different networks
From: davidthomastuck () aol com
Date: 12 Oct 2006 09:37:36 -0000
The Datagate concept is very simple (no "snake oil" just basic information security). It's aim is to protect the confidentiality of data held on a system. Importing data from a system with a low classification(e.g. RESTRICTED) to one that is more highly classified (e.g. SECRET)is allowed. Exporting data from high to low is only permitted where it can be GUARANTEED that the data are classified no highre than the low system (e.g. export of data from SECRET system to RESTRICTED system is permitted ONLY if there is some means of ensuring the data are no higher than RESTRICTED) this is VERY difficult to achieve with any realistic degree of confidence unless every data element is marked with its classification. The Tenix Datagate uses 2 servers, a low server connected to the lower classified system and a high server connected to the more highly classified system. The 2 servers are connected by an opto-isolator that permits information to pass from the low server to the high but not from high to low. This allows the high level system to import data from the low level system but totally prevents any data export. Unfortunately, since data can flow in only one direction is useless as a port for browsing the internet. For more data suggest google on "Tenix" or "Tenix DataGate" Incidentally, I don't work for Tenix but I do work in information security. --------------------------------------------------------------------------- This list is sponsored by: Norwich University EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life. http://www.msia.norwich.edu/secfocus ---------------------------------------------------------------------------
Current thread:
- Re: One computer two different networks, (continued)
- Re: One computer two different networks chris (Oct 10)
- Re: One computer two different networks dtodosichuk (Oct 10)
- RE: One computer two different networks Chris Poulter (Oct 11)
- RE: One computer two different networks Hagen, Eric (Oct 11)
- RE: One computer two different networks mn19522 (Oct 11)
- RE: One computer two different networks evb (Oct 11)
- Re: Re: One computer two different networks davidthomastuck (Oct 11)
- Re: One computer two different networks Steve (Oct 11)
- RE: One computer two different networks Hagen, Eric (Oct 11)
- Re: One computer two different networks krymson (Oct 11)
- Re: Re: One computer two different networks davidthomastuck (Oct 13)
- Re: Re: One computer two different networks anonymous (Oct 13)
- RE: One computer two different networks Hagen, Eric (Oct 13)
- Re: One computer two different networks Ansgar -59cobalt- Wiechers (Oct 15)
- RE: One computer two different networks Laundrup, Jens (Oct 13)
- Re: RE: One computer two different networks nigel_barnes (Oct 15)
- RE: One computer two different networks Hagen, Eric (Oct 16)
- Re: One computer two different networks Ansgar -59cobalt- Wiechers (Oct 16)