TSE and Applications


This tutorial will discuss the architecture and implementation of the Trusted Services Engine (TSE) as well as a set of applications built on top of the TSE.

The TSE is a WebDAV server that can be simultaneously attached to networks with different security contexts. When one network's security level dominates another, the TSE can be configured to provide "read-down". Preventing unintended data flows (e.g., from lower to higher levels), is enforced by a high assurance software component called the Block Access Controller (BAC).