
Glossary
GL-14
Cisco Security Appliance Command Line Configuration Guide
OL-6721-01
PKCS12
A standard for the transfer of PKI-related data, such as private keys, certificates, and other data.
Devices supporting this standard let administrators maintain a single set of personal identity
information.
PNS
PPTP Network Server. A PNS is envisioned to operate on general-purpose computing/server
platforms. The PNS handles the server side of PPTP. Because PPTP relies completely on TCP/IP and
is independent of the interface hardware, the PNS may use any combination of IP interface hardware
including LAN and WA N devices.
Policy NAT
Lets you identify local traffic for address translation by specifying the source and destination
addresses (or ports) in an access list.
POP
Post Office Protocol. Protocol that client e-mail applications use to retrieve mail from a mail server.
Pool
See IP pool.
Port
A field in the packet headers of TCP and UDP protocols that identifies the higher level service which
is the source or destination of the packet.
PPP
Point-to-Point Protocol. Developed for dial-up ISP access using analog phone lines and modems.
PPTP
Point-to-Point Tunneling Protocol. PPTP was introduced by Microsoft to provide secure remote
access to Windows networks; however, because it is vulnerable to attack, PPTP is commonly used
only when stronger security methods are not available or are not required. PPTP Ports are pptp,
1723/tcp, 1723/udp, and pptp. For more information about PPTP, see RFC 2637. See also PAC, PPTP
GRE, PPTP GRE tunnel, PNS, PPTP session, and PPTP TCP.
PPTP GRE
Version 1 of GRE for encapsulating PPP traffic.
PPTP GRE tunnel
A tunnel defined by a PNS-PAC pair. The tunnel protocol is defined by a modified version of GRE.
The tunnel carries PPP datagrams between the PAC and the PNS. Many sessions are multiplexed on a
single tunnel. A control connection operating over TCP controls the establishment, release, and
maintenance of sessions and of the tunnel itself.
PPTP session
PPTP is connection-oriented. The PNS and PAC maintain state for each user that is attached to a PAC.
A session is created when end-to-end PPP connection is attempted between a dial user and the PNS.
The datagrams related to a session are sent over the tunnel between the PAC and PNS.
PPTP TCP
Standard TCP session over which PPTP call control and management information is passed. The
control session is logically associated with, but separate from, the sessions being tunneled through a
PPTP tunnel.
preshared key
A preshared key provides a method of IKE authentication that is suitable for networks with a limited,
static number of IPSec peers. This method is limited in scalability because the key must be configured
for each pair of IPSec peers. When a new IPSec peer is added to the network, the preshared key must
be configured for every IPSec peer with which it communicates. Using certificates and CAs provides
a more scalable method of IKE authentication.
primary, primary
unit
The security appliance normally operating when two units, a primary and secondary, are operating in
failover mode.
privileged EXEC
mode
Privileged EXEC mode lets you to change current settings. Any user EXEC mode command will work
in privileged EXEC mode. See also command-specific configuration mode, global configuration mode,
user EXEC mode.
Kommentare zu diesen Handbüchern