Method and means for interconnecting different security level networks
First Claim
1. A means to control information flow between a first and second computer network where said first network has a higher security classification than said second network, the flow control means comprisingan information switch havingan information input,a first output connected to said first network,a second output connected to said second network,a controller having at least two states a first state controlling said information switch to connect said input to said first output and a second state controlling said information switch to connect said input to said second output, andan information diode having an input for receiving information from said second network and an output for transferring information received from said second network to said first network through a connection from said information diode output to said first network and which prevents information flowing from said output to said input.
1 Assignment
0 Petitions
Accused Products
Abstract
An information flow control means for location between a first and second computer network where the first network has a higher security classification than the second network. The information flow control means comprises an information switch having an information input, a first output connected to the first network, a second output connected to the second network, a controller having at least two states, a first state controlling the information switch to connect the input to the first output and a second state controlling the information switch to connect the input to the second output, and an information diode having an input for receiving information from the second network and an output for transferring information received from the second network to the first network through a connection from the information diode output to the first network and which prevents information flowing from the output to the input.
108 Citations
73 Claims
-
1. A means to control information flow between a first and second computer network where said first network has a higher security classification than said second network, the flow control means comprising
an information switch having an information input, a first output connected to said first network, a second output connected to said second network, a controller having at least two states a first state controlling said information switch to connect said input to said first output and a second state controlling said information switch to connect said input to said second output, and an information diode having an input for receiving information from said second network and an output for transferring information received from said second network to said first network through a connection from said information diode output to said first network and which prevents information flowing from said output to said input.
-
29. An information flow control arrangement for location between a first and second computer network where said first network has a higher security classification than said second network and said first network having at least one information processing means therein, said flow control means comprising
an information switch having an information input, a first output connected to a said at least one information processing means within said first network, a second output connected to said second network, a controller having at least two states a first state controlling said information switch to connect said input to said first output and a second state controlling said information switch to connect said input to said second output, and an information diode having an input for receiving information from said second network and an output for transferring information from said second network to said at least one information processing means through a connection from said information diode output to said first network and which prevents information flowing from said output to said input.
-
50. An information flow control arrangement located between a first and second computer network where said first network has a higher security classification than said second network and at least one information processing means external of both said first or second networks, said flow control means comprising
an information switch having an information input, and at least three outputs, a first output connected to said first network, a second output connected to said second network, a third output connected to said information processing means, a controller having at least three states, a first state controlling said information switch to connect said input to said first output, a second state controlling said information switch to connect said input to said second output, and a third state controlling said information switch to connect said input to said third output, and an information diode having an input for receiving information from said second network and an output for transferring information from said second network to said first network and/or to said information processing means.
Specification