What is 主机隔离遏制?
In this glossary, 主机隔离遏制 refers to: A network defense strategy to restrict or cut off network access for a compromised or suspicious host to prevent lateral movement and further infection. Referenced in NIST SP 800-61r2 and CIS Controls v8.
How is 主机隔离遏制 used in cybersecurity?
In cybersecurity communication, this term appears in contexts such as: "在受影响工作站上启动主机隔离遏制,仅允许取证调查所需的网络连接,其余全部阻断。"
Why does 主机隔离遏制 matter in cybersecurity?
主机隔离遏制 matters because it supports clear communication in Network Security contexts for SOC Analysts, Security Engineers, and Incident Responders. It also connects to aviation training and exam language such as CISSP, CompTIA Security+, and CEH.
Who uses 主机隔离遏制?
主机隔离遏制 is mainly used by SOC Analysts, Security Engineers, and Incident Responders.
What category does 主机隔离遏制 belong to?
In this glossary, 主机隔离遏制 is grouped under Network Security. Related pages in this category explain adjacent procedures, commands and operational concepts.
Where does this definition come from?
This definition is sourced from ISO 27001, NIST Cybersecurity Framework, MITRE ATT&CK and published by Protermify Cybersecurity as a static cybersecurity reference page.