Cisco 890 Series
Cisco 890 Series
Cisco 890 Series
Product Overview
Cisco 890 Series Integrated Services Routers are fixed-configuration routers that provide collaborative business solutions for secure voice and data communications to enterprise small branch offices (Figure 2). They are designed to deliver secure broadband, Metro Ethernet, wireless LAN (WLAN) connectivity, and business continuity. The routers also come with powerful management tools, such as the web-based Cisco Configuration Professional configuration management tool, which simplifies setup and deployment. Centralized management capabilities give network managers visibility and control of the network configurations at the remote site. Cisco 890 Series Integrated Services Routers offer:
High performance for secure broadband and Metro Ethernet access with concurrent services for enterprise small branch offices
Business continuity and WAN diversity with redundant WAN links: Fast Ethernet, V.92, and ISDN Basic Rate Interface (BRI)
Integrated secure 802.11a/g/n access point (optional) based on the draft 802.11n standard; dual-band radios for mobility and support for autonomous or Cisco Unified WLAN architectures
Enhanced security including: Firewall with advance application and control for email, instant messaging (IM), and HTTP traffic Site-to-site remote-access and dynamic VPN services: IP Security (IPsec) VPNs (Triple Data Encryption Standard [3DES] or Advanced Encryption Standard [AES]), Dynamic Multipoint VPN [DMVPN], Group Encrypted Transport VPN with onboard acceleration, and Secure Sockets Layer [SSL] VPN) Intrusion prevention system (IPS): An inline, deep-packet-inspection feature that mitigates a wide range of network attacks Content filtering: A subscription-based integrated security solution that offers category-based reputation rating, keyword blocking, and protection against adware, malware, spyware, and URL blocking
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 1 of 13
Data Sheet
An 8-port 10/100 Fast Ethernet managed switch with VLAN support and 4-port support for Power over Ethernet (PoE) (optional) to power IP phones or external access points
Metro Ethernet features include: One 1000BASE-T Gigabit Ethernet WAN port One 10/100BASE-T Fast Ethernet WAN port One 1-port Gigabit Ethernet (GE) Small Form-Factor Pluggable (SFP) socket for WAN connectivity (Note: Only the 1000BASE-T Gigabit Ethernet WAN or the SFP is operational at a given time.) Intelligent hierarchical quality of service (HQoS): Supports hierarchical queuing and shaping Connectivity Fault Management (CFM), based on 802.1ag 802.3ah standard-based link operations, administration, and maintenance (OAM) Ethernet Local Management Interface (E-LMI) for the customer edge CFM Interworking and backward compatibility Performance management based on IP service-level agreement (SLA) for Ethernet
Cisco 892
1
Cisco 892F
Figure 2.
Cisco 892F is supported only on the Cisco IOS Software Release 15.1(2)T2 and later
Page 2 of 13
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Dedicated console and auxiliary ports for configuration and management Two USB 2.0 ports for security eToken credentials, booting, and loading configuration from USB Easy setup and deployment, and centralized and remote-management capabilities through web-based tools and Cisco IOS Software
Yes
Yes/Yes/Yes
ISDN BRI
Yes
Yes/Yes/Yes
ISDN BRI
Data Sheet
Metro Ethernet Connectivity Cisco 890 Series Routers are ideal for service provider deployments as Metro Ethernet customer premises equipment (CPE). Cisco 891 and 892 Integrated Services Routers include two onboard WAN interfaces, one Gigabit Ethernet WAN port with an RJ-45 connector and a SFP socket (Cisco 892F only), and one Fast Ethernet WAN port to support the high-bandwidth demands of Metro Ethernet deployments. The router also provides failover protection and load balancing. The 8-port managed switch provides enough LAN ports for connecting multiple devices, and the optional PoE capability can supply power to IP phones or other devices. The Cisco 890 Series provides significant value to customers by simplifying deployment of Ethernet WAN services with end-to-end OAM, SLA monitoring and verification, and configuration management, resulting in increased operational efficiency and reduced operating expenses (OpEx). The following Metro Ethernet features are supported for the Cisco 890 Series:
E-LMI: Basic configuration for detection and isolation of connectivity in the Metro Ethernet network E-LMI: Automated configuration of customer edge based on profiles configured: Layer 2 connectivity management Ethernet LMI for the customer edge
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Metro Ethernet OAM: Debugging hierarchy of Ethernet networks Layer 2 service performance monitoring
Page 3 of 13
Data Sheet
802.1ag CFM: Uses domains to contain OAM flows and bound OAM responsibilities
802.3ah: Ethernet in the First Mile (EFM) Three types of packets: Continuity Check, Layer 2 Ping, and Layer 2 Traceroute
High Availability
Cisco 890 Series Routers enable customers to deliver high-performance, high-availability, mission-critical business applications (Figure 5). The Cisco IOS Software universal image with Advanced IP Services feature license (default) offers basic and advanced routing capabilities to deliver failover protection and load balancing. These capabilities include Virtual Router Redundancy Protocol (VRRP) (RFC 2338), Hot Standby Router Protocol (HSRP), Multigroup HSRP (MHSRP), and dial backup with external modem through a virtual auxiliary port. Cisco 890 Series Routers are integrated with ISDN BRI (892 model) or a V.92 analog modem (891 model) for a secondary WAN backup connection. If the primary Ethernet-access WAN is disconnected, the router detects this failure and fails over to the secondary backup WAN.
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 4 of 13
Data Sheet
Figure 5.
High Availability
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 5 of 13
Data Sheet
Figure 6 shows a Cisco 890 Series Router deployed in an enterprise small branch-office WLAN application.
Figure 6. Enterprise Small Branch-Office WLAN
Manageability
Cisco 890 Series Routers support a whole suite of management tools to provide ease of use. Tools such as Cisco Configuration Professional use smart wizards and task-based tutorials, which resellers and customers can use to quickly and easily deploy, configure, and monitor a Cisco access router without requiring knowledge of the Cisco IOS Software command-line interface (CLI). Table 2 lists the features and benefits of the Cisco 890 Series Routers.
Table 2.
Feature Increased performance for concurrent services Integrated Gigabit Ethernet, SFP, and Fast Ethernet WAN ports Integrated 8-port 10/100BASE-T managed switch Integrated WAN backup Real-time clock Enhanced security
The Cisco 890 Series offers a secure, integrated access point in a single device. It supports both autonomous and unified modes. It is backward-compatible with 802.11a/b/g. The router supports IEEE 802.11n draft 2.0 and uses multiple-input, multiple-output (MIMO) technology that provides increased throughput, reliability, and predictability. One auxiliary and one console port enable remote configuration and management. The router has two USB 2.0 flash memory or security eTokens. Integrated USB ports can be configured to work with an optional USB token for off-platform storage of VPN credentials or for deployment of configuration stored on USB flash-memory devices. Configuration and management of access points is automated and simplified without manual intervention. A unified hybrid remote-edge access point (HREAP) provides the following: WLAN services to remote and branch offices without deploying a wireless LAN controller at each location. Central configuration and control of unified WLAN services for remote offices through a WAN link. Flexibility in setting up wireless access at remote locations by specifying how traffic is to be bridged or tunneled.
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 6 of 13
Data Sheet
Benefit Cisco Configuration Professional uses smart wizards and task-based tutorials, which resellers and customers can use to quickly and easily deploy, configure, and monitor a Cisco access router without requiring knowledge of the Cisco IOS Software CLI.
Summary
Cisco 890 Series Integrated Services Routers combine increased network performance with advanced security and wireless technology to allow enterprise small branch-office customers to get the most from their broadband connections. Service providers and value-added resellers can take advantage of the Cisco 890 Series to provide a true business-class broadband service. The Cisco 890 Series delivers on the requirements of enterprise small branch offices and managed services providers.
Product Specifications
Tables 3-5 list software and hardware features of the Cisco 890 Series.
Table 3.
Feature IP and IP services features
Cisco IOS Software Features on Cisco 890 Series: Advanced IP Features Set (Default)
Description Routing Information Protocol Versions 1 and 2 (RIPv1 and RIPv2) Generic routing encapsulation (GRE) and Multipoint GRE (MGRE) Cisco Express Forwarding Standard 802.1d Spanning Tree Protocol Layer 2 Tunneling Protocol (L2TP) Layer 2 Tunneling Protocol Version 3 (L2TPv3) Network Address Translation (NAT) Dynamic Host Configuration Protocol (DHCP) server, relay, and client Dynamic Domain Name System (DNS) DNS Proxy DNS Spoofing Access control lists (ACLs) IPv4 and IPv6 Multicast Open Shortest Path First (OSPF) Border Gateway Protocol (BGP) Performance Routing (PfR) Enhanced Interior Gateway Routing Protocol (EIGRP) Virtual Route Forwarding (VRF) Lite Next Hop Resolution Protocol (NHRP) Bidirectional Forwarding Detection (BFD) Web Cache Communication Protocol (WCCP)
Switch features
Auto Media Device In/Media Device Cross Over (MDI-MDX) 14 802.1Q VLANs MAC filtering 4-port 802.3af and Cisco compliant PoE Switched Port Analyzer (SPAN) Storm Control Smart ports Secure MAC address Internet Group Management Protocol Version 3 (IGMPv3) snooping 802.1x
Security features
Secure connectivity: SSL VPN for secure remote access Hardware-accelerated DES, 3DES, AES 128, AES 192, and AES 256 Public-key-infrastructure (PKI) support 50 IPsec tunnels Cisco Easy VPN Client and Server NAT transparency DMVPN
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 7 of 13
Data Sheet
Feature
Description Tunnel-less Group Encrypted Transport VPN IPsec stateful failover VRF-aware IPsec IPsec over IPv6 Adaptive control technology Session Initiation Protocol (SIP) application-layer gateway Cisco IOS Firewall: Zone-Based Policy Firewall VRF-aware stateful inspection routing firewall
Stateful inspection transparent firewall Advanced application inspection and control Secure HTTP (HTTPS), FTP, and Telnet Authentication Proxy Dynamic and static port security Firewall stateful failover VRF-aware firewall Content filtering: Subscription-based content filtering with Trend Micro Support for Websense and SmartFilter Cisco IOS Software black and white lists Integrated threat control: IPS Control Plane Policing Flexible Packet Matching Network foundation protection QoS features Low-Latency Queuing (LLQ) Weighted Fair Queuing (WFQ) Class-Based WFQ (CBWFQ) Class-Based Traffic Shaping (CBTS) Class-Based Traffic Policing (CBTP) Policy-based routing (PBR) Class-Based QoS MIB Class of service (CoS)-to-differentiated services code point (DSCP) mapping Class-Based Weighted Random Early Detection (CBWRED) Network-Based Application Recognition (NBAR) Link fragmentation and interleaving (LFI) Resource Reservation Protocol (RSVP) Real-Time Transport Protocol (RTP) header compression (cRTP) Differentiated Services (DiffServ) QoS preclassify and prefragmentation HQoS Management features Cisco Configuration Professional Cisco Configuration Express Cisco Configuration Engine support Cisco AutoInstall IP SLA Cisco IOS Embedded Event Manager (EEM) CiscoWorks Cisco Security Manager Telnet, SNMPv3, SSH, CLI, and HTTP management RADIUS and TACACS+ Out-of-band management with ISDN S/T port or external modem through virtual auxiliary port Cisco Wireless Control System (WCS) for management of unified access points in models supporting WLAN High-availability features Virtual Router Redundancy Protocol (VRRP) (RFC 2338) HSRP MHSRP Dial backup with external modem through virtual auxiliary port Dial backup with ISDN S/T or V.92 Analog modem port
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 8 of 13
Data Sheet
IPv6 features
IPv6 addressing architecture IPv6 name resolution IPv6 statistics IPv6 translation: Transport packets between IPv6-only and IPv4-only endpoints (NAT-PT) Internet Control Message Protocol Version 6 (ICMPv6) IPv6 DHCP
Unified access point features: Supported by wireless LAN controller and Cisco WCS Configurable local or central switching for HREAP mode Radio management through Cisco WCS Transparent roaming with mobility groups
50
Table 4.
Feature
Cisco IOS Software Features on Cisco 890 Series: WLAN Features (Available with Wireless Option)
Description Optional on all Cisco 890 Series models
Standard 802.11 a/g/n access point based on IEEE 802.11n draft 2.0 standard WLAN hardware
IEEE 802.11n draft v2.0 standards-based access point with 802.11 a/g compatibility Automatic rate selection for 802.11a/g/n Noncaptive RPTNC omnidirectional dipole antennae; 2-dBi gain @ 2.4 GHz, 5-dBi gain @ 5 GHz 2 x 3 MIMO radio operation Wi-Fi 802.11n Draft v2.0 certified
Autonomous or unified access point Cisco WCS support for monitoring of autonomous-mode access points Option to maximize throughput or maximize range Software-configurable transmit power Radio roles, including access point, root bridge, nonroot bridge, and workgroup bridge Wi-Fi Multimedia (WMM) certification Traffic specifications (TSPEC) Call Admission Control (CAC) to ensure voice quality is maintained Unscheduled Automatic Power Save Delivery (UPSD) to reduce latency
Standard 802.11i WPA and AES (WPA2) EAP authentication: Cisco LEAP, PEAP, Extensible Authentication Protocol Transport Layer Security (EAP TLS), Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST), Extensible Authentication Protocol-Subscriber Information Module (EAP-SIM), Extensible Authentication Protocol-Message Digest Algorithm 5 (EAP-MD5), and Extensible Authentication Protocol-Tunneled TLS (EAP-TTLS) Static and dynamic Wired Equivalent Privacy (WEP) TKIP/Simple Security Network (TKIP/SSN) encryption MAC authentication and filter User database for survivable local authentication using LEAP and EAP-FAST Configurable limit to the number of wireless clients Configurable RADIUS accounting for wireless clients Preshared keys (PSKs) (WPA-small office or home office [WPA-SOHO])
Certifications
Service Set Identifiers (SSIDs) and Multiple Broadcast SSIDs Wireless VLANs
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 9 of 13
Data Sheet
System Specifications
Table 5 lists the system specifications for Cisco 890 Series Integrated Services Routers.
Table 5.
Feature Default and maximum DRAM
System Specifications
Specification 512 MB/768 MB on Cisco 891 and 892 Series data models; upgrade option available 512 MB/1GB on Cisco 892F data models; upgrade option available 256/256 MB on all Cisco 890 models; not upgradable 1-port Gigabit Ethernet (1-port SFP on Cisco 892F only) and 1-port Fast Ethernet Managed 8-port 10/100BASE-T with autosensing MDI/MDX for auto crossover RJ-45 Two USB 2.0 ports available on Cisco 890 models USB devices supported: USB eTokens USB Flash
Default and maximum flash memory WAN LAN switch Separate console and auxiliary ports USB 2.0
Note: USB 2.0 ports cannot be used for connecting external devices other than those specified at: http://www.cisco.com/en/US/prod/collateral/modules/ps6247/product_data_sheet0900aecd80232473.html. ISDN BRI S/T Available on: Cisco 892 and 892F for out-of-band management and dial backup or primary Point-to-multipoint configurations ISDN Leased Line Support2 X.25 over ISDN Channel2 Inline PoE Wireless specifications Data rates supported Optional internal adapter for inline PoE on 4 switch ports for IP phones or external wireless access points; 802.3af compliant and Cisco PoE compliant 2.4 and 5 GHz 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps 802.11b: 1, 2, 5.5, 6, 9, and 11 Mbps 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps 802.11n: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, 54, and m0-m15 Maximum transmit power (2-channel aggregate) 802.11a : 15dBm 802.11b: 20 dBm 802.11g: 17 dBm 802.11n: 16 dBm Note: Maximum power setting is subject to changes by channel and by region, depending on regulations. Physical dimensions and weight Product dimensions: Nonwireless models: H x W x D = 1.9 x 12.8 x 9.8 in. (48 x 325 x 249 mm) (includes rubber feet) H x W x D = 1.75 x 12.8 x 9.8 in. (44 x 325 x 249 mm) (without rubber feet) Wireless models: H x W x D = 1.9 x 12.8 x 10.4 in. (48 x 325 x 264 mm) (includes rubber feet) H x W x D = 1.75 x 12.8 x 10.4 in. (44 x 325 x 264 mm) (without rubber feet; excludes antennas) Weight: 5.5 lb (2.5 kg) maximum External power supply Product power specifications: AC input voltage: Universal 100 to 240 VAC Frequency: 50 to 60 Hz Maximum output power: 60W Output voltages: 12 VDC Optional internal PoE with external adapter: Maximum output power: 80W External output voltage: 48 VDC Approvals and compliance Emission
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Data Sheet
Feature
Specification 47 CFR Part 15: 2006 CISPR22: 2005 EN300386: V1.3.3: 2005 EN55022: 2006 EN61000-3-2: 2000 [Inc amd 1 & 2] EN61000-3-3: 1995 [+ amd 1: 2001] ICES-003 Issue 4: 2004 KN 22: 2005
Certifications
Nonoperating temperature: -4 to 149 (-20 to 65 F C) Nonoperating humidity: 5 to 95% relative humidity (noncondensing) Nonoperating altitude: 0 to 15,000 ft (0 to 4570m) Operating temperature: 32 to 104 (0 to 40 F C) Operating humidity: 10 to 85% relative humidity (noncondensing) Operating altitude: 0 to 10,000 ft (0 to 3000m)
Ordering Information
To place an order, visit the Cisco Ordering Home Page. For more information about the Cisco 890 Series, visit http://www.cisco.com/go/890. Table 6 lists the ordering information for Cisco 890 Series Integrated Services Routers and other available options.
Table 6. Ordering Information
Product Description
Product Part Number Integrated Services Routers CISCO891-K9 CISCO891W-AGN-A-K9 CISCO891W-AGN-N-K9 CISCO892-K9 CISCO892W-AGN-E-K9 CISCO892F-K9* CISCO892FW-A-K9* CISCO892FW-E-K9*
Cisco 891 Gigabit Ethernet Security Router Cisco 891W Gigabit Ethernet Security Router w/ 802.11n FCC Compliant Cisco 891W Gigabit Ethernet Security Router w/ 802.11n Australia Compliant Cisco 892 Gigabit Ethernet Security Router Cisco 892W Gigabit Ethernet Security Router w/ 802.11n ETSI Comp Cisco 892 Gigabit Ethernet Security Router with SFP Cisco 892 Gigabit Security Router with SFP, w/ 802.11n FCC Compliant Cisco 892 Gigabit Security Router with SFP, w/ 802.11n ETSI Compliant
* Cisco 892F is supported only on the Cisco IOS Software Release 15.1(2)T2 and later Memory Options MEM8XX-512U768D MEM8XX-512U1GBD Router Software C890-universalk9-mz Universal image for Cisco 890 Series routers 512 MB DRAM upgrade to 768 MB for Cisco 891 and 892 Models 512 MB DRAM upgrade to 1GB for Cisco 892F Models
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
EN300386: V1.3.3: 2005 EN50082-1: 1992 EN50082-1: 1997 EN55024: 1998 [+ amd 1 & 2] EN61000-6-1: 2001
Page 11 of 13
Data Sheet
Access Point Software ap801-k9w7-tar ap801-rcvk9w8-tar Power over Ethernet Options 800-IL-PM-4 Security Services SL-CNFIL-890-1Y SL-CNFIL-8xx-TRI SSL FL-WEBVPN-25-K9 FL-SSLVPN25-K9 Feature License SSL VPN for Up to 25 Users (incremental), for 12.4T based IOS releases only Feature License SSL VPN for Up to 25 Users (incremental), for 15.x based IOS releases only One year subscription to Content Filtering for Cisco 890 Series routers 30-day free trial license for Cisco 890 Series routers 4-port 802.3af capable internal power module for Cisco 890 Series routers Autonomous software image for ap801 Lightweight Access Point Protocol (LWAPP) recovery image for ap801
Supported SFP Types on the Cisco 892F Series GLC-LH-SM GLC-SX-MM GLC-ZX-SM GLC-BX-D GLC-BX-U GLC-GE-100FX GLC-FE-100LX GLC-FE-100BX-U GLC-FE-100BX-D 1000BASE-LX/LH SFP transceiver module for MMF and SMF, 1300-nm wavelength, dual LC/PC connector 1000BASE-SX SFP transceiver module for MMF, 850-nm wavelength, dual LC/PC connector 1000BASE-ZX SFP transceiver module for SMF, 1550-nm wavelength, dual LC/PC connector 1000BASE-BX10 SFP module for single-strand SMF, 1490-nm TX/1310-nm RX wavelength, single LC/PC connector 1000BASE-BX10 SFP module for single-strand SMF, 1310-nm TX/1490-nm RX wavelength, single LC/PC connector Cisco 100BASE-FX SFP for Gigabit SFP ports with multimode fiber-optic (MMF) link Cisco 100BASE-LX10 SFP with single-mode fiber-optic (SMF) link 100BASE-BX10-U SFP module for 100-MB ports, 1310 nm TX/1550 nm RX wavelength, 10 km over singlestrand SMF 100BASE-BX10-D SFP module for 100-MB ports, 1550 nm TX3/1310 nm RX4 wavelength, 10 km over singlestrand SMF
Broadway EPON SFPs5: For more details refer: http://www.broadwaynetworks.com/en/neirongye.asp?p=3&productid=116&dan=%B5%A5%C6%AA For more information regarding Cisco 890 Series Routers and options, contact your local Cisco representative or visit: http://www.cisco.com/go/890. To upgrade the Cisco IOS Software for the Cisco 890 Series, visit the Cisco Software Center. Table 7 gives the Cisco IOS Software images for the Cisco 891 and 892 Integrated Services Routers.
Table 7.
Series Router Software Cisco 890 Series Cisco 891 and 892 models Cisco 892F C890-universalk9-mz SL-890-AIS (Advanced IP Services Image feature) SL-890-AIS (Advanced IP Services Image feature) 12.4(22)YB and will be in 15.0[1]m. S890VK9-12422YB 15.1(2)T2 S890VK9- 15102T2
C890-universalk9-mz
Access Point Software ap801 Cisco 891 and 892 models ap801-k9w7-tar ap801-rcvk9w8-tar (LWAPP recovery software) 12.4(10b)JA3
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Data Sheet
Cisco Services
Cisco Services for the Branch Office Services from Cisco and our certified partners can help you reduce the cost and complexity of branch-office deployments. We have the depth and breadth of experience across technologies to architect a blueprint for a branch-office solution to meet your company's needs. Planning and design services align technology with business goals and can increase the accuracy, speed, and efficiency of deployment. Technical services help maintain operational health, strengthen software application functions, solve performance problems, and lower expenses. Optimization services are designed to continually improve performance and help your team succeed with new technologies. For more information, visit http://www.cisco.com/go/services. Cisco SMARTnet technical support for the Cisco 890 Series is available on a one-time or annual contract basis. Support options range from help-desk assistance to proactive, onsite consultation. All support contracts include:
Major Cisco IOS Software updates in protocol, security, bandwidth, and feature improvements Full access rights to Cisco.com technical libraries for technical assistance, electronic commerce, and product information
United States and Canada: 800 553-NETS (6387) Europe: 32 2 778 4242 Australia: 61 2 9935 4107 Other: 408 526-7209 Web: http://www.cisco.com
Printed in USA
C78-519930-03
01/11
2011 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 13 of 13