Cisco 2811 Router Guide - Page 25

Integrated Wireless LAN Capability - security bundle

Page 25 highlights

Cisco 1800 Series (Fixed-Configuration) Benefits and Advantages continued The Cisco 1800 Series fixed-configuration routers help enable a network infrastructure for SMBs and enterprise small branch offices, providing access to the Internet, corporate headquarters, or other remote offices, while securing and protecting critical data with integrated Cisco IOS Software security features and capabilities. They also help businesses reduce costs by enabling deployment of a single device to provide multiple services (integrated router with redundant link, LAN switch, firewall, VPN, IPS, wireless technology, and Quality of Service [QoS]) typically performed by separate devices. Cisco IOS Software allows this flexibility, providing the industry's most robust, scalable, and feature-rich internetworking support, using the accepted standard networking software for the Internet and private WANs. Security Features Cisco IOS Firewall • Stateful firewall with URL filtering • Per-user authentication and authorization • Real-time alerts • Transparent firewall • IPv6 firewall VPN • Advanced Encryption Standard (AES) 128, 192, and 256 • Triple Data Encryption Standard (3DES), and DES encryption • Embedded hardware-based VPN acceleration on the motherboard • Cisco Easy VPN remote and server support • Dynamic Multipoint VPN (DMVPN) • Group Encrypted Transport VPN (GET VPN) Onboard USB Port • USB 2.0 ports (2) (Cisco 1811 and 1812 models only) IPS • More than 700 IPS signatures supported in Cisco IOS Software, with the ability to load and enable selected IPS signatures URL Filtering • Local URL filtering in Cisco IOS Software based on external server (Websense and N2H2) • Stateful firewall contains URL filtering Cisco SDM • Cisco Router and Security Device Manager (SDM) IOS WebVPN (SSL VPN) • Secure remote access for mobile users without installing PC client software • Integrated into the router-no separate appliance required • Cisco 1801 and 1812 supports up to 10 users • Requires IOS WebVPN feature license FL-WEBVPN-10 • Requires an IOS security feature set (IOS security feature set is included in all secure router bundles) 46 Security Application Example Branch Office Cisco 1811/1812 Router with IOS Firewall, NAC, IPsec VPN, and IPS Enabled VPN Tunnel Cisco 1800 Series (Fixed-Configuration) Headquarters Office Internet Wireless Integrated Wireless LAN Capability Cisco 1800 Series of fixed-configuration routers includes models with an integrated wireless access point, providing secure router and secure wireless LAN services in one device, helping businesses reduce total cost of ownership with simplified WLAN deployment and management capabilities. The integrated wireless access point supports IEEE 802.11a/b/g simultaneously to provide highspeed wireless capability and flexibility to support 2.4 GHz and 5 GHz dual-band simultaneous operation, making them ideal choices for hotspot deployments and wireless office solutions. WiFi Certified client devices including Cisco Aironet, WiFi Certified and Cisco Compatible client devices are fully supported. The Cisco 1800 Series routers with integrated wireless access points are WiFi certified and support WPA and WPA2 providing secure mutual authentication and encryption via Cisco IOS Software features to meet the strict demands of today's businesses. These products also provide support for multiple BSSIDS (8) and multiple wireless VLANs (16 with 8 encrypted) that can be configured to provide additional security, segmentation, and separation of user groups. When using the routers in conjunction with the Cisco Service Selection Gateway (SSG) and Subscriber Edge Services Manager (SESM), managed service providers can incorporate service-based authorization and accounting, and service and subscriber management for customizable, on-demand wireless services such as hotspots. Additional features such as Universal Client mode allow the router to wirelessly connect to an AP (such as an outdoor wireless Mesh network) and local authentication allow users to maintain wireless connectivity to the router in the event that a remote authentication server goes down. Quality of Service (QoS) via WiFi Multimedia (WMM) is also supported. 47

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111

46
47
Wireless
Integrated Wireless LAN Capability
Cisco 1800 Series of fixed-configuration routers
includes models with an integrated wireless access
point, providing secure router and secure wireless
LAN services in one device, helping businesses
reduce total cost of ownership with simplified
WLAN deployment and management capabilities.
The integrated wireless access point supports
IEEE 802.11a/b/g simultaneously to provide high-
speed wireless capability and flexibility to support
2.4 GHz and 5 GHz dual-band simultaneous
operation, making them ideal choices for hotspot
deployments and wireless office solutions. WiFi
Certified client devices including Cisco Aironet,
WiFi Certified and Cisco Compatible client devices
are fully supported.
The Cisco 1800 Series routers with integrated
wireless access points are WiFi certified and
support WPA and WPA2 providing secure mutual
authentication and encryption via Cisco IOS
Software features to meet the strict demands of
today’s businesses. These products also provide
support for multiple BSSIDS (8) and multiple
wireless VLANs (16 with 8 encrypted) that can
be configured to provide additional security,
segmentation, and separation of user groups.
When using the routers in conjunction with the
Cisco Service Selection Gateway (SSG) and
Subscriber Edge Services Manager (SESM),
managed service providers can incorporate
service-based authorization and accounting,
and service and subscriber management for
customizable, on-demand wireless services such
as hotspots. Additional features such as Universal
Client mode allow the router to wirelessly connect
to an AP (such as an outdoor wireless Mesh
network) and local authentication allow users to
maintain wireless connectivity to the router in the
event that a remote authentication server goes
down. Quality of Service (QoS) via WiFi Multimedia
(WMM) is also supported.
Cisco 1800 Series (Fixed-Configuration)
Internet
Branch Office
Headquarters Office
Cisco 1811/1812 Router with
IOS Firewall, NAC, IPsec VPN,
and IPS Enabled
VPN Tunnel
The Cisco 1800 Series fixed-configuration routers
help enable a network infrastructure for SMBs and
enterprise small branch offices, providing access
to the Internet, corporate headquarters, or other
remote offices, while securing and protecting
critical data with integrated Cisco IOS Software
security features and capabilities. They also help
businesses reduce costs by enabling deployment
of a single device to provide multiple services
(integrated router with redundant link, LAN switch,
firewall, VPN, IPS, wireless technology, and Quality
of Service [QoS]) typically performed by separate
devices. Cisco IOS Software allows this flexibility,
providing the industry’s most robust, scalable,
and feature-rich internetworking support, using
the accepted standard networking software for the
Internet and private WANs.
Benefits and Advantages
continued
Cisco 1800 Series (Fixed-Configuration)
Security Features
Security Application Example
Cisco IOS Firewall
• Stateful firewall with URL filtering
• Per-user authentication and authorization
• Real-time alerts
• Transparent firewall
• IPv6 firewall
VPN
• Advanced Encryption Standard (AES) 128, 192, and 256
• Triple Data Encryption Standard (3DES), and DES encryption
• Embedded hardware-based VPN acceleration on the motherboard
• Cisco Easy VPN remote and server support
• Dynamic Multipoint VPN (DMVPN)
• Group Encrypted Transport VPN (GET VPN)
Onboard USB Port
• USB 2.0 ports (2) (Cisco 1811 and 1812 models only)
IPS
• More than 700 IPS signatures supported in Cisco IOS Software, with the ability to load and enable
selected IPS signatures
URL Filtering
• Local URL filtering in Cisco IOS Software based on external server (Websense and N2H2)
• Stateful firewall contains URL filtering
Cisco SDM
• Cisco Router and Security Device Manager (SDM)
IOS WebVPN (SSL VPN)
• Secure remote access for mobile users without installing PC client software
• Integrated into the router—no separate appliance required
• Cisco 1801 and 1812 supports up to 10 users
• Requires IOS WebVPN feature license FL-WEBVPN-10
• Requires an IOS security feature set (IOS security feature set is included in all secure router bundles)