Cisco IPS 7.1 Installation Manual page 442

Intrusion prevention system appliance and module
Table of Contents

Advertisement

Glossary
packed encoding rules. Instead of using a generic style of encoding that encodes all types in a uniform
PER
way, PER specializes the encoding based on the date type to generate much more compact
representations.
Policy Feature Card. An optional card on a Catalyst 6000 supervisor engine that supports VACL packet
PFC
filtering.
Product Identifier. The orderable product identifier that is one of the three parts of the UDI. The UDI
PID
is part of the PEP policy.
packet internet groper. Often used in IP networks to test the reachability of a network device. It works
ping
by sending ICMP echo request packets to the target host and listening for echo response replies.
Private Internet Exchange Firewall. A Cisco network security device that can be programmed to
PIX Firewall
block/enable addresses and ports between networks.
Public Key Infrastructure. Authentication of HTTP clients using the clients X.509 certificates.
PKI
See PAM.
Pluggable
Authentication
Modules
Power-On Self Test. Set of hardware diagnostics that runs on a hardware device when that device is
POST
powered up.
Designates an ACL from which ARC should read the ACL entries, and where it places entries after all
Post-ACL
deny entries for the addresses being blocked.
Designates an ACL from which ARC should read the ACL entries, and where it places entries before
Pre-ACL
any deny entries for the addresses being blocked.
PD. A weight in the range of 0 to 30 configured per signature. This weight can be subtracted from the
promiscuous delta
overall risk rating in promiscuous mode.
A passive interface for monitoring packets of the network segment. The sensing interface does not have
promiscuous mode
an IP address assigned to it and is therefore invisible to attackers.
Q
ITU-T specification for signaling to establish, maintain, and clear ISDN network connections.
Q.931
quality of service. Measure of performance for a transmission system that reflects its transmission
QoS
quality and service availability.
R
Refers to mounting a sensor in an equipment rack.
rack mounting
Remote Authentication Dial In User Service. A networking protocol that provides centralized AAA
RADIUS
functionality for systems to connect and use a network service.
Cisco Intrusion Prevention System Appliance and Module Installation Guide for IPS 7.1
GL-16
OL-24002-01

Advertisement

Table of Contents
loading

Table of Contents