Cisco Cisco Catalyst 6500 Series Firewall Services Module 데이터 시트
© 2005 Cisco Systems, Inc. All rights reserved.
Important notices, privacy statements, and trademarks of Cisco Systems, Inc. can be found on cisco.com.
Page 2 of 8
Figure 1. Cisco PIX Device Manager Version 4.1
ROBUST MANAGEMENT SERVICES LOWER TOTAL COST OF OWNERSHIP
Cisco PIX Device Manager features a powerful set of management services that simplify security policy definition and ongoing policy maintenance
by giving security operators the ability to create reusable network and service object groups, which can be referenced by multiple security policies.
It also supports the rich access control features offered by Cisco FWSM Software such as Syslog by ACL. These access control features, coupled
with easy-to-use ongoing policy management services, help ensure a lower total cost of ownership for businesses of all sizes.
ENTERPRISE-CLASS SECURITY SERVICES PROVIDE SECURED ROLE-BASED ADMINISTRATIVE ACCESS
Cisco PIX Device Manager provides an array of robust security services to prevent unauthorized administrative access to FWSM. It supports FWSM
2.3 features like ACL override feature. User traffic is permitted if it is permitted by the per-user access-list regardless of the permit status of interface
access-list.
It supports a wide range of methods for authenticating administrators to a local authentication database on a Cisco FWSM or via a
RADIUS/TACACS+ server. All communications between Cisco PIX Device Manager (running on an administrator’s computer) and FWSM are
encrypted using Secure Sockets Layer (SSL) with either 56-bit or the more secure 128-bit SSL encryption. Cisco PIX Device Manager also supports
up to sixteen levels of customizable administrative access, granting administrators and operations personnel the appropriate permission levels for
every Cisco FWSM they manage.
INTELLIGENT INTERFACE SIMPLIFIES INTEGRATION INTO COMPLEX NETWORK ENVIRONMENTS
Cisco PIX Device Manager provides easy access to managing the rich network integration features found in Cisco FWSM devices. It gives
administrators complete control over Open Shortest Path First (OSPF) dynamic routing (Figure 2) and IEEE 802.1q-based VLAN interfaces
(Figure 3). For novice users, it provides intelligent defaults and detailed online help to simplify network services configuration. Advanced users can
take full advantage of the depth of feature support to integrate Cisco FWSM module into complex routing and switching environments.