A Framework for Evaluating Computer Architectures to Support Systems with Security Requirements, with Applications.

Abstract : This report develops a set of criteria for evaluating computer architectures that are to support systems with security requirements. Central to these criteria is the concept of a domain, here interpreted as a set of information and authorizations for the manipulation of that information in a computer system. Architectural requirements are grouped in three categories: logical structure, the processing of logical structures, and physical structure. Appendixes describe the Navy's AN/UYK-43 and AN/UYK-44, DEC VAX 11/780m IBM 370-XA, Intel 80286, and Honeywell SCOMP architectures within this framework. These descriptions are intended to inform readers about the characteristics of these particular architectures and to provide readers with examples so that they many evaluate other systems relevant to their particular needs. Keywords: Digital computer security requirements; Protection' Instruction set architecture; Hardware evaluation; Security requirements.