Glossary
GL-16
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
ping
packet internet groper. Often used in IP networks to test the reachability of a network device. It works
by sending ICMP echo request packets to the target host and listening for echo response replies.
PIX Firewall
Private Internet Exchange Firewall. A Cisco network security device that can be programmed to
block/enable addresses and ports between networks.
PKI
Public Key Infrastructure. Authentication of HTTP clients using the clients X.509 certificates.
Pluggable
Authentication
Modules
See PAM.
POST
Power-On Self Test. Set of hardware diagnostics that runs on a hardware device when that device is
powered up.
Post-ACL
Designates an ACL from which ARC should read the ACL entries, and where it places entries after all
deny entries for the addresses being blocked.
Pre-ACL
Designates an ACL from which ARC should read the ACL entries, and where it places entries before
any deny entries for the addresses being blocked.
promiscuous delta
PD. A weight in the range of 0 to 30 configured per signature. This weight can be subtracted from the
overall risk rating in promiscuous mode.
promiscuous mode
A passive interface for monitoring packets of the network segment. The sensing interface does not have
an IP address assigned to it and is therefore invisible to attackers.
Q
Q.931
ITU-T specification for signaling to establish, maintain, and clear ISDN network connections.
QoS
quality of service. Measure of performance for a transmission system that reflects its transmission
quality and service availability.
R
rack mounting
Refers to mounting a sensor in an equipment rack.
RADIUS
Remote Authentication Dial In User Service. A networking protoc ol that provides centralized AAA
functionality for systems to connect and use a network service.
RAM
random-access memory. Volatile memory that can be read and written by a microprocessor.
RAS
Registration, Admission, and Status Protocol. Protocol that is used between endpoints and the
gatekeeper to perform management functions. RAS signalling function performs registration,
admissions, bandwidth changes, status, and disengage procedures between the VoIP gateway and the
gatekeeper.