1.1 形成和发展
- 计算机网络技术(Computer Network Technology)
- 信息与通信技术(ICT,information and communications technology)
6.1 网络互连设备
- 中间系统(Intermediate System,IS)
- 中继器(Repeater)
- 网桥(Bridge)
- 交换机( Switch )
- 路由器( Router)
- 路由桥(Routing Bridge)
- 子网访问协议(SubNetwork Access Protocol, SNACP)
- 子网相关的汇聚协议(SubNetwork Dependent Convergence Protocol, SNDCP)
- 子网无关的汇聚协议( SubNetwotk Independent Convergence Protocol, SNICP)
- 因特网协议(Internet Protocol, IP)
- 无连接的网络协议(ConnectionLess Network Protocol, CLNP)
- 可变长子网掩码(Variable Length Subnetwork Mask, VLSM )
- 点对点通信( unicast)
- 组播(multicast)
- 广播(broadcast)
- 网络电视(LAN TV)
- 桌面会议(desktop conferencing)
- 协同计算(collaborative computing)
- 团体广播(corporate broadcast)
- ICMP (Internet Control Message Protocol)
- 传输控制协议(Transmission Control Protocol, TCP)
- 用户数据报协议(User Datagram Protocol, UDP)
- Telnet (远程终端协议)
- FTP (文件传输协议)
- SMTP (简单邮件传输协议)
- 初始顺序号ISN (Initial Sequence Number)
- IANA ( Internet Assigned Numbers Authority)
- Internet 网络信息中心(Internet Network Information Center, InterNIC)
- 顶级域(Top-Level Domains, TLD)
- 为国家顶级域(country code Top Level Domain, ccTLD)
- 通用顶级域(generic Top Level Domain, gTLD)
- 地址分解协议(Address Resolution Protocol, ARP)
- RARP(Reverse Address Resolution Protocol) 反向ARP 协议
- 内部网关协议(Interior Gateway Protocol, IGP)
- 外部网关协议(Exterior Gateway Protocol, EGP)
- 最新的外部网关协议叫作BGP(Border Gateway Protocol)
- 无类别域间路由(Classless Inter Domain Routing,CIDR)
- 路由信息协议(Routing Information Protocol, RIP)
- 开放最短路径优先协议(Open Shortest Path First, OSPF)
- 中间系统到中间系统的协议Cintermediate System to Intermediate System, IS-IS)
- 内部网关路由协议(Interior Gateway Routing Protocol, IGRP)
- 网关协议也叫作路由协议(Routing Protocol)
- 被路由的协议(Routed Protocol)
- 增强的IGRP 协议(Enhanced IGTRP, EIGRP)
- 核心网关协议(Gateway to Gateway Protocol, GGP)
- 网络地址翻译(Network Address Translators, NAT)
- 无类别的域间路由技术(Classless Inter Domain Routing, GIDR )
- 动态地址翻译(Dynamic Address Translation)
- 存根域( Stub Domain)
- 伪装( Masquerading )
- 网络地址和端口翻译(Network Address Port Translation, NAPT)
- 超网(supemet)
- 多宿主网络(multi- homed network)
- 多协议标记交换(Multiprotocol Label Switching, MPLS, RFC3031)
- 标记边缘路由器(Label Edge Router, LER)
- 标记交换通路(Label Switch Path, LSP)
- 标记交换路由器(Label Switch Router, LSR)
- 转发等价类(Forward Equivalent Class, FEC)
- 标记信息库(Label Information Base, LIB)
- QoS(Quality of Service,服务质量)
- 组播(Multicast)
- IGMP (Internet Group Management Protocol)
- 独立组播协议PIM(Protocol Independent Multicast)
- 最小生成树(Spanning Tree)
- 组播内部网关协议(Multicast Interior Gateway Protocol,MIGP)
- 源专用树(Source-Specific Tree)
- 最短通路树(Shortest Path Tree, SPT)
- 反向通路转发(Reverse Path Forwarding, RPF)
- 约会点树( Rendezvous Point Tree, RPT)
- 密集模式路由协议(Dense Mode Routing Protocols)
- 距离矢量组播路由协议(Distance Vector Multicast Routing Protocol,DVMRP)
- 组播开放最短路径优先协议(Multicast Open Shortest Path First, MOSPF)
- 密集模式的独立组播协议(Protocol Independent Multicast-Dense Mode, PIM-DM)
- 稀疏模式路由协议( Sparse Mode Routing Protocols)
- 核心树( Core-Based Trees,CBT)
- 稀疏模式的独立组播协议PIM- SM (Protocol Independent Mu lticast Sparse Mode)
- 双向PIM 协议(Bi - directional PIM,BIDIR-PIM)
- 尽力而为(Best - Effort)
- 集成服务体系结构(Integrated Service Architecture, ISA)
- 区分服务(Differentiated Service, DiflServ)
- 集成服务(IntServ)
- 保证质量的服务( Guranteed Services)
- 控制负载的服务(Controlled-load Services)
- 资源预约协议(Resource Reservation Protocol, RSVP)
- 准入控制(Admission Control)
- 分类器(Classifier)
- 分组调度器(Scheduler)
- 加权公平队列 (Weighted Fair Queueing,WFQ)
- 区分服务(DiffServ)
- DS 码点CDS Code Point,DSCP)
- 服务类型(Type of Service)
- 通信类别(Traffic Class)
- 服务等级约定(Service Level Agreement, SLA)
- 服务提供策略(Service Provisioning Policies)
- 逐跳行为(Per-Hop Behavior, PHB)
- 为行为聚集(Behavior Aggregate, BA)
- 通信调节协议(Traffic Conditioning Agreement, TCA)
- 保证转发(Assured Forwarding, AF )
- 加速转发(Expedited Forwarding, EF)
- 流量工程(Traffic Engineering, TE)
- 远程登录(Telnet)
- 网络虚拟终端(Network Virtual Terminal, NVT)
- 文件传输协议(File Transfer Protocol, FTP)
- 点对点应用(Peer-to-Peer, P2P)
- 跟踪器(tracker)
- 稀有者优先(rarest -first)
- 分布式哈希表(Distributed Hash Table, DHT)
第7章 下一代互联网
- 下一代互联网(Next Generation Internet, NGO)
- RFC 1752 (The Recommendation of the IP Next Generation Protocol)
- Request For Comments(RFC),是一系列以编号排定的文件。文件收集了有关互联网相关信息,以及UNIX和互联网社区的软件文件
- IPv4 兼容地址(IPv4 Compatible)
- 格式前缀(Format Prefix, FP)
- 顶级聚合体TLA (Top Level Aggregator)
- 下级聚合体NLA (Next Level Aggregator)
- SLA ( Site Level Aggregator)
- 全状态自动配置(Stateful Auto-Configuration)
- 无状态自动配置(Stateless Auto- Configuration)
- 邻居发现(Neighbor Discovery )
- 路由器请求(Router Solicitation)
- 路由器公告( RouterAdvertisement)
- 下一代RIP 协议(RIPng)
- RFC 3344 (IP Mobility Support for IPv4)
- RFC 3775 (Mobility Support in IPv6)
- 家乡地址(home address)
- 转交地址(care-of address)
- 家乡代理(home agent)
- 外地代理(foreign agent)
- 外地代理转交地址(Foreign Agent Care-of Address)
- 配置转交地址(Collocated Care -of Address)
- 外地代理的地址(foreign agent care-of address)
- 移动主机获得的临时地址(co-located care-of address)
- 绑定(binding)
- 主转交地址( primary care-of address)
- 绑定更新(Binding Update)
- 绑定应答(Binding Acknowledgement)
- 对端节点(correspondent node)
- 双向隧道(Bidirectional Tunneling)
- 是路由优化(route optimization )
- 负载的协议(Payload Protocol)
- 绑定刷新请求报文(Binding Refresh Request Message, BRR)
- 家乡测试初始化报文(Home Test Init Message, HoTI)
- 转交测试初始化报文(Care-of Test Init Message, CoTI)
- 家乡测试报文(Home Test Message, HoT)
- 转交测试报文(Care-of Test Message, CoT)
- 绑定更新报文(Binding Update Message, BU)
- 绑定应答报文(Binding Acknowledgement Message, BA)
- 绑定出错报文(Binding Error Message, BE)
- 隧道中介(Tunnel Broker)
- 原生地址(Native Address)
- EUI-64 ( Extended Unique Identifier) 是IEEE 定义的64 位标识符
- 机构唯一标识符OUI(Organizationally Unique Identifier )
- 邻居邀请(Neighb or Solicitation )
- 邻居公告(Neighbor Advertisement)
- 机构本地范围(Organization-Local Scope)
- ISATAP (Intra-Site Automatic Tunneling AddressinProtocol)
- SIIT无状态的IP/ICMP 翻译(Stateless IP/ICMP Translation)
- NAT-PT网络地址翻译-协议翻译(Network Address Translator-Protocol Translator)
- SOCKS64: 基于SOCKS 的1Pv6/1Pv4 机制(SOCKS-based 1Pv6/1Pv4 Gateway Mechanism)
- TRT: IPv6 到IPv4 的传输中继翻译器(IPv6-to- IPv4 Transport Relay Translator)
- DNS-ALG (Application Level Gateway)
- BIS (Bump-In-the-Stack)
- BIA (Bump-In-the-API)
- ICANN(The Internet Corporation for Assigned Names and Numbers),是负责互联网国际域名、地址和号码管理的非营利性机构
- 互联网注册机构RIR (Regional Internet Registry)
- 本地互联网注册机构(Local Internet Registries, LIR)
- APNIC(Asia and Pacific Network Information Center) 是亚太地区互联网络信息中心
- ARIN (American Registry for Internet Numbers) 是美国网络地址注册管理组织
- LACNIC (LatinAmerican and Caribbean Network Information Center) 是拉丁美洲及加勒比地区的互联网络信息中心
- RIPENCC (Reseaux IP Europeens Network Coordination Centre) 负责欧洲地区IP 地址和AS 号码的管理
- AfriNIC是非洲的网络信息中心
- 号码资源组织(Number Resource Organization, NRO)
第8章 网络安全
- 密码学(Cryptography)
- 替换加密(substitution)
- 换位加密(transposition)
- 一次性填充(one-time pad)
- P 盒(Permutation box)
- S 盒(Substitution box)
- 乘积密码(Product cipher)
- DES (Data Encryption Standard)
- 三重DES (Triple-DES)
- IDEA Clnternational Data Encryption Algorithm)
- 高级加密标准(Advanced Encryption Standard, AES)
- RSA (Rivest Shamir and Adleman)
- 报文摘要(Message Digest)
- 数字指纹(Digital Fingerprint)
- 散列(Hash)
- 安全散列算法(Secure Hash Algorithm, SHA)
- 安全散列标准(Secure Hash Standard, SHS)
- 散列式报文认证码(Hashed Message Authentication Code, HMAC)
- 提问/响应(Challenge/Response)
- 证书发放机构(Certification Authority, CA)
- 证书吊销列表(Certificate Revocation List, CRL)
- 真实性(Authenticity)
- 信息保障技术框架(Information A ssurance Technical Framework, IATF)
- 密钥管理基础结构(Key Management Infrastructure, KMI)
- 密钥分发中心(KDC)
- 公钥基础结构(Public Key Infrastructure, PKI)
- 注册机构(Registration Authority, RA)
- 用户(subscriber)
- 虚拟专用网(Virtual Private Network, VPN)
- 隧道技术(Tunneling)
- 加解密技术(Encryption & Decryption)
- 密钥管理技术(Key Management)
- 身份认证技术(Authentication)
- 内联网VPN (Intranet VPN)
- 外联网VPN (Extranet VPN)
- 远程接入VPN (Access VPN)
- PPP 协议(Point- to-Point Protocol)
- 链路控制协议( Link Control Protocol, LCP)
- 口令认证协议(Password Authentication Protocol, PAP )
- 挑战—握手验证协议( Challenge Handshake Authentication Protocol, CHAP )
- 点对点隧道协议(Point-to-Point Tunneling Protocol,PPTP)
- PPTP 接入集中器(PPTP Access Concentrator, PAC)
- PPTP 网络服务器( PPTP Network Server, PNS)
- GRE (Generic Routing Encapsulation )
- 第2 层隧道协议(Layer 2 Tunneling Protocol, L2TP)
- IPSec (IP Security)
- 数据完整性(Data Integrity)
- 认证(Authentication)
- 保密性(Confidentiality)
- 应用透明的安全性(Application-transparent Security)
- 认证头(Authentication Header, AH)
- 封装安全负荷(Encapsulating Security Payload, ESP)
- Internet 密钥交换协议(Internet Key Exchange, IKE)
- HMAC-SHA 1 (Hashed Message Authentication Code-Secure Hash Algorithm 1)
- HMAC-MD5 (HMAC-Message Digest 5)
- DES-CBC ( Data Encryption Standard Cipher Block Chaining Mode)
- AES128-CBC (Advanced Encryption Standard CBC)
- ISAK.MP (Internet Security Association and Key Management Protocol)
- SKEME(Versatile Secure Key Exchange Mechanism for Internet Protocol)
- 安全关联(Security Association, SA)
- ISAK.MP 第一阶段(Main Mode, MM)
- ISAK.MP 第二阶段(QuickMode, QM)
- 安全套接层(Secure Socket Layer, SSL)
- 传输层安全标准(Transport Layer Security, TLS)
- 改变密码协议(change cipher spec protocol)
- 数字证书(Certificate)
- 请求发送数字证书(CertificateRequest)
- 服务器密钥交换报文( ServerKey Exchange)
- 客户端密钥交换报文C ClientK.ey Exchange)
- 签名信息(CertificateVerify)
- 改变密码(change cipher spec)
- 密码列表(cipher_suite)
- 前主密钥值(pre—master_ secret)
- 国防报文系统(Defense Message System, DMS)
- 令牌加密密钥(Token Encryption Key, TEK)
- 安全的超文本传输协议(Secure HTTP, S-HTTP)
- 请求行(Request Line)
- 状态行(Status Line)
- 报文体(Message Body)
- PGP(Pretty Good Privacy)
- 公钥指纹(public-key fingerprint)
- SLED ( Stable Large E-mail DataBase)
- PGP 证书服务器(PGP Certificate Server)
- PGP 软件开发工具包( PGP Software Development Kit)
- S/MIME (Secure/Multipurpose Internet Mail Extensions)
- 安全的电子交易( Secure Electronic Transaction , SET)
- STT (Secure Transaction Technology)
- AS (Authentication Server): 认证服务器
- TGS (Ticket Granting Server): 票证授予服务器
- 密钥分发中心(Key Distribution Center,KDC)
- TGT (Ticket Granting Ticket): 用户向TGS 证明自己身份的初始票据
- 最低保护(Minimal Protection)
- 自定式保护(Discretionary Protection)
- 强制式保护(Mandatory Protection)
- 可验证保护(Verified Protection)
- 可信任计算机系统评量基准(Trusted Computer System Evaluation Criteria)
- 双宿主网关(Dual-Homed Gateway)
- 非军事区(DeMilitarized Zone, DMZ)
- 类属解密(Generic Decryption, GD)
- 入侵检测系统(Intrusion Detection System, IDS)
- 公共入侵检测框架( Common Intrusion Detection Framework, CIDF)
- 事件产生器(Event generators, E-boxes)
- 事件分析器( Event Analyzers, A-boxes)
- 事件数据库(Event DataBases, D-boxes)
- 响应单元( Response units, R-boxes)
- 入侵防御系统(Intrusion Prevention System, IPS )