Cisco Systems 870 Router User Manual


 
68
69



With a processing performance of nearly 1
million-packets-per-second (Mpps), customers
can maximize router performance where space
is constrained “Rack and stack” functionality
allows customers to maximize the use of space
in expensive Internet service provider (ISP) data
centers This is ideal for a dedicated security or
QoS appliance at the edge of enterprise networks

A powerful single-processor platform, the Cisco
7301 offers customers a superior price/performance
ratio supporting high-speed media and high-density
configurations with up to 1 million packets per
second processing at a competitive price point

The dedicated VPN acceleration adapters
supported in the Cisco 7301 enable an integrated
solution for routing and security including QoS,
multicast, and multi-protocol traffic across the
VPN Utilizing the VPN Acceleration Module
(SA-VAM2+), the Cisco 7301 delivers 3-Key Triple
DES (168-bit) algorithms at speeds up to 260
Mbps for the most demanding headend, site-to-
site VPN deployments  The Cisco 7301 provides
an integrated security solution, which includes
IPSec, FW, and IDS features sets

With support for SSL VPN, access control lists
(ACL), Network Address Translation (NAT),
Netflow, along with firewall, intrusion prevention,
service level validation features, and a new
category of Virtual Private Network (GET VPN)
that eliminates the need for tunnels and increases
scalability, the Cisco 7301 is an ideal platform for
ensuring network security


A low price point makes the Cisco 7301 very
attractive, while allowing customers to easily
upgrade and redeploy their equipment as network
needs change

The Cisco 7301 delivers a full suite of Cisco IOS
Software services for managing network security,
allocating quality of service (QoS) among
applications and users, and providing value-
added services such as NetFlow accounting and
encryption QoS applications such as Committed
Access Rate (CAR), Weighted Random Early
Detection (WRED), and Weighted Fair Queuing
(WFQ) can be flexibly applied to provide
precedence across IP addresses, applications, or
specific users with a high level of granularity

The Cisco 7301 shares a majority of port adapters
with the Cisco 7200 VXR, Cisco 7201, Cisco
7304, Cisco 7500, and Cisco 7600 series, which
simplifies inventory management as well as
provides investment protection through compatible
interfaces amongst different router series
Cisco ISG is a software feature set available in Cisco IOS Software Release 12.2(28)SB
for the 7200 Series, and 7301 Routers. Cisco ISG takes advantage of Cisco IOS
routing capabilities to provide uplink redundancy, load-balancing, and MPLS
integration. Cisco ISG is highly scalable, with consistent performance regardless of
the features used. It can define and enforce local policy embedded directly in the
network, or interact with centralized policy-management systems. Its integral role
within the Cisco IP Next-Generation Network (NGN) Service Exchange Framework
helps create consistent services in a highly flexible way.

The Cisco 7301 Services Aggregation Routers offer integrated voice, video, and appli-
cations support, which include the TDM-enabled VXR chassis, voice port adapters,
IP-to-IP gateway support, and comprehensive Cisco IOS Software features supporting
optimum voice and video delivery to the extended enterprise.
The Cisco 7301 delivers exceptional versatility in a compact form factor, and are
especially suitable for applications that require Gigabit Ethernet and OC3/STM-1
connectivity with services being deployed. Offering processing speeds up to one
million packets per second, three built-in Gigabit Ethernet ports on the routing engine,
interfaces ranging from NxDS0 to OC-3 POS and STM1, and an unparalleled number
of high-touch IP.


• Advanced Encryption Standard (AES) 128,192,
and 256; Triple Data Encryption Standard
(3DES); and DES cryptology support
• Cisco Easy VPN remote
• Cisco Easy VPN server
• Dynamic Multipoint VPN (DMVPN)
• Virtual Tunnel Interfaces (VTI)
• 8021x
• VPN QoS—Preclassication support
• Support for up to 5000 IPSec tunnels

• Comprehensive provider edge capabilities
• Virtual routing and forwarding (VRF) rewall
and VRF IPSec

• Inline ability to drop packet, reset connection,
locally shun, or send an alarm
• Dynamically load and enable selected attack
signatures in the same manner as Cisco IPS
Appliances

• Control Plane Policing (CPP)
• AutoSecure
• CPU/Memory Threshold
• Secure Shell (SSH)
• Access Control List (ACL)
• Command Line Interface (CLI)
• Committed Access Rate (CAR)

• Feature rich, stateful rewall
• Per-user authentication and authorization
• Real-time alerts
• Transparent rewall
• IPv6 rewall
• VRF-Aware rewall
• Advanced Application Inspection and Control
– HTTP inspection engine
– E-mail inspection engines (SMTP, ESMTP,
IMAP, POP)

• Secure remote access for mobile users
without installing PC client software
• Integrated into the router—no separate
appliance required
• Supports up to 150 users
• Requires IOS WebVPN feature license
(licenses are per user) FL-WEBVPN-10,
FL-WEBVPN-25 or FL-WEBVPN-100 (licenses
are per user, purchase multiple quantities to
add up to the desired number of users)
• Requires an IOS security feature set (IOS
security feature set is included in all secure
router bundles)

• Local URL ltering in Cisco IOS software
based on external server
Cisco 7301 SeriesCisco 7301 Series