Trusted Extensions Configuration and Administration

Exit Print View

Updated: July 2014
 
 

How to Assign Labels to Two Zone Workspaces

This procedure creates two labeled workspaces and opens a labeled window in each labeled workspace. When this task is completed, you have a working, non-networked Trusted Extensions system.

Before You Begin

You have completed either How to Create a Default Trusted Extensions System or How to Create Labeled Zones Interactively.

You are the initial user.

  1. Create a PUBLIC workspace.

    The label of the PUBLIC workspace corresponds to the Default User Sensitivity Label.

    1. Switch to the second workspace.
    2. Right-click and select Change Workspace Label.
    3. Select PUBLIC and click OK.
  2. Provide your password at the prompt.

    You are in a PUBLIC workspace.

  3. Open a terminal window.

    The window is labeled PUBLIC.

  4. Create an INTERNAL USE ONLY workspace.

    If you are using a site-specific label_encodings file, you are creating a workspace from the value of Default User Clearance.

    1. Switch to the third workspace.
    2. Right-click and select Change Workspace Label.
    3. Select INTERNAL USE ONLY and click OK.
  5. Provide your password at the prompt.

    You are in an INTERNAL workspace.

  6. Open a terminal window.

    The window is labeled CONFIDENTIAL : INTERNAL USE ONLY.

    Your system is ready to use. You have two user workspaces and a role workspace. In this configuration, the labeled zones use the same IP address as the global zone to communicate with other systems. They can do so because, by default, they share the IP address as an all-zones interface.

Next Steps

If you plan to have your Trusted Extensions system communicate with other systems, go to Configuring the Network Interfaces in Trusted Extensions.