© 2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 7 of 12
Gateway Configuration
Management
●
TR-069 and subset of TR-098 data model (optional)
●
Extensive custom SNMP MIB for the Gateway
●
Provisioning with XML and/or with SNMP
●
HNAP server 1.2+
ICSA (Independent
Computer Security
Association) Firewall
Compliant
●
Web filtering: Pop-ups, Cookies, Java & ActiveX scripts
●
Intrusion detection/prevention: WAN ping blocking, IP fragment blocking, Port scan
detection, TCP Port Probe, UDP Port Probe
●
DoS Protection: inbound, outbound, WAN interface, LAN interface, SYN flood, Ping of
Death, Smurf, Bonk, Jolt, Land, Nestea, Newtear, Syndrop, Teardrop, WinNuke/OOBNuke
(Invalid TCP urgent pointer), x1234, Saihyousen , Oshare, ARP flood, TCP Hijacking,
Christmas Tree, SYN/FIN (jackal), BackOffice (UDP 32337), NetBus, ICMP Flowding,
●
IP Address, Port Number, MAC address filtering
●
TCP flags, ICMP types fragmentation
●
Connection Creation and Teardown
●
Timestamps and Payload Modification
●
Per-User Policies
●
Keyword blocking
●
Domain name blocking
●
Time of day filters
●
MAC Address Filtering
●
Filtering Activity
●
Session Tracking
●
User Notification via E-mail Alert and SNMP Traps
●
NAPT, NAT, and Pass-through (layer 2) Operational Modes
●
RFC3489 (STUN) "Port-restricted cone NAT" behavior
●
RIP v1/v2, with MD5
●
Static Routes
●
Port Forwarding
●
Port Triggering
●
UPnP IGD 1.0
●
IPSec Pass-through
●
L2TP Pass-through
●
PPTP Pass-through
●
ALG support: mIRC, PIRCH, MS NetMeeting, Net2phone, AOL and MSN Messenger,
Yahoo Messenger, Go2Call, Hotline Server, Visual IRC, CuSeeme, AT&T Instant,
Messenger Anywhere, Active Worlds, Buddy Phone Calista IP Phone, Delta Three PC to
Phone, Dial Pad, Dwyco Video Conferencing, OrbitRC, Xircon, Netscape Chat, FTP,
H.323, ICQ
●
2x2 2.4 GHz or optional 2x2 2.4 GHz/5 GHz Dual-Band, non-concurrent, wireless access
point
●
(2) Internal Antennas
●
Wi-Fi Compliant Security (WPA2-Enterprise, WPA2-PSK, WPA-Enterprise, WPA-PSK,
WEP)
●
WMM-QoS (Wireless Multi Media - Quality of Service)
●
WMM Power Save
●
WPS
●
Wireless Bridging - WDS (Wireless Distribution System) – allows connection to “Range
Extender Products”
●
RADIUS Authentication (Client, EAP-TLS, EAP-TTLS, EAP-PEAP, EAP-MD5)
●
MBSSID (4 SSIDs with unique NAT scopes)
●
Wi-Fi "Hot Spot" support (Static DHCP IP Scope over tunnel)