User Guide

20
Cisco 860 Series
Series Distinctions
When to Deploy
Deploy the Cisco 860 Series when you need:
Secure connectivity with stateful inspection
firewall and IP Security (IPsec) VPN support for
small offices
4-port 10/100 switch
Secure WLAN 802.11b/g/n option with fixed
captive omnidirectional 2dBi gain omni dipole
antennas
Easy setup, deployment, and remote
management capabilities through Web-based
tools and Cisco IOS Software
Cisco 860 Series
Security Features
WLAN Features
21
Cisco 860 Series
WAN Technologies
• Cisco 861 – 100 MB Ethernet
• Cisco 867 – ADSL over analog telephone lines
LAN Switch
4-port 10/100Base-T switch with autosensing MDI/MDX (Media Device In/Media
Device Crossover) for auto-crossover
Security
Stateful firewall, IPsec, and VPNs
WLAN Option
802.11b/g with fixed captive omnidirectional 2dBi gain dipole antennas
Cisco 860 Security Features
Secure Connectivity IPsec VPN
Hardware-accelerated DES, 3DES, AES128,
AES192, AES256
Public Key Infrastructure (PKI) support
5 IPsec Tunnels
Cisco Easy VPN Client and Server
NAT transparency
Zone-based Policy Firewall
Stateful Inspection Routing Firewall
Stateful Inspection Transparent Firewall
Advanced Application Inspection and Control
Secure HTTP (HTTPS), FTP, and Telnet
Authentication Proxy
WLAN Hardware
IEEE 802.11n draft 2.0 standard based access
point with 802.11 b/g compatibility
Automatic rate selection for 802.11g/n
Captive omnidirectional 2dBi gain omni
dipole antennas
2x3 MIMO radio operation
WiFi 802.11n Draft v2.0 certified
WLAN Software Features
Autonomous Access Point
WCS support for autonomous configurations
Maximize throughput or maximize range option
Software-configurable transmit power
Radio roles include access point, root bridge,
non-root bridge, and workgroup bridge
Wireless Multi Media Certification (WMM)
TSPEC Call Admission Control to ensure voice
quality is maintained
Unscheduled Automatic Power Save Delivery
(UPSD) to reduce latency
WLAN Security Features
802.11i
WiFi Protected Access (WPA) & AES (WPA2)
EAP Authentication: Cisco LEAP, PEAP, EAP-TLS,
EAP-FAST, EAP-SIM, EAP-MD5, EAP-TTLS
Static and dynamic Wired Equivalent Privacy
(WEP)
Temporal Key Integrity Protocol (TKIP)/SSN
[Temporal Key Integrity Protocol/Simple Security
Network encryption
MAC authentication/filter
User database for survivable local authentication
using LEAP & EAP-FAST
Configurable limit to the number of wireless
clients
Configurable RADIUS accounting for wireless
clients
PSK (Pre Shared Keys) (WPA-SOHO)
Network Example