13.09.2014 Views

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Information Assurance—The Department of Defense Directive 8500.1 ∗ def<strong>in</strong>es <strong>in</strong>formation<br />

assurance as “Measures that protect and defend <strong>in</strong>formation and <strong>in</strong>formation systems by ensur<strong>in</strong>g<br />

their availability, <strong>in</strong>tegrity, authentication, confidentiality, and non-repudiation. This <strong>in</strong>cludes<br />

provid<strong>in</strong>g for restoration of <strong>in</strong>formation systems by <strong>in</strong>corporat<strong>in</strong>g protection, detection, and<br />

reaction capabilities.” Several synonyms to IA exist: IT security and <strong>in</strong>formation systems<br />

security.<br />

Likelihood—Indication of the probability that a potential vulnerability may be exercised with<strong>in</strong><br />

the construct of the associated threat environment.<br />

Logical network system—As used <strong>in</strong> this study, a logical network system is a partitioned<br />

network. Synonymous term is network enclave, e.g., a VPN.<br />

National Information Assurance Partnership—A jo<strong>in</strong>t activity of National Institute of Standards<br />

and Technology (NIST) and NSA to establish an IT product security evaluation program based<br />

on the CC. This program is supported by a number of accredited, <strong>in</strong>dependent test<strong>in</strong>g<br />

laboratories.<br />

Physical network system—The physical media and <strong>in</strong>termediate system devices (e.g., router,<br />

bridge, hub) that physically create an actual function<strong>in</strong>g network. For example, <strong>LANs</strong> and/or<br />

WAN entities connected <strong>in</strong>to a common network system. Physical network systems are the<br />

network system elements that physically convey network packets.<br />

Risk—“Risk is a function of the likelihood of a given threat-source’s exercis<strong>in</strong>g a particular<br />

vulnerability, and the result<strong>in</strong>g impact of that adverse event on the organization.” (NIST 800-30<br />

Risk Assessment)<br />

Risk assessment—“Risk assessment is the first process <strong>in</strong> the risk management methodology.<br />

Organizations use risk assessment to determ<strong>in</strong>e the extent of the potential threat and the risk<br />

associated with an IT system throughout its lifecycle. The output of this process helps to<br />

identify appropriate controls for reduc<strong>in</strong>g or elim<strong>in</strong>at<strong>in</strong>g risk dur<strong>in</strong>g the risk mitigation process.”<br />

(NIST 800-30 Risk Assessment)<br />

Severity—A measure of the effect of a failure condition on either the airplane or its occupants,<br />

<strong>in</strong>clud<strong>in</strong>g: (1) reduction <strong>in</strong> airplane safety marg<strong>in</strong>s or airplane functional capabilities <strong>in</strong>clud<strong>in</strong>g<br />

possible ma<strong>in</strong>tenance activity, (2) <strong>in</strong>crease <strong>in</strong> flight crew workload or conditions impair<strong>in</strong>g flight<br />

crew efficiency, and (3) distress or <strong>in</strong>jury to airplane occupants.<br />

SYN—The synchronous (SYN) bit <strong>in</strong> the TCP protocol header is used to establish TCP<br />

connections. In session establishment, it is associated with the acknowledgement (ACK) bit. A<br />

TCP connection request has SYN=1 and ACK=0 to <strong>in</strong>dicate that the piggyback<br />

acknowledgement field is not <strong>in</strong> use. The connection reply does bear an acknowledgement, so it<br />

has SYN=1 and ACK=1. Therefore, the SYN bit is used to denote a connection request and a<br />

∗<br />

Department of Defense Directive (DoDD) 8500.1, “Information Assurance (IA),” October 24, 2002, ASD(C3I),<br />

http://west.dtic.mil/whs/directives/corres/pdf2/d85001p.pdf<br />

159

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!