I have installed a Cisco 2821 perimeter router and ASA firewall for a business. How can I test the security of the router? The router has firewall features. Would it be redundant to configure the firewall features in the router, since there is a ASA firewall protecting the LAN and DMZ?
Additionally to Jon's post and links-
I try and keep the following link current. It's an ACL for internet routers. This ACL is for DoD/NIST compliance.
(hyperlink doesn't always work, so try copy-n-paste)
Hope that helps.
Have a look at the following link for information on hardening a Cisco router
Also have a look at this recent thread for an idea of the sort of filtering you should do on an Internet facing router
In answer to your question, yes i think it would be redundant to use the firewalling capabilities of the router if you have a firewall like the ASA protecting the LAN and your DMZ.