Dealing with the dynamics of security: Flexibility with utility in an MLS LAN

Within the US Department of Defense, developers have been designing and implementing a prototype multilevel secure local area network (MLS LAN). Researchers at MITRE have been cooperating in this development by doing the security modeling. The MLS LAN has special dynamic features, such as the ability to add new security levels during normal operations and to modify label translation schemata, which distinguish it from other secure LANs. These features enhance the functionality of the LAN without compromising its security. The principal features of the MLS LAN are highlighted. Some of the design, implementation, and modeling issues are discussed.<<ETX>>