© 2005 Cisco Systems, Inc. All rights reserved.
Important notices, privacy statements, and trademarks of Cisco Systems, Inc. can be found on cisco.com.
Page 6 of 16
A total of 8 VLANs can be configured to segment a network and offer additional security and separation
of network traffic.
Built-in, real-time clock maintains an accurate date and time for applications that require an accurate time
stamp—such as logging and digital certificates.
Eliminates the need for a cumbersome external power-adapter module and provides easier cable
management.
Integrated USB ports can be configured in the future to work with optional USB security token for off-
platform storage of VPN credentials or USB flash token for transferring IOS software and configurations.
Power over Ethernet (PoE)
802.3af Power over Ethernet support delivers power to IP phones or external wireless access points
through the 10/100 switch ports to eliminate the need for power cords for these devices.
Delivers flexibility in mounting on a wall or in a standard 19 inch rack. Optional rack mount kit can be
ordered for support in 19-inch rack.
Connects remote access clients and branch offices to central sites more cost-effectively and flexibly than
networks using leased lines, Frame Relay, or ATM.
Cisco IOS Firewall, Including URL
Filtering
Stateful firewall with URL filtering protects the network from unauthorized user access. URL filtering
prevents inappropriate Websites from being accessed and downloading of offensive content.
Intrusion Protection System (IPS)
Detects harmful network activity and generates alarms to warn of threats and intrusion attempts. New IPS
signatures can be dynamically loaded.
Dynamic Multipoint VPN (DMVPN)
Allows for secure, direct spoke-to-spoke communication with the added benefit of configuration
simplicity and zero-touch deployment. It enables enterprises to better scale large and small meshed IPSec
VPNs by combining generic routing encapsulation (GRE) tunnels, IPSec encryption, and Next Hop
Resolution Protocol (NHRP).
Facilitates rapid implementation of firewall and security policies to optimize network security with a
single command.
Cisco Easy VPN Remote and Server
Eases administration and management of point-to-point VPNs by actively pushing new security policies
from a single headend to remote sites. Cisco Easy VPN Server terminates remote access clients to
support secure connections to branch networks.
Network Admission Control (NAC)
Ensures client devices are using the most up-to-date antivirus application and data files and protects the
network from harmful threats by prohibiting network access if outdated versions are used.
Integrated IEEE 802.11 a/b/G Access
Point (optional)
• Provides secure wireless LAN and routing in a single solution with simultaneous operation at 2.4 GHz
and 5 GHz frequencies
• Supports Cisco Aironet
®
, Wi-Fi Certified and Cisco Compatible client devices