EasyManuals Logo
Home>Cisco>Network Router>ASR 1001

Cisco ASR 1001 User Manual

Cisco ASR 1001
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #26 background imageLoading...
Page #26 background image
Page 26 of 72
Note: Logging of all traffic hitting the default deny acl can generate a large number of logs, and
a determination should be made whether it is necessary prior to entering this at the end of all
access lists.
To apply the acls to the interfaces:
TOE-common-criteria(config)# interface GigabitEthernet0/0
TOE-common-criteria(config-if)# ip access-group 199 in
TOE-common-criteria(config)# interface GigabitEthernet0/1
TOE-common-criteria(config-if)# ip access-group 100 in
Additional information on creation of packet filtering and VPN information flow policies is
given in Section 4.6.4 below.
The following ACL in the running-configuration can be used to block unknown protocols
(Explicitly permitting and logging specific IPv6 protocols then explicitly denying any other IPv6
packet) -
permit 1 <source> <destination> log
permit 2 <source> <destination> log
permit 3 <source> <destination> log
permit 4 <source> <destination> log
permit 5 <source> <destination> log
permit tcp <source> <destination> log
permit 7 <source> <destination> log
permit 8 <source> <destination> log
!…. continue the ACL entries to include all IPv6 protocol numbers listed in the PP.
deny ipv6 <source> <destination> log
3.3.6 Routing Protocols
The routing protocols are used to maintain routing tables. The routing tables can also be
configured and maintained manually. Refer to the applicable sections in [3] for configuration of
the routing protocols.
3.3.7 MACSEC and MKA Configuration
The detailed steps to configure MKA, configure MACsec and MKA on interfaces are listed in
[24] - http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/macsec/configuration/xe-16/macsec-xe-
16-book/wan-macsec-mka-support-enhance.html#d74e990a1635
Note: For 256-bit encryption, the key-string length will be 64-characters. For 128-bit encryption,
the key-string length will be 32 characters.

Table of Contents

Other manuals for Cisco ASR 1001

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASR 1001 and is the answer not in the manual?

Cisco ASR 1001 Specifications

General IconGeneral
Ethernet LANYes
Cabling technology10/100/1000Base-T(X)
Networking standards-
Ethernet LAN data rates10, 100, 1000 Mbit/s
Ethernet interface typeGigabit Ethernet
USB ports quantity1
Ethernet LAN (RJ-45) ports4
VPN tunnels quantity8000
Product colorGray
Rack capacity1U
AC input voltage85 - 264 V
Power source typeAC
AC input frequency50 - 60 Hz
Power consumption (typical)250 W
SafetyUL60950-1 CSA, C22.2 No. 60950-1-03, EN 60950-1, IEC 60950-1, AS/NZS 60950.1
CertificationFCC 47CFR15 Class A AS/NZS CISPR 22 CISPR 22 Class A EN55022 Class A ICES-003 Class A VCCI Class A CNS-13438 Class A EN61000-3-2 EN61000-3-3
Internal memory8192 MB
Operating altitude0 - 3048 m
Storage temperature (T-T)0 - 50 °C
Operating temperature (T-T)0 - 40 °C
Storage relative humidity (H-H)5 - 95 %
Operating relative humidity (H-H)5 - 90 %
Weight and Dimensions IconWeight and Dimensions
Depth461.5 mm
Width439.42 mm
Height43.43 mm
Weight11350 g

Related product manuals