Specifications

5-15
Cisco IOS Firewall
Chapter 5 VPN and Security
Key Features
Context-based access control (CBAC) provides secure, stateful, application-based
packet inspection, supporting the latest protocols and advanced applications
Cisco IOS Inline Intrusion Prevention for real-time monitoring, interception, and
response to network misuse for over 740 attack signatures
Supports URL Filtering either local on the router through exclusive domains as well as
use of external Websense and N2H2 servers.
Dynamic, per-user authentication/authorization for LAN, WAN, and VPN clients
Authentication proxy for https, ftp and telnet connections
Supports Cisco Router and Security Device Manager (SDM)
Graphical configuration and management via the VPN/Security Management Solution
(VMS) and the IP Solution Center (ISC)
Provides strong perimeter security for a complete Cisco IOS Software-based VPN
solution, including IPSec, QoS, and tunnelling
Competitive Products
Specifications
Part Numbers and Ordering Information
For More Information
See the Cisco IOS Firewall Feature Set Web site:
http://www.cisco.com/go/firewall
Nortel: BaySecure Firewall-1 Checkpoint, Nokia, Netscreen, etc
Feature Cisco IOS Firewall
Supported Network Interfaces
All network interfaces on supported platforms
Supported Platforms
Cisco 1720, 1800, 2600/2600XM, 2800, 3700, 3800, 7100, 7200, and 7301 series router platforms (supports
full feature set)
Cisco 800, UBR900, 1600, and 2500 series router platforms include all firewall features with exception of
intrusion detection/prevention and authentication proxy
Simultaneous Sessions
No maximum; dependent on platform, network connection, and traffic
Cisco IOS Firewall Performance
C800 - 10Mbps, C1700: 20Mbps; Cisco 1800: 125 Mbps,C2600XM: 35Mbps; C2691-VPN: 197Mbps; Cisco
2800: 530Mbps; C3725-VPN, C3745-VPN: 197 Mbps; Cisco 3825: 855Mbps; Cisco 3845:1 Gbps, 7200/7301
Bundles: 1Gbps
For Cisco IOS Images containing firewall (FW) and intrusion prevention (IPS) capabilities, see individual product pages of supported platforms
and the Cisco IOS Feature Navigator at http://www.cisco.com/go/fn (CCO login required) for part numbers and more info.