Specifications
5-15
Cisco IOS Firewall
Chapter 5 VPN and Security
Key Features
• Context-based access control (CBAC) provides secure, stateful, application-based
packet inspection, supporting the latest protocols and advanced applications
• Cisco IOS Inline Intrusion Prevention for real-time monitoring, interception, and
response to network misuse for over 740 attack signatures
• Supports URL Filtering either local on the router through exclusive domains as well as
use of external Websense and N2H2 servers.
• Dynamic, per-user authentication/authorization for LAN, WAN, and VPN clients
• Authentication proxy for https, ftp and telnet connections
• Supports Cisco Router and Security Device Manager (SDM)
• Graphical configuration and management via the VPN/Security Management Solution
(VMS) and the IP Solution Center (ISC)
• Provides strong perimeter security for a complete Cisco IOS Software-based VPN
solution, including IPSec, QoS, and tunnelling
Competitive Products
Specifications
Part Numbers and Ordering Information
For More Information
See the Cisco IOS Firewall Feature Set Web site:
http://www.cisco.com/go/firewall
• Nortel: BaySecure Firewall-1 • Checkpoint, Nokia, Netscreen, etc
Feature Cisco IOS Firewall
Supported Network Interfaces
All network interfaces on supported platforms
Supported Platforms
Cisco 1720, 1800, 2600/2600XM, 2800, 3700, 3800, 7100, 7200, and 7301 series router platforms (supports
full feature set)
Cisco 800, UBR900, 1600, and 2500 series router platforms include all firewall features with exception of
intrusion detection/prevention and authentication proxy
Simultaneous Sessions
No maximum; dependent on platform, network connection, and traffic
Cisco IOS Firewall Performance
C800 - 10Mbps, C1700: 20Mbps; Cisco 1800: 125 Mbps,C2600XM: 35Mbps; C2691-VPN: 197Mbps; Cisco
2800: 530Mbps; C3725-VPN, C3745-VPN: 197 Mbps; Cisco 3825: 855Mbps; Cisco 3845:1 Gbps, 7200/7301
Bundles: 1Gbps
For Cisco IOS Images containing firewall (FW) and intrusion prevention (IPS) capabilities, see individual product pages of supported platforms
and the Cisco IOS Feature Navigator at http://www.cisco.com/go/fn (CCO login required) for part numbers and more info.