Micron Document
<!DOCTYPE html>
<html class="client-nojs vector-feature-night-mode-disabled vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-sticky-header-enabled" lang="en" dir="ltr"><head>
<meta charset="UTF-8">
<title>Cross-domain solution</title>
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="canonical" href="https://en.wikipedia.org/wiki/Cross-domain_solution"> <link href="./mw/ext.cite.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.icons.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.search.codex.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/user.styles.css" rel="stylesheet" type="text/css">
<meta name="ResourceLoaderDynamicStyles" content="">
<link rel="stylesheet" type="text/css" href="./mw/site.styles.css">
<link rel="stylesheet" type="text/css" href="./mw/noscript.css">
<link rel="stylesheet" type="text/css" href="./footer.css">
<link rel="stylesheet" type="text/css" href="./vector-2022.css">
</head>
<body class="skin--responsive skin-vector skin-vector-search-vue mediawiki ltr sitedir-ltr mw-hide-empty-elt ns-0 ns-subject page-Cross-domain_solution rootpage-Cross-domain_solution skin-vector-2022 action-view">
<div class="mw-page-container">
<div class="mw-page-container-inner">
<div class="mw-content-container">
<main id="content" class="mw-body">
<header class="mw-body-header vector-page-titlebar">
<h1 id="firstHeading" class="firstHeading mw-first-heading">
<span id="openzim-page-title" class="mw-page-title-main"><span class="mw-page-title-main">Cross-domain solution</span></span>
</h1>
</header>
<a id="top"></a>
<div id="bodyContent" class="vector-body ve-init-mw-desktopArticleTarget-targetContainer" aria-labelledby="firstHeading" data-mw-ve-target-container="">
<div id="mw-content-text" class="mw-body-content mw-content-ltr" lang="en" dir="ltr"><div class="mw-content-ltr mw-parser-output" lang="en" dir="ltr"><style data-mw-deduplicate="TemplateStyles:r1251242444">
/* start https://en.wikipedia.org/ */


.mw-parser-output .ambox{border:1px solid #a2a9b1;border-left:10px solid #36c;background-color:#fbfbfb;box-sizing:border-box}.mw-parser-output .ambox+link+.ambox,.mw-parser-output .ambox+link+style+.ambox,.mw-parser-output .ambox+link+link+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+style+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+link+.ambox{margin-top:-1px}html body.mediawiki .mw-parser-output .ambox.mbox-small-left{margin:4px 1em 4px 0;overflow:hidden;width:238px;border-collapse:collapse;font-size:88%;line-height:1.25em}.mw-parser-output .ambox-speedy{border-left:10px solid #b32424;background-color:#fee7e6}.mw-parser-output .ambox-delete{border-left:10px solid #b32424}.mw-parser-output .ambox-content{border-left:10px solid #f28500}.mw-parser-output .ambox-style{border-left:10px solid #fc3}.mw-parser-output .ambox-move{border-left:10px solid #9932cc}.mw-parser-output .ambox-protection{border-left:10px solid #a2a9b1}.mw-parser-output .ambox .mbox-text{border:none;padding:0.25em 0.5em;width:100%}.mw-parser-output .ambox .mbox-image{border:none;padding:2px 0 2px 0.5em;text-align:center}.mw-parser-output .ambox .mbox-imageright{border:none;padding:2px 0.5em 2px 0;text-align:center}.mw-parser-output .ambox .mbox-empty-cell{border:none;padding:0;width:1px}.mw-parser-output .ambox .mbox-image-div{width:52px}@media(min-width:720px){.mw-parser-output .ambox{margin:0 10%}}@media print{body.ns-0 .mw-parser-output .ambox{display:none!important}}


/* end https://en.wikipedia.org/ */
</style>
<p>A <b>cross-domain solution</b> (<b>CDS</b>) is an integrated <a href="Information_assurance" title="Information assurance">information assurance</a> system composed of specialized <a href="Software" title="Software">software</a> or hardware that provides a controlled interface to manually or automatically enable and/or restrict the access or transfer of information between two or more <a href="Security_domain" title="Security domain">security domains</a> based on a predetermined security policy.<sup id="cite_ref-1" class="reference"><a href="#cite_note-1"><span class="cite-bracket">[</span>1<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-2" class="reference"><a href="#cite_note-2"><span class="cite-bracket">[</span>2<span class="cite-bracket">]</span></a></sup> CDSs are designed to enforce domain separation and typically include some form of content filtering, which is used to designate information that is unauthorized for transfer between security domains or levels of classification,<sup id="cite_ref-3" class="reference"><a href="#cite_note-3"><span class="cite-bracket">[</span>3<span class="cite-bracket">]</span></a></sup> such as between different military divisions, intelligence agencies, or other operations which depend on the timely sharing of potentially sensitive information.<sup id="cite_ref-4" class="reference"><a href="#cite_note-4"><span class="cite-bracket">[</span>4<span class="cite-bracket">]</span></a></sup>
</p><p>The goal of a CDS is to allow a trusted <a href="Network_domain" title="Network domain">network domain</a> to exchange information with other domains, either one-way or bi-directionally, without introducing the potential for security threats. CDS development, assessment, and deployment are based on comprehensive risk management. Every aspect of an accredited CDS is usually evaluated under what is known as a Lab-Based Security Assessment (LBSA) to reduce potential vulnerabilities and risks. The evaluation and accreditation of CDSs in the United States are primarily under the authority of the National Cross Domain Strategy and Management Office (NCDSMO) within the <a href="National_Security_Agency" title="National Security Agency">National Security Agency</a> (NSA).
</p><p>CDS filter for viruses and malware; content examination utilities; in high-to-low security transfer audited human review. CDS sometimes has security-hardened operating systems, role-based administration access, redundant hardware, etc.
</p><p>The acceptance criteria for information transfer across domains or <a href="Cross-domain_interoperability" title="Cross-domain interoperability">cross-domain interoperability</a> is based on the security policy implemented within the solution. This policy may be simple (e.g., <a href="Antivirus_software" title="Antivirus software">antivirus</a> scanning and <a href="Whitelisting" class="mw-redirect" title="Whitelisting">whitelist</a> (also known as an "allowlist") check before transfer between peer networks) or complex (e.g., multiple content filters and a human reviewer must examine, redact, and approve a document before release from a high-security domain<sup id="cite_ref-5" class="reference"><a href="#cite_note-5"><span class="cite-bracket">[</span>5<span class="cite-bracket">]</span></a></sup>).<sup id="cite_ref-6" class="reference"><a href="#cite_note-6"><span class="cite-bracket">[</span>6<span class="cite-bracket">]</span></a></sup> <a href="Unidirectional_network" title="Unidirectional network">Unidirectional networks</a> are often used to move information from low-security domains to secret enclaves while assuring that information cannot escape.<sup id="cite_ref-7" class="reference"><a href="#cite_note-7"><span class="cite-bracket">[</span>7<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-8" class="reference"><a href="#cite_note-8"><span class="cite-bracket">[</span>8<span class="cite-bracket">]</span></a></sup> Cross-domain solutions often include a <a href="High_Assurance_Guard" class="mw-redirect" title="High Assurance Guard">High Assurance Guard</a>.
</p><p>Though cross-domain solutions have, as of 2019, historically been most typical in military, intelligence, and law enforcement environments, one example is the flight control and infotainment systems on an airliner.<sup id="cite_ref-9" class="reference"><a href="#cite_note-9"><span class="cite-bracket">[</span>9<span class="cite-bracket">]</span></a></sup>
</p>
<meta property="mw:PageProp/toc">
<div class="mw-heading mw-heading2"><h2 id="Types">Types</h2></div>
<p>There are three types of cross-domain solutions (CDS). <sup id="cite_ref-10" class="reference"><a href="#cite_note-10"><span class="cite-bracket">[</span>10<span class="cite-bracket">]</span></a></sup> These types are broken down into Access, Transfer, and Multi-level solutions (MLS) and all must be included in the cross-domain baseline list before Department of Defense-specific site implementations.<sup id="cite_ref-11" class="reference"><a href="#cite_note-11"><span class="cite-bracket">[</span>11<span class="cite-bracket">]</span></a></sup> <b> Access Solution</b> "An access solution describes a user’s ability to view and manipulate information from domains of differing security levels and caveats. In theory, the ideal solution respects separation requirements between domains by preventing overlapping data between domains, which ensures data of different classifications cannot ‘leak’ (i.e. data spill) between networks at any host layer of the OSI/TCP model. In practice, however, data spills are an ever-present concern that system designers attempt to mitigate within acceptable risk levels. For this reason, data transfer is addressed as a separate CDS".<sup id="cite_ref-:0_12-0" class="reference"><a href="#cite_note-:0-12"><span class="cite-bracket">[</span>12<span class="cite-bracket">]</span></a></sup> <b>Transfer Solution</b> offers the ability to move information between security domains that are of different classification level or different caveat of the same classification level. <b>Multi-level Solutions</b> "Access and transfer solutions rely on multiple security levels (MSL) approaches that maintain the separation of domains; this architecture is considered multiple single levels. A multi-level solution (MLS) differs from MSL architecture by storing all data in a single domain. The solution uses trusted labeling and integrated Mandatory Access Control (MAC) schema as a basis to mediate data flow and access according to user credentials and clearance to authenticate read and write privileges. In this manner, an MLS is considered an all-in-one CDS, encompassing both access and data transfer capabilities."<sup id="cite_ref-:0_12-1" class="reference"><a href="#cite_note-:0-12"><span class="cite-bracket">[</span>12<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="High_Assurance_Guard">High Assurance Guard</h2></div>

<p>A <b>High Assurance Guard</b> (HAG) is a <a href="Multilevel_security" title="Multilevel security">multilevel security</a> computer device which is used to communicate between different <a href="Security_domain" title="Security domain">security domains</a>, such as <a href="NIPRNet" title="NIPRNet">NIPRNet</a> to <a href="SIPRNet" title="SIPRNet">SIPRNet</a>. A HAG is one example of a <a href="Controlled_Interface" class="mw-redirect" title="Controlled Interface">Controlled Interface</a> between security levels. HAGs are approved through the <a href="Common_Criteria" title="Common Criteria">Common Criteria</a> process.
</p><p>A HAG runs multiple <a href="Virtual_machine" title="Virtual machine">virtual machines</a> or physical machines - one or more subsystems for the lower classification, one (or more) subsystems for the higher classification. The hardware runs a type of <a href="Knowledge_management" title="Knowledge management">knowledge management</a> software that examines data coming out of the higher classification subsystem and rejects any data that is classified higher than the lower classification. In general, a HAG allows lower classified data that resides on a higher classified system to be moved to another lower classified system. For example, in the US, it would allow unclassified information residing on a Secret classified system to be moved to another Unclassified system. Through various rules and filters, the HAG ensures that data is of the lower classification and then allows the transfer.
</p><p>On the application layer, the HAG runs an "evaluated mandatory integrity policy" that provides sensitive files, data and applications protection from inadvertent disclosure. At the operating system level, the HAG must have a multilevel kernel that ensures sensitive information, processes, and devices stored and running on the system at different sensitivity levels cannot intermingle in violation of the system's mandatory security model.
</p><p>The systems are certified via the Common Criteria; depending on the classification, the system may require Common Criteria Evaluated Assurance Level (EAL) 3 or higher. For examples, in the US, an evaluation at the EAL 5 or EAL 5+ (EAL 5 Augmented) or higher is required to export from a Secret domain to an Unclassified domain.
</p><p>Some manufacturers may use "Trusted Computer System" or "Trusted Applications with High Assurance" as an equivalent term to HAG.
</p><p>The HAG is mostly used in email and <a href="Defense_Message_System" title="Defense Message System">DMS</a> environments as certain organizations may only have unclassified network access, and they need to send a message to an organization that has only secret network access. The HAG provides them this ability.
</p>
<div class="mw-heading mw-heading2"><h2 id="Unintended_consequences">Unintended consequences</h2></div>

<p>In previous decades, <a href="Multilevel_security" title="Multilevel security">multilevel security</a> (MLS) technologies were developed. These enforced <a href="Mandatory_access_control" title="Mandatory access control">mandatory access control</a> (MAC) with near certainty. <a href="Automated_information_system" class="mw-redirect" title="Automated information system">Automated information systems</a> sometimes share information contrary to the need to avoid sharing secrets with adversaries. When the ‘balance’ is decided at the discretion of users, the access control is called <a href="Discretionary_access_control" title="Discretionary access control">discretionary access control</a> (DAC), that is more tolerant of actions that manage risk where MAC requires risk avoidance.
</p><p>These documents provide standards guidance on risk management:
</p>
<ol><li><style data-mw-deduplicate="TemplateStyles:r1238218222">
/* start https://en.wikipedia.org/ */


.mw-parser-output cite.citation{font-style:inherit;word-wrap:break-word}.mw-parser-output .citation q{quotes:"\"""\"""'""'"}.mw-parser-output .citation:target{background-color:rgba(0,127,255,0.133)}.mw-parser-output .id-lock-free.id-lock-free a{background:url("./mw/Lock-green.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-limited.id-lock-limited a,.mw-parser-output .id-lock-registration.id-lock-registration a{background:url("./mw/Lock-gray-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-subscription.id-lock-subscription a{background:url("./mw/Lock-red-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .cs1-ws-icon a{background:url("./mw/Wikisource-logo.svg")right 0.1em center/12px no-repeat}body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-free a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-limited a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-registration a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-subscription a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .cs1-ws-icon a{background-size:contain;padding:0 1em 0 0}.mw-parser-output .cs1-code{color:inherit;background:inherit;border:none;padding:inherit}.mw-parser-output .cs1-hidden-error{display:none;color:var(--color-error,#d33)}.mw-parser-output .cs1-visible-error{color:var(--color-error,#d33)}.mw-parser-output .cs1-maint{display:none;color:#085;margin-left:0.3em}.mw-parser-output .cs1-kern-left{padding-left:0.2em}.mw-parser-output .cs1-kern-right{padding-right:0.2em}.mw-parser-output .citation .mw-selflink{font-weight:inherit}@media screen{.mw-parser-output .cs1-format{font-size:95%}html.skin-theme-clientpref-night .mw-parser-output .cs1-maint{color:#18911f}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .cs1-maint{color:#18911f}}


/* end https://en.wikipedia.org/ */
</style><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://csrc.nist.gov/publications/PubsSPs.html">"Recommended Security Controls for Federal Information Systems &amp; Organizations"</a>. <i>Computer Security Division - Computer Security Resource Center</i>. National Institute of Standards and Technology (NIST). 2011-11-16.</cite>, SP 800-53 Rev3</li>
<li><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.cnss.gov/Assets/pdf/Final_CNSSI_1253.pdf">"Security Categorization and Control Selection for National Security Systems"</a> <span class="cs1-format">(PDF)</span>. <i>The Committee on National Security Systems (CNSS)</i>.</cite>, Instruction No. 1253</li></ol>
<div class="mw-heading mw-heading2"><h2 id="References">References</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1239543626">
/* start https://en.wikipedia.org/ */


.mw-parser-output .reflist{margin-bottom:0.5em;list-style-type:decimal}@media screen{.mw-parser-output .reflist{font-size:90%}}.mw-parser-output .reflist .references{font-size:100%;margin-bottom:0;list-style-type:inherit}.mw-parser-output .reflist-columns-2{column-width:30em}.mw-parser-output .reflist-columns-3{column-width:25em}.mw-parser-output .reflist-columns{margin-top:0.3em}.mw-parser-output .reflist-columns ol{margin-top:0}.mw-parser-output .reflist-columns li{page-break-inside:avoid;break-inside:avoid-column}.mw-parser-output .reflist-upper-alpha{list-style-type:upper-alpha}.mw-parser-output .reflist-upper-roman{list-style-type:upper-roman}.mw-parser-output .reflist-lower-alpha{list-style-type:lower-alpha}.mw-parser-output .reflist-lower-greek{list-style-type:lower-greek}.mw-parser-output .reflist-lower-roman{list-style-type:lower-roman}


/* end https://en.wikipedia.org/ */
</style><div class="reflist">
<div class="mw-references-wrap mw-references-columns"><ol class="references">
<li id="cite_note-1"><span class="mw-cite-backlink"><b><a href="#cite_ref-1">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20080326230421/http://iase.disa.mil/cds/">"Cross Domain Enterprise Service (CDES)"</a>. <i>Information Assurance Support Environment</i>. Defense Information Systems Agency (DISA). 2011-11-16. Archived from <a rel="nofollow" class="external text" href="http://iase.disa.mil/cds/">the original</a> on 2008-03-26<span class="reference-accessdate">. Retrieved <span class="nowrap">2012-01-16</span></span>.</cite></span>
</li>
<li id="cite_note-2"><span class="mw-cite-backlink"><b><a href="#cite_ref-2">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://owlcyberdefense.com/learn-about-cross-domain-solutions/">"Learn About Cross Domain Solutions"</a>. <i>Owl Cyber Defense</i>. Aug 25, 2020. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20200921130317/https://owlcyberdefense.com/learn-about-cross-domain-solutions/">Archived</a> from the original on 2020-09-21.</cite></span>
</li>
<li id="cite_note-3"><span class="mw-cite-backlink"><b><a href="#cite_ref-3">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://apps.dtic.mil/dtic/tr/fulltext/u2/a563989.pdf">"Cloud Computing Strategy"</a> <span class="cs1-format">(PDF)</span>. <i>DTIC.MIL</i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20160816162753/http://www.dtic.mil/dtic/tr/fulltext/u2/a563989.pdf">Archived</a> <span class="cs1-format">(PDF)</span> from the original on August 16, 2016.</cite></span>
</li>
<li id="cite_note-4"><span class="mw-cite-backlink"><b><a href="#cite_ref-4">^</a></b></span> <span class="reference-text"><cite id="CITEREFAristotle2012" class="citation book cs1">Aristotle, Jacob (April 2012). <a rel="nofollow" class="external text" href="http://dl.acm.org/citation.cfm?id=2378462"><i>Cross-Domain Solution</i></a>. Secut Press. <a href="ISBN_(identifier)" class="mw-redirect" title="ISBN (identifier)">ISBN</a>&nbsp;<bdi>978-613-6-31800-4</bdi>.</cite></span>
</li>
<li id="cite_note-5"><span class="mw-cite-backlink"><b><a href="#cite_ref-5">^</a></b></span> <span class="reference-text">Slater, T. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20140714155934/http://www.ncoic.org/cross-domain-interoperability/">"Cross-Domain Interoperability"</a>, <a rel="nofollow" class="external text" href="https://web.archive.org/web/20041001032434/http://www.ncoic.org/"><i>Network Centric Operations Industry Consortium - NCOIC</i></a>, 2013</span>
</li>
<li id="cite_note-6"><span class="mw-cite-backlink"><b><a href="#cite_ref-6">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.crossdomainsolutions.com">"Cross Domain Solutions - Ensuring Complete Data Security"</a>.</cite></span>
</li>
<li id="cite_note-7"><span class="mw-cite-backlink"><b><a href="#cite_ref-7">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.nexor.com/data-diodes">"Nexor Data Diode"</a>. <a href="Nexor" title="Nexor">Nexor</a><span class="reference-accessdate">. Retrieved <span class="nowrap">3 June</span> 2013</span>.</cite></span>
</li>
<li id="cite_note-8"><span class="mw-cite-backlink"><b><a href="#cite_ref-8">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.owlcyberdefense.com">"Dual Data Diode Information Transfer Products"</a>. Owl Cyber Defense, LLC<span class="reference-accessdate">. Retrieved <span class="nowrap">2019-08-20</span></span>.</cite></span>
</li>
<li id="cite_note-9"><span class="mw-cite-backlink"><b><a href="#cite_ref-9">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://interset.com/2017/01/04/can-airplane-get-hacked-probably/">"Can an Airplane Get Hacked? (Probably.)"</a>. <i>Interset</i>. 2017-01-04<span class="reference-accessdate">. Retrieved <span class="nowrap">2019-03-07</span></span>.</cite></span>
</li>
<li id="cite_note-10"><span class="mw-cite-backlink"><b><a href="#cite_ref-10">^</a></b></span> <span class="reference-text"> <cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.esd.whs.mil/Portals/54/Documents/DD/issuances/dodi/854001p.pdf">"Department of Defense Instruction (DoDI) 854001p"</a> <span class="cs1-format">(PDF)</span>. <i>esd.whs.mil</i><span class="reference-accessdate">. Retrieved <span class="nowrap">28 January</span> 2024</span>.</cite></span>
</li>
<li id="cite_note-11"><span class="mw-cite-backlink"><b><a href="#cite_ref-11">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://rmf.org/wp-content/uploads/2017/10/CNSSI-4009.pdf">"CNSSI-4009"</a> <span class="cs1-format">(PDF)</span>. <i>RMF.org</i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20200228184213/https://rmf.org/wp-content/uploads/2017/10/CNSSI-4009.pdf">Archived</a> <span class="cs1-format">(PDF)</span> from the original on 2020-02-28<span class="reference-accessdate">. Retrieved <span class="nowrap">28 February</span> 2020</span>.</cite></span>
</li>
<li id="cite_note-:0-12"><span class="mw-cite-backlink">^ <a href="#cite_ref-:0_12-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-:0_12-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite id="CITEREFSmith2020" class="citation web cs1">Smith, Scott (28 February 2020). <a rel="nofollow" class="external text" href="https://www.sans.org/reading-room/whitepapers/dlp/shedding-light-cross-domain-solutions-36492">"Shedding Light on Cross Domain Solutions"</a>. <i>SANS Institute Information Security Reading Room</i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20200228184214/https://www.sans.org/reading-room/whitepapers/dlp/shedding-light-cross-domain-solutions-36492">Archived</a> from the original on 2020-02-28<span class="reference-accessdate">. Retrieved <span class="nowrap">28 February</span> 2020</span>.</cite></span>
</li>
</ol></div></div></div><!--htdig_noindex--><div><div class="zim-footer">
This article is issued from <a class="external text" title="Last edited on 2025-07-05" href="https://en.wikipedia.org/wiki/?title=Cross-domain_solution&amp;oldid=1298882011">Wikipedia</a>. The text is available under <a class="external text" href="https://creativecommons.org/licenses/by-sa/4.0/deed.en">Creative Commons Attribution-Share Alike 4.0</a> unless otherwise noted. Additional terms may apply for the media files.
</div>
</div><!--/htdig_noindex--></div>
</div>
</main>
</div>
</div>
</div>

</body></html>