Previous Topic: Multi Level Secure System ElementsNext Topic: Vulnerabilities


Features of CATop Secret MLS

CA Top Secret supports MLS, a security policy that prevents disclosure and declassification of data based on defined levels of sensitivity of data and levels of clearance of users to that data. MLS also provides protection mechanisms based on data ownership rules and access permissions, individual accountability, file reuse protection, and audit trails. Together, these mechanisms support segregation of data by function, by system, or by row (for databases) as part of protecting disclosure and declassification of data. CA Top Secret MLS also supports making security decisions based on security labels for UNIX files and directories and their names, TCP/IP connections, servers, and DB2 resources.

CA Top Secret provides the following MLS features:

CA Top Secret MLS does not: