[Search for users] [Overall Top Noters] [List of all Conferences] [Download this site]

Conference smurf::dec_mls_plus

Title:dec_mls_plus
Moderator:SMURF::BAT
Created:Mon Nov 29 1993
Last Modified:Thu Jun 05 1997
Last Successful Update:Fri Jun 06 1997
Number of topics:534
Total number of notes:2544

49.0. "Help required to build encodings file" by BIGUN::TANNER (stepping lightly on the earth) Tue Jul 05 1994 08:29

T.RTitleUserPersonal
Name
DateLines
49.1SMURF::JJGJeff GlassTue Jul 05 1994 17:5722
49.2LARVAE::BEALESecurity is a Thumb and a Blanket...Wed Jul 06 1994 07:4321
49.3results....BIGUN::TANNERstepping lightly on the earthWed Jul 06 1994 20:3841
49.4LARVAE::BEALESecurity is a Thumb and a Blanket...Fri Jul 08 1994 08:469
49.5SMURF::JJGJeff GlassFri Jul 08 1994 17:3518
49.6ummm....BIGUN::TANNERstepping lightly on the earthSun Jul 10 1994 20:282
49.7martin marietta still having ER problemsMKOTS3::THOMSONSegui la tua beatitudineFri Oct 28 1994 15:3033
49.8for cheating instructionsSMURF::BATSegui la tua beatitudineTue May 20 1997 15:292
    See note 508
    
49.9combination category Encodings.sampleSMURF::BATSegui la tua beatitudineTue May 20 1997 15:34169
* 
* 	This is a variant of the default Encodings file (Encodings.sample)
*	which has the combo category "SYSHI" 
* 
* 
VERSION= SIMPLE DEMO VERSION

CLASSIFICATIONS:

*
* Comments can be placed in the encodings file any place a keyword can start.  
* Comments begin with a * and continue to the end of the line.
*

name= UNCLASSIFIED;	sname= U;	value=1;
name= CONFIDENTIAL;	sname= C;	value= 4;       initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127 
name= SECRET;		sname= S;	value= 5;     	initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127
name= TOP SECRET;	sname= TS;	value= 6;       initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127
INFORMATION LABELS:


WORDS:

name= REL;						prefix;
name= SYSHI;		minclass= TS;	compartments= 0-6;
name= LIMDIS;		sname= LD;	suffix;
name= ORCON;		sname= OC;	prefix;
name= eyes only;	sname= eo;	suffix;


name= CC;					minclass= TS;	compartments= 6;	markings= 7;
name= SB; 					minclass= TS;	compartments= 1 3;	markings= 7;
name= bravo1;	sname= b1;	minclass= TS;	compartments= 1;	markings= 3-4 7 12;
name= bravo2;	sname= b2;	minclass= S;	compartments= 1;	markings= 3 7 12;
name= bravo3;	sname= b3;	minclass= S;	compartments= 1;	markings= 5 7;
name= bravo4;	sname= b4;	minclass= S;
							maxclass= S;	compartments= 1;	markings= 3 7  ~12;
name= B;					minclass=  C;	compartments= 1;	markings= 7;
name= SA;					minclass= TS;	compartments= 0 2;	markings= 7;
name= alpha1;	sname= a1;	minclass= TS;	compartments= 0;	markings= 0-2 7;
name= alpha2;	sname= a2;	minclass=  S;	compartments= 0;	markings= 0-1 7;
name= alpha3;	sname= a3;	minclass=  S;	compartments= 0; 	markings= 0 7;
name= A;					minclass=  C;	compartments= 0;	markings= 7;
name= project x; sname= px;	minclass=  C;						markings= 14;
	suffix= LIMDIS;		access related;
		flags= 3;
name= project y; sname= py;	minclass=  C;						markings= 6;
	suffix=LIMDIS;		access related;
name= org x;	sname= ox;	minclass=  C;						markings= 9;
	prefix= ORCON;		access related;
name= org y;	sname= oy;	minclass=  C;						markings= 15;
	prefix= ORCON;		access related;
name= D/E;					minclass=  C;						markings= 16;
						access related;
name= all eyes;			access related;							markings= 8 10;
name= p1;														markings= 8;
	suffix= eyes only;	access related;
name= p2;														markings= 10;
	suffix= eyes only;	access related;
name= WNINTEL;	sname= WN;	minclass=  C;						markings= 7;
						access related;
name= WARNING;	 			minclass=  C;						markings= 7;
name= NOFORN;	sname= NF;	minclass=  C;	compartments= 4-5;	markings= 13;
				access related;
name= CNTRY1;	sname= c1;	ominclass=  C;	compartments= ~4;	markings= ~13;
	prefix= REL;
name= CNTRY2;	sname= C2;	ominclass= C;	compartments= ~5;	markings= ~13;
	prefix= REL;

REQUIRED COMBINATIONS:

COMBINATION CONSTRAINTS:

SENSITIVITY LABELS:

WORDS:

name= REL;		PREFIX;
name= SYSHI;		minclass= TS;	compartments= 0-6;
name= A;		minclass=  C;	compartments= 0;
name= B;		minclass=  C;	compartments= 1;
name= SA;		minclass= TS;	compartments= 2;
name= SB;		minclass= TS;	compartments= 3-5;
name= CC;		minclass= TS;	compartments= 6;
name= CNTRY1;	sname= c1;	ominclass= C;	compartments= ~3 ~4;
	prefix= REL;
name= CNTRY2;	sname= c2;	ominclass=  C;	compartments= ~3 ~5;
	prefix= REL;

REQUIRED COMBINATIONS:

SB B
SA A

COMBINATION CONSTRAINTS:

CLEARANCES:

WORDS:

name= NATIONALITY;	sname= N;	prefix;
name= SYSHI;		minclass= TS;	compartments= 0-6;
name= A;		minclass=  C;	compartments= 0;
name= B;		minclass=  C;	compartments= 1;
name= SA;		minclass= TS;	compartments= 2;
name= SB;		minclass= TS;	compartments= 3-5;
name= CC;		minclass= TS;	compartments= 6;
name= CNTRY1;	sname= c1;	ominclass=  C;	compartments= ~3 ~4;
	prefix= NATIONALITY;
name= CNTRY2;	sname= c2;	ominclass=  C;	compartments= ~3 ~5;
	prefix= NATIONALITY;

REQUIRED COMBINATIONS:

SB B
SA A

COMBINATION CONSTRAINTS:

NATIONALITY  c1 ! NATIONALITY  c2

CHANNELS:

WORDS:

name= CHANNELS JOINTLY;	suffix;
name= CHANNELS ONLY;	suffix;
name= HANDLE VIA;	prefix;
name= (CH A);	prefix= HANDLE VIA;	compartments= 0 ~1 ~6;
		suffix=  CHANNELS ONLY;
name= (CH B);	prefix= HANDLE VIA;	compartments= ~0 1 ~6;
		suffix= CHANNELS ONLY;
name= (CH C);	prefix= HANDLE VIA;	compartments= ~0 ~1 6;
		suffix=  CHANNELS ONLY;
name= (CH C);	prefix=HANDLE VIA;	compartments= 6;
		suffix= CHANNELS JOINTLY;
name= (CH B);	prefix=HANDLE VIA;	compartments= 1;
		suffix= CHANNELS JOINTLY;
name= (CH A);	prefix=HANDLE VIA;	compartments= 0;
		suffix=CHANNELS JOINTLY;

PRINTER BANNERS:

WORDS:

name= ORCON;	prefix;

name= (FULL SB NAME);		compartments= 3
name= (FULL SA NAME); 		compartments= 2
name= org x;	prefix=ORCON;		markings= 9;
name= org y;	prefix=ORCON;		markings= 15;

ACCREDITATION RANGE:

classification= u;	all compartment combinations valid;

classification= c;	all compartment combinations valid;

classification= s;	all compartment combinations valid;

classification= ts; 	all compartment combinations valid;

minimum clearance= u;
minimum sensitivity label= u;
minimum protect as classification= u;
    
49.10Encodings.testsuite -- combo and restrictionsSMURF::BATSegui la tua beatitudineTue May 20 1997 15:34190
VERSION= DISTRIBUTED DEMO VERSION
*
*
* Encodings.testsuite
*	This is a variant of the MITRE Encodings file that
*	sets the minsl to something more useful: U.
*	But still preserves interesting combination restraints.
*	AND has the enormously useful COMBO category SYSHI
*

CLASSIFICATIONS:

*
* Comments can be placed in the encodings file any place a keyword can start.  
* Comments begin with a * and continue to the end of the line.
*

name= UNCLASSIFIED;	sname= U;	value=1;
name= CONFIDENTIAL;	sname= C;	value= 4;       initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127 
name= SECRET;		sname= S;	value= 5;     	initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127
name= TOP SECRET;	sname= TS;	value= 6;       initial compartments= 4-5 100-127;
			                      				initial markings= 11 12 17 100-127
INFORMATION LABELS:


WORDS:

name= REL;						prefix;
name= LIMDIS;		sname= LD;	suffix;
name= ORCON;		sname= OC;	prefix;
name= eyes only;	sname= eo;	suffix;


name= SYSHI;				minclass= TS;	compartments= 0-6; 	markings= 0-16;
name= CC;					minclass= TS;	compartments= 6;	markings= 7;
name= SB; 					minclass= TS;	compartments= 1 3;	markings= 7;
name= bravo1;	sname= b1;	minclass= TS;	compartments= 1;	markings= 3-4 7 12;
name= bravo2;	sname= b2;	minclass= S;	compartments= 1;	markings= 3 7 12;
name= bravo3;	sname= b3;	minclass= S;	compartments= 1;	markings= 5 7;
name= bravo4;	sname= b4;	minclass= S;
							maxclass= S;	compartments= 1;	markings= 3 7  ~12;
name= B;					minclass=  C;	compartments= 1;	markings= 7;
name= SA;					minclass= TS;	compartments= 0 2;	markings= 7;
name= alpha1;	sname= a1;	minclass= TS;	compartments= 0;	markings= 0-2 7;
name= alpha2;	sname= a2;	minclass=  S;	compartments= 0;	markings= 0-1 7;
name= alpha3;	sname= a3;	minclass=  S;	compartments= 0; 	markings= 0 7;
name= A;					minclass=  C;	compartments= 0;	markings= 7;
name= project x; sname= px;	minclass=  C;						markings= 14;
	suffix= LIMDIS;		access related;
		flags= 3;
name= project y; sname= py;	minclass=  C;						markings= 6;
	suffix=LIMDIS;		access related;
name= charlie;	sname= ch;	ominclass= c;
							minclass=  s;
							maxclass=S;							markings= ~17;
name= org x;	sname= ox;	minclass=  C;						markings= 9;
	prefix= ORCON;		access related;
name= org y;	sname= oy;	minclass=  C;						markings= 15;
	prefix= ORCON;		access related;
name= D/E;					minclass=  C;						markings= 16;
						access related;
name= all eyes;			access related;							markings= 8 10;
name= p1;														markings= 8;
	suffix= eyes only;	access related;
name= p2;														markings= 10;
	suffix= eyes only;	access related;
name= WNINTEL;	sname= WN;	minclass=  C;						markings= 7;
						access related;
name= WARNING;	 			minclass=  C;						markings= 7;
name= NOFORN;	sname= NF;	minclass=  C;	compartments= 4-5;	markings= 11 13;
				access related;
name= CNTRY1;	sname= c1;	ominclass=  C;	compartments= ~4;	markings= ~13;
	prefix= REL;
name= CNTRY2;	sname= C2;	ominclass= C;	compartments= ~5;	markings= ~13;
	prefix= REL;
name= CNTRY3;	sname= c3;	ominclass=  C; 						markings= ~11 ~13;
	prefix= REL;

REQUIRED COMBINATIONS:

SB NF
charlie alpha2

COMBINATION CONSTRAINTS:

bravo4 &
charlie & alpha2
REL CNTRY3 ! REL CNTRY1 |  \
REL CNTRY2

SENSITIVITY LABELS:

WORDS:

name= REL;		PREFIX;
name= SYSHI;		minclass= TS;	compartments= 0-6;
name= A;		minclass=  C;	compartments= 0;
name= B;		minclass=  C;	compartments= 1;
name= SA;		minclass= TS;	compartments= 2;
name= SB;		minclass= TS;	compartments= 3-5;
name= CC;		minclass= TS;	compartments= 6;
name= CNTRY1;	sname= c1;	ominclass= C;	compartments= ~3 ~4;
	prefix= REL;
name= CNTRY2;	sname= c2;	ominclass=  C;	compartments= ~3 ~5;
	prefix= REL;

REQUIRED COMBINATIONS:

SB B
SA A

COMBINATION CONSTRAINTS:

CLEARANCES:

WORDS:

name= NATIONALITY;	sname= N;	prefix;
name= SYSHI;		minclass= TS;	compartments= 0-6;
name= A;		minclass=  C;	compartments= 0;
name= B;		minclass=  C;	compartments= 1;
name= SA;		minclass= TS;	compartments= 2;
name= SB;		minclass= TS;	compartments= 3-5;
name= CC;		minclass= TS;	compartments= 6;
name= CNTRY1;	sname= c1;	ominclass=  C;	compartments= ~3 ~4;
	prefix= NATIONALITY;
name= CNTRY2;	sname= c2;	ominclass=  C;	compartments= ~3 ~5;
	prefix= NATIONALITY;

REQUIRED COMBINATIONS:

SB B
SA A

COMBINATION CONSTRAINTS:

NATIONALITY  c1 ! NATIONALITY  c2

CHANNELS:

WORDS:

name= CHANNELS JOINTLY;	suffix;
name= CHANNELS ONLY;	suffix;
name= HANDLE VIA;	prefix;
name= (CH A);	prefix= HANDLE VIA;	compartments= 0 ~1 ~6;
		suffix=  CHANNELS ONLY;
name= (CH B);	prefix= HANDLE VIA;	compartments= ~0 1 ~6;
		suffix= CHANNELS ONLY;
name= (CH C);	prefix= HANDLE VIA;	compartments= ~0 ~1 6;
		suffix=  CHANNELS ONLY;
name= (CH C);	prefix=HANDLE VIA;	compartments= 6;
		suffix= CHANNELS JOINTLY;
name= (CH B);	prefix=HANDLE VIA;	compartments= 1;
		suffix= CHANNELS JOINTLY;
name= (CH A);	prefix=HANDLE VIA;	compartments= 0;
		suffix=CHANNELS JOINTLY;

PRINTER BANNERS:

WORDS:

name= ORCON;	prefix;

name= (FULL SB NAME);		compartments= 3
name= (FULL SA NAME); 		compartments= 2
name= org x;	prefix=ORCON;		markings= 9;
name= org y;	prefix=ORCON;		markings= 15;

ACCREDITATION RANGE:

classification= u;	all compartment combinations valid;
classification= c;	all compartment combinations valid except:

c
c a
c b

classification= s;	only valid compartment combinations:

s a b

classification= ts; 	all compartment combinations valid;

minimum clearance= U;
minimum sensitivity label= U;
minimum protect as classification= U;
    
49.11yes, you can slam them into place, but note:SMURF::BATSegui la tua beatitudineTue May 20 1997 15:3516
To: [email protected]
Cc: [email protected]
Subject: combo syshi category
Date: Tue, 20 May 97 13:39:36 -0400
From: "Barbara A. Thomson (ZKO3-2/X46 1-2955)" <[email protected]>
X-Mts: smtp

	
	If you use it, note that all the Encodings files on
	systems that wish to talk to each other should have
	that category definition -- else users with a clearance
	of "TS SYSHI" (that specific string) will not be able
	to log into a system whose system high label is 
	"TS A B SA SB CC" -- because trusted networking matches
	the External Representations (ER) -- not the bit values (IR)