
Chapter 1: Routing 1-11
Routing
• Advanced security with embedded IP Security with Security Sockets Layer (IPSec/SSL) VPN hardware
acceleration
- Embedded hardware encryption acceleration is enhanced to provide higher scalability, which combined
with an optional Cisco IOS Security license, enables WAN link security and VPN services (both IPSec and
SSL acceleration). The onboard encryption hardware replaces and outperforms the advanced integration
modules (AIMs) of previous generations.
- The routers support Cisco Easy VPN (remote and server), Dynamic Multipoint VPN (DMVPN), Group
Encrypted VPN (GET VPN), and Secure Socket Layer VPN (SSL VPN). The 3900 Series routers support
Multiprotocol Label Switching (MPLS) VPNs. Specific provider-edge capabilities include Virtual Route
Forwarding (VRF) firewall and VRF IP Security (IPsec).
- More than 3700 intrusion-prevention-system (IPS) signatures are supported in Cisco IOS Software, with
the ability to load and enable selected IPS signatures. More than 4500 IPS signatures are available with
the optional high-performance intrusion-prevention-system (IPS) network module.
- Content Filtering includes URL/keyword blocking and features category-based productivity and security
ratings. This is a subscription-based hosted solution that leverages Trend Micro's global TrendLabs™
threat database, and is closely integrated with Cisco IOS Software.
- Cisco Configuration Professional comes standard on all Cisco 2900 Series Integrated Services Routers.
• WAN Optimization with WAAS Express
- Cisco Wide Area Application Services (WAAS) Express, based on Cisco IOS® Software and integrated
into the Cisco 2900 Series routers offers bandwidth optimization and application acceleration capabilities
in a cost-effective solution
- Fully integrated in Cisco IOS Software, with no additional hardware requirement (the maximum DRAM is
needed in the router). This integration allows significant savings in capital expenditures (CapEx) by
enabling a small-footprint branch-office deployment.
- Increases remote user productivity, reduces WAN bandwidth costs, and offers investment protection by
interoperating with existing Cisco WAAS infrastructure.
- Uniquely provides network transparency, improving deployment flexibility with on-demand service
enablement, and integrating with native Cisco IOS Software services such as security, NetFlow, and
quality of service (QoS).
- Fully interoperable with Cisco WAAS Modules for Services-Ready Engine (SRE) and Cisco WAAS
appliances and can be managed by a common Cisco WAAS Central Manager.
- Offers Context-Aware DRE for reduced latency and increased end-user experience.
- Organizations can enable Cisco WAAS Express as an on-demand service on the router and can expand to
the Cisco WAAS Modules for SRE or a dedicated Cisco WAAS appliance as business needs grow.
• WAN Optimization with Cisco Wide Area Application Services (WAAS) Software on Cisco Integrated
Services Routers Generation 2 (ISR G2)
- Cisco WAAS Software on Cisco 2900 Series provides router-integrated, on-demand WAN optimization
and application acceleration for branch offices.
- The Cisco Services Ready Engine (SRE) Modules on the ISR G2 platform, which decouple software
services from the underlying hardware, can deliver WAN optimization as an on-demand service as
required for business objectives and IT budget.
- Cisco WAAS Software is licensed with two types of feature capability for deployment on the Cisco SRE
Modules. The software licenses are common across Cisco SRE 700 SM, SRE 710 SM, SRE 900 SM, and
SRE 910 SM.
- Transport license—Supports WAN optimization features including Data Redundancy Elimination
(DRE), Lempel-Ziv (LZ) compression, and Transport Flow Optimization (TFO)
- Enterprise license—Includes Cisco WAAS Transport license functions (Data Redundancy Elimination
(DRE), Lempel-Ziv (LZ) compression, and Transport Flow Optimization (TFO)) plus application-specific
accelerations for protocols including Common Internet File System (CIFS), Messaging Application
Programming Interface (MAPI),
• Multi-gigabit fabric
- The Cisco 2900 Series introduces an innovative multi-gigabit fabric (MGF) that allows for efficient module-
to-module communication, enabling tighter services interactions across modules while reducing the
overhead on the route processor.
• TDM interconnectivity fabric
- Unified communications services in the branch office are significantly enhanced with the use of a TDM
interconnectivity fabric in the system architecture, allowing for scaling of DS-0 channel capacity.
• High-capacity, video-ready Packet Voice Video Digital Signal Processor Module (PVDM3)
- Enhanced architecture delivers a new packet-processing engine optimized for video and rich-media
applications, while concurrently supporting packet voice
- Enables scaling of high-definition (HD) voice capacity and is optimized for enhanced video capabilities
- Supports full suite of medianet features
•Integrated Gigabit Ethernet ports
- All onboard WAN ports are 10/100/1000 Gigabit Ethernet WAN routed ports.
- One of the three 10/100/1000 Ethernet WAN ports on the Cisco 2921 and 2951 supports Small Form-
Factor Pluggable (SFP)-based connectivity in lieu of a RJ-45 port and enabling fiber connectivity.
• Innovative USB-based console access
- A new, innovative USB console port offers management connectivity for devices without a serial port such
as modern laptop computers.
- Traditional console and auxiliary ports are also available.
• Optional integrated power supply for distribution of PoE and universal DC power supply
- An optional upgrade to the internal power supply provides inline power (802.3af-compliant PoE and Cisco
Inline Power) to integrated switch modules.
- On the Cisco 2911, 2921, and 2951, an optional DC power supply will be available in the future that extends
deployment into central offices and industrial environments.
Comentários a estes Manuais