ApplicationServer
Acomputerresponsibleforhostingapplicationstouserworkstations.
NISTSP800-82Rev.2
AsymmetricEncryption
Analgorithmthatusesonekeytoencryptandadifferentkeyto
decrypttheinputplaintext.
Checksum
Adigitrepresentingthesumofthecorrectdigitsinapieceof
storedortransmitteddigitaldata,againstwhichlatercomparisons
canbemadetodetecterrorsinthedata.
Ciphertext
Thealteredformofaplaintextmessagesoitisunreadablefor
anyoneexcepttheintendedrecipients.Inotherwords,ithasbeen
turnedintoasecret.
Classification
Classificationidentifiesthedegreeofharmtotheorganization,its
stakeholdersorothersthatmightresultifaninformationassetis
divulgedtoanunauthorizedperson,processororganization.Inshort,
classificationisfocusedfirstandforemostonmaintainingthe
confidentialityofthedata,basedonthedatasensitivity.
Configurationmanagement
Aprocessanddisciplineusedtoensurethattheonlychangesmadeto
asystemarethosethathavebeenauthorizedandvalidated.
Cryptanalyst
Onewhoperformscryptanalysiswhichisthestudyofmathematical
techniquesforattemptingtodefeatcryptographictechniquesand/or
informationsystemssecurity.Thisincludestheprocessoflooking
forerrorsorweaknessesintheimplementationofanalgorithmorof
thealgorithmitself.
Cryptography
Thestudyorapplicationsofmethodstosecureorprotectthemeaning
andcontentofmessages,files,orotherinformation,usuallyby
disguise,obscuration,orothertransformationsofthatcontentand
meaning.
DataLossPrevention(DLP)
Systemcapabilitiesdesignedtodetectandpreventtheunauthorized
useandtransmissionofinformation.
Decryption Thereverseprocessfromencryption.Itistheprocessofconverting
aciphertextmessagebackintoplaintextthroughtheuseofthe
cryptographicalgorithmandtheappropriatekeyfordecryption(which
isthesameforsymmetricencryption,butdifferentforasymmetric
encryption).Thistermisalsousedinterchangeablywiththe
"deciphering."
Degaussing
Atechniqueoferasingdataondiskortape(includingvideotapes)
that,whenperformedproperly,ensuresthatthereisinsufficient
magneticremanencetoreconstructdata.
DigitalSignature
Theresultofacryptographictransformationofdatawhich,when
properlyimplemented,providestheservicesoforiginauthentication,
dataintegrity,andsignernon-repudiation.NISTSP800-12Rev.1
EgressMonitoring
Monitoringofoutgoingnetworktraffic.
Encryption
Theprocessandactofconvertingthemessagefromitsplaintextto
ciphertext.Sometimesitisalsoreferredtoasenciphering.Thetwo
termsaresometimesusedinterchangeablyinliteratureandhave
similarmeanings.
EncryptionSystem
Thetotalsetofalgorithms,processes,hardware,software,and
proceduresthattakentogetherprovideanencryptionanddecryption
capability.
Hardening
Areferencetotheprocessofapplyingsecureconfigurations(to
reducetheattacksurface)andlockingdownvarioushardware,
communicationssystems,andsoftware,includingoperatingsystem,web
server,applicationserver,application,etc.Hardeningisnormally
performedbasedonindustryguidelinesandbenchmarks,suchasthose
providedbytheCenterforInternetSecurity(CIS).
HashFunction
Analgorithmthatcomputesanumericalvalue(calledthehashvalue)
onadatafileorelectronicmessagethatisusedtorepresentthat
fileormessageanddependsontheentirecontentsofthefileor
message.Ahashfunctioncanbeconsideredtobeafingerprintofthe
fileormessage.NISTSP800-152
Hashing
Theprocessofusingamathematicalalgorithmagainstdatatoproduce
anumericvaluethatisrepresentativeofthatdata.SourceCNSSI
4009-2015
InformationSharing TherequirementsforinformationsharingbyanITsystemwithoneor
moreotherITsystemsorapplications,forinformationsharingto
supportmultipleinternalorexternalorganizations,missions,or
publicprograms.NISTSP800-16
IngressMonitoring
Monitoringofincomingnetworktraffic.
MessageDigest
Adigitalsignaturethatuniquelyidentifiesdataandhasthe
propertysuchthatchangingasinglebitinthedatawillcausea
completelydifferentmessagedigesttobegenerated.NISTIR-8011
Vol.3
OperatingSystem
Thesoftware"mastercontrolapplication"thatrunsthecomputer.It
isthefirstprogramloadedwhenthecomputeristurnedon,andits
maincomponent,thekernel,residesinmemoryatalltimes.The
operatingsystemsetsthestandardsforallapplicationprograms
(suchastheWebserver)thatruninthecomputer.Theapplications
communicatewiththeoperatingsystemformostuserinterfaceand
filemanagementoperations.NISTSP800-44Version2
Patch
Asoftwarecomponentthat,wheninstalled,directlymodifiesfilesor
devicesettingsrelatedtoadifferentsoftwarecomponentwithout
changingtheversionnumberorreleasedetailsfortherelated
softwarecomponent.Source:ISO/IEC19770-2
PatchManagement
Thesystematicnotification,identification,deployment,installation
andverificationofoperatingsystemandapplicationsoftwarecode
revisions.Theserevisionsareknownaspatches,hotfixes,and
servicepacks.Source:CNSSI4009
Plaintext
Amessageordatainitsnaturalformatandinreadableform;
extremelyvulnerablefromaconfidentialityperspective.
Records
Therecordings(automatedand/ormanual)ofevidenceofactivities
performedorresultsachieved(e.g.,forms,reports,testresults),
whichserveasabasisforverifyingthattheorganizationandthe
informationsystemareperformingasintended.Alsousedtoreferto
unitsofrelateddatafields(i.e.,groupsofdatafieldsthatcanbe
accessedbyaprogramandthatcontainthecompletesetof
informationonparticularitems).NISTSP800-53Rev.4
RecordsRetention
Apracticebasedontherecordslifecycle,accordingtowhich
recordsareretainedaslongasnecessary,andthenaredestroyed
aftertheappropriatetimeintervalhaselapsed.