
Glossary
GL-12
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
N
N2H2
A third-party, policy-oriented filtering application that works with the security appliance to control
user web access. N2H2 can filter HTTP requests based on destination host name, destination IP
address, and username and password. The N2H2 corporation was acquired by Secure Computing in
October, 2003.
NAT
Network Address Translation. Mechanism for reducing the need for globally unique IP addresses.
NAT allows an organization with addresses that are not globally unique to connect to the Internet by
translating those addresses into a globally routable address space.
NEM
Network Extension Mode. Lets VPN hardware clients present a single, routable network to the remote
private network over the VPN tunnel.
NetBIOS
Network Basic Input/Output System. A Microsoft protocol that supports Windows host name
registration, session management, and data transfer. The security appliance supports NetBIOS by
performing NAT of the packets for NBNS UDP port 137 and NBDS UDP port 138.
netmask
See mask.
network
In the context of security appliance configuration, a network is a group of computing devices that
share part of an IP address space and not a single host. A network consists of multiple nodes or hosts.
See also host, Internet, intranet, IP, LAN, and node.
NMS
network management system. System responsible for managing at least part of a network. An NMS is
generally a reasonably powerful and well-equipped computer, such as an engineering workstation.
NMSs communicate with agents to help keep track of network statistics and resources.
node
Devices such as routers and printers that would not normally be called hosts. See also host, network.
nonvolatile storage,
memory
Storage or memory that, unlike RAM, retains its contents without power. Data in a nonvolatile storage
device survives a power-off, power-on cycle or reboot.
NSAPI
Network service access point identifier. One of two components of a GTP tunnel ID, the other
component being the IMSI. See also IMSI.
NSSA
Not-so-stubby-area. An OSPF feature described by RFC 1587. NSSA was first introduced in Cisco
IOS software release 11.2. It is a non-proprietary extension of the existing stub area feature that allows
the injection of external routes in a limited fashion into the stub area.
NTLM
NT Lan Manager. A Microsoft Windows challenge-response authentication method.
NTP
Network time protocol.
O
Oakley
A key exchange protocol that defines how to acquire authenticated keying material. The basic
mechanism for Oakley is the Diffie-Hellman key exchange algorithm. Oakley is defined in RFC 2412.
object grouping
Simplifies access control by letting you apply access control statements to groups of network objects,
such as protocol, services, hosts, and networks.
Komentarze do niniejszej Instrukcji