Datasheet

Cisco Systems, Inc.
All contents are Copyright © 1992–2004 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement.
Page 9 of 14
Security with VPN and Integrated Firewall
Hardware-Based Encryption Enables creation of VPNs by providing industry-standard data privacy,
integrity, and authenticity as data traverses the Internet or a shared public
network
Hardware-based VPN encryption performance of up to 90-Mbps throughput
3DES IPSec, AES, GRE, L2TP, L2F Choice of standards-based tunneling methods to create VPNs for IP and
non-IP traffic
Fully interoperable with public certificate authorities and IPSec
standards-based products
Part of the scalable Cisco end-to-end VPN solution portfolio
Cisco IOS Firewall Feature Set (CiscoSecure Integrated Software) includes context-based access control
for dynamic firewall filtering, denial of service detection and prevention,
Java blocking, and real-time alerts
Allows internal users to access the Internet with secure,
per-application-based, dynamic access control while preventing
unauthorized Internet users from accessing the internal LAN
NAT/PAT Hides internal IP addresses from external networks
Prevents certain denial-of-service attacks from outside networks on internal
hosts
Allows multiple users access via a single IP address
PAP/CHAP, MS-CHAP, RADIUS,
TACACS+
Supports all leading user identity verification schemes
Route and Router Authentication Accepts routing table updates from only known routers, ensuring that
no corrupt information from unknown sources is received
IKE, X.509v3 Digital Certification Ensures proper identity and authenticity of devices and data
Enables scalability to very large IPSec networks through automated key
management
Supportfor certificate enrollment protocol(CEP) with certification authorities
(CAs) such as Verisign and Entrust
ATM Features
ATM Traffic UBR, VBRnrt, VBRrt,
and CBR with Traffic Shaping
Ensure QoS guarantees for real-time traffic, with ability to send traffic over
the appropriate virtual circuit to provide ATM level shaping and ensure that
no head-of-line blocking occurs between circuits of different or equal traffic
classes
Up to 23 Virtual Circuits per WAN
Interface Card
Enables more sessions at a time and relevant for small and medium-sized
businesses and small branch offices with 50-200 employees
Per-VC queuing supported in Cisco IOS Release 12.2(2)XK, 12.2(4)XL,
12.2(13)T, 12.2(8)YN, and subsequent releases (per-VC queuing not
supported in Cisco IOS versions 12.2(4)T, 12.2(8)T1, or 12.2(11)T)
PPP over ATM Ensures compatibility with existing network
F5 OAM Continuity Check
(F5OAMCC)
Supported in Cisco IOS 12.2(4)XL, 12.2(11)T2, 12.2(8)YN, and subsequent
releases
Table 2 G.shdsl WAN Interface Cards Features and Benefits Summary (Continued)
Feature Benefits