Information Assurance Technologies for the Global Command and Control System (GCCS) Leading Edge Services (LES)

Abstract

Information Assurance Technologies for the Global Command and Control System (GCCS) Leading Edge Services (LES) program was sponsored by DARPA's Information Systems Office. This report describes the different technology areas the program encompassed, summarized the major achievements of the program, and documents lessons learned and open issues. The technology areas were: (1) Security Architecture. The intent was to provide support for the transition of DARPA technology to operational users and on developing a system security and adversary model that could be used for architectural analysis of the system and information warfare simulations. (2) Distributed Object Security. The primary focus of the work was on CORBA related security with a goal to develop an integrated approach for enhancing the security of a CORBA system. To this end, a proxy for passing the CORBA network protocol, IIOP, through a firewall was developed and implemented on the Sidewinder firewall, and access control mechanisms were implemented to provide security checks on invocation of CORBA methods. (3) Single Sign-on Identification and Authentication. The goal was to develop a single sign-on authentication solution that would eliminate the need to multiple logins when using different applications. (4) Role Based Access Control (RBAC). This technology area used to RBAC model to provide a unified high-level view of the system for administering a system's security policy that would hide the details of the heterogeneous low-level policy and enforcement mechanisms from the security administrator.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Sep 01, 2001
Accession Number
ADA402371

Entities

People

  • Richard O'brien

Tags

Communities of Interest

  • Cyber

DTIC Thesaurus Topics

  • Air Force Research Laboratories
  • Application Protocols
  • Authentication
  • Command And Control
  • Command And Control Systems
  • Computer Access Control
  • Computer Network Security
  • Computer Networks
  • Computing System Architectures
  • Control Systems
  • Department Of Defense
  • Information Assurance
  • Leading Edges
  • Lessons Learned
  • Network Protocols
  • Operating Systems
  • Web Browsers

Fields of Study

  • Computer science

Readers

  • Cybersecurity.
  • Database Systems and Applications
  • Enterprise Information Systems Architecture and Joint Command Capability Interoperability Support.

Technology Areas

  • Fully Networked C3
  • Fully Networked C3 - Command and Control