EasyManuals Logo
Home>Cisco>Network Router>ASR 1001

Cisco ASR 1001 User Manual

Cisco ASR 1001
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #41 background imageLoading...
Page #41 background image
Page 41 of 72
Or
TOE-common-criteria (config-isakmp)# authentication ecdsa-sig
And for IKEv2 with the commands:
TOE-common-criteria (config)#crypto ikev2 profile sample
TOE-common-criteria(config-ikev2-profile)#authentication [remote | local] rsa-sig
or
TOE-common-criteria(config-ikev2-profile)#authentication [remote | local] ecdsa-sig
If an invalid certificate is loaded, authentication will not succeed.
4.6.4.10 Deleting Certificates
If the need arises, certificates that are saved on the router can be deleted. The router saves its
own certificates and the certificate of the CA.
To delete the router's certificate from the router's configuration, the following commands can be
used in global configuration mode:
Router# show crypto ca certificates [Displays the certificates stored on router]
Router(config)# crypto ca certificate chain name [Enters certificate chain configuration mode]
Router(config-cert-cha)# no certificate certificate-serial-number [deletes the certificate]
To delete the CA's certificate, the entire CA identity must be removed, which also removes all
certificates associated with the CArouter's certificate and the CA certificate. To remove a CA
identity, the following command in global configuration mode can be used:
Router(config)# no crypto ca identity name [Deletes all identity information and certificates
associated with the CA]
4.6.5 Information Flow Policies
The TOE may be configured by the privileged administrators for information flow control/
firewall rules as well as VPN capabilities using the access control functionality. Configuration
of information flow policies is restricted to the privileged administrator.
The VPNGW Extended Package requires that the TOE be able to support options for information
flow policies that include discarding, bypassing, and protecting. On the TOE, an authorized
administrator can define the traffic rules on the box by configuring access lists (with permit,
deny, and/or log actions) and applying these access lists to interfaces using access and crypto
map sets:

Table of Contents

Other manuals for Cisco ASR 1001

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASR 1001 and is the answer not in the manual?

Cisco ASR 1001 Specifications

General IconGeneral
Ethernet LANYes
Cabling technology10/100/1000Base-T(X)
Networking standards-
Ethernet LAN data rates10, 100, 1000 Mbit/s
Ethernet interface typeGigabit Ethernet
USB ports quantity1
Ethernet LAN (RJ-45) ports4
VPN tunnels quantity8000
Product colorGray
Rack capacity1U
AC input voltage85 - 264 V
Power source typeAC
AC input frequency50 - 60 Hz
Power consumption (typical)250 W
SafetyUL60950-1 CSA, C22.2 No. 60950-1-03, EN 60950-1, IEC 60950-1, AS/NZS 60950.1
CertificationFCC 47CFR15 Class A AS/NZS CISPR 22 CISPR 22 Class A EN55022 Class A ICES-003 Class A VCCI Class A CNS-13438 Class A EN61000-3-2 EN61000-3-3
Internal memory8192 MB
Operating altitude0 - 3048 m
Storage temperature (T-T)0 - 50 °C
Operating temperature (T-T)0 - 40 °C
Storage relative humidity (H-H)5 - 95 %
Operating relative humidity (H-H)5 - 90 %
Weight and Dimensions IconWeight and Dimensions
Depth461.5 mm
Width439.42 mm
Height43.43 mm
Weight11350 g

Related product manuals