Switch/Router Features
AAA Client
802.1x RADIUS TACACS+
Layer 2 Protocols
VLAN(802.1q, Port)
Multiple STP (Support Backward Compatibility with STP & RSTP)
Management
SNMP v1/v2/v3, CLI, Telnet, SNTP, TFTP, DHCP, SSHv2, MIBs, Syslog
Quality of Service
DiffServ, Classification (5-tuple, Flow Label, ACL)
Marker/Meter (srTCM/trTCM)
Policing/Shaping
Queuing (CBQ, PQ)
Congestion Avoidance (WRED)
Routing Protocols
Static Routing, OSPF v1/v2, RIP v1/v2, IGMP v1/v2
PIM-SM, DVMRP, PIM-SSM
VRRP
Policy-Based Routing
WAN Protocols
HDLC, FR/MLFR, PPP/MLPPP
FR Congestion Management and Traffic Policing PPP over FR, MLPPP over FR
ISDN BRI/PRI
Voice Gateway Features
DSP Features
Codec: G.711, G723.1, G.726, G.729 A/B
Echo Cancellation(G.168-2002)
Comfort Noise Generation (CNG)
Voice Activity Detection (VAD)
Tone - MF/DTMF
Tone - Dial, Ringback, Busy, Congestion, Wait, Hold, Progressing, Howling, Programmable, etc.
Protocols
SIP, H.323, RTP/RTCP, cRTP, S/MIME, TLS, sRTP
HTTP Digest Authentication
System Interface and Signaling
Analog FXS, FXO
Analog DID (Direct Inward Dial)
T1-CAS (E&M, FXO, FXS)
E1-CAS (R2 MFC/DTMF)
T1/E1 ISDN PRI Q.931
T1 R1, CAMA Trunk
Platform Features
Voice Interface Type
Max 16 FXS, 2 FXO, 2 T1/E1, Surviable gateway for remote offices (up to 50 users)
DRAM (Default/Max)
512M/1G
Fixed Ethernet Ports
2 10/100Base-T Ethernet Ports
Power Supply Slot
Integrated
Security
Firewall
Stateful Packet Inspection
NAT (Static, Dynamic, PAT)
SIP ALG, Web ALG, SBC (50 users)
Application Content Filtering: Block Java based on extension, Block URLs based on file extensions, Block ActiveX based on file extensions, FTP's protocol command filtering, SMTP's protocol command filtering, RPC program number filtering
Cyber Defense Engine: Dos/ Ddos, IP Spoofing, IP/ TCP fragment attack protection (Protection for 60+ attacks)
Multiple Security Zone (DMZ)
Scheduling
URL Filtering
Rate limiting: Maximum connections per policy basis, Connection creation rate per policy basis, Bandwidth per policy basis
VPN
H/W acceleration
IPSec for Site to Site, remote Access
IPSec: Protocols: ESP, AH, AH over ESP/ Encryption: DES-CBC, 3DES-CBC, AES-CBC(128, 192, 256)/ Hashing: HMAC-SHA1, HMAC-MD5/ Modes: Tunnel, Transport, Config Mode
IKE: Authentication: Preshared, RSA/DSA Signatures, Xauth/ Modes: Main, Aggressive, Quick/ Diffie-Hellman Group: Group 1 (MODP 768), 2 (MODP 1024), 5 (MODP 1536)/ Encryption: DES, 3DES, AES (128,192,256)/ Hash: SHA1, MD5
L2TP, GRE
PKI Support (SCEP, Manual, CRL, OCSP)
IPSec NAT Traversal