Red Hat Enterprise Linux Meets Highest Government Security Criteria

Operating Systems
Typography
  • Smaller Small Medium Big Bigger
  • Default Helvetica Segoe Georgia Times

IBM and Red Hat, a leading provider of open source solutions, have announced a new security certification for Red Hat Enterprise Linux 5 that is expected to further drive the adoption of Linux among businesses and governments worldwide. With the certification, no mainstream operating system in the world offers a higher level of security certification.

The announcement confirms that Red Hat Enterprise Linux on IBM servers now meets government security standards allowing Linux to be used in homeland security projects, command-and-control operations, and throughout government agencies that previously were limited to a select few other operating systems. This latest certification ensures that Red Hat Enterprise Linux running on IBM servers is now second to none in security among mainstream operating systems.

Enterprise Linux, supporting applications such as those developed by Trusted Computer Solutions, Inc., a leading supplier of cross domain solutions for industry and government, has been approved by the National Information Assurance Partnership for Common Criteria Evaluation and Validation Scheme at Evaluation Assurance Level 4 (EAL4+) for Labeled Security Protection Profile (LSPP), Controlled Access Protection Profile (CAPP), and Role-Based Access Control Protection Profile (RBAC).

This marks the first Common Criteria certification for a Linux distribution at this globally recognized advanced level of security and assurance, which means Enterprise Linux now meets government security standards for assured information sharing within and across government agencies. The operating system is now positioned to provide best-of-breed security capabilities for commercial operating systems, offering government agencies and businesses alike an unprecedented choice for secure applications.

Red Hat Enterprise Linux 5, which was released for general availability earlier this year, contains kernel and Security Enhanced Linux (SELinux) policy features developed through a significant open community effort with IBM, and the participation from other key contributors, including Red Hat, Trusted Computer Solutions, and federal government representatives.

"NSA is pleased that the work of its research organization in the area of secure computing is being used as the foundation for secure solutions in the open community," said Richard Mathews, chief of NSA's National Information Assurance Research Laboratory. "We are committed to focusing on new technology research and promoting transfer of those technologies to the private sector to improve assurance of NIAP certified commercial products."

The Common Criteria is an internationally recognized set of standards used by the federal government and other organizations to assess the security and assurance of technology products. Under Common Criteria, products are evaluated against strict standards for various features, such as the development environment, security functionality, the handling of security vulnerabilities, security related documentation and product testing.

Wide Range of Choice for Linux Solutions

IBM and Red Hat have collaborated to ensure certification of RHEL 5 on multiple platforms to maximize choice and value for customers. RHEL 5 is certified on several IBM server brands, including System x, System p, System z, and BladeCenter. IBM's server product line offers customers industry-leading performance together with application flexibility, solution choice, and outstanding scalability, reliability and security.

"Today's announcement marks another significant milestone in the evolution of Linux, which is already established as a true enterprise-class system that routinely handles mission-critical applications," said Dave McQueeney, IBM vice president, U.S. Federal. "In our federal government environment, we have the additional requirement for certifications to confirm the integrity of software for the most sensitive applications. We all recognize that Linux is a rock-solid system, with a vibrant and innovative development community, eclipsing many other offerings in common use across federal. Now, by achieving EAL4+ with multilevel security capability, we have further confirmation of the robustness and trustworthiness of Linux, and we expect its impact across federal to accelerate rapidly."

"Systems security is top of mind for enterprise customers, and especially in the government sector," said Paul Cormier, executive vice president of engineering at Red Hat. "Red Hat, IBM, and TCS have partnered for years to ensure that Red Hat Enterprise Linux is a leading distribution that customers can trust with their most critical and private data." 

About IBM 

For more information on IBM and Linux, please visit www.ibm.com/linux. 

About Red Hat, Inc. 

Red Hat, the world's leading open source solutions provider, is headquartered in Raleigh, NC with over 50 satellite offices spanning the globe. CIOs have ranked Red Hat first for value in Enterprise Software for three consecutive years in the CIO Insight Magazine Vendor Value study. Red Hat provides high-quality, low-cost technology with its operating system platform, Red Hat Enterprise Linux, together with applications, management and Services Oriented Architecture (SOA) solutions, including the JBoss Enterprise Middleware Suite. Red Hat also offers support, training and consulting services to its customers worldwide. Learn more: http://www.redhat.com.

Red Hat, a leading provider of open source solutions throughout the world, and an S&P 500 company, has its is headquarters in Raleigh, NC, with over 65 offices spanning the globe. CIOs ranked Red Hat as one of the top vendors delivering value in enterprise software for seven consecutive years in the a leading CIO magazine's vendor value survey. Red Hat provides high-quality, affordable technology with its operating system platform, Red Hat Enterprise Linux, together with virtualization, applications, management and services oriented architecture (SOA) solutions, including Red Hat Enterprise Virtualization and JBoss Enterprise Middleware. Red Hat also offers support, training and consulting services to its customers worldwide. Learn more at http://www.redhat.com. For more news, visit www.press.redhat.com. For more information about the partnership between Red Hat and SAP is available here http://www.redhat.com/solutions/sap.

BLOG COMMENTS POWERED BY DISQUS

LATEST COMMENTS

Support MC Press Online

$

Book Reviews

Resource Center

  •  

  • LANSA Business users want new applications now. Market and regulatory pressures require faster application updates and delivery into production. Your IBM i developers may be approaching retirement, and you see no sure way to fill their positions with experienced developers. In addition, you may be caught between maintaining your existing applications and the uncertainty of moving to something new.

  • The MC Resource Centers bring you the widest selection of white papers, trial software, and on-demand webcasts for you to choose from. >> Review the list of White Papers, Trial Software or On-Demand Webcast at the MC Press Resource Center. >> Add the items to yru Cart and complet he checkout process and submit

  • SB Profound WC 5536Join us for this hour-long webcast that will explore:

  • Fortra IT managers hoping to find new IBM i talent are discovering that the pool of experienced RPG programmers and operators or administrators with intimate knowledge of the operating system and the applications that run on it is small. This begs the question: How will you manage the platform that supports such a big part of your business? This guide offers strategies and software suggestions to help you plan IT staffing and resources and smooth the transition after your AS/400 talent retires. Read on to learn: