
9
Release Notes for Cisco 802 IDSL and 804 IDSL Routers for Cisco IOS Release
78-10388-01
New and Changed Information
Layer Two Tunneling Protocol (L2TP)
Layer Two Tunneling Protocol (L2TP) is an emerging Internet Engineering Task Force (IETF) standard
that combines the best features of two existing tunneling protocols: Cisco's Layer Two Forwarding
(L2F) and Microsoft's Point-to-Point Tunneling Protocol (PPTP). L2TP is an extension to the
Point-to-Point Protocol (PPP), which is an important component for Access Virtual Private Networks
(VPNs). Access VPNs allow mobile users to connect to their corporate intranets or extranets, thus
improving flexibility and reducing costs.
Traditional dial-up networking services only supported registered IP address, which limited the types
of applications that could be implemented over Virtual Private Networks (VPNs). L2TP supports
multiple protocols and unregistered and privately administered IP addresses over the Internet. This
allows the existing access infrastructure, such as the Internet, modems, access servers, and ISDN
terminal adaptors (TAs), to be used. L2TP can be initiated wherever PPTP or L2F is currently deployed
and can be operated as a client initiated tunnel, such as PPTP, or a network access server (NAS) initiated
tunnel, such as L2F.
New Software Features in Release 12.0(4)T
The following new software enhancements are supported by the Cisco 802 IDSL and 804 IDSL routers
in Release 12.0(4)T1 and later releases.
Cisco IOS Firewall Feature Set for the Cisco 802 IDSL and 804 IDSL Routers
The Cisco IOS Firewall feature set is now available on the Cisco 802 IDSL and 804 IDSL routers. This
feature set is available on the IP/Firewall image only; the product code for this image is S8CH-12.0(4)T.
This feature set provides the following capabilities:
• Context-based Access Control (CBAC)
• Java blocking
• Denial-of-service detection and prevention
• Real-time alerts and audit trails
The Cisco IOS Firewall Feature Set feature module provides several sample firewall configurations,
including the following examples for small-office environments:
• IP network to Internet
• Remote office network to corporate office network
If you want to configure a firewall in an IP-network-to-Internet network, you can use the Cisco 800 Fast
Step application (recommended for inexperienced network administrators) or the Cisco IOS software
command-line interface (CLI) (recommended for more experienced network administrators). You can
also configure a firewall by using Cisco ConfigMaker software version 2.3.
With the Cisco 800 Fast Step application, you can configure CBAC only. If you want to configure a
firewall in a remote-office-to-corporate-office network, you must use the Cisco IOS CLI.
For information on how to use the Cisco 800 Fast Step application, refer to the application online help.
For information on how to configure a firewall using the CLI, refer to the Cisco IOS Firewall Feature
Set feature module. (See the “Feature Modules” section on page 19.)
Komentarze do niniejszej Instrukcji