SISE 300-715 - Acronyms and Definitions Flashcards
CAP
Certificate Authentication Profile
Used by ISE as the identity source for certificate-based authentications. It defines which field of an x.509 certificate will be the Principle Username x.509 Attribute.
ISS
Identity Source Sequence
EAP-TLS
Extensible Authentication Protocol over Transport Layer Security
One of the EAP types which can be used by ISE.
OCSP
Online Certificate Status Protocol
A protocol which can be used by ISE to get near-real time updates of x.509 certificate status changes from the issuing certificate authority (CA). Created as an alternative to Certificate Revocation Lists (CRLs). OCSP messages are typically communicated over HTTP.
CRL
Certificate Revocation List
NTP
Network Time Protocol
SSL
Secure Socket Layer
SCEP
Simple Certificate Enrollment Protocol
NAD
Network Access Device
NADs include switches, wireless LAN controllers, and VPN concentrators. They are used to enforce ISE policies on endpoints.
NDG
Network Device Group
A logical grouping of Network Access Devices by type, location, deployment stage, or any other logical grouping an organization might want.