23.03.2013 Views

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

NIST IR <strong>7298</strong> <strong>Revision</strong> 1, <strong>Glossary</strong> <strong>of</strong> <strong>Key</strong> <strong>Information</strong> <strong>Security</strong> <strong>Terms</strong><br />

A means <strong>of</strong> restricting access to objects (e.g., files, data entities)<br />

based on the identity and need-to-know <strong>of</strong> subjects (e.g., users,<br />

processes) and/or groups to which the object belongs. The controls<br />

are discretionary in the sense that a subject with a certain access<br />

permission is capable <strong>of</strong> passing that permission (perhaps indirectly)<br />

on to any other subject (unless restrained by mandatory access<br />

control).<br />

SOURCE: CNSSI-4009<br />

Disk Imaging – Generating a bit-for-bit copy <strong>of</strong> the original media, including free<br />

space and slack space.<br />

SOURCE: SP 800-86<br />

Disruption – An unplanned event that causes the general system or major<br />

application to be inoperable for an unacceptable length <strong>of</strong> time (e.g.,<br />

minor or extended power outage, extended unavailable network, or<br />

equipment or facility damage or destruction).<br />

SOURCE: CNSSI-4009<br />

An unplanned event that causes an information system to be<br />

inoperable for a length <strong>of</strong> time (e.g., minor or extended power outage,<br />

extended unavailable network, or equipment or facility damage or<br />

destruction).<br />

SOURCE: SP 800-34<br />

Distinguished Name (DN) – A unique name or character string that unambiguously identifies an<br />

entity according to the hierarchical naming conventions <strong>of</strong> X.500<br />

directory service.<br />

SOURCE: CNSSI-4009<br />

Distinguishing Identifier – <strong>Information</strong> which unambiguously distinguishes an entity in the<br />

authentication process.<br />

SOURCE: FIPS 196; CNSSI-4009<br />

Distributed Denial <strong>of</strong> Service –<br />

(DDoS)<br />

DMZ – See Demilitarized Zone.<br />

A Denial <strong>of</strong> Service technique that uses numerous hosts to perform<br />

the attack.<br />

SOURCE: SP 800-61; CNSSI-4009<br />

Domain – A set <strong>of</strong> subjects, their information objects, and a common security<br />

policy.<br />

SOURCE: SP 800-27<br />

Pg 64

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!