Definition

Whitelisting (also referred to as deny all, allow by exception) is

[t]he process used to identify: (i) software programs that are authorized to execute on an information system; or (ii) authorized Universal Resource Locators (URL)/websites.[1]
[a] computer administration practice used to permit users the ability to access only authorized Web sites.[2]

References

  1. NIST Special Publication SP 800-171, App. B, at B-8.
  2. Cybersecurity Assessment Tool, App. C: Glossary, at 4 n.5 (full-text).

