Chapter 5 VPN and Security Products

VLAN trunking (802.1q tag) support for simplified deployment in switched network environments

Multimedia and VoIP support for widely popular standards, H.232 v4, TAPI, JTAPI, RTSP, SIP, MGCP and SCCP

Web-Based PIX Device Manager (PDM)—For simplified configuration, real-time and historical reports, performance baselines and security events information

Auto Update, SSH, SNMP, TFTP, HTTPS, and telnet for remote management

Support from two 10/100 Ethernet interfaces to up to nine Gigabit Ethernet interfaces

Competitive Products

• Check Point Software: FireWall-1 / VPN-1

 

• SonicWALL: SonicWALL Security Appliances

• NetScreen: NetScreen Security Appliances

 

• WatchGuard Technologies: Firebox-series and V-series Security

• Nokia: IP-Series Security Appliances

 

Appliances

 

 

 

 

 

 

Specifications

 

 

 

 

 

 

 

 

 

 

 

Feature

PIX 501

PIX 506E

PIX 515E

PIX 525

PIX 535

 

 

 

 

 

 

 

Processor

133 MHz

 

300 MHz

433 MHz

600 MHz

1.0 GHz

RAM

16 MB

 

32 MB

32 or 64 MB

128 or 256 MB

512 MB or 1 GB

Flash Memory

8 MB

 

8 MB

16 MB

16 MB

16 MB

PCI Slots

None

 

None

2

3

9

Fixed Interfaces

Four port 10/100 switch

Two 10Base-T

Two 10/100 Fast

Two 10/100 Fast

None

(Physical)

(inside), One 10Base-T

Ethernet

Ethernet

Ethernet

 

 

Ethernet (outside)

 

 

 

 

Maximum

Four port 10/100 switch

Two 10Base-T

Six 10/100 Fast

Eight 10/100 FE or

Ten-10/100 FE or GE

Interfaces

(inside), One 10Base-T

Ethernet

Ethernet (FE) or 8

GE or 10 VLANs

or 24 VLANs

(Physical and

Ethernet (outside)

 

VLANs

 

 

 

 

 

 

 

 

Virtual)

 

 

 

 

 

 

VPN Accelerator

No

 

No

Yes, integrated in

Yes, integrated in

Yes, integrated in

Card+ (VAC+)

 

 

 

select models

select models

select models

Option

 

 

 

 

 

 

Failover Support

No

 

No

Yes, UR/FO models

Yes, UR/FO models

Yes, UR/FO models

 

 

 

 

only

only

only

Size

Desktop

 

Desktop

1 RU

2 RU

3 RU

Selected Part Numbers and Ordering Information1

 

 

Cisco PIX Bundles

 

 

 

 

 

 

PIX-535-UR-BUN

 

PIX 535 Unrestricted Bundle (Chassis, unrestricted software, two 10/100 ports, VPN Accelerator Card+)

PIX-535-R-BUN

 

PIX 535 Restricted Bundle (Chassis, restricted software, two 10/100 ports)

 

PIX-535-FO-BUN

 

PIX 535 Failover Bundle (Chassis, failover software, two 10/100 ports, VPN Accelerator Card+)

PIX-525-UR-GE-BUN

 

PIX 525 Unrestricted GE Bundle (Chassis, unrestricted software, two GE ports, two 10/100 ports, VPN

 

 

Acceleration Card+)

 

 

 

PIX-525-FO-GE-BUN

 

PIX 525 Failover GE Bundle (Chassis, failover software, two GE ports, two 10/100 ports, VPN Acceleration

 

 

Card+)

 

 

 

 

PIX-525-UR-BUN

 

PIX 525 Unrestricted Bundle (Chassis, unrestricted software, two 10/100 ports, VPN Accelerator Card+)

PIX-525-R-BUN

 

PIX 525 Restricted Bundle (Chassis, restricted software, two 10/100 ports)

 

PIX-525-FO-BUN

 

PIX 525 Failover Bundle (Chassis, failover software, two 10/100 ports, VPN Accelerator Card+)

PIX-515E-UR-FE-BUN

PIX 515E Unrestricted Bundle (Chassis, unrestricted software, six 10/100 ports, VPN Accelerator Card+)

PIX-515E-FO-FE-BUN

 

PIX 515E Failover Bundle (Chassis, failover software, six 10/100 ports, VPN Accelerator Card+)

PIX-515E-UR-BUN

 

PIX 515E Unrestricted Bundle (Chassis, unrestricted software, two 10/100 ports, VPN Accelerator Card+)

PIX-515E-R-BUN

 

PIX 515E Restricted Bundle (Chassis, restricted software, two 10/100 ports)

 

PIX-515E-FO-BUN

 

PIX 515E Failover Bundle (Chassis, failover software, two 10/100 ports, VPN Accelerator Card+)

PIX-515E-R-DMZ-BUN

PIX 515E DMZ Bundle (Chassis, restricted software, three 10/100 ports)

 

PIX-506E-BUN-K9

 

PIX 506E 3DES/AES Bundle (Chassis, software, 3DES/AES license, two 10-BaseT ports)2

PIX-501-BUN-K9

 

PIX 501 10 User/3DES/AES Bundle (Chassis, SW, 10 user/3DES/AES license, 4 port 10/100 switch)

PIX-501-50-BUN-K9

 

PIX 501 50 User/3DES/AES Bundle (Chassis, SW, 50 user/3DES/AES license, 4 port 10/100 switch)

PIX-501-UL-BUN-K9

 

PIX 501 Unlimited User/3DES/AES Bundle (Chassis, SW, Unlimited Users 3DES/AES license, 4 port 10/100

 

 

switch)

 

 

 

 

Cisco PIX Interfaces and Cards

 

 

 

 

PIX-1GE-66

 

PIX 66-MHz Single-port Gigabit Ethernet interface card (multimode fiber, SC connector)

PIX-4FE-66

 

PIX 66-MHz Four-port 10/100 Fast Ethernet interface card, RJ45

 

PIX-1FE

 

PIX Single-port 10/100 Fast Ethernet interface card

 

 

PIX-VPN-ACCEL

 

PIX DES/3DES VPN Accelerator Card (VAC)

 

 

PIX-VPN-PLUS

 

PIX DES/3DES/AES VPN Accelerator Card+ (VAC+)

 

 

Cisco PIX Security Appliance Series

5-4

Page 4
Image 4
Cisco Systems Cisco 1700, 3600, 2600, 3700, and 7200 manual Competitive Products, Specifications, Feature PIX PIX 506E PIX 515E

Cisco 1700, and 7200, 3700, 2600, 3600 specifications

Cisco Systems has been a leader in networking technology for decades, and among its extensive product lineup is the Cisco 1700 series routers. Introduced in the late 1990s, the Cisco 1700 series is designed to provide flexible, reliable, and secure connectivity for small to medium-sized businesses and branch offices. These routers offer a balance of performance and capability, making them an attractive choice for organizations looking to enhance their networking infrastructure.

One of the main features of the Cisco 1700 series is its modular architecture. The routers come with various slot options that allow users to customize their devices according to specific networking needs. This modularity enables enterprises to add features such as additional interfaces or Enhanced Service Modules (ESMs) as their networking requirements evolve. This means businesses can invest in a powerful router that can grow alongside their needs.

Another notable characteristic of the Cisco 1700 series is its comprehensive support for both data and voice services. It allows organizations to implement converged networks that support voice over IP (VoIP) applications, helping to streamline communication processes within businesses. With its Quality of Service (QoS) features, Cisco 1700 ensures that voice traffic is prioritized over less critical data flows, providing users with clear voice transmission and reducing latency.

The Cisco 1700 also incorporates a range of security features to safeguard data. It supports advanced firewall capabilities and can be configured with Virtual Private Network (VPN) options for secure remote access. This focus on security is essential in today's environment, where cyber threats are increasingly sophisticated.

Additionally, the Cisco 1700 series is equipped with the Cisco IOS operating system, which provides a comprehensive suite of networking commands and features. This includes advanced routing protocols, NAT (Network Address Translation), and a variety of dynamic routing options. Users benefit from a streamlined interface that allows for the easy configuration and management of network settings.

The routers also support various connectivity options, including multiple WAN interfaces, such as T1 or DSL connections, which facilitate easily accessible internet options. Coupled with its robust performance and reliability, the Cisco 1700 series remains a strong choice for organizations seeking to upgrade their communication infrastructures.

In summary, the Cisco 1700 series routers embody versatility, security, and performance. With their modular design, support for advanced voice and data services, and comprehensive security measures, they provide small to medium-sized businesses with a reliable solution to meet their networking needs. As enterprise requirements continue to grow, Cisco's 1700 series stands out as a dependable choice for achieving connectivity and operational efficiency.