<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>xmlspif.orgxmlspif.org &#187; DCS</title>
	<atom:link href="http://www.xmlspif.org/?feed=rss2&#038;tag=dcs" rel="self" type="application/rss+xml" />
	<link>http://www.xmlspif.org</link>
	<description>The home of the Open XML SPIF</description>
	<lastBuildDate>Fri, 13 Mar 2026 10:37:22 +0000</lastBuildDate>
	<language>en-US</language>
		<sy:updatePeriod>hourly</sy:updatePeriod>
		<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.8</generator>
	<item>
		<title>Confidentiality Metadata-based Access Control (CMBAC) core to enabling NATO Data-Centric Security (DCS) vision and strategy</title>
		<link>http://www.xmlspif.org/?p=240</link>
		<comments>http://www.xmlspif.org/?p=240#comments</comments>
		<pubDate>Wed, 03 Dec 2025 11:10:23 +0000</pubDate>
		<dc:creator><![CDATA[xmlspif]]></dc:creator>
				<category><![CDATA[STANAG]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[CMBAC]]></category>
		<category><![CDATA[DCS]]></category>
		<category><![CDATA[NATO]]></category>

		<guid isPermaLink="false">http://www.xmlspif.org/?p=240</guid>
		<description><![CDATA[DCS is recognised as a key enabler for NATO to evolve towards digital transformation exploiting new technologies and processes that treats data as a strategic resource to help inform timely decision making at all political and military levels across multiple domains of operations. NATO vision for DCS is to deliver shareable, timely and reliable information: [&#8230;]]]></description>
				<content:encoded><![CDATA[<p><b>DCS</b> is recognised as a key enabler for NATO to evolve towards digital transformation exploiting new technologies and processes that treats data as a strategic resource to help inform timely decision making at all political and military levels across multiple domains of operations.</p>
<p>NATO vision for <b>DCS</b> is to deliver shareable, timely and reliable information: protected at source; and, controlled for life.</p>
<p>NATO strategy for implementing <b>DCS</b> is evolutionary defined by three Maturity Levels (MLs), whereby each ML facilitates interoperability and builds ontop of each other to reach the defined end-state.</p>
<p><b>DCS ML 1</b>: <b>Basic Labelling</b> (<b>DCS-1</b>) &#8211; Facilitated by the NATO standards (<i>STANAG 4774</i>, <i>STANAG 5636</i> and <i>STANAG 4778</i>) to provide consistent, reliable and trustworthy labelling with metadata associated for use with all common types of file formats and core services. Use of the XMLSPIF is fundamental for ensuring confidentiality metadata (<i>STANAG 4774 confidentiality label</i> and <i>confidentiality clearance</i>) is consistently applied and consistently displayed based upon the governing security policy that is being enforced.</p>
<p><b>DCS ML 2</b>: <b>Enhanced Labelling</b> (<b>DCS-2</b>) &#8211; Facilitated by the emerging NATO standard (<i>STANAG 5663</i>) to provide federated identity and access management (FIAM) and facilitate attribute-based access control (ABAC). The &#8220;<em><strong>Holy Trinity</strong></em>&#8221; (not George Best, Dennis Law and Sir Bobby Charlton) of <i>STANAG 4774 confidentiality label</i>, <i>STANAG 4774 confidentiality clearance</i> and XMLSPIF are used to provide <b><i>Confidentiality Metadata-based Access Control</i></b><i> </i>(<b><i>CMBAC</i></b>; pronounced as &#8220;<b><i>Come Back</i></b>&#8220;), fundamental for facilitating ABAC. XMLSPIF specifies the rules for how <b><i>CMBAC</i></b> is enforced based upon comparing the confidentiality metadata value domains provided in a <i>STANAG 4774 confidentiality label</i> (associated with a resource) against a <i>STANAG 4774 confidentiality clearance</i> (associated with a <i>Subject</i> i.e. a user, application, device or service). Implementation of <b><i>CMBAC</i></b> (as illustrated below), through the ratification of <i>ADatP-5663: Federated Identity, Credentials and Access Management</i>, is recognised as a core capability for evolving NATO <b>DCS</b> vision and strategy towards achieving <b>DCS-2</b>.</p>
<p style="text-align: center;"><a href="http://www.xmlspif.org/wp-content/uploads/2025/12/cmbac.jpg"><img class="alignnone size-medium wp-image-242" alt="cmbac" src="http://www.xmlspif.org/wp-content/uploads/2025/12/cmbac-300x192.jpg" width="300" height="192" /></a></p>
<p><b>DCS ML 3</b>: <b>Cryptographic Protection</b> (<b>DCS-3</b>) &#8211; NATO are currently developing an interoperable, standardised and federated approach for achieving <b>DCS-3</b>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlspif.org/?feed=rss2&#038;p=240</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
