Page 111 / 196 Scroll up to view Page 106 - 110
P
A R T
3
Configuring Additional Features and
Troubleshooting
Page 112 / 196
Page 113 / 196
C H A P T E R
11-1
Cisco 850 Series and Cisco 870 Series Access Routers Software Configuration Guide
OL-5332-01
11
Additional Configuration Options
This part of the software configuration guide describes additional configuration options and
troubleshooting tips for the Cisco 850 series routers (Cisco 851 and Cisco 857) and Cisco 870 series
routers (Cisco 871, Cisco 876, Cisco 877, and Cisco 878).
The configuration options described in this part include:
Chapter 12, “Configuring Security Features”
Chapter 13, “Configuring Dial Backup and Remote Management”
Chapter 14, “Troubleshooting”
The descriptions contained in these chapters do not describe all of your configuration or troubleshooting
needs. See the appropriate Cisco IOS configuration guides and command references for additional
details.
Note
To verify that a specific feature is compatible with your router, you can use the Software Advisor tool.
You can access this tool at
www.cisco.com
> Technical Support & Documentation > Tools &
Resources
with your Cisco username and password.
Page 114 / 196
11-2
Cisco 850 Series and Cisco 870 Series Access Routers Software Configuration Guide
OL-5332-01
Chapter 11
Additional Configuration Options
Page 115 / 196
C H A P T E R
12-1
Cisco 850 Series and Cisco 870 Series Access Routers Software Configuration Guide
OL-5332-01
12
Configuring Security Features
This chapter gives an overview of authentication, authorization, and accounting (AAA), the primary
Cisco framework for implementing selected security features that can be configured on the Cisco 850
and Cisco 870 series access routers.
Note
Individual router models may not support every feature described throughout this guide. Features not
supported by a particular router are indicated whenever possible.
This chapter contains the following sections:
Authentication, Authorization, and Accounting
Configuring AutoSecure
Configuring Access Lists
Configuring a CBAC Firewall
Configuring Cisco IOS Firewall IDS
Configuring VPNs
Each section includes a configuration example and verification steps, where available.
Authentication, Authorization, and Accounting
AAA network security services provide the primary framework through which you set up access control
on your router. Authentication provides the method of identifying users, including login and password
dialog, challenge and response, messaging support, and, depending on the security protocol you choose,
encryption. Authorization provides the method for remote access control, including one-time
authorization or authorization for each service, per-user account list and profile, user group support, and
support of IP, Internetwork Packet Exchange (IPX), AppleTalk Remote Access (ARA), and Telnet.
Accounting provides the method for collecting and sending security server information used for billing,
auditing, and reporting, such as user identities, start and stop times, executed commands (such as PPP),
number of packets, and number of bytes.
AAA uses protocols such as RADIUS, TACACS+, or Kerberos to administer its security functions. If
your router is acting as a network access server, AAA is the means through which you establish
communication between your network access server and your RADIUS, TACACS+, or Kerberos
security server.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top