13.09.2014 Views

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

5.4.2 <strong>Aircraft</strong> as a Node (MIP and MANET) 60<br />

5.4.3 Multilevel Network Systems (RED-BLACK, VPN) 61<br />

5.5 Airplane Rout<strong>in</strong>g and Autonomous Systems 62<br />

5.6 Virtual Private <strong>Networks</strong> Enable Network Partition<strong>in</strong>g 66<br />

5.7 Security Zones and Policy-Based Network<strong>in</strong>g 69<br />

6. RELATING SAFETY AND SECURITY FOR CERTIFICATION 73<br />

6.1 Security Requirements of Airborne Networked Environments 74<br />

6.1.1 Integrity 75<br />

6.1.2 Availability 77<br />

6.1.3 Authentication 78<br />

6.1.4 Confidentiality 79<br />

6.1.5 Nonrepudiation 79<br />

6.2 Extend<strong>in</strong>g <strong>FAA</strong> Orders, Guidance, and Processes Into Vast Network Systems 79<br />

6.3 Compar<strong>in</strong>g Civilian <strong>Aircraft</strong> Safety and Federal Government Security Levels 83<br />

6.3.1 Civil <strong>Aircraft</strong> Software Levels 83<br />

6.3.2 Federal Government Security Classifications 85<br />

6.3.3 Comparison of the Two Policy Systems 86<br />

6.4 Biba Integrity Model and Bell-LaPadula Confidentiality Model<br />

are Direct Analogs 87<br />

6.5 Relat<strong>in</strong>g Safety Classification Levels to the CC 90<br />

7. EXTENDING <strong>FAA</strong> CERTIFICATION TO AIRBORNE NETWORKS 93<br />

7.1 Extend<strong>in</strong>g ARP 4754 Into Networked Environments 94<br />

7.2 Extend<strong>in</strong>g DO-178B Into Networked Environments 96<br />

8. CANDIDATE SAFETY AND SECURITY NETWORK SOLUTION 98<br />

8.1 System Security Eng<strong>in</strong>eer<strong>in</strong>g Methodology 99<br />

8.2 Apply<strong>in</strong>g the SSE Methodologies to Airborne <strong>Networks</strong> 102<br />

8.3 Exemplar Airborne Network Architecture Solution 105<br />

8.3.1 The VPN Encapsulation Method 108<br />

8.3.2 Physical Security 114<br />

8.3.3 Encapsulation Gateways 115<br />

8.3.4 Packet Filter 116<br />

8.3.5 Firewall 117<br />

8.3.6 The ASBR Router 117<br />

iv

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!