EasyManuals Logo

Cisco 7600 Series Module Guide

Cisco 7600 Series
128 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #76 background imageLoading...
Page #76 background image
8-2
Cisco 7600 Series Router Module Guide
OL-9392-05
Chapter 8 IPSec VPN Acceleration Services Module
When you configure the VPN module, the same cryptographic operations are performed as on Cisco
routers. The VPN module’s implementation of VPN is generally the same as on Cisco routers other than
the use of interface VLANs and some configuration guidelines specific to the VPN module.
Note For detailed information on Cisco IOS IPSec cryptographic operations and policies, refer to the “IP
Security and Encryption” section of the Cisco IOS Security Configuration Guide, Release 12.2.
When you configure the VPN module on the Cisco 7600 series routers, you ensure that all packets
coming from or going to the Internet pass through the VPN module. The VPN module has an extensive
set of policies that validate a packet before the packet is sent onto the local (trusted) LAN. The VPN
module can use multiple Fast Ethernet or Gigabit Ethernet ports on other Cisco 7600 series routers
modules to connect to the Internet. Packets received from the WAN routers pass through the VPN module
for IPSec processing.
On the local LAN side, traffic between the LAN ports can be routed or bridged on multiple Fast Ethernet
or Gigabit Ethernet ports. Because the local LAN traffic is not encrypted or decrypted, it does not pass
though the VPN module.
The VPN module does not maintain routing information, route, or change the MAC header of a packet
(except for the VLAN ID from one VLAN to another).
The front panel LED on the IPSec VPN Acceleration Services Module is described in Table 8-1.
Ta b l e 8-1 IPSec VPN Acceleration Services Module STATUS LED
Color/State Description
Green All diagnostic tests pass. The module is
operational.
Red A diagnostic test other than an individual port test
failed.
Orange Indicates one of three conditions:
The module is running through its boot and
self-test diagnostic sequence.
The module is disabled.
The module is in the shutdown state.
Off The module power is off.

Table of Contents

Other manuals for Cisco 7600 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 7600 Series and is the answer not in the manual?

Cisco 7600 Series Specifications

General IconGeneral
CategoryNetwork Router
Port DensityVaries by module
InterfacesGigabit Ethernet, 10 Gigabit Ethernet
RedundancyPower supplies
Power SupplyAC or DC, Redundant options available
Operating SystemCisco IOS XR
ManagementCLI, SNMP
Form FactorModular
DimensionsVaries by chassis model
WeightVaries by chassis model and configuration
Chassis Slots6, 9, or 13

Related product manuals