Glossary
GL-10
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
hardware bypass
A specialized interface card that pairs physical interfaces so that when a software error is detected, a
bypass mechanism is engaged that directly connects the physical interfaces and allows traffic to flow
through the pair. Hardware bypass passes traffic at the network interface, does not pass it to the IPS
system.
host block
ARC blocks all traffic from a given IP address.
HTTP
Hypertext Transfer Protocol. The stateless request/response media transfer protocol used in the IPS
architecture for remote data exchange.
HTTPS
An extension to the standard HTTP protocol that provides confidentiality by encrypting the traffic from
the website. By default this protocol uses TCP port 443.
I
ICMP
Internet Control Message Protocol. Network layer Internet protocol that reports errors and provides
other information relevant to IP packet processing. Documented in RFC 792.
ICMP flood
Denial of Service attack that sends a host more ICMP echo request (“ping”) packets than the protocol
implementation can handle.
IDAPI
Intrusion Detection Application Programming Interface. Provides a simple interface between IPS
architecture applications. IDAPI reads and writes event data and provides a mechanism for control
transactions.
IDCONF
Intrusion Detection Configuration. A data format standard that defines operational messages that are
used to configure intrusion detection and prevention systems.
IDENT
Ident protocol, specified in RFC 1413, is an Internet protocol that helps identify the user of a particular
TCP connection.
IDIOM
Intrusion Detection Interchange and Operations Messages. A data fo rmat standard that defines the
event messages that are reported by intrusion detection systems and the operational messages that are
used to configure and control intrusion detection systems.
IDM
IPS Device Manager. A web-based application that lets you configure and manage your sensor. The
web server for IDM resides on the sensor. You can access it through Internet Explorer or Firefox web
browsers.
IDMEF
Intrusion Detection Message Exchange Format. The IETF Intrusion Detection Working Group draft
standard.
IME
IPS Manager Express. A network management application that provides system health monitoring,
events monitoring, reporting, and configuration for up to ten sensors.
inline mode
All packets entering or leaving the network must pass through the sensor.
inline interface
A pair of physical interfaces configured so that the sensor forwards all traffic received on one interface
out to the other interface in the pair.
InterfaceApp
A component of the IPS. Handles bypass and physical settings and defines paired interfaces. Physical
settings are speed, duplex, and administrative state.