Glossary
GL-19
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
split tunneling
Allows a remote
VPN
client simultaneous encrypted access to a private network and clear unencrypted
access to the
Internet
. If you do not enable split tunneling, all traffic between the
VPN
client and the
security appliance is sent through an
IPSec
tunnel. All traffic originating from the
VPN
client is sent
to the outside interface through a tunnel, and client access to the
Internet
from its remote site is denied.
spoofing
A type of attack designed to foil network security mechanisms such as filters and access lists. A
spoofing attack sends a packet that claims to be from an address from which it was not actually sent.
SQL*Net
Structured Query Language Protocol. An Oracle protocol used to communicate between client and
server processes.
SSH
Secure Shell. An application running on top of a reliable transport layer, such as TCP/IP, that provides
strong authentication and encryption capabilities.
SSL
Secure Sockets Layer. A protocol that resides between the application layer and TCP/IP to provide
transparent encryption of data traffic.
standby unit
See
secondary unit
.
stateful inspection
Network protocols maintain certain data, called state information, at each end of a network connection
between two hosts. State information is necessary to implement the features of a protocol, such as
guaranteed packet delivery, data sequencing, flow control, and transaction or session IDs. Some of the
protocol state information is sent in each packet while each protocol is being used. For example, a
browser connected to a web server uses
HTTP
and supporting TCP/IP protocols. Each protocol layer
maintains state information in the packets it sends and receives. The security appliance and some other
firewalls inspect the state information in each packet to verify that it is current and valid for every
protocol it contains. This is called stateful inspection and is designed to create a powerful barrier to
certain types of computer security threats.
Static PAT
Static Port Address Translation. Static PAT is a static address that also maps a local port to a global
port. See also
Dynamic PAT
,
NAT
.
subnetmask
See
mask
.
T
Terminal Access Controller Access Control System Plus. A client-server protocol that supports
AAA
services, including command authorization. See also
AAA
,
RADIUS
.
TAPI
Telephony Application Programming Interface. A programming interface in Microsoft Windows that
supports telephony functions.
TCP
Transmission Control Protocol. Connection-oriented transport layer protocol that provides reliable
full-duplex data transmission.
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......