Base Operating System
Other Cisco IOS XE
AWS Services Required
Enterprise-class VPN in AWS thats faster, cheaper, and more scalable than other VPN solutions. Manage both sides of your VPN for greater security. Familiar IOS-XE based VPN supports the same commands, tools, and logs as Cisco ISR and ASR platforms.
More secure, reliable, and cost effective than native VPN. Feature-rich: IPSec, DMVPN, FlexVPN, GETVPN, EZVPN, SSL VPN, Zone-Based Firewall, and more
Performance Guide: m3.medium for up to 130 Mbps. M3.large & c3.large for up to 400 Mbps. M3.xlarge for up to 500 Mbps. c3.xlarge for 700 Mbps, and c3.2xlarge for up to 900Mbps. Actual performance is determined by real-time AWS environment
An Amazon Machine Image (AMI) is an encrypted machine image of a specific computer running a base operating system, configured in a specific way, and can also contain a set of applications and services for accomplishing a specific purpose. An AMI contains all the information necessary to start up and run the software on the image. Amazon Web Services (AWS) is the computing environment for running instances of an AMI.
AWS CloudFormation gives developers and system administrators an easy way to create and manage a collection of related AWS resources. The CloudFormation stack associated with this product will launch an Amazon Machine Image (AMI) with the software and configure related resources, such as Elastic IPs, VPCs, and security groups.
The Security Technology Package (formerly Advanced Technology) of Cisco Cloud Services Router (CSR1000V) sets the standard for enterprise-class VPN in the AWS cloud, bringing the world's most popular enterprise-class VPN and networking platform to AWS. The CSR1000V is a full Cisco IOS-XE router (i.e. ASR1K) in an AMI form factor and enables AWS customers to deploy the same enterprise-class routing and VPN services that they are so used to in their on-prem networks in the AWS cloud. With CSR1000V, AWS customers can deploy enterprise-class VPN three times faster than native or other VPN solutions, and they can control and manage both sides of the VPN tunnel for higher security. Unlike native VPN, CSR provides notifications, logs and debugging commands and terminates up to 1000 VPN tunnels with one instance. Native VPN solutions only offer site-to-site IPSec, but the CSR1000V offers IPSec, DMVPN, GETVPN, EZVPN, FLEXVPN, SSL VPN, and VTI-VPN. It also offers advanced config options: pre-shared key, certificates (PKI), SHA-1 &2, DES, 3DES, AES-128, 192, 256, & 512, DH Groups 1-24, and ECP in addition to MODP 2 & 5, ike-v1 & v2. In addition, the Security Tech Package includes enterprise-class Zone Based Firewall and BGP, OSPF, EIGRP, RIP, ISIS, IPv6, GRE, VRF-LITE, NTP, QoS, 802.1Q VLAN, EVC, NAT, DHCP, DNS, ACL, AAA, RADIUS, TACACS+, IOS-XE CLI, SSH, Flexible NetFlow, SNMP, EEM, and NETCONF. Customers who want an enterprise-class VPN solution in AWS should choose this AMI.
Available on AWS Marketplace Since:
Note: Always ensure your operating system is current for your needs.
A deprecated version is no longer offered to new customers and will no longer be supported by the vendor after a certain date.
Users are strongly encouraged to upgrade to newer versions of the software.
Cisco Cloud Services Router (CSR) 1000V - Security Technology Package
This is a community supported AMI: Please visit the CSR AWS Community Support Forum in the link above to ask questions and a Cisco engineer will reply as soon as possible. To set up CSR on AWS, please watch: http://www.youtube.com/watch?v=ZJ8IIVCXMBs
. To learn and test CSR VPN in a free virtual lab with no EC2 charges, please visit www.csrtestdrive.com. To obtain access to CSR for the GovCloud region, or for any additional questions please contact the CSR team at firstname.lastname@example.org
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with
experienced and technical support engineers. The service helps customers of all sizes
and technical abilities to successfully utilize the products and features provided by
Amazon Web Services. Learn more
CSR1000V can be cancelled at any time. Customers will only be billed for time and transfer that is actually used while an AWS instance running CSR1000V is active