A trusted relabeler
system and
software is provided that allows for the simultaneous reclassification of multiple files to
multiple classification labels (security domains or computer networks) through
automation of the multi-person
review process. Roles, used to break down the requirements of the multi-person
review process, dictate what
specific function a user can perform. There are three roles used: Submitter, Processor, and Reviewer. The Submitter is allowed to submit one or more documents for reclassification, while the Processor is allowed to submit one or more documents for reclassification, perform an initial review and acceptance of the document, and assign a specific Reviewer for the document. The Reviewer is allowed to perform final
verification and, upon acceptance, allows the document to be reclassified appropriately. Users are assigned one or more roles and a set of source and destination classification labels inside the
security policy of a specific user that are bounded (restricted) by the clearance (maximum classification) assigned to a user on the
trusted operating system on which the trusted relabeler
system is implemented. The bundled documents to be reclassified are
virus scanned, file typed, and searched for “dirty words” indicative of a particular classification level. An integrity seal is generated to verify that the files are not tampered with between
processing by the Processor and the Reviewer. Files are upgraded or downgraded only if all processes are completed successfully.