© 2014 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.  Page 3 of 5 
● 
Dual-stack IPv4 and IPv6 
● 
6to4 tunneling 
● 
Stateless address auto-configuration 
● 
DHCPv6 Server for IPv6 Clients on LAN 
● 
DHCP v6 client for WAN connectivity 
● 
Internet Control Message Protocol (ICMP) v6 
● 
Static IPv6 Routing 
● 
Dynamic IPv6 Routing with RIPng 
Software configurable to any LAN IP address 
802.1Q-based VLANs, 5 active VLANs 
Stateful packet inspection (SPI) firewall, port forwarding and triggering, denial-of-service (DoS) prevention, software-
based DMZ 
DoS Attacks Prevented: 
● 
SYN Flood Detect Rate 
● 
Echo Storm 
● 
ICMP Flood 
● 
UDP Flood 
● 
TCP Flood 
Block Java, Cookies, Active-X, HTTP Proxy 
IP access control lists; MAC-based wireless access control 
Static URL blocking or keyword blocking 
HTTPS, username/password complexity 
2 levels of access: admin and guest 
Gateway-to-gateway 
IPsec VPN 
10 gateway-to-gateway IPSec tunnels 
Client-to-gateway 
IPsec VPN 
10 client-to-gateway IPsec tunnels using TheGreenBow and ShrewSoft VPN client 
10 PPTP tunnels for remote client access 
Triple Data Encryption Standard (3DES) 
IPsec/PPTP/Layer 2 Tunneling Protocol (L2TP) pass-through 
● 
802.1p port-based priority on LAN port, application-based priority on WAN port 
● 
3 queues 
● 
Differentiated Services Code Point support (DSCP) 
● 
Class of Service (CoS) 
● 
Bandwidth Management for service prioritization 
Supports Jumbo Frame on Gigabit ports - at least 1536B 
IPsec VPN 
Throughput 
(3DES/AES) 
Simple, browser-based configuration (HTTP/HTTPS)