Hosting.com - First Name in Hosting

RFC2828 - Page 166


Page Navigation:

1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  16  17  18  19  20  21  22  23  24  25  26  27  28  29  30  31  32  33  34  35  36  37  38  39  40  41  42  43  44  45  46  47  48  49  50  51  52  53  54  55  56  57  58  59  60  61  62  63  64  65  66  67  68  69  70  71  72  73  74  75  76  77  78  79  80  81  82  83  84  85  86  87  88  89  90  91  92  93  94  95  96  97  98  99  100  101  102  103  104  105  106  107  108  109  110  111  112  113  114  115  116  117  118  119  120  121  122  123  124  125  126  127  128  129  130  131  132  133  134  135  136  137  138  139  140  141  142  143  144  145  146  147  148  149  150  151  152  153  154  155  156  157  158  159  160  161  162  163  164  165  166  167  168  169  170  171  172  173  174  175  176  177  178  179  180  181  182  183  184  185  186  187  188  189  190  191  192  193  194  195  196  197  198  199  200  201  202  203  204  205  206  207  208  209  210  211  212 

Printable Version: RFC2828.PDF

<< Prev. Page     Next Page >>

RFC 2828               Internet Security Glossary               May 2000


   $ storage channel
      See: (secondary definition under) covert channel.

   $ stream cipher
      (I) An encryption algorithm that breaks plaintext into a stream of
      successive bits (or characters) and encrypts the n-th plaintext
      bit with the n-th element of a parallel key stream, thus
      converting the plaintext bit stream into a ciphertext bit stream.
      [Schn] (See: block cipher.)

   $ strong authentication
      (I) An authentication process that uses cryptography--particularly
      public-key certificates--to verify the identity claimed for an
      entity. (See: X.509.)

      (O) "Authentication by means of cryptographically derived
      credentials." [X509]

   $ subject
      1. (I) In a computer system: A system entity that causes
      information to flow among objects or changes the system state;
      technically, a process-domain pair. (See: Bell-LaPadula Model.)

      2. (I) Of a certificate: The entity name that is bound to the data
      items in a digital certificate, and particularly a name that is
      bound to a key value in a public-key certificate.

   $ subnetwork
      (N) An OSI term for a system of packet relays and connecting links
      that implement the lower three protocol layers of the OSIRM to
      provide a communication service that interconnects attached end
      systems. Usually the relays operate at OSI layer 3 and are all of
      the same type (e.g., all X.25 packet switches, or all interface
      units in an IEEE 802.3 LAN). (See: gateway, internet, router.)

   $ subordinate certification authority (SCA)
      (I) A CA whose public-key certificate is issued by another
      (superior) CA. (See: certification hierarchy.)

      (O) MISSI usage: The fourth-highest (bottom) level of a MISSI
      certification hierarchy; a MISSI CA whose public-key certificate
      is signed by a MISSI CA rather than by a MISSI PCA. A MISSI SCA is
      the administrative authority for a subunit of an organization,
      established when it is desirable to organizationally distribute or
      decentralize the CA service. The term refers both to that
      authoritative office or role, and to the person who fills that





Shirey                       Informational                    [Page 166]


<< Prev. Page     Next Page >>