Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.
210 Index Internetwork Packet Exchange (IPX) , 62 Intrusion detection system (IDS) , 69 , 72 , 130 Intrusion prevention system (IPS) , 8 IP spoofing , 634 iSCSI SAN , 54 ITU-T X.509 , 139 J Jamming , 85 Java , 35 , 36 Java Runtime Environment (JRE) , 35 Java Virtual Machine (JVM) , 35 Javascript , 36 , 37 Job rotation , 93 Jscript , 36 , 37 K Kerberos , 11415 Key escrow , 160 Key management , 1401 Key recovery agents , 161 Key Recovery Information (KRI) , 161 Key Usage value , 139 L L2TP (Layer 2 Tunneling Protocol) , 147 LANMAN (LAN Manager) , 138 LDAP , 11516 directories , 115 objects, attributes, and the schema , 11617 organizational units , 116 securing , 117 Least privilege , 93 "Least privileged" principle , 18 Legislation and organizational policies , 193 acceptable use policies , 195 change management , 196 due care , 199200 due diligence , 200 due process , 200 information classification , 1967 password complexity , 195 administrator accounts , 196 password changes and restrictions , 196 strong passwords , 195 personally identifiable information (PII) , 1989 secure disposal of systems , 193 destruction , 194 retention/storage , 194 security-related HR policies , 203 code of ethics , 203 service level agreements (SLAs) , 2001 user education and awareness training , 201 communication , 2012 education , 202 online resources , 2023 user awareness , 202 vacations , 197 Linux Security Modules (LSM) , 22 LM Hash , see LANMAN Local area network (LAN) , 66 Local Group Policy , 21 Logging and auditing , 1302 Logic bomb , 6 Logical access control methods , 98 access control lists , 989 account expiration , 100 domain policies , 99100 group policies , 99 logical tokens , 1001 time of day restrictions , 100 Logical Link Control (LLC) layer , 79 Logical tokens , 1001 Multipath interference , 78 Mutual authentication , 11920 N National Security Agency , 154 .NET , 36 NetBIOS Extended User Interface (NetBEUI) , 25 Netscape , 143 Network access access control , 8990 models , 901 security controls , 98 security groups , 97 authentication models and components , 912 identity , 92 logical access control methods , 98 access control lists , 989 account expiration , 100 domain policies , 99100 group policies , 99 logical tokens , 1001 time of day restrictions , 100 methods and models , 92 discretionary access control , 945 job rotation , 93 least privilege , 93 mandatory access control , 934 role-and rule-based access control , 96 separation of duties , 92 physical access security methods , 1012 access lists and logs , 1023 door access systems , 1045 hardware locks , 103 ID badges , 1034 man-trap , 105 video surveillance , 105 Network Access Control (NAC) , 26 , 712 Network access protection , 712 Network address translation (NAT) , 71 Network Attached Storage , 54 Network attached storage (NAS) , 13 Network authentication authentication methods one-factor , 111 single sign-on , 112 three-factor , 112 two-factor , 112 M Magnetic tapes , 13 Malware , 1 Man-trap , 105 Mandatory access control (MAC) , 934 Mandatory vacation policies , 1978 Man-in-the-middle (MITM) attack , 63 , 64 MD5 (Message Digest 5) , 138 Media Access Control (MAC) layer , 65 , 66 , 79 Microsoft Active Directory technology , 99 Microsoft Baseline Security Analyzer (MBSA) , 23 Microsoft Hyper-V , 51 Microsoft Terminal Services , 55 Microsoft updates , 19 Microsoft Virtual Server 2005 ; 50 MTA (Mail Transport Agent) , 148 MUA (Mail User Agent) , 148 Multi-core processors , 52 Multifactor authentication , see Three-factor authentication