A Guide to Understanding Identification and Authentication in Trusted Systems

Anderson, James P., Rayford B. Vaughn · Defense Technical Information Center (DTIC) · 1991

This document provides a set of good practices related to the design and implementation of identification and authentication (I & A) for systems employed for processing classified and other sensitive information. It's written to help vendors and evaluators understand I & A requirements. It contains suggestions and recommendations derived from Trusted Computer System Evaluation Criteria (TCSEC) objectives but which aren't required by the TCSEC.

Read the paper · More papers on PaperTik