Skip to content

Biting the hand that feeds IT

The Register ®

Security:


Related Whitepapers

[Print][Mobile][Alerts]

UK.gov pioneers secure Linux to contain breaches

Return of the Mac

Published Thursday 27th April 2006 12:28 GMT

Infosec IBM is working with the Cabinet Office to demonstrate one of the first mainstream Mandatory Access Control (MAC) environments. The MAC approach is designed to contain the impact of security breaches, a feature that will give government departments greater confidence in extending government services to the public over the net. The design for the system, which IBM is putting together with its partners Tresys Technology and Belmin Group, is based upon Security Enhanced Linux (SELinux) and IBM WebSphere.

Instead of relying on traditional gateway security technologies such as firewalls, Mandatory Access Control seeks to make sure rogue applications or malicious users are automatically contained and cannot cause damage beyond their immediate context. The proof of concept is planned to go live in May 2006, at County Durham and Darlington Acute Hospitals NHS Trust, and will focus on enabling secure access to an invoicing service, called Belmin’s ARIES (automated reconciliation and invoicing efficiency savings) service, that will replace an existing manual system.

"We consider MAC to be a key enabling technology to aid government and businesses alike in being confident they can deliver more services, more quickly, and with better function, without compromising security," commented Steve Marsh, director at the Central Sponsor for Information Assurance (CSIA).

Over time, the MAC approach might be extended to other software environments, according to IBM. "What we've demonstrated here with WebSphere and SELinux can be repeated with other software such as DB2 and business applications. In other words through, with the use of this technology, any organisation will have the ability to contain hackers, provide the necessary confinement for its applications, and minimise damage to the enterprise", said Doc Shankar, world wide Linux security lead for IBM.

IBM unveiled the project during a presentation at the Infosecurity conference in London on Wednesday. ®

Track this type of story as a custom Atom/RSS feed or by email.
Previous Article Next Article
  • Microsoft System Center - Designed For Big
  • Meet the fast-growing demand for notebooks with HP
  • Find out how to eradicate 99.7% of spam, click here
  • From small embedded OS to the world's most used open mobile OS
whitepaper title

Server Consolidation and Containment

This paper discusses how consolidation and containment solutions with a virtual infrastructure meet the challenges of server sprawl and underutilization..
whitepaper title

Making Green IT a Reality

Customer Perspectives on the Impact of Storage Vendor Decisions on Power, Cooling, & Space in Enterprise Data Centers.
Whitepapers Jobs

Top 20 storiesAll The Week’s HeadlinesArchiveSearch