Chapter 5 VPN and Security Products

Flexible deployment options—A range of high-availability devices provide the flexible backbone for creating the secure and efficient intrusion protection system.

The current Cisco IDS sensing portfolio includes the following sensor appliances: IDS 4215, IDS 4235, IDS 4250, and IDS 4250-XL. Additionally, Cisco IDS delivers solutions that are integrated into the Catalyst 6500 switch with the Intrusion Detection System Module (IDSM-2) and into the Cisco Access Routers with the IDS Network Module (NM-CIDS).

When to Sell

Sell This Product

Cisco IDS Network Sensors

Key Features

When a Customer Needs These Features

A distributed intrusion detection system capable of directing and forwarding alarms between local, regional, and headquarters-based monitoring consoles

A scalable architecture to allow the deployment of large numbers of sensors in order to provide comprehensive security coverage in large network environments

Cisco network IDS appliances (Cisco IDS 4200 Series Appliances) that can be deployed throughout the network with the ability to monitor multiple subnets using a single appliance through the support of multiple interfaces

The Cisco IDS Switch Module (IDSM2) enables customers to perform both security monitoring and switching functions within the same chassis

The Cisco IDS Network Module enables full features intrusion protection integrated into the Cisco Access Routers

Broad performance range from 10 Mbps to 1 Gbps

Automated false alarm reduction capabilities through CTR (Cisco Threat Response)

Flexible IDS signature customization options

Broad range of management and monitoring options to fit any environment.

A robust, 24 hour x 7 day-a-week monitoring and response system with the latest attack detection capabilities

High-Speed Performance including support for full line rate gigabit environments

Integrated solutions for the Cisco Catalyst Switch and Cisco Access Routers

Easy Installation and Setup; Remote Configuration Capability

Comprehensive Attack Database

Notification actions; Automated response actions

Comprehensive IDS Anti-Evasion Techniques

Cisco IOS-like CLI for full featured IDS management capabilities

Competitive Products

• Internet Security Systems (ISS): RealSecure

• Snort: IDS

 

 

• Symantec: Recourse Manhunt & ManTrap/NetProwler

• Tipping Point

 

 

• Enterasys: Dragon IDS

 

• NAI: Intrushield

 

 

• Intrusion.com: SecureNet

 

• Network Flight Recorder, Inc.: NFR

 

• Netscreen: OneSecure IDP

 

 

 

 

 

Specifications

 

 

 

 

 

 

 

 

 

 

 

IDS Network

 

 

 

 

 

IDS Module

Module

Feature

IDS-4215

IDS-4235

IDS-4250

IDS-4250-XL

(IDSM-2)

(NM-CIDS)

Performance

80 Mbps

250 Mbps

500 Mbps

1000 Mbps

600 Mbps

45Mbps

Processor

850 MHz

1.26 GHz

Dual 1.26 GHz

Dual 1.26 GHz.

Custom Hardware 10-45 Mbps

 

 

 

 

Includes

 

 

 

 

 

 

customized HW

 

 

 

 

 

 

acceleration

 

 

RAM

512 MB

1 GB

2 GB

2 GB

2 GB

512 MB

Cisco Intrusion Detection System (IDS) Network Sensors

5-9

Page 9
Image 9
Cisco Systems Cisco 1700, 3600, 2600, 3700 IDS Module Feature IDS-4215 IDS-4235 IDS-4250, IDSM-2, IDS Network, Performance

Cisco 1700, and 7200, 3700, 2600, 3600 specifications

Cisco Systems has been a leader in networking technology for decades, and among its extensive product lineup is the Cisco 1700 series routers. Introduced in the late 1990s, the Cisco 1700 series is designed to provide flexible, reliable, and secure connectivity for small to medium-sized businesses and branch offices. These routers offer a balance of performance and capability, making them an attractive choice for organizations looking to enhance their networking infrastructure.

One of the main features of the Cisco 1700 series is its modular architecture. The routers come with various slot options that allow users to customize their devices according to specific networking needs. This modularity enables enterprises to add features such as additional interfaces or Enhanced Service Modules (ESMs) as their networking requirements evolve. This means businesses can invest in a powerful router that can grow alongside their needs.

Another notable characteristic of the Cisco 1700 series is its comprehensive support for both data and voice services. It allows organizations to implement converged networks that support voice over IP (VoIP) applications, helping to streamline communication processes within businesses. With its Quality of Service (QoS) features, Cisco 1700 ensures that voice traffic is prioritized over less critical data flows, providing users with clear voice transmission and reducing latency.

The Cisco 1700 also incorporates a range of security features to safeguard data. It supports advanced firewall capabilities and can be configured with Virtual Private Network (VPN) options for secure remote access. This focus on security is essential in today's environment, where cyber threats are increasingly sophisticated.

Additionally, the Cisco 1700 series is equipped with the Cisco IOS operating system, which provides a comprehensive suite of networking commands and features. This includes advanced routing protocols, NAT (Network Address Translation), and a variety of dynamic routing options. Users benefit from a streamlined interface that allows for the easy configuration and management of network settings.

The routers also support various connectivity options, including multiple WAN interfaces, such as T1 or DSL connections, which facilitate easily accessible internet options. Coupled with its robust performance and reliability, the Cisco 1700 series remains a strong choice for organizations seeking to upgrade their communication infrastructures.

In summary, the Cisco 1700 series routers embody versatility, security, and performance. With their modular design, support for advanced voice and data services, and comprehensive security measures, they provide small to medium-sized businesses with a reliable solution to meet their networking needs. As enterprise requirements continue to grow, Cisco's 1700 series stands out as a dependable choice for achieving connectivity and operational efficiency.