Cisco IOS Router Product Information

Cisco ios router implementation guide
Hide thumbs Also See for IOS Router:

Advertisement

Quick Links

Cisco Systems
Cisco IOS Router
RSA SecurID Ready Implementation Guide
Partner Information
Product Information
Partner Name
Web Site
Product Name
Version & Platform
Product Description
Product Category
Last Modified: March 31, 2008
Cisco Systems
www.cisco.com
Cisco IOS Router
12.4(3)
Cisco IOS IPsec functionality provides network data encryption at the IP
packet level, offering a robust, standards-based, security solution. IPsec
provides data authentication and anti-replay services, in addition to data
confidentiality services. It is the only way to implement secure VPNs.
Customers can combine IPsec with other Cisco IOS Software functionality
to build scalable, robust, and secure Quality of Service-aware VPNs.
Perimeter Defense (Firewalls, VPNs & Intrusion Detection)

Advertisement

Table of Contents
loading

Summary of Contents for Cisco IOS Router

  • Page 1 Cisco Systems Cisco IOS Router RSA SecurID Ready Implementation Guide Partner Information Product Information Partner Name Web Site Product Name Version & Platform Product Description Product Category Last Modified: March 31, 2008 Cisco Systems www.cisco.com Cisco IOS Router 12.4(3) Cisco IOS IPsec functionality provides network data encryption at the IP packet level, offering a robust, standards-based, security solution.
  • Page 2: Solution Summary

    Solution Summary The Cisco IOS software, combines IPSec VPN enhancements with robust firewall, intrusion detection, and secure administration capabilities. The VPN provides users with a complete implementation of IPSec standards, including support for DES and Triple DES encryption, and authentication through RSA SecurID authentication via RADIUS.
  • Page 3: Product Requirements

    Application Cisco Secure VPN Client Important: If you are configuring the IOS Router to use IPSec you will also need to configure the Cisco VPN client. Information on how to configure the Cisco VPN client can be found in the Cisco VPN client implementation guide located at: http://rsasecurity.agora.com/rsasecured/guides/imp_pdfs/Cisco_VP...
  • Page 4 To facilitate communication between the Cisco IOS Router and the RSA Authentication Manager / RSA SecurID Appliance, an Agent Host record must be added to the RSA Authentication Manager database and RADIUS Server database. The Agent Host record identifies the Cisco IOS Router within its database and contains information about communication and encryption.
  • Page 5: Before You Begin

    Partner Authentication Agent Configuration Before You Begin This section provides instructions for integrating the partners’ product with RSA SecurID Authentication. This document is not intended to suggest optimum installations or configurations. It is assumed that the reader has both working knowledge of all products involved, and the ability to perform the tasks outlined in this section.
  • Page 6 Cisco IOS VPN Router RADIUS configuration: aaa new-model aaa authentication login userauthen group radius local aaa authorization network groupauthor local radius-server host xxx.xxx.xxx.xxx auth-port 1645 acct-port 1646 radius-server timeout 120 radius-server key “your key” VPN Policy: crypto isakmp policy 3 encr 3des authentication pre-share group 2...
  • Page 7 Certification Checklist: For RSA Authentication Manager 6.x Date Tested: September 29, 2005 Product Name RSA Authentication Manager Cisco IOS VPN Router 12.4(3) RSA Native Protocol New PIN Mode Force Authentication After New PIN System Generated PIN User Defined (4-8 Alphanumeric) User Defined (5-7 Numeric) User Selectable Deny 4 and 8 Digit PIN...
  • Page 8 Certification Checklist: For RSA Authentication Manager 6.x Date Tested: September 29, 2005 Product Name RSA Authentication Manager 12.4(3) Cisco IOS VPN Router Cisco Secure VPN Client RSA Native Protocol New PIN Mode Force Authentication After New PIN System Generated PIN User Defined (4-8 Alphanumeric) User Defined (5-7 Numeric) User Selectable...
  • Page 9 Certification Checklist For RSA Authentication Manager 7.x Date Tested: March 31, 2008 Product Name RSA Authentication Manager RSA RADIUS Server Cisco IOS VPN Router RSA Native Protocol New PIN Mode Force Authentication After New PIN System Generated PIN User Defined (4-8 Alphanumeric) User Defined (5-7 Numeric) Deny 4 and 8 Digit PIN Deny Alphanumeric PIN...
  • Page 10 Certification Checklist For RSA Authentication Manager 7.x Date Tested: March 31, 2008 Product Name RSA Authentication Manager RSA RADIUS Server Cisco IOS VPN Router Cisco Secure VPN Client RSA Native Protocol New PIN Mode Force Authentication After New PIN System Generated PIN User Defined (4-8 Alphanumeric) User Defined (5-7 Numeric) Deny 4 and 8 Digit PIN...
  • Page 11: Known Issues

    Known Issues CHAP authentication is not supported when using RSA SecurID authentication...

Table of Contents