Installation guide
30
Release Notes for Cisco uBR7200 Series for Cisco IOS Release 12.1 T
78-10643-04 Rev. B0
New and Changed Information
The cable modem remote command configures the router for the polling interval; the no version of this
command disables the status polling. The show cable modem remote-query command displays the
collected information:
• Downstream receive power level
• Downstream signal/noise ratio (SNR)
• Upstream power level
• Transmit timing offset
• Micro reflection (in dB)
Firewall Enhancements
Cisco IOS Release 12.1(1a)T1 enhances the previous Cisco IOS Secure Integrated Software feature set
with the following set of features:
• Context-Based Access Control (CBAC) that intelligently filters TCP and UDP packets based on the
application-layer protocol. This includes Java applets, which can be blocked completely or allowed
only from known and trusted sources.
• Detection and prevention of the most common denial of service (DoS) attacks, such as ICMP and
UDP echo packet flooding, synchronize/start (SYN) packet flooding, half-open or other unusual
TCP connections, and deliberate misfragmentation of IP packets.
• Support for a broad range of commonly used protocols, including H.323 and NetMeeting, FTP,
HTTP, MS Netshow, RPC, SMTP, SQL*Net, and TFTP.
• Authentication Proxy for authentication and authorization of web clients on a per-user basis.
• Dynamic port mapping that maps the default port numbers for well-known applications to other
port numbers. This can be done on a host-by-host basis or for an entire subnet, providing a large
degree of control over which users can access different applications.
• Configurable alerts and audit trail.
• Intrusion Detection System (IDS) that recognizes the signatures of 59 common attack profiles.
When an intrusion is detected, IDS can either send an alarm to a syslog server or to NetRanger
Director, drop the packet, or reset the TCP connection.
• User-configurable audit rules.
• Configurable real-time alerts and audit trail logs.
For general information, see the description of the Cisco IOS Firewall Feature Set in the Cisco Product
Catalog. For detailed information, see the Cisco IOS Firewall Feature Set documentation set, as well
as the sections on Traffic Filtering and Firewalls in the Security Configuration Guide and Security
Command Reference (available on the Documentation CD-ROM and CCO).
Frame Relay Support
Frame Relay provides a packet-switching data communications capability that is used across the
interface between user devices, such as the Cisco uBR7200 Series Universal Broadband Routers, and
network equipment (switching nodes). As an interface between user and network equipment, Frame
Relay provides a means for statistically multiplexing many logical data conversations (virtual circuits)
over a single physical transmission link. A Frame Relay service may support Permanent Virtual Circuits
(PVCs) or Switched Virtual Circuits (SVCs). The Cisco uBR7200 Series Universal Broadband Routers
support PVCs only.