
All contents are Copyright © 1992–2006 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 8 of 10
Management
Configuration
●
Embedded management interface is accessible through console port, Telnet, SSHv1, and HTTPS
●
Administrator access is configurable for five levels of authorization; authentication can be performed externally through
TACACS+
●
Role-based management policy separates functions for service provider and end-user management
●
Monitoring
●
Event logging and notification through e-mail (SMTP)
●
Automatic FTP backup of event logs
●
Simple Network Management Protocol (SNMP) MIB-II support
●
Configurable SNMP traps
●
Syslog output
●
System status
●
Session data (including client assign IP, encryption type connection duration, client OS, and client version)
●
General statistics
Security
Authentication and Accounting
Servers
●
Support for redundant external authentication servers, including:
- RADIUS
- Kerberos/Active Directory authentication
- Microsoft NT Domain authentication
- Microsoft NT Domain authentication with password expiration (MSCHAPv2); IPsec only
RSA Security Dynamics (SecurID
Ready), Including Native Support for
RSA 5 (Load Balancing, Resiliency)
●
User authorization through Lightweight Directory Access Protocol (LDAP) or RADIUS
●
Internal authentication server for up to 100 users
●
X.509v3 digital certificates, including certificate revocation list (CRL)/LDAP and CRL/HTTP, CRL caching, and backup CRL
distribution point support
●
RADIUS accounting
●
TACACS+ administrative user authentication
Internet-Based Packet Filtering
●
Source and destination IP address
●
Port and protocol type
●
Fragment protection
●
FTP session filtering
●
Site-to-site filters and NAT (for overlapping address space)
Policy Management
●
By individual user or group
- Filter profiles (defined internally or externally)
- Idle and maximum session timeouts
- Time and day access control
- Tunneling protocol and security authorization profiles
- IP pool and servers
- Authentication pool and servers
Certification Federal Information Processing Standards (FIPS) 140-2 Level 2 (3.6), FIPS 140-1 Level 2 (3.1), and VPNC
Ports
Console port: asynchronous serial (DB-9)
Tables 7 and 8 list physical characteristics and power requirements for Cisco VPN 3000 Series Concentrators.
Table 7. Physical Characteristics
Concentrator Cisco VPN 3005 Cisco VPN 3015 Cisco VPN 3020 Cisco VPN 3030 Cisco VPN 3060 Cisco VPN 3080
Height 1.75 in. (4.45 cm) 3.5 in. (8.89 cm) 3.5 in. (8.89 cm) 3.5 in. (8.89 cm) 3.5 in. (8.89 cm) 3.5 in. (8.89 cm)
Width 17.5 in. (44.45 cm) 17.5 in. (4.45 cm) 17.5 in. (4.45 cm) 17.5 in. (4.45 cm) 17.5 in. (4.45 cm) 17.5 in. (4.45 cm)
Depth 11.5 in. (29.21 cm) 11.5 in. (29.21 cm) 11.5 in. (29.21 cm) 11.5 in. (29.21 cm) 11.5 in. (29.21 cm) 11.5 in. (29.21 cm)
Unit without front
bezel or SEPS/PS
– 15 in. (38.1 cm) 15 in. (38.1 cm) 15 in. (38.1 cm) 15 in. (38.1 cm) 15 in. (38.1 cm)
Unit with front bezel,
no SEPS/PS
– 16.19 in. (41.12 cm) 16.19 in. (41.12 cm) 16.19 in. (41.12 cm) 16.19 in. (41.12 cm) 16.19 in. (41.12 cm)
Comentarios a estos manuales