TMS zl Management and Configuration Guide ST.1.0.090213

B-10
Glossary
ESP Encapsulating Security Protocol. A part of the IPsec protocol suite that
provides origin authenticity, integrity, and confidentiality protection for pack-
ets.
exchange method See key exchange method.
exchange mode See key exchange mode.
expedited
forwarding
See EF.
extended ACL extended Access Control List. On the TMS zl Module, the extended ACL is
called the traffic selector. The term extended ACL is used on the HP ProCurve
Secure Router 7000dl series.
eXtended
AUTHentication
See XAUTH.
extended cipher
block chaining
See AES-XCBC.
extended
sequence number
An IPsec option that allows the you to extend the sequence of numbers used
in an SA. By default, the number is 2
32
, and the extended sequence number is
2
64
. This is helpful if your SA has a relatively long lifetime and transmits a great
deal of traffic.
External The firewall zone that describes everything outside the autonomous system.
F
failover The ability to automatically switch over to a secondary device in the event
that the primary device fails.
firewall access
policy
A rule that specifies which traffic can pass between TMS VLANs. Firewall
access policies are classified by source and destination zones, multicast or
unicast, and user group.
firewall port map A port map shows which service and associated protocol are assigned to which
port on your network. The firewall and IDS/IPS uses the port map to track
session information, including source and destination ports and translated
ports (for NAT).
firewall priority The order in which the firewall compares an incoming packet to a policy
group. The highest priority is 1, which is the first policy that is compared to
the packet.