Glossary
GL-18
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
RTT
round-trip time. A measure of the time delay imposed by a network on a host from the sending of a
packet until acknowledgement of the receipt.
RU
rack unit. A rack is measured in rack units. An RU is equal to 44 mm or 1.75 inches.
S
SCP
Switch Configuration Protocol. Cisco control protocol that runs directly over the Ethernet.
SCEP
Simple Certificate Enrollment Protocol. The Cisco Systems PKI communication protocol that
leverages existing technology by using PKCS#7 and PKCS#10. SCEP is the evolution of the enrollment
protocol.
SDEE
Security Device Event Exchange. A product-independent standard for communicating security device
events. It adds extensibility features that are needed for communicating events generated by various
types of security devices.
SDEE Server
Accepts requests for events from remote clients.
Secure Shell
Protocol
Protocol that provides a secure remote connection to a router through a Transmission Control Protocol
(TCP) application.
security context
You can partition a single adaptive security appliance into multiple virtual devices, known as security
contexts. Each context is an independent device, with its own security policy, interfaces, and
administrators. Multiple contexts are similar to having multiple standalone devices. Many features are
supported in multiple context mode, including routing tables, firewall features, IPS, and management.
Security Monitor
Monitoring Center for Security. Provides event collection, viewing, and reporting capability for
network devices. Used with the IDS MC.
sensing interface
The interface on the sensor that monitors the desired network segment. The sensing interface is in
promiscuous mode; it has no IP address and is not visible on the moni tored segment.
sensor
The sensor is the intrusion detection engine. It analyzes network traffic searching for signs of
unauthorized activity.
SensorApp
A component of the IPS. Performs packet capture and analysis. SensorApp analyzes network traffic for
malicious content. Packets flow through a pipeline of processors fed by a producer designed to collect
packets from the network interfaces on the sensor. SensorApp is the standalone executable that runs
Analysis Engine.
Service engine
Deals with specific protocols, such as DNS, FTP, H255, HTTP, IDENT, MS RPC, MS SQL, NTP, P2P,
RPC, SMB, SNMP, SSH, and TNS.
service pack
Used for the release of defect fixes and for the support of new signature engines. Service packs contain
all of the defect fixes since the last base version (minor or major) and any new defects fixes.
session command
Command used on routers and switches to provide either Telnet or console access to a module in the
router or switch.
SFP
Small Form-factor Pluggable. Often refers to a fiber optic transceiver that adapts optical cabling to fiber
interfaces. See GBIC for more information.