Search papers, labs, and topics across Lattice.
This Systematization of Knowledge (SoK) analyzes the transition of mission-critical Voice Communication Systems from physical hardware isolation (Red/Black architectures) to software-based Multi-Domain Data Segregation (MDDS). By evaluating the convergence of separation kernels, software-defined networking, network slicing, cross-domain solutions, and post-quantum cryptography, it tackles the severe scalability and interoperability bottlenecks of traditional hardware segregation. The authors map common architectural patterns and threat models across these domains, establishing concrete criteria under which virtualized environments can deliver hardware-comparable security assurances for real-time operations.
Physical "Red/Black" air-gapping can no longer scale to dynamic multi-domain environments, forcing critical infrastructure to determine whether software-defined isolation can match the provable guarantees of dedicated hardware.
Modern mission-critical coordination demands seamless communication across multiple domains. Traditionally, Voice Communication Systems (VCS) have relied on physically separated Red/Black architectures to ensure voice and data segregation. While these hardware-based methods provide strong security assurances and remain foundational in high-security contexts, they can introduce significant complexity and scalability challenges as mission parameters expand into highly dynamic, multi-domain integrations. As defence, emergency response, and critical infrastructure operations increasingly require interoperable, flexible, and cost-efficient communication environments, there is a growing need to understand whether software-based approaches can provide comparable assurance while supporting modern operational requirements. This SoK characterises a transition to software-based Multi-Domain Data Segregation (MDDS) by integrating systems security, networking, and cryptography. Its goal is to consolidate existing research, identify shared architectural patterns, and address the security challenges facing next-generation high-assurance software-based VCS architectures. By assessing software-defined and virtualized approaches, this SoK supports the development of scalable, high-assurance VCS architectures that facilitate secure real-time coordination across diverse operational domains. Specifically, this SoK examines the security implications of Software-Defined Networking, Network Slicing, Separation Kernels, and Cross-Domain Solutions while addressing challenges posed by quantum computing through Post-Quantum Cryptography (PQC). This SoK provides a comprehensive analysis of the shift from hardware isolation to software segregation, serving as a crucial foundation for researchers and industry stakeholders aiming to enhance secure and adaptable VCS infrastructures for mission-critical operations.