EasyManuals Logo

Cisco ASR 1002 User Manual

Cisco ASR 1002
72 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #43 background imageLoading...
Page #43 background image
Page 43 of 72
4.7 Product Updates
Verification of authenticity of updated software is done in the same manner as ensuring that the
TOE is running a valid image. See Section 2, steps 7 and 9 above for the method to download
and verify an image prior to running it on the TOE.
4.8 Configure Reference Identifier
This section describes configuration of the peer reference identifier which is achieved through a
certificate map.
Certificate maps provide the ability for a certificate to be matched with a given set of criteria.
You can specify which fields within a certificate should be checked and which values those
fields may or may not have. There are six logical tests for comparing the field with the value:
equal, not equal, contains, does not contain, less than, and greater than or equal. ISAKMP and
ikev2 profiles can bind themselves to certificate maps, and the TOE will determine if they are
valid during IKE authentication.
Step1
(config)# crypto pki certificate map
label sequence-number
Starts certificate-map mode
Step2
(ca-certificate-map)# field-name match-
criteria match-value
In ca-certificate-map mode, you specify one or more
certificate fields together with their matching criteria and the
value to match.
field-nameSpecifies one of the following case-
insensitive name strings or a date:
subject-name
issuer-name
unstructured-subject-name
alt-subject-name
name
valid-start
expires-on
Note Date field format is dd mm yyyy hh:mm:ss or mm dd
yyyy hh:mm:ss.
match-criteriaSpecifies one of the following
logical operators:
eqEqual (valid for name and date fields)
neNot equal (valid for name and date fields)
coContains (valid only for name fields)
ncDoes not contain (valid only for name fields)
lt Less than (valid only for date fields)
ge Greater than or equal (valid only for date
fields)

Table of Contents

Other manuals for Cisco ASR 1002

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASR 1002 and is the answer not in the manual?

Cisco ASR 1002 Specifications

General IconGeneral
Ethernet LANYes
Cabling technology10/100/1000Base-T(X)
Networking standardsIEEE 802.3
Ethernet LAN data rates10, 100, 1000 Mbit/s
Ethernet interface typeGigabit Ethernet
DHCP client-
Supported network protocolsBGP, GRE, OSPF, DVMRP, EIGRP, IS-IS, IGMPv3, PIM-SM, PIM-SSM
Ethernet LAN (RJ-45) ports4
Security algorithmsSSH
VPN tunnels quantity8000
SafetyUL60950-1 CSA, C22.2 No. 60950-1-03, EN 60950-1, IEC 60950-1, AS/NZS 60950.1
CertificationFCC 47CFR15 Class A AS/NZS CISPR 22 CISPR 22 Class A EN55022 Class A ICES-003 Class A VCCI Class A CNS-13438 Class A EN61000-3-2 EN61000-3-3
Internal memory4096 MB
AC input voltage85 - 264 V
Power source typeAC
AC input frequency50 - 60 Hz
Power consumption (typical)560 W
Operating altitude0 - 3048 m
Storage temperature (T-T)0 - 50 °C
Operating temperature (T-T)0 - 40 °C
Storage relative humidity (H-H)5 - 95 %
Operating relative humidity (H-H)5 - 90 %
Product colorGray
Rack capacity2U
Weight and Dimensions IconWeight and Dimensions
Depth461 mm
Width437.4 mm
Height89 mm
Weight- g

Related product manuals