User guide
Release Notes for Cisco 2500 Series for Cisco IOS Release 12.0 T 23
New Software Features in Release 12.0(3)T
SNMPv3 provides an identification strategy for SNMP devices to facilitate communication only
between known SNMP strategy. Each SNMP device has an identifier called the SNMP EngineID
which is a copy of SNMP. Each SNMP message contains an SNMP EngineID. SNMP
communication is possible only if an SNMP entity knows the identity of its peer SNMP device.
SNMPv3 also contains a security model or security strategy that exists between an SNMP user and
the SNMP group to which the user belongs. A security model may define the security policy within
an administrative domain or a intranet. The SNMPv3 protocol consists of the specification for the
User based Security Model (USM).
Definition of security goals where the goals of message authentication service includes the following
protection strategies:
• Modification of Information or protection against some unauthorized SNMP entity altering
in-transit SNMP messages generated on behalf of an authorized principal)
• Masquerade or protection against attempting management operations not authorized for some
principal by assuming the identity of another principal that has the appropriate authorizations
• Message Stream Modification or protection against messages getting maliciously re-ordered,
delayed or replayed in order to effect unauthorized management operations
• Disclosure or protection against eavesdropping on the exchanges between SNMP engines. Three
different types of communication mechanisms are available for this protection strategy. They are:
— communication without authentication and privacy (NoAuthNoPriv)
— communication with authentication and without privacy (AuthNoPriv)
— communication with authentication and privacy (AuthPriv)
SS7
Common Channel Signaling #7 (SS7) is a worldwide standard for switch to switch signaling in the
public switched telephone network (PSTN). The Cisco SC2200 Signaling Controller provides
centralized functions for adding Signaling System #7 (SS7) interfaces to remote access points of
presence (POPs). The Cisco SC2200 signaling controller works together with Cisco access servers
(AS5800, AS5300, and AS5200) to create a virtual switch, which functions from a signaling
perspective as a terminating and originating end-office with SS7. Cisco access servers provide the
interface from the circuit switched network to the data network. The protocol architecture for
communication between Cisco's SC2200 signaling controller and access servers provides for
reliable signaling over a IP infrastructure This feature provides the control protocol for Cisco access
servers to support the Cisco SS7 dial access solution.
Tag Switch Controller (TSC)
The Tag Switch Controller (TSC) is a tag switch router (TSR) that controls the operation of a
separate ATM switch. Together, the router and ATM switch function as a single ATM Tag Switching
router (ATM-TSR). A Cisco 7200 or 7500 series router acts as the TSC and a Cisco BPX 8600
Service Node (8620 wide area switch or 8650 IP+ATM switch) or a partner's switch acts as the
VSI-controlled ATM switch. The TSC controls the ATM switch using the Cisco Virtual Switch
Interface (VSI), which runs over an ATM link connecting the two.
Token Ring MPOA
Token Ring Multiprotocol over ATM (MPOA) allows Token Ring hosts in an ATM network to
communicate over alternate paths (called shortcuts) through the ATM network, which bypasses
intermediate router hops that would otherwise be encountered in the default path.