MLchartDataset catalogue

Session

Term · Cybersecurity · MLC-T-CYB-003910

1. A persistent interaction between a subscriber and an endpoint, either an RP or a CSP. A session begins with an authentication event and ends with a session termination event. A session is bound by the use of a session secret that the subscriber’s software (e.g., browser, application, OS) can present to the RP to prove association of the session with the authentication event.

2. A persistent interaction between a subscriber and an endpoint, either an RP or a CSP. A session begins with an authentication event and ends with a session termination event. A session is bound by use of a session secret that the subscriber’s software (a browser, application, or OS) can present to the RP or CSP in lieu of the subscriber’s authentication credentials.

3. A persistent interaction between a subscriber and an end point, either a relying party or a Credential Service Provider. A session begins with an authentication event and ends with a session termination event. A session is bound by use of a session secret that the subscriber’s software (a browser, application, or operating system) can present to the relying party or the Credential Service Provider in lieu of the subscriber’s authentication credentials.

Table 1. Record
IdentifierMLC-T-CYB-003910
FieldCybersecurity
ReferencesNIST SP 800-63-4; NIST SP 800-63A-4; NIST SP 800-63-3 [Superseded]; NIST SP 1800-17b; NIST SP 1800-17c; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-003910",
  "term": "Session",
  "field": "Cybersecurity",
  "definition": "1. A persistent interaction between a subscriber and an endpoint, either an RP or a CSP. A session begins with an authentication event and ends with a session termination event. A session is bound by the use of a session secret that the subscriber’s software (e.g., browser, application, OS) can present to the RP to prove association of the session with the authentication event.\n\n2. A persistent interaction between a subscriber and an endpoint, either an RP or a CSP. A session begins with an authentication event and ends with a session termination event. A session is bound by use of a session secret that the subscriber’s software (a browser, application, or OS) can present to the RP or CSP in lieu of the subscriber’s authentication credentials.\n\n3. A persistent interaction between a subscriber and an end point, either a relying party or a Credential Service Provider. A session begins with an authentication event and ends with a session termination event. A session is bound by use of a session secret that the subscriber’s software (a browser, application, or operating system) can present to the relying party or the Credential Service Provider in lieu of the subscriber’s authentication credentials.",
  "references": [
    "NIST SP 800-63-4; NIST SP 800-63A-4",
    "NIST SP 800-63-3 [Superseded]",
    "NIST SP 1800-17b; NIST SP 1800-17c",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/session/"
}

Record 3,910 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.