|
*** Cisco Routers ***
01) Model: Cisco1841=
02) sale
03) NEW
*** option: Modules ***
CISCO1841-SEC/K9 Cisco 1841 º¸¾È ¹øµé, IOS Advanced Security Image, 64MB Ç÷¡½Ã/256 DRAM
CISCO1841-HSEC/K9 Cisco 1841 º¸¾È ¹øµé, IOS Advanced IP Services Image, AIM-VPN/BPII-PLUS, 64MB Ç÷¡½Ã/256MB DRAM
CISCO1841-T1SEC/K9 Cisco 1841 T1 º¸¾È ¹øµé, IOS Advanced Security Image, WIC-1DSU-T1-V2, 64MB Ç÷¡½Ã/256MB DRAM
CISCO1812/K9 Cisco 1812 °íÁ¤ ±¸¼ºÇü º¸¾È ¶ó¿ìÅÍ, IOS Advanced IP Services Image, ISDN S/T ¹é¾÷À» °®Ãá µà¾ó ÀÌ´õ³Ý, 32MB Ç÷¡½Ã/128MB DRAM
VPN AIM for the Cisco 1841, 2800 and 3800 Series Integrated Services Routers
Cisco 1800 ½Ã¸®Áî ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ
Cisco¢ç 1841 ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ ¹× Cisco 2800, 3800 ½Ã¸®Áî ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ¿ë VPN AIM(Çâ»óµÈ ÅëÇÕ ¸ðµâ)Àº ½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ Ç÷§ÆûÀ» °¡»ó »ç¼³¸Á(VPN)¿¡ ¸Â°Ô IPSec(IP º¸¾È)°ú SSL(Secure Sockets Layer) À¥/VPN ¹èÆ÷¸¦ ÃÖÀûÈÇÕ´Ï´Ù.
±×¸² 1. "AIM-VPN/SSL" ¸ðµâÀ» »ç¿ëÇÑ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ
½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ´Â »çÀÌÆ®°£, ±×¸®°í ¿ø°Ý-¾×¼¼½º ¿¬°áÀ» À§ÇÑ ¾÷°è ÃÖ°íÀÇ VPNÀ» Æ÷ÇÔÇÏ¿© °í±Þ º¸¾È ¼ºñ½º¸¦ Á¦°øÇÕ´Ï´Ù. DMVPN(Dynamic Multipoint VPN)°ú °°Àº °·ÂÇÑ IPsec VPNÀ» °£´ÜÇÏ°Ô ¹èÄ¡Çϰųª ¶Ç´Â Cisco IOS¢ç SSL VPN ¼º´ÉÀ» ÃÖÀûÈÇϱâ À§Çؼ Cisco VPN ¹× SSL AIMÀº Cisco 1841, Cisco 2800 ¹× 3800 ½Ã¸®Áî ¶ó¿ìÅÍ¿¡ Çϵå¿þ¾î ¾ÏÈ£È °¡¼Ó ±â´ÉÀ» Á¦°øÇÕ´Ï´Ù. ±×¸² 1À» ÂüÁ¶ÇϽʽÿÀ.
Cisco VPN ¹× SSL AIMÀº ³»ÀåµÈ IPsec ¾Ïȣȸ¦ ÅëÇØ IPsec VPNÀÇ ¼º´ÉÀ» ÃÖ´ë 40% ÀÌ»ó Çâ»ó½Ã۰í, SSL VPN ¾ÏÈ£ÈÀÇ ¼º´ÉÀ» ÃÖ´ë µÎ ¹è±îÁö Çâ»ó½Ãų ¼ö ÀÖ½À´Ï´Ù. Cisco VPN ¹× SSL AIMÀº Çϵå¿þ¾î¿¡¼ ´ÙÀ½ ¼¼ °¡Áö ±â´ÉÀ» ¸ðµÎ Áö¿øÇÕ´Ï´Ù. ù ¹øÂ°´Â Çϵå¿þ¾î¿¡¼ SSLÀ» »ç¿ëÇÏ¿© ¾ÏÈ£ÈÇÏ´Â ±â´ÉÀ̰í, µÎ ¹øÂ°´Â DES(Data Encryption Standard) ¶Ç´Â AES(Advanced Encryption Standard) Áß ÇÑ °¡Áö ¹æ¹ýÀ» »ç¿ëÇÏ¿© Çϵå¿þ¾î¿¡¼ VPN IPsecÀ¸·Î ¾ÏÈ£ÈÇÏ´Â ±â´ÉÀÔ´Ï´Ù. ¸¶Áö¸· ¼¼ ¹øÂ°´Â Çϵå¿þ¾î¿¡¼ IPPCP(IP Payload Compression Protocol)¸¦ »ç¿ëÇÏ¿© ¾ÏÈ£ÈÇÏ´Â ±â´ÉÀÔ´Ï´Ù. Cisco IPsec SSL VPN AIMÀ» »ç¿ëÇÏ´Â ½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ´Â »ç¹«½Ç°ú ¸ð¹ÙÀÏ »ç¿ëÀÚ, ±×¸®°í ÆÄÆ®³Ê ÀͽºÆ®¶ó³ÝÀ» ¿ø°ÝÀ¸·Î ¿¬°áÇØ¼ »ç¿ëÇÏ´Â Áß¼Ò ±Ô¸ðÀÇ È¸»ç(SMB)³ª ¿£ÅÍÇÁ¶óÀÌÁî Áö»ç »ç¹«½Ç¿¡¼ »ç¿ëÇϱ⿡ ÀÌ»óÀûÀÎ Á¦Ç°ÀÔ´Ï´Ù. ½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ´Â ÇϳªÀÇ ÀåÄ¡ ¼Ö·ç¼Ç¿¡ IPsec ¹× SSL VPNÀ» ÇÔ²² ¹èÄ¡ÇÒ ¼ö ÀÖÀ» ¸¸Å ¹èÄ¡ À¯¿¬¼ºÀÌ ¿ì¼öÇÕ´Ï´Ù. µû¶ó¼, ¿©·¯ ÀåÄ¡¿Í °ü¸® ½Ã½ºÅÛÀ» »ç¿ëÇØ¾ß ÇÏ´Â ´Ù¸¥ Á¦°ø¾÷üÀÇ Á¦Ç°°ú´Â ´Þ¸® ÃÑ ¼ÒÀ¯ ºñ¿ëÀ» ÁÙÀÏ ¼ö ÀÖ½À´Ï´Ù. Cisco IPsec ¹× SSL VPN AIMÀº ¼ºñ½º Á¦°ø¾÷ü¿¡¼ Á¦·Î ÅÍÄ¡ ±â´ÉÀ» »ç¿ëÇÏ¿© ½±°Ô ¹èÄ¡ÇÒ ¼ö ÀÖ°í, º¸¾È ¼ºñ½º¸¦ È®ÀåÇÏ°í °ü¸®ÇÒ ¼ö ÀÖµµ·Ï ¼³°èµÇ¾ú½À´Ï´Ù.
Cisco IPsec ¹× SSL VPN AIM°ú Cisco IOS Advanced Security ±â´É°ú ÇÔ²² ½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅ͸¦ »ç¿ëÇÏ¸é ¶ó¿ìÆÃ, ¹æÈº®, ħÀÔ ¹æÁö, VPN µîÀÇ ±â´ÉÀ» ÅëÇÕÇÑ Ç³ºÎÇÑ ÆÐŰÁö¿Í ½Ã½ºÄÚ ÀÚ°¡ ¹æ¾î ³×Æ®¿öÅ©(Cisco Self-Defending Network)ÀÇ Çʼö ±¸¼º¿ä¼Ò¸¦ Á¦°ø¹ÞÀ» ¼ö ÀÖ½À´Ï´Ù.
Ç¥ 1Àº °¢ Ç÷§Æû¿¡¼ Áö¿øµÇ´Â VPN ¸ðµâ Çϵå¿þ¾î¿Í ±â´ÉÀ» ³ªÅ¸³À´Ï´Ù. Ç¥ 2¿¡¼´Â Cisco IPsec ¹× SSL VPN AIM¿¡¼ Áö¿øµÇ´Â ±â´ÉÀ» ¼³¸íÇÕ´Ï´Ù. Ç¥ 3¿¡¼´Â Cisco IPsec ¹× SSL VPN AIM ±â´ÉÀÇ ÀÌÁ¡À» ¼³¸íÇÕ´Ï´Ù.
Ç¥ 1. °¢ Ç÷§Æû¿¡¼ Áö¿øµÇ´Â ¸ðµâ°ú ±â´É
¸ðµâ ºÎǰ ¹øÈ£ Cisco 1841 Cisco 2801, 2811, 2821, 2851 Cisco 3725 Cisco 3825 Cisco 3745 Cisco 3845 AES ¹× 3DES(3Áß µ¥ÀÌÅÍ ¾ÏÈ£È Ç¥ÁØ) IPPCP WebVPN SSL ¾ÏÈ£È Çϵå¿þ¾î¿¡¼ÀÇ IPv6 ¾ÏÈ£È ¹æ½Ä
AIM-VPN/SSL-1 X X X X X
AIM-VPN/SSL-3 X X X X X X X X
AIM-VPN/SSL-2 X X X X X
Ç¥ 2. Cisco IPsec ¹× SSL VPN AIMÀÇ Áö¿ø ±â´É
ÁÖ¿ä ±â´É ¼³¸í
¹°¸®Àû Cisco IPsec ¹× SSL VPN AIMÀº ½Ã½ºÄÚ ÅëÇÕ ¼ºñ½º ¶ó¿ìÅÍ¿¡ ¿·Á ÀÖ´Â AIM ½½·Ô¿¡ ÀûÇÕÇÕ´Ï´Ù.
Ç÷§Æû Áö¿ø Cisco IPsec ¹× SSL VPN AIMÀº Cisco 1841°ú Cisco 2800, 3700 ¹× 3800 ½Ã¸®Á Áö¿øÇÕ´Ï´Ù.
Çϵå¿þ¾î ¿ä±¸»çÇ× Cisco 1841°ú Cisco 2800, 3700 ¹× 3800 ½Ã¸®ÁîÀÇ °æ¿ì AIM ½½·ÔÀÌ ÇÊ¿äÇÕ´Ï´Ù.
IPSec ¾ÏÈ£È Áö¿ø ¸ðµç ¸ðµâÀº IPSec, DES ¹× 3DES, ÀÎÁõ(RSA ¹× Diffie Hellman), µ¥ÀÌÅÍ ¹«°á¼º[(SHA-1(Secure Hash Algorithm 1) ¹× MD5(Message Digest Algorithm 5)], ±×¸®°í DES, 3DES ¹× AES Ű Å©±â(AES128, AES192, AES256)¸¦ Áö¿øÇÕ´Ï´Ù.
Çϵå¿þ¾î SSL ¾ÏÈ£È Áö¿ø Cisco IPsec ¹× SSL VPN AIMÀº Cisco 1841°ú Cisco 2800, 3700, 3800 ½Ã¸®Áî¿¡¼ SSL VPN ¾Ïȣȸ¦ Áö¿øÇÕ´Ï´Ù.
IPSec Çϵå¿þ¾î ±â¹Ý ¾ÐÃà Cisco IPsec ¹× SSL VPN AIMÀº ·¹À̾î 3 IPPCP ¾ÐÃàÀ» »ç¿ëÇÕ´Ï´Ù.
¼ÒÇÁÆ®¿þ¾î ÇÊ¿äÁ¶°Ç Cisco IPsec ¹× SSL VPN AIMÀº ¾îµå¹ê½ºµå º¸¾È, ¾îµå¹ê½ºµå IP ¶Ç´Â ¾îµå¹ê½ºµå ¿£ÅÍÇÁ¶óÀÌÁî ±â´É ¼¼Æ®¿Í ÇÔ²² Cisco IOS Software¸¦ »ç¿ëÇÕ´Ï´Ù.
¶ó¿ìÅÍ´ç ¾ÏÈ£È ¸ðµâ ¼ö Cisco IPsec ¹× SSL VPN AIMÀº ¶ó¿ìÅÍ´ç ¾ÏÈ£È ¸ðµâÀ» »ç¿ëÇÕ´Ï´Ù.
ÃÖ¼Ò ±ÇÀå Cisco IOS Software ¹öÀü Cisco IPsec ¹× SSL VPN AIMÀº Cisco IOS Software Version 12.4(9)T ÀÌ»óÀÌ ÇÊ¿äÇÕ´Ï´Ù.
IPsec ¾ÏÈ£È ÅͳΠ¼ö Cisco IPsec ¹× SSL VPN AIMÀº Cisco 1841¿¡¼ ÃÖ´ë 800°³ÀÇ Åͳΰú Cisco 2800 ½Ã¸®Áî¿¡¼ ÃÖ´ë 1500°³ÀÇ ÅͳÎ, Cisco 3800 ½Ã¸®Áî¿¡¼ ÃÖ´ë 3800°³ÀÇ ÅͳÎÀ» Áö¿øÇÕ´Ï´Ù. ÃÖ´ë ÅͳΠȮÀ强 Å×½ºÆ®´Â ÃÖ´ë ¼ö¸¸ °áÁ¤ÇÏ´Â Å×½ºÆ®·Î, µ¥ÀÌÅÍ ÅͳΠÅë°ú ¾øÀÌ ¼öÇàµË´Ï´Ù. »çÀÌÆ® °£ ¼³°è¸¦ À§Çؼ ±Í»ç¸¦ ´ã´çÇϰí ÀÖ´Â ½Ã½ºÄÚ ÆÀÀ̳ª ½Ã½ºÄÚ °øÀÎ ¸®¼¿·¯¿¡°Ô ¹®ÀÇÇϽô °ÍÀÌ ÁÁ½À´Ï´Ù. ¶Ç ´ÙÀ½ »çÀÌÆ®¿¡¼ Cisco DMVPN Design Guide¸¦ °ËÅäÇϽʽÿÀ.
http://www.cisco.com/application/pdf/en/us/guest/netsol/ns171/c649/ccmigration_09186a008075ea98.pdf
VPN ¹× SSL AIMÀ» »ç¿ëÇÑ Cisco IOS WebVPN SSL VPN ÃÖ´ë »ç¿ëÀÚ ¼ö Cisco IPsec ¹× SSL VPN AIMÀº Cisco IOS SSL VPNÀ» Áö¿øÇÕ´Ï´Ù. Cisco 1841 ¹× 2801¿¡¼´Â 50ÀÇ »ç¿ëÀÚ¸¦ Áö¿øÇϰí, Cisco 2811 ¹× 2821¿¡¼´Â 100¸íÀÇ »ç¿ëÀÚ¸¦, Cisco 2851¿¡¼´Â 150¸íÀÇ »ç¿ëÀÚ¸¦, Cisco 3725 ¹× 3745¿¡¼´Â 150¸íÀÇ »ç¿ëÀÚ¸¦, Cisco 3825 ¹× 3845¿¡¼´Â 200¸íÀÇ »ç¿ëÀÚ¸¦ Áö¿øÇÕ´Ï´Ù. Cisco IOS WebVPN SSL VPNÀ» »ç¿ëÇÏ·Á¸é »ç¿ëÀÚ ¶óÀ̼¾½º¸¦ ±¸ÀÔÇØ¾ß ÇÕ´Ï´Ù. Áö¿øµÇ´Â ¸ðµç Ç÷§Æû¿¡´Â 2¸íÀÇ »ç¿ëÀÚÀÇ µ¥¸ð ¶óÀ̼¾½º°¡ Ãß°¡ ºñ¿ë ¾øÀÌ Æ÷ÇԵǾî ÀÖ½À´Ï´Ù.
Ç¥ÁØ Áö¿ø Cisco IPsec ¹× SSL VPN AIMÀº IPSec Internet Key Exchange(IKE) - RFC 2401~2410, 2411, 2451À» Áö¿øÇÕ´Ï´Ù.
Ç¥ 3. Cisco IPsec ¹× SSL VPN AIMÀÇ ±â´É°ú ÀÌÁ¡
ÁÖ¿ä ±â´É ÀÌÁ¡
¸ÞÀÎ ÇÁ·Î¼¼¼·ÎºÎÅÍ ³ôÀº ¿À¹öÇìµå IPSec ÇÁ·Î¼¼½Ì ¶ó¿ìÆÃ, ¹æÈº® ¹× À½¼º°ú °°Àº ´Ù¸¥ ¼ºñ½º¿¡ ´ëÇÑ Áß¿äÇÑ ÇÁ·Î¼¼½Ì ¸®¼Ò½º¸¦ ¿¹¾àÇÕ´Ï´Ù.
IPSec MIB Cisco IPSec ±¸¼º ¸ð´ÏÅ͸µÀÌ °¡´ÉÇϸç, ´Ù¾çÇÑ VPN °ü¸® ¼Ö·ç¼Ç°ú ÅëÇÕÇÒ ¼ö ÀÖ½À´Ï´Ù.
µðÁöÅÐ ÀÎÁõ¼¸¦ »ç¿ëÇÏ¿© ÀÚµ¿ ÀÎÁõÀ» ¿ëÀÌÇÏ°Ô Çϱâ À§ÇÑ ÀÎÁõ¼ Áö¿ø ¿©·¯ »çÀÌÆ®°£ º¸¾È ¿¬°áÀÌ ÇÊ¿äÇÑ ´ë¿ë·® ³×Æ®¿öÅ©¿¡ ´ëÇØ ¾ÏÈ£È »ç¿ëÀ» È®ÀåÇÕ´Ï´Ù.
±âÁ¸ Cisco 1841°ú Cisco 2800, 3700, 3800 ½Ã¸®Áî ¶ó¿ìÅÍ·Î VPN ¸ðµâ ÅëÇÕÀ» ¿ëÀÌÇÏ°Ô ÇÏ´Â ±â´É ´ÙÁß ÀåÄ¡ ¼Ö·ç¼Ç°ú ºñ±³ÇßÀ» ¶§ ½Ã½ºÅÛ ºñ¿ë, °ü¸® º¹À⼺ ¹× ¹èÆ÷ ³ë·ÂÀ» ÇöÀúÇÏ°Ô ÁÙ¿©ÁÝ´Ï´Ù.
IPSecÀ» ÅëÇÑ ±â¹Ð¼º, µ¥ÀÌÅÍ ¹«°á¼º ¹× µ¥ÀÌÅÍ ±â¿ø ÀÎÁõ °ø¿ë ½ºÀ§Ä¡·Î ¿¬°áµÈ ³×Æ®¿öÅ©¿Í WAN¿ë ÀÎÆ®¶ó³ÝÀÇ º¸¾È »ç¿ëÀ» Çã¿ëÇÕ´Ï´Ù.
Cisco IOS SSL VPN SSL VPNÀ» »ç¿ëÇÏ¿© ÀÎÆ®¶ó³ÝÀÌ °¡´ÉÇÑ ¸ðµç À§Ä¡·Î ¾ÈÀüÇϰí È®½ÇÇÏ°Ô ³×Æ®¿öÅ©¸¦ È®ÀåÇÒ ¼ö ÀÖ½À´Ï´Ù. Cisco IOS SSL VPNÀº HTML ±â¹Ý ÀÎÆ®¶ó³Ý ÄÜÅÙÆ®, ÀüÀÚ ¸ÞÀÏ, ³×Æ®¿öÅ© ÆÄÀÏ °øÀ¯ ¹× Citrix µî°ú °°Àº ¾ÖÇø®ÄÉÀ̼ÇÀ» Ŭ¶óÀÌ¾ðÆ® ¾øÀÌ ¾×¼¼½ºÇÒ ¼ö ÀÖµµ·Ï Áö¿øÇÒ »Ó¸¸ ¾Æ´Ï¶ó, Cisco SSL VPN Client¸¦ Áö¿øÇÏ¿© °¡»óÀÇ ¸ðµç ¾ÖÇø®ÄÉÀ̼ǿ¡¼ Àüü ³×Æ®¿öÅ©¸¦ ¿ø°ÝÀ¸·Î ¾×¼¼½ºÇÒ ¼ö ÀÖ½À´Ï´Ù.
¾ÐÃà Cisco IPsec ¹× SSL VPN AIMÀº IPSec Layer 3 IPPCP¿¡ ´ëÇØ Çϵå¿þ¾î Áö¿øÀ» Á¦°øÇÏ°í ¾ÏÈ£ÈÇϱâ Àü¿¡ ÆÐŶÀ» ¾ÐÃàÇÒ ¼ö ÀÖ½À´Ï´Ù. À̸¦ ÅëÇØ WAN ¸µÅ©¿¡ ´ëÇØ ´õ ¸¹Àº 󸮷®ÀÌ Çã¿ëµË´Ï´Ù.
Cisco IPsec ¹× SSL VPN AIM ¼º´É
IPSec VPN
• Cisco 1841 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-1)Àº Cisco 1841¿¡¼ 25~95MbpsÀÇ Çϵå¿þ¾î ±â¹Ý IPSec ¾ÏÈ£È ¼ºñ½º¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù(IPSec Internet mix [IMIX] ¹× 1400¹ÙÀÌÆ® ÆÐŶ) 1
• Cisco 2800 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-2)Àº Cisco 2801¿¡¼ 30~90Mbps, Cisco 2811¿¡¼ 35~100Mbps, Cisco 2821¿¡¼ 90~125Mbps, Cisco 2851¿¡¼ 100~150MbpsÀÇ Çϵå¿þ¾î ±â¹Ý IPSec ¾ÏÈ£È ¼ºñ½º¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù.(IPSec IMIX ¹× 1400¹ÙÀÌÆ® ÆÐŶ) 1
• Cisco 3800 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-3)Àº Cisco 3825¿¡¼ 160~185Mbps, Cisco 3845¿¡¼ 190~210MbpsÀÇ Çϵå¿þ¾î ±â¹Ý IPSec ¾ÏÈ£È ¼ºñ½º¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù.(IPSec IMIX ¹× 1400¹ÙÀÌÆ® ÆÐŶ) 1
SSL VPN
• Cisco 1841 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-1)Àº ÃÖ´ë 50¸íÀÇ »ç¿ëÀÚ¸¦ °¡Áø 5MbpsÀÇ Çϵå¿þ¾î ±â¹Ý SSL ±â¹Ý VPN ¾Ïȣȸ¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù. 1
• Cisco 2800 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-2)Àº Cisco 2801¿¡¼ ÃÖ´ë 50¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 5Mbps, Cisco 2811¿¡¼ ÃÖ´ë 75¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 5Mbps, Cisco 2821¿¡¼ ÃÖ´ë 100¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 10Mbps, Cisco 2851¿¡¼ ÃÖ´ë 150¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 14MbpsÀÇ Çϵå¿þ¾î ±â¹Ý SSL VPN ¾ÏÈ£È ¼ºñ½º¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù. 2
• Cisco 3800 ½Ã¸®Áî ¸ðµâ(AIM-VPN/SSL-3)Àº Cisco 3825¿¡¼ ÃÖ´ë 175¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 20Mbps, Cisco 3845 ¶ó¿ìÅÍ¿¡¼ ÃÖ´ë 200¸íÀÇ »ç¿ëÀÚ¿Í ÇÔ²² 26MbpsÀÇ Çϵå¿þ¾î ±â¹Ý SSL VPN ¾ÏÈ£È ¼ºñ½º¸¦ Á¦°øÇÒ ¼ö ÀÖ½À´Ï´Ù. 2
ÁÖ¿ä ±â´É
SSL VPN
• Cisco IPsec ¹× SSL VPN AIMÀº SSL ¾ÏÈ£È ÇÁ·Î¼¼½ÌÀ» ¿ÀÇÁ·ÎµåÇÏ¿© SSL VPN ¼º´ÉÀ» Çâ»ó½Ãŵ´Ï´Ù.
• Cisco IOS SSL VPNÀº ÅëÇÕ µ¥ÀÌÅÍ, À½¼º ¹× ¹«¼± Ç÷§Æû¿¡¼ ¾÷°è ÃÖ°íÀÇ º¸¾È ±â´É°ú ¶ó¿ìÆÃ ±â´ÉÀ» ÅëÇÕÇÏ´Â SSL VPN ¿ø°Ý ¾×¼¼½º ¿¬°áÀ» Á¦°øÇÏ´Â ÃÖÃÊÀÇ ¶ó¿ìÅÍ ±â¹Ý ¼Ö·ç¼ÇÀÔ´Ï´Ù.
• SSL VPNÀº ÃÖÁ¾ »ç¿ëÀÚ¿¡°Ô È®½ÇÇÑ º¸¾ÈÀ» Á¦°øÇϸç IT °ü¸®°¡ ¿ëÀÌÇÑ °·ÂÇÑ ¼Ö·ç¼ÇÀÔ´Ï´Ù. À¥ ºê¶ó¿ìÀú¸¸À¸·Îµµ °¡Á¤¿ë ÄÄÇ»ÅÍ, ÀÎÅÍ³Ý Å°¿À½ºÅ© ¹× ¹«¼± ÇÖ½ºÆÌ°ú °°Àº ¸ðµç ÀÎÅÍ³Ý Áö¿ø À§Ä¡·Î ±â¾÷ÀÇ º¸¾È ¿£ÅÍÇÁ¶óÀÌÁî ³×Æ®¿öÅ©¸¦ È®ÀåÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ¿¡ µû¶ó Á÷¿ø »ý»ê¼ºÀ» Çâ»ó½Ã۰í ȸ»ç µ¥ÀÌÅ͸¦ º¸È£ÇÏ¸é¼ ÆÄÆ®³Ê¿Í ÄÁ¼³ÅÏÆ®¿¡°Ô ³×Æ®¿öÅ© ¾×¼¼½º¸¦ Çã¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù.
• Cisco IOS SSL VPNÀº Ŭ¶óÀÌ¾ðÆ® ¾ø´Â ¾×¼¼½º¿Í Àüü ³×Æ®¿öÅ© ¾×¼¼½º SSL VPN ±â´ÉÀ» ¸ðµÎ Áö¿øÇÕ´Ï´Ù.
Cisco IOS SSL VPN¿¡ ´ëÇØ ´õ ÀÚ¼¼ÇÑ ¾Ë¾Æº¸·Á¸é http://www.cisco.com/go/iossslvpnÀ» ÂüÁ¶ÇϽʽÿÀ.
IPSec VPN
Cisco Systems¢ç´Â IPSec ¹× °ü·Ã ÇÁ·ÎÅäÄÝ(RFC 2401~2410)À» ¼³¸íÇÏ´Â RFC Àüü ¼¼Æ®¸¦ ¿Ïº®ÇÏ°Ô Áö¿øÇÕ´Ï´Ù. ƯÈ÷ ½Ã½ºÄÚ´Â ´ÙÀ½°ú °°Àº ±â´ÉÀ» Áö¿øÇÕ´Ï´Ù.
• DES, 3DES ¹× AES´Â DES, IPSec ¹× IKE¸¦ ´ëüÇϱâ À§ÇØ ¹Ì±¹ NIST(National Institute of Standard and Technology)¿¡ ÀÇÇØ ¿¬¹æ Á¤º¸Ã³¸® Ç¥ÁØ(FIPS: Federal Information Processing Standard)À¸·Î ÁöÁ¤µÇ¾ú½À´Ï´Ù. AES´Â Ű ¹üÀ§´Â °¡º¯ÀûÀÔ´Ï´Ù. AES ¾Ë°í¸®ÁòÀº 128ºñÆ® Ű(±âº»°ª), 192ºñÆ® Ű ¶Ç´Â 256ºñÆ® ۸¦ ÁöÁ¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. AES¿¡ ´ëÇØ ´õ ÀÚ¼¼È÷ ¾Ë¾Æº¸·Á¸é http://csrc.nist.gov/encryption/aes/¸¦ ÂüÁ¶ÇϽʽÿÀ.
• IPSec : ÀÌ ÇÁ·ÎÅäÄÝÀº ¾ÏÈ£È ±â¼úÀ» »ç¿ëÇÏ¿© »ç¼³ ³×Æ®¿öÅ©¿¡ Á¢¼Ó ÁßÀÎ Âü¼®ÀÚ(peer)µé °£¿¡ µ¥ÀÌÅÍÀÇ ±â¹Ð¼º, ¹«°á¼º ¹× ÀÎÁõÀ» Á¦°øÇÕ´Ï´Ù. ½Ã½ºÄÚ´Â ¿Ïº®ÇÑ ESP(º¸¾È ÆäÀ̷εå ĸ½¶È)¿Í ÀÎÁõ Çì´õ Áö¿øÀ» Á¦°øÇÕ´Ï´Ù.
• IKE: ISAKMP(ÀÎÅÍ³Ý º¸¾È ¿¬°á ¹× Ű °ü¸® ÇÁ·ÎÅäÄÝ) ¶Ç´Â Oakley¸¦ »ç¿ëÇÏ¿© º¸¾È ¿¬°á °ü¸®¸¦ Á¦°øÇÕ´Ï´Ù. IKE´Â IPSec Æ®·£Àè¼Ç ³» °¢ Âü¼®ÀÚ(peer)¸¦ ÀÎÁõÇϰí, º¸¾È Á¤Ã¥À» Çù»óÇϰí, ¼¼¼Ç Ű ±³È¯À» ó¸®ÇÕ´Ï´Ù.
• ÀÎÁõ¼ °ü¸®: ½Ã½ºÄÚ´Â ÀåÄ¡ ÀÎÁõÀ» À§ÇÑ X509.V3 ÀÎÁõ¼ ½Ã½ºÅÛ°ú ÀÎÁõ ±â°ü°úÀÇ Åë½Å ÇÁ·ÎÅäÄÝÀÎ SCEP(´Ü¼ø ÀÎÁõ¼ °ËÁõ ÇÁ·ÎÅäÄÝ)¸¦ ¿Ïº®ÇÏ°Ô Áö¿øÇÕ´Ï´Ù. Verisign, Entrust Technologies, Microsoft µî ¿©·¯ °ø±Þ¾÷ü¿¡¼ Cisco SCEP¸¦ Áö¿øÇϱ⠶§¹®¿¡ À̵éÀÇ Á¦Ç°À» ½Ã½ºÄÚ ÀåÄ¡¿¡¼ »ç¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù.
• RSA ¼¸í°ú Diffie-Hellman-RSA ¹× Diffie-HellmanÀº IKE º¸¾È ¿¬°áÀ» ÀÎÁõÇϱâ À§Çؼ IPSec ÅͳÎÀ» ¼³Á¤ÇÒ ¶§¸¶´Ù »ç¿ëµË´Ï´Ù. Diffie-HellmanÀº »ç¿ëÇÒ IPSec Á¤Ã¥ Çù»óÀ» Æ÷ÇÔÇÏ¿© IKE º¸¾È ¿¬°á °£¿¡ µ¥ÀÌÅ͸¦ º¸È£Çϱâ À§ÇØ °øÀ¯ ºñ¹Ð ¾ÏÈ£È Å°¸¦ °¡Á®¿À´Â µ¥ »ç¿ëµË´Ï´Ù.
• Çâ»óµÈ º¸¾È Çϵå¿þ¾î ±â¹Ý ¾ÏÈ£È ¹æ½ÄÀº Çâ»óµÈ º¸È£ ۸¦ Æ÷ÇÔÇÏ¿© ¼ÒÇÁÆ®¿þ¾î ±â¹Ý ¼Ö·ç¼ÇÀ» ÅëÇØ ¿©·¯ º¸¾È ÀÌÁ¡À» Á¦°øÇÕ´Ï´Ù.
Cisco IOS IPSec VPN¿¡ ´ëÇØ ´õ ÀÚ¼¼È÷ ¾Ë¾Æº¸·Á¸é ´ÙÀ½ À¥»çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ. http://www.cisco.com/en/US/customer/products/ps6635/products_ios_protocol_group_home.html
ÀÎÁõ
½Ã½ºÄÚ´Â Àü ¼¼°è °í°´À» À§ÇØ ±î´Ù·Î¿î Á¦Ç° ÀÎÁõ ¹× Æò°¡ ÇÁ·Î±×·¥À» À¯Áö °ü¸®ÇÏ´Â µ¥ Àü³äÇϰí ÀÖ½À´Ï´Ù. ÀÎÁõ°ú Æò°¡°¡ °í°´µé¿¡°Ô Áß¿äÇÑ »çÇ×ÀÓÀ» Àß ¾Ë°í ÀÖ´Â ½Ã½ºÄÚ´Â ÀÎÁõ ¹× Æò°¡µÈ Á¦Ç°À» ½ÃÀå¿¡ °ø±ÞÇÏ´Â µ¥ ÀÖ¾î Áö¼ÓÀûÀ¸·Î ¼±µÎ ÀÚ¸®¸¦ Áöų °ÍÀÔ´Ï´Ù. ¶ÇÇÑ, ½Ã½ºÄÚ´Â ±¹Á¦ º¸¾È Ç¥ÁØ ±â°üµé°úÀÇ Áö¼ÓÀûÀÎ Çù·ÂÀ» ÅëÇØ ÀÎÁõ ¹× Æò°¡µÈ Á¦Ç°ÀÇ ¹Ì·¡ À§»óÀ» È®¸³Çϵµ·Ï Áö¿øÇϰí, ÀÎÁõ ¹× Æò°¡ °úÁ¤À» °¡¼ÓÈÇϱâ À§ÇØ ³ë·ÂÇÒ °ÍÀÔ´Ï´Ù. ÀÎÁõ ¹× Æò°¡´Â ½Ã½ºÄÚ Á¦Ç° °³¹ß ÁÖ±âÀÇ ½ÃÀÛ ´Ü°èºÎÅÍ °í·ÁµÇ¸ç, ½Ã½ºÄÚ´Â °í°´ÀÇ ¿ä±¸¿¡ ¸Â´Â ÀÎÁõ ¹× Æò°¡ Á¦Ç°À» Á¦°øÇϱâ À§ÇØ Áö¼ÓÀûÀ¸·Î ¿¬±¸°³¹ß¿¡ ÃÑ·ÂÀ» ´ÙÇϰí ÀÖ½À´Ï´Ù. Cisco´Â ICSA, Common Criteria(EAL) ¹× FIPS 140-2 ÀÎÁõÀ» Ãß±¸ÇÕ´Ï´Ù(±×¸² 2 ÂüÁ¶).
±×¸² 2.
Cisco VPN ¸ðµâÀº FIPS 140-2 Level 2 º¸¾ÈÀ» ÁؼöÇϵµ·Ï ¼³°èµÇ¾ú½À´Ï´Ù. ÇöÀç Æ¯Á¤ ¸ðµ¨¸¸ FIPS 140-2 ÀÎÁõÀ» °¡Áö°í ÀÖ½À´Ï´Ù. FIPS ÀÎÁõÀ» ȹµæÇÑ ½Ã½ºÄÚ Á¦Ç°ÀÇ ÇöÀç »óÅ¿¡ ´ëÇÑ ÀÎÁõ À¯ÇüÀ¸·Î Á¦Ç° ÀÎÁõÀ» È®ÀÎÇÏ·Á¸é ´ÙÀ½ »çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
• http://www.cisco.com/en/US/customer/netsol/ns340/ns394/ns171/networking_solutions_audience_business_benefit0900aecd8009a16f.html
• http://csrc.nist.gov/cryptval/
ICSA IPSec
ICSA(Internet Computer Security Association)´Â ´Ù¾çÇÑ À¯ÇüÀÇ º¸¾È Á¦Ç°¿¡ ´ëÇØ ICSA IPSec¿Í ICSA ¹æÈº® ÀÎÁõÀ» Á¦°øÇÏ´Â º¸¾È ÀÎÁõ »ç¼³ ±â°üÀÔ´Ï´Ù. ½Ã½ºÄÚ´Â ICSAÀÇ IPSec¿Í ¹æÈº® ÀÎÁõ ÇÁ·Î±×·¥¿¡ Âü¿©Çϰí ÀÖ½À´Ï´Ù. ICSA ÀÎÁõÀ» ȹµæÇÑ ½Ã½ºÄÚ Á¦Ç°ÀÇ ÇöÀç »óÅ¿¡ ´ëÇÑ ÀÎÁõ À¯ÇüÀ¸·Î Á¦Ç° ÀÎÁõÀ» È®ÀÎÇÏ·Á¸é ´ÙÀ½ »çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
http://www.cisco.com/en/US/customer/netsol/ns340/ns394/ns171/networking_solutions_audience_business_benefit0900aecd8009a16f.html
Common Criteria
Common Criteria´Â IT º¸¾ÈÀ» Æò°¡ÇÏ´Â ±¹Á¦Àû Ç¥ÁØÀÔ´Ï´Ù. ±¹°¡º°·Î ¼·Î ´Ù¸¥ ´Ù¾çÇÑ º¸¾È Æò°¡ ÇÁ·Î¼¼½º¸¦ ±¹Á¦ ´ÜÀÏ Ç¥ÁØÀ¸·Î ´ëüÇϱâ À§ÇØ ±¹°¡º° Äܼҽþö¿¡¼ °³¹ßÇÑ Ç¥ÁØÀÔ´Ï´Ù. ÇöÀç 14°³±¹¿¡¼ °ø½ÄÀûÀ¸·Î ÀÌ Common Criteria¸¦ ÀÎÁ¤Çϰí ÀÖ½À´Ï´Ù. Cisco ISR ¶ó¿ìÅÍÀÇ ¿©·¯ ¹öÀü¿¡ ´ëÇØ ITSEC(Information Technology Security Evaluation Criteria)¿Í Common CriteriaÀÇ Æò°¡°¡ ÇöÀç ÁøÇà ÁßÀÔ´Ï´Ù. FIPS ÀÎÁõÀ» ȹµæÇÑ ½Ã½ºÄÚ Á¦Ç°ÀÇ ÇöÀç »óÅ¿¡ ´ëÇÑ ÀÎÁõ À¯ÇüÀ¸·Î Á¦Ç° ÀÎÁõÀ» È®ÀÎÇÏ·Á¸é ´ÙÀ½ »çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
• http://www.cisco.com/en/US/customer/netsol/ns340/ns394/ns171/networking_solutions_audience_business_benefit0900aecd8009a16f.html
• http://www.commoncriteriaportal.org/
Cisco 1841¿Í Cisco 2800, 3700, 3800 ½Ã¸®Áî VPN ¸ðµâ ¼ÒÇÁÆ®¿þ¾î
VPN ¸ðµâÀÌ ¼³Ä¡µÇ¾î ÀÖÀ¸¸é Cisco IOS SoftwareÀÇ ¸ðµç ±â´É ¼¼Æ®°¡ ¶ó¿ìÅÍ¿¡¼ ÀÛµ¿µÇÁö¸¸, ÇØ´ç ¸ðµâÀº IPSec ¶Ç´Â SSL VPN ±â´É ¼¼Æ®¿¡ ´ëÇØ¼¸¸ »ç¿ëµË´Ï´Ù.
VPN ¸ðµâ¿¡ ´ëÇÑ ¼öÃâ ±Ô¾à
VPN ¸ðµâÀ» À§ÇÑ DES, 3DES ¹× AES ¼ÒÇÁÆ®¿þ¾î´Â ¾ÏÈ£È Á¦Ç°¿¡ ´ëÇØ ¹Ì¿¬¹æ ¼öÃâ ±Ô¾àÀÇ ÅëÁ¦¸¦ ¹Þ½À´Ï´Ù. ¹Ì±¹ÀÇ ±ÔÁ¤¿¡¼´Â DES¿Í 3DES ¼ÒÇÁÆ®¿þ¾î¸¦ ¼ö·ÉÇÏ´Â »ç¶÷ÀÇ À̸§°ú ÁÖ¼Ò¸¦ ±â·ÏÇϵµ·Ï ¿ä±¸Çϰí ÀÖ½À´Ï´Ù. DES ¹× 3DES ¼ÒÇÁÆ®¿þ¾îÀÇ ½Ã½ºÄÚ ÁÖ¹® ÇÁ·Î¼¼½º¿¡ ÀÌ ¿ä±¸»çÇ×ÀÌ Àû¿ëµË´Ï´Ù.
Á¦Ç° »ç¾ç
Ç¥ 4. Á¦Ç° »ç¾ç
ÁÖ¿ä ±â´É »ç¾ç
ºÎǰ ¹øÈ£ ¹× ¼³¸í • AIM-VPN/SSL-1: Cisco 1841 DES, 3DES, AES, SSL ¹× Layer 3 (IPPCP) ¾ÐÃà VPN ¾ÏÈ£È
• AIM-VPN/SSL-2: Cisco 2800 ½Ã¸®Áî DES, 3DES, AES, SSL ¹× Layer 3 (IPPCP) ¾ÐÃà VPN ¾ÏÈ£È
• AIM-VPN/SSL-3: Cisco 3800 ½Ã¸®Áî DES, 3DES, AES, SSL ¹× Layer 3 (IPPCP) ¾ÐÃà VPN ¾ÏÈ£È
IPSec RFC Áö¿ø • IPSec(RFC 2401~2410)
• DES ¹× 3DES¸¦ »ç¿ëÇÏ´Â IPSec ESP(RFC 2406)
• MD5 ¶Ç´Â SHA¸¦ »ç¿ëÇÏ´Â IPSec ÀÎÁõ Çì´õ(RFC 2403~2404)
• IKE(RFC 2407~2409)
• GDOI(RFC 3547 - Group Domain of Interpretation)
ȯ°æ Á¶°Ç • ÀÛµ¿ ¿Âµµ: Ⱦ¾ 32~104µµ(¼·¾¾ 0~40µµ)
• º¸°ü ¿Âµµ Ⱦ¾ -4~149µµ(¼·¾¾ -20~65µµ)
• »ó´ë ½Àµµ: ÀÛµ¿ - 10~85% ºñÀÀÃà, º¸°ü - 5~95% ºñÀÀÃà
Å©±â ¹× ¹«°Ô
Ç¥ 5´Â Ç÷§Æûº° Å©±â¿Í ¹«°Ô¸¦ ³ªÅ¸³À´Ï´Ù.
Ç¥ 5. Å©±â ¹× ¹«°Ô
¸ðµâ AIM-VPN/SLL-1 AIM-VPN/SSL-2 AIM-VPN/SSL-3
³Êºñ 5.25ÀÎÄ¡(13.3cm) 5.25ÀÎÄ¡(13.3cm) 5.25ÀÎÄ¡(13.3cm)
³ôÀÌ 0.95ÀÎÄ¡(2.41cm) 0.95ÀÎÄ¡(2.41cm) 0.95ÀÎÄ¡(2.41cm)
±íÀÌ 3.25ÀÎÄ¡(8.26cm) 3.25ÀÎÄ¡(8.26cm) 3.25ÀÎÄ¡(8.26cm)
¹«°Ô 0.60ÆÄ¿îµå(0.27kg) 0.60ÆÄ¿îµå(0.27kg) 0.60ÆÄ¿îµå(0.27kg)
±ÔÁ¤ Áؼö, ¾ÈÀü, EMC, Åë½Å ¹× ³×Æ®¿öÅ© ½ÂÀÎ
Cisco 1800(¸ðµâÇü), 2800, 3700 ¶Ç´Â 3800 ½Ã¸®Áî ¶ó¿ìÅ͸¦ ¼³Ä¡ÇÒ °æ¿ì, VPN ¸ðµâÀº Ç¥ÁØ(±ÔÁ¤ Áؼö, ¾ÈÀü, EMC, Åë½Å ¶Ç´Â ³×Æ®¿öÅ© ÀÎÁõ)À» º¯°æÇÏÁö ¾Ê½À´Ï´Ù. Cisco 1800(¸ðµâÇü), 2800, 3700 ¹× 3800 ½Ã¸®Áî ¶ó¿ìÅÍ¿¡ ´ëÇÑ µ¥ÀÌÅÍ ½ÃÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
¼ÒÇÁÆ®¿þ¾î ´Ù¿î·Îµå ¹æ¹ý
Cisco IOS Software¸¦ ´Ù¿î·Îµå ÇÏ·Á¸é ½Ã½ºÄÚ ¼ÒÇÁÆ®¿þ¾î ¼¾Å͸¦ ¹æ¹®ÇϽʽÿÀ.
¼ºñ½º ¹× Áö¿ø
½Ã½ºÄÚÀº °í°´ÀÇ ¼º°øÀ» ¾Õ´ç±â´Â ´Ù¾çÇÑ ¼ºñ½º ÇÁ·Î±×·¥À» Á¦°øÇÕ´Ï´Ù. ÀÌ·¯ÇÑ Çõ½ÅÀûÀÎ ¼ºñ½º ÇÁ·Î±×·¥Àº ¼öÁØ ³ôÀº ÀηÂ, ÇÁ·Î¼¼½º, °í°´Áö¿ø Åø ¹× ÆÄÆ®³ÊÀÇ ±â¼ú·ÂÀÌ ¾î¿ì·¯Áø °ÍÀ¸·Î, ±× °á°ú´Â ³ôÀº °í°´ ¸¸Á·µµ·Î À̾îÁý´Ï´Ù. ½Ã½ºÄÚ ¼ºñ½º´Â °í°´ÀÇ ³×Æ®¿öÅ© ÅõÀÚ º¸È£, ³×Æ®¿öÅ© ¿î¿µ ÃÖÀûÈ, »õ·Î¿î ¾ÖÇø®ÄÉÀ̼ǿ¡ ´ëºñÇÑ ³×Æ®¿öÅ© Áغñ¸¦ ÅëÇØ Áö´ÉÇü ³×Æ®¿öÅ©¿Í ºñÁî´Ï½º ¼º´ÉÀ» È®ÀåÇϵµ·Ï µ½½À´Ï´Ù. ½Ã½ºÄÚ ¼ºñ½º¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº ½Ã½ºÄÚ ±â¼ú Áö¿ø ¼ºñ½º³ª ½Ã½ºÄÚ ¾îµåº¥½ºµå ¼ºñ½º¸¦ ÂüÁ¶ÇϽʽÿÀ.
Ãß°¡ Á¤º¸
Cisco VPN ¸ðµâ¿¡ ´ëÇØ ´õ ÀÚ¼¼È÷ ¾Ë¾Æº¸·Á¸é http://www.cisco.com À¥ »çÀÌÆ®¸¦ ÂüÁ¶Çϰųª ÇØ´ç Áö¿ª ½Ã½ºÄÚ ´ã´çÀÚ¿¡°Ô ¹®ÀÇÇϽʽÿÀ.
1 IPSec ¹øÈ£´Â Spirent IPSec IMIX Á¤ÀÇ¿Í 1400¹ÙÀÌÆ® ÆÐŶ Å©±â¿¡ ±â¹ÝÇÑ ÃÖ´ë °ªÀÔ´Ï´Ù. ¸ðµç Å×½ºÆ®´Â ´ÜÀÏ ÅͳηΠ¼öÇàµË´Ï´Ù. ¹èÄ¡ ¿É¼Ç°ú È®Àå¿¡ ´ëÇØ ´õ ÀÚ¼¼È÷ ¾Ë¾Æº¸·Á¸é ½Ã½ºÄÚ °èÁ¤ ÆÀÀ¸·Î ¹®ÀÇÇϽðí, Cisco VPN ¼Ö·ç¼Ç ¾È³»¼¸¦ °ËÅäÇØ º¸½Ã±â ¹Ù¶ø´Ï´Ù. IPsec »ç¿ëÀÚÀÇ °æ¿ì, È®Àå¿¡ ´ëÇÑ Æ¯Á¤ Á¤º¸¸¦ ¾Ë¾Æº¸·Á¸é ´ÙÀ½ »çÀÌÆ®¿¡¼ ½Ã½ºÄÚ ¼Ö·ç¼Ç ¼³°è ¾È³»¼¸¦ ÂüÁ¶ÇϽʽÿÀ. http://www.cisco.com/application/pdf/en/us/guest/netsol/ns171/c649/ccmigration_09186a008075ea98.pdf ¹×http://www.cisco.com/en/US/customer/netsol/ns656/networking_solutions_design_guidances_list.html
2 ¹èÄ¡ ¿É¼Ç°ú È®Àå¿¡ ´ëÇØ ´õ ÀÚ¼¼È÷ ¾Ë¾Æº¸·Á¸é ½Ã½ºÄÚ °èÁ¤ ÆÀÀ¸·Î ¹®ÀÇÇϽðí, Cisco Web VPN ¼Ö·ç¼Ç ¾È³»¼¸¦ °ËÅäÇØ º¸½Ã±â ¹Ù¶ø´Ï´Ù. IOS SSLVPN ¼º´ÉÀº ¼³Ä¡µÈ Ŭ¶óÀÌ¾ðÆ®¿¡ µû¶ó ´Ù¸¨´Ï´Ù. SSLVPN Ŭ¶óÀÌ¾ðÆ® »ç¿ëÀÚ´Â ´Ù¼Ò ³·Àº ¼º´ÉÀ» º¸ÀÌ´Â SSLVPN Ŭ¶óÀÌ¾ðÆ® ¾ø´Â ¼³Ä¡º¸´Ù ÀüüÀûÀ¸·Î ´õ ³ô¾ÆÁø ¼º´ÉÀ» üÇèÇÒ ¼ö ÀÖÀ» °ÍÀÔ´Ï´Ù.
*** Âü°í ÀÚ·á ***
http://www.cisco.com/web/KR/products/pc/routers/1800/1841_isr_ds.html
*** ÀåºñºÎÆÃÂü°íÀÚ·á ***
Router#sh ver
Cisco IOS Software, 1841 Software (C1841-ADVIPSERVICESK9-M), Version 12.4(3), RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2005 by Cisco Systems, Inc.
Compiled Fri 22-Jul-05 00:32 by hqluong
ROM: System Bootstrap, Version 12.4(13r)T, RELEASE SOFTWARE (fc1)
Router uptime is 0 minutes
System returned to ROM by power-on
System image file is "flash:C1841-Advipservicesk9-Mz_124-3.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
export@cisco.com.
Cisco 1841 (revision 7.0) with 118784K/12288K bytes of memory.
Processor board ID FHK111817H8
2 FastEthernet interfaces
1 Virtual Private Network (VPN) Module
DRAM configuration is 64 bits wide with parity disabled.
191K bytes of NVRAM.
31360K bytes of ATA CompactFlash (Read/Write)
Configuration register is 0x2102
Router#sh inv
Router#sh inventory
NAME: "1841 chassis", DESCR: "1841 chassis, Hw Serial#: , Hw Revision: 7.0"
PID: CISCO1841 , VID: V05 , SN:
NAME: "C1841 Motherboard with 2 Fast Ethernet", DESCR: "C1841 Motherboard with 2 Fast Ethernet"
PID: CISCO1841 , VID: 7.0, SN:
Router#sh diag
Slot 0:
C1841 2FE 2SLOT Mainboard Port adapter, 2 ports
Port adapter is analyzed
Port adapter insertion time unknown
EEPROM contents at hardware discovery:
Chassis MAC Address :
MAC Address block size : 34
PCB Serial Number :
Hardware Revision : 7.0
Part Number : 73-8191-08
Board Revision : A0
Top Assy. Part Number : 800-23434-06
Deviation Number : 0
Fab Version : 04
CLEI Code : IPM7W00CRA
RMA Test History : 00
RMA Number : 0-0-0-0
RMA History : 00
Product (FRU) Number : CISCO1841
Version Identifier : V05
Processor type : 86
Chassis Serial Number :
EEPROM format version 4
EEPROM contents (hex):
0x00: 04 FF C3 06 00 1B D4 CF C2 0E 43 00 22 C1 8B 46
0x10: 4F 43 31 31 31 37 32 34 51 42 40 04 1B 41 07 00
0x20: 82 49 1F FF 08 42 41 30 C0 46 03 20 00 5B 8A 06
0x30: 88 00 00 00 00 02 04 C6 8A 49 50 4D 37 57 30 30
0x40: 43 52 41 03 00 81 00 00 00 00 04 00 CB 89 43 49
0x50: 53 43 4F 31 38 34 31 89 56 30 35 20 D9 02 C1 40
0x60: 09 86 C2 8B 46 48 4B 31 31 31 38 31 37 48 38 FF
0x70: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x80: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x90: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xA0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xB0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xC0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xD0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xE0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0xF0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x100: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x110: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x120: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x130: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x140: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x150: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x160: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x170: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x180: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x190: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1A0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1B0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1C0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1D0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1E0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
0x1F0: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Router#
|