18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 1: Introduction<br />

The Type Enforced environment<br />

The Type<br />

Enforced<br />

environment<br />

4<br />

As mentioned earlier in this chapter, <strong>Sidewinder</strong> <strong>G2</strong> runs under SecureOS, a<br />

version <strong>of</strong> BSD/OS that Secure Computing has enhanced with a patented<br />

security technology called Type Enforcement. Type Enforcement was originally<br />

developed by Secure Computing Corporation for the Secure Network Server, a<br />

product which meets strict U.S. government standards for computer security.<br />

For the most part, Type Enforcement does not require any extra effort on your<br />

part. The following subsections describe areas that affect how you use the<br />

system and access files <strong>of</strong> which you should be aware.<br />

<strong>Sidewinder</strong> <strong>G2</strong> kernels<br />

The <strong>Sidewinder</strong> <strong>G2</strong> contains two separate UNIX kernels that each serve a<br />

specific purpose:<br />

• Operational kernel<br />

This is the kernel that is running during normal operation. By default, the<br />

system boots to the Operational kernel. In this mode, the <strong>Sidewinder</strong> <strong>G2</strong> is<br />

connected to the Internet and to your internal networks, and all network services<br />

are operational. Most importantly, the system is fully protected by the<br />

Type Enforcement security s<strong>of</strong>tware.<br />

For information on booting to the Operational kernel, refer to “Restarting or<br />

shutting down the system” on page 40.<br />

• Administrative kernel<br />

This kernel is used only when an administrator needs to perform special<br />

tasks on the <strong>Sidewinder</strong> <strong>G2</strong>, such as installing or restoring <strong>Sidewinder</strong> <strong>G2</strong><br />

s<strong>of</strong>tware. When the Administrative kernel is running, all network connections<br />

are disabled and Internet services are not available; the Type Enforcement<br />

security s<strong>of</strong>tware is also disabled. Access to the Administrative kernel<br />

is tightly controlled and cannot be granted remotely.<br />

Important: When you boot to the Administrative kernel, the system can be<br />

accessed only by attaching a monitor and keyboard (or a laptop) directly to your<br />

<strong>Sidewinder</strong> <strong>G2</strong>. For information on booting to the Administrative kernel, refer to<br />

“Powering up the system to the Administrative kernel” on page 636.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!