Glossary
GL-42
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
X.509 certificate
revocation list (CRL)
A list of certificate numbers that have been revoked. An X.509 CRL is one that
meets either of the two CRL formatting definitions in X.509.
XAuth IKE Extended Authentication. Xauth allows all Cisco IOS software AAA
authentication methods to perform user authentication in a separate phase after
the IKE authentication phase 1 exchange. The AAA configuration list-name
must match the Xauth configuration list-name for user authentication to occur.
Xauth is an extension to IKE, and does not replace IKE authentication.
Z
zone In a Zone-Based Policy Firewall, a zone is a group of interfaces that have similar
functions or features. For example, if the interfaces FastEthernet 0/0 and
FastEthernet 0/1 are both connected to the LAN, they could be g rouped together
in a single zone for the LAN.
zone-pair A zone-pair allows you to specify a unidirectional traffic flow between two
security zones. See also security zone
ZPF Zone-Based Policy Firewall. In a ZPF configuration interfaces are assigned to
zones, and an inspection policy is applied to traffic moving between the zones.