Quantcast
Channel: Cisco Router, Network Switches Tips
Viewing all 107 articles
Browse latest View live

What’s New on Cisco Firepower NGFW?

$
0
0
Now, it’s time to new era of network security-Next-generation Firewall. How much do you know the next-generation firewall?Here we share some the latest information of Cisco Firepower NGFW, which may help you know the next-generation firewall better.

The Cisco Firepower NGFW(next-generation firewall) is the industry’s first fully integrated, threat-focused next-gen firewall with unified management. It uniquely provides advanced threat protection before, during, and after attacks.

Performance Highlights
Table1 summarizes the performance highlights of the Cisco Firepower 4100 Series NGFW, 9300 Series Security Appliances, and select Cisco ASA 5500-X appliances.
Table1. Performance Highlights


1HTTP sessions with an average packet size of 1024 bytes
21024 bytes TCP firewall performance
Note: NGFW performance varies depending on network and traffic characteristics. Consult your Cisco representative for detailed sizing guidance. Performance is subject to change with new software releases.

Platform Support
The Cisco Firepower NGFW includes Application Visibility and Control (AVC), optional next-gen IPS (NGIPS), Cisco Advanced Malware Protection (AMP) for Networks, and URL Filtering. The Cisco Firepower 2100 Series, 4100 Series, and 9300 appliances use the Cisco Firepower Threat Defense software image. Alternatively, the Cisco Firepower 4100 Series and 9300 appliances can support the Cisco Adaptive Security Appliance (ASA) software image.

The Cisco Firepower Management Center (formerly FireSIGHT) provides centralized management of the Cisco Firepower NGFW, as well as Cisco Firepower NGIPS and Cisco AMP for Networks.

The Cisco Firepower Device Manager is available for local management of 2100 Series and 5500-X Series devices running the Cisco Firepower Threat Defense software image.

The Cisco Adaptive Security Device Manager is available for local management of the Cisco Firepower 4100 Series, Cisco Firepower 9300 Series, and Cisco ASA 5500-X Series devices running the ASA software image.

Cisco Defense Orchestrator cloud-based management is also available for consistent policy management across Cisco security devices.
Also available, on select Cisco Firepower appliances, and direct from Cisco, is the Radware Virtual DefensePro (vDP) distributed denial of service (DDoS) mitigation capability.

Cisco Firepower 2100 Series Appliances
The Cisco Firepower 2100 Series is a family of four threat-focused NGFW security platforms that deliver business resiliency through superior threat defense. It offers exceptional sustained performance when advanced threat functions are enabled. These platforms uniquely incorporate an innovative dual multicore CPU architecture that optimizes firewall, cryptographic, and threat inspection functions simultaneously. The series’ firewall throughput ranges from 1.9 to 8.5 Gbps, addressing use cases from the Internet edge to the data center.



Cisco Firepower 4100 Series Appliances
The Cisco Firepower 4100 Series is a family of four threat-focused NGFW security platforms. Their throughput ranges from 35 to 75 Gbps, addressing data center use cases. They deliver superior threat defense, at faster speeds, with a smaller footprint.




Cisco Firepower 9300 Security Appliance
The Cisco Firepower 9300 is a scalable (beyond 1 Tbps when clustered), carrier-grade, modular platform designed for service providers, high-performance computing centers, large data centers, campuses, high-frequency trading environments, and other environments that require low (less than 5-microsecond offload) latency and exceptional throughput. Cisco Firepower 9300 supports flow-offloading, programmatic orchestration, and the management of security services with RESTful APIs. It is also available in Network Equipment Building Standards (NEBS) - compliant configurations.
no title



Cisco ASA 5500-FTD-X Series Appliances
The Cisco ASA 5500-FTD-X Series is a family of eight threat-focused NGFW security platforms. Their throughput ranges from 750 Mbps to 4 Gbps, addressing use cases from the small or branch office to the Internet edge. They deliver superior threat defense in a cost-effective footprint

If you want to read more details of Cisco Firepower NGFW, such as the Performance Specifications and Feature Highlights, Hardware Specifications, Ordering Information, etc. you can visit here: http://www.cisco.com/c/dam/en/us/products/collateral/security/firepower-4100-series/datasheet-c78-736661.pdf . More table details tell you the new features of Cisco Firepower NGFW.

More Related Topics
The New Cisco Firepower 2100 Series
Cisco’s High-end Next Generation Firewalls-Firepower 4100 and 9300 Series
What are the Considerations While Buying a Cisco Next-Generation Firewall?
How to Start Cisco Firepower 9300 ASA Security Module?
Find Your Cisco’s Next-Generation Firewalls

Cisco UCS C-Series Rack Servers as Standalone Systems

$
0
0
Cisco UCS C-Series Rack Servers extend unified computing innovations to a rack-mount form factor. They are the only servers that can be used either standalone or integrated as part of the Cisco Unified Computing System (Cisco UCS). When used as standalone servers, these systems can be managed through the Cisco Integrated Management Controller (IMC), integrated management software that provides network-based access to every aspect of server management, from power state and firmware revisions to remote keyboard, video, and mouse (KVM) devices.

The flexibility to manage rack servers as standalone servers or as part of Cisco UCS makes Cisco UCS C-Series Rack Servers the preferred choice for many organizations. These organizations may also prefer Cisco UCS C-Series Rack Servers for their high I/O bandwidth, the large memory configurations they can support, and high capacity internal disk space.

Flexible, Standards-Based Standalone Server Management
As standalone systems, Cisco UCS C-Series servers provide a flexible, standards-based set of management interfaces that enable organizations to take advantage of Cisco servers’ innovative features in heterogeneous data centers. Cisco IMC provides administrators with the tools they need to control servers and manage servers, including remote KVM devices, power state, and firmware revisions. The Cisco IMC supports industry-standard protocols, including Intelligent Platform Monitoring Interface Version 2 (IPMI v2), Simple Network Management Protocol versions 2 and 3 (SNMP v2 and v3), an open Extensible Markup Language (XML) API and a command-line interface (CLI).

Physical Management Interfaces
Cisco UCS C-Series servers provide up to three management interfaces that can be accessed by in-band or out-of-band tools and techniques (Figure1):
• Ethernet network access to the Cisco IMC (WebUI, CLI and XML API)
• Agent and agentless management with third-party tools through in-band data-plane connections
• Front-or back-panel access for video, USB (with the capability to boot from a USB CD/DVD drive), and serial console access

Figure1. Manage Cisco UCS Rack Servers Through Physical and Logical Management Interfaces

Logical Management Interfaces
The Cisco IMC runs in the system’s baseboard management controller (BMC) and can be accessed through the server network management ports. It provides out-of-band management that can be accessed through standard management protocols, CLIs, and web-based interfaces.
IPMI v2: Provides support for out-of-band management through thirdparty tools including commercial enterprise management systems and open-source tools such as ipmitool. IPMI allows these tools to manage server power states and monitor operation parameters available through temperature, fan-speed, power-supply voltage, and power sensors.
SNMP v2 and v3: Supports out-of-band management with third-party tools including network management tools that use SNMP to monitor system status variables and receive SNMP traps in the event that the status falls outside predetermined ranges.
Open XML API: Cisco IMC supports an open XML API that enables third-party software to access all the system’s features and capabilities discussed in “Cisco IMC Features and Capabilities” later in this document.
Command-Line Interface: The CLI can be accessed through a Secure Shell (SSH) connection to the Cisco IMC. Through this interface, administrators can perform server control and administration tasks, and they can script configuration tasks so that they can be reliably reproduced on a number of servers without errors.
Web User Interface: Supports out-of-band management through a standard web browser. It includes server management, remote KVM, virtual media, and administration capabilities:
• Server management includes power management, server reset, component inventory, and event logging.
• Virtual media enables peripherals such as CD and DVD drives to appear as if they were connected directly to the server, facilitating remote OS and application software installation.
• Remote KVM capability gives remote administrators the same level of control, including console video, as when they are physically connected to the server.

Managing Through Enterprise Management Tools
Third-party management tools typically use a combination of in-band and out-of-band management techniques, both of which are supported by Cisco UCS C-Series servers.
• In-band management is performed through the server’s data network connection. Different tools use different techniques, including interaction with the host operating system with and without the use of agents. In-band management can interact with OSbased management tools to accomplish tasks including inventory, performance management, troubleshooting, and OS and interface provisioning.
• Out-of-band management tools such as Altiris Deployment Solution, BMC BladeLogic, CA Spectrum, HP IT Performance Suite, IBM Tivoli, Nagios and Microsoft System Center use Cisco IMC interfaces available through the network management port. These tools typically interact with servers through IPMI, SNMP, or the open XML API.


Cisco IMC Features and Capabilities
With the Cisco IMC, administrators can perform the following server management tasks with role-based access that is easily defined on a per-user basis:
• Virtual (Remote) KVM with recorder and chat
• Crash Capture and Boot Capture
• RAID Controller configuration
• Manage server BIOS settings
• Configure the server boot order (including Precision Boot)
• Configure Cisco Virtual Interface Cards (VICs)
• Configure network-related settings, including network interface card (NIC) properties, IPv4, VLANs, and network security
• Configure communication services, including HTTP, SSH, and IPMI over LAN
• Create and manage local user accounts and connect to external authentication and authorization systems, including LDAP & Microsoft Active Directory
• Power on, power off, power cycle, reset, and shut down the server
• Toggle the locator LED
• View server properties and sensors
• Manage certificates
• Update system firmware
• Monitor faults, alarms, and server status


The Main Models of Cisco UCS C-Series

Reference from http://www.cisco.com/c/dam/en/us/products/collateral/servers-unified-computing/ucs-c-series-rack-servers/at-a-glance-c45-737177.pdf

More Related…
Cisco’s New Storage Optimized UCS Server-UCS S3260

Cisco SecGW Solution

$
0
0
With the evolution to 4G/LTE and 5G, mobile network architectures have become more IPbased. While we’ve seen data standards change in the past, the transition from 4G LTE to LTE-A and eventually 5G will dramatically escalate already lofty network requirements. At the same time, customers will continue to expect total geographic coverage, blazing fast transmission speeds, and absolute security when they use your network. Ubiquitous eNodeB equipment has delivered connectivity but also has significantly increased your attack surface.

In order to stay safe, your security solution must contain and block attacks that can disrupt the mobile network, provide end-to-end security and confidentiality for customers, keep up with the latest mobile technologies, and allow for management integration with existing systems to protect your investment.

On your macro network you run a risk of data interception at a few key areas. Unsecured backhaul is a primary vector for this risk, but your data has the potential to be pulled down at any stage in transmission between the mobile device and EPC.

The proliferation of cell towers presents an explosion in the number of staging points for an attack that could bring down your mobile network. To protect from this type of threat, you need a security gateway solution that authenticates and encrypts traffic from the eNodeB to protect the EPC and reduce the potential for network disruption.

Security Gateway minimizes the potential damage of interception by providing end-to-end encryption and secure IPsec tunnels. Security Gateway also makes sure that the eNodeB is authenticated against a centralized certificate authority and strengthens the perimeter between the radio access network (RAN) and the EPC.
Threats coming from cell sites are compartmentalized and contained inside your RAN network. We route this traffic through the Security Gateway for deep packet inspection and policy enforcement, effectively stopping threats in their tracks before they can attach to your infrastructure and potentially cause an outage.
What all of this means for you is that your customers and network get total, end-to-end protection from the most pressing attack and breach possibilities.

Partnership for Vodafone Hutchison Australia
Cisco and Ericsson are partnering to transform and virtualize an end-to-end telecom cloud infrastructure that includes both virtualized and physical security technologies such as the Adaptive Security Appliance and security gateway capabilities on Cisco Firepower to better prepare for new emerging services.

Cisco Security Gateway Solutions Offer
• Carrier-class performance with low latency
• Carrier-grade scalability and reliability
• Comprehensive security
• Supports multiple deployment options

When it comes to comprehensive security that adapts to changing threats and supports business agility, only Cisco delivers. Our scalable, intelligent, and adaptive threat-centric approach to security protects against the evolving threat landscape: one that enables the protections of data flows and workloads with consistent security policy in physical, virtualized, and cloud infrastructure that includes not only Cisco carrier-class threat defense security services, but also tightly integrated additional services, like DDoS mitigation, from our security ecosystem partners.

Centralized Solutions
Cisco Security Gateway (SecGW) is based on the proven power of the Cisco Firepower Series so you get carrier-class throughput, latency, and scalability. Cisco Firepower 9300 and 4100 Series and ASAv all come with the same industry-leading carrier class firewall capabilities, so deployments are consistent either with physical on-premises hardware or virtually in the cloud.

Cisco Firepower SecGW consolidates multiple security services on a single platform for improved threat visibility and security service orchestration, including:
• ASA stateful firewalling with:
-Comprehensive Layer 3–4 infrastructure protection
-SCTP and diameter application inspection
-Encryption of traffic between the eNodeB and LTE network core

• Management of security services with RESTful APIs
• DDoS mitigation
• Unique clustering technologies on Firepower; 5 Cisco Firepower 9300 chassis or up to 16 Cisco Firepower 4100 Series chassis for highly scalable performance

Distributed Solutions
The Cisco ASR 900 Series Aggregation Services Routers are the cornerstone of modern edge and carrier Ethernet networks. Programmable and scalable ASRs provide the highest single platform density, low power consumption, and virtualization capabilities. They optimize network performance and efficiency and reduce operational costs and complexity.

The Adaptive Security Virtual Appliance (ASAv) brings the power of ASA to the virtual domain. It runs the same software as the physical appliance to deliver proven security functionality. You can use it to flexibly move the SecGW across your network. You can expand, contract, or shift the location of these workloads over time and span physical and virtual infrastructures.

End-to-End Protection
• End-to-end encryption and authentication
• Secure IPsec backhaul tunnels
• CMPv2, IKEv2
Simplified Deployment and Management
• SDN and NFV ready
• Diverse ecosystem partners
• Proven and rich UI
• Physical or virtual solutions
Reliability You Can Count On
• Grow with confidence
• Provide geo-redundancy and clustering
• Carrier-class availability
Today and Tomorrow
• Cisco paves the way for the adoption of 5G
• High-connectivity deployments with small cell and macro cell

Reference fromhttp://www.cisco.com/c/en/us/solutions/collateral/service-provider/service-provider-security-solutions/at-a-glance-c45-738562.pdf

More Related…
Migration to Cisco NGFW
The New Cisco Firepower 2100 Series
Cisco’s High-end Next Generation Firewalls-Firepower 4100 and 9300 Series
Compare Cisco ASA 5505, ASA 5512-X and ASA 5515-X
How to Recover the Password for Your ASA?

Cisco ASR 1001-X Router-High Performance Cloud Services Here

$
0
0
The ASR 1001-X is a popular model of the ASR 1000 family of routers that packs 20Gbps forwarding capacity and 8G of Layer 3 Crypto throughput in a compact 1RU form factor!
Some of the key benefits of the ASR 1001-X we are highlighting are:

  • Investment Protection: Pay-as-you-grow forwarding throughput upgradable from 2.5 to 5,10 and 20Gbps

  • Robust Security: Up to 8Gbps of Suite-B encryption combined with Layer 2 MAC Security.

  • Data Center Interconnect (DCI): For workload mobility, high-availability application clusters and layer 2 extension for legacy applications support.

  • Cisco IWAN: Application Visibility and Control, AppNav and Performance Routing enable inexpensive business-class Internet links as a WAN transport

  • Advanced Routing: Locator/ID Separation Protocol (LISP) to enable Host mobility, Ingress traffic load-balancing, high VPN scale, and IPv6 transition

  • Route Reflector: Up to 13M IPv4 routes (selective download)

  • Multimedia Edge: Cisco Unified Border Element (CUBE) Enterprise Edition to offer 16k calls

  • Ease of Management: Seamless integration and management with Cisco Prime Infrastructure.

The Data Center Interconnect must provide secure access to satisfy a key requirement for the consumption of services from the cloud. Before the advent of the cloud, the network traffic that flowed in the interconnecting network fabric or the IP NGN was unidirectional – it flowed from the client to the server in the network and back to the network client. Cloud and virtualization has made the network traffic multi-dimensional. The network traffic not only moves to and from client and network server it can also move across servers that are located in geographically dispersed data centers that are interconnected using DCI technologies. VMware virtual machine motion is an example of that. Based on this criteria, the ASR 1001-X supports the following DCI technologies:

  • Virtual Extensible LAN Services

  • Overlay Transport Virtualization

  • Virtual Private LAN Services

  • Ethernet over MPLS

  • Layer 2 Tunneling Protocol v3


More about the Cisco ASR 1000 Series Aggregation Services Routers
The Cisco ASR 1000 family’s architecture supports a redundant design for five-nines (99.999 percent) availability. ASR 1006-X and ASR 1009-X chassis models support N+1 redundancy of power supply, for the flexibility to balance uptime, cost, and the size of your carbon footprint. A variety of models and licensing options help you meet the changing speed and budget requirements of your various locations. You can choose from router models that support speed ranges from 2.5 to 200 Gbps to get just the right price/performance ratio for a particular site.

TheCisco ASR 1000 Series contains nine ASR models in form factors ranging from a single rack unit (RU) to 13 RUs.Nine Platforms of the Cisco ASR 1000 Series:
●   Cisco ASR 1001-X Router
●   Cisco ASR 1001-HX Router
●   Cisco ASR 1002-HX Router
●   Cisco ASR 1002-X Router
●   Cisco ASR 1004 Router
●   Cisco ASR 1006 Router
●   Cisco ASR 1006-X Router
●   Cisco ASR 1009-X Router
●   Cisco ASR 1013 Router
ASR1001-X-details.jpg

More Related
The New ASR1001-HX—The Most Powerful Compact Service Router
The New Cisco ASR 1001-X Router
The New Cisco ASR 1009-X & Cisco ASR 1006-X Router
Cisco ASR 1000 Series Can Help Solve…
 

Cisco Wireless Portfolio

$
0
0
What Cisco Achieved in Wireless Solutions

§ 12 years plus Gartner MQ leadership
§ 600,000+ unique WLAN customers
§ Comprehensive on premise and cloud-managed wireless and wired portfolios
§ Installed in 95% of the Fortune 1,000 companies
§ Wireless R&D spend >$400mil per year

Best in Class 802.11ac Wave 2 Access Point

* Post-FCS

Enterprise-Class 802.11ac Wave 2 Access Points



Cisco Aironet Outdoor Access Points


Cisco Comprehensive Aironet Access Point Portfolio


Cisco Aironet Access Points Transition Guide


Cisco Aironet Controller Portfolio



Cisco Wireless Controller Deployment Mode Compatibility Comparison

*1. Cisco Aironet 1560 Series are to be supported in future software release.
*2. Cisco Wireless Controller Software release 7.3.112.0 is required.
*3. Cisco AireOS 8.1 and higher are not supported


From http://www.cisco.com/c/dam/m/en_sg/cisco-start/assets/pdfs/Cisco_Start_wireless_Flipbook_FINAL.pdf

More Related…
Mobility Express-even better than before
Aironet 2800 vs. Aironet 3800 SERIES ACCESS POINTS
Which Aironet 1815 Model Is Right for You?
With SDN It can Help You Unify…
With Cisco DNA You can…
Wireless/Mobility, Switching & Routing…The Year of Network Innovations
Something about the Cisco Wireless APs Supporting Cisco WLC

Cisco Next Generation Firewalls Overview

$
0
0
Cisco Firepower NGFW is the industry’s first fully integrated threat-focused next-generation firewall that keeps customers safer, mitigates advanced threats more quickly, and streamlines operations better. This allows customers to stop more threats and get more from their resources and positions security as a growth engine to seize new business opportunities.
Next Generation Firewall (NGFW) Essentials


Cisco NGFW Platforms




Introducing four new high-performance models

• 10-Gbps and 40-Gbps interfaces
• Up to 80-Gbps throughput
• 1-rack-unit (RU) form factor
• Low latency

• Integrated inspection engines for FW, NGIPS, Application Visibility and Control (AVC), URL, Cisco Advanced Malware Protection (AMP)
• Radware DefensePro DDoS
• ASA and other future third party

• Single management interface with Firepower Threat Defense
• Unified policy with inheritance
• Choice of management deployment options


High-speed, scalable security

Standard Network Modules



ASA 5506 Security Levels
Q: I have an ASA 5506-x with a bunch of vlans (sub-interfaces) is there any way to disable the security levels and purely use ACL's?
A: You can essentially set them all to the same security level and use the system command which allows traffic to traverse interfaces with the same security levels. Just go into your int config, give them all a nameif, and then set their security levels to something benign.
There are two variations of the command //same-security-traffic permit inter-interface and <intra-interface>
Intra-between the same interface and itself
Inter-between two different interfaces.
The first of which allows a sort of hair pinning to occur,
You'll still need ACLs, to meter which traffic you want to egress each interface toward the other subnets.
From https://communities.cisco.com/thread/78177

More Cisco Firewall Topics you can read from here: http://blog.router-switch.com/category/reviews/cisco-firewalls-security/

ASA 5506-X/5506W-X/5506H-X/5508-X and 5516-X with FirePOWER Services

$
0
0
Both small and midsized businesses and distributed enterprises have advanced threat protection needs. Until now, however, they have been underserved by unified threat management (UTM) products and competing next-generation firewalls (NGFWs).

In contrast to these legacy approaches, Cisco NGFWs feature both Advanced Malware Protection (AMP) and next-generation IPS (NGIPS).
The newest additions to the Cisco ASA with FirePOWER Services NGFW family are tailor-made for small and medium businesses (SMB) and branch office applications, delivering integrated threat defense, low procurement and operating costs, and simplified security management.

  1. The solution is available in both desktop (5506-X) and 1RU rack-mount (5508-X, 5516-X) form factors.

  2. Variants of the desktop model are available with an integrated wireless access point (5506W-X) to simplify SMB networking.

  3. A ruggedized appliance (5506H-X) is specifically designed for industrial control systems and critical infrastructure applications. It features an extended operating temperature range and is available for desktop or DIN rail1, rack or wall mount deployment.

Cisco ASA 5506-X, 5506W-X, 5506H-X, 5508-X, and 5516-X with FirePOWER Services
User/node SupportUnlimited by default
Desktop Form Factor (5506-X, 5506W-X)7.92” x 8.92” x 1.73”
Rack Mount Form Factor (5508-X, 5516-X)17.2” x 11.288” x 1.72”
Ruggedized Form Factor (5506H-X)9.05” x 9.05” x 2.72”
Integrated I/O Ports8 x 1GE
VPN
VPN peers50-300
Mobility SupportAnyConnect 4.x; native Apple iOS and Android clients
Throughput
Max Stateful Firewall750 Mbps–1.8 Gbps
Max AVC250–850 Mbps
Max AVC and NGIPS125–600 Mbps
High AvailabilityYes: Active/Standby Mode* Active/Active (5508-X and 5516-X only)
NGFW Capabilities
AVCIncluded with SmartNet
Supported applicationsMore than 3,000
URL FilteringSubscription
Categories; Total80+ ; 280+ million
NGIPSSubscription
Signatures6000+
AMP-Threat DefenseSubscription
Management
Integrated On-box ManagementIncluded by default
Centralized ManagementOptional License
* Requires Security Plus License

Cisco ASA with FirePOWER Services Standard Features
Granular Cisco Application Visibility and Control (AVC): Cisco AVC supports more than 3000 application-layer and risk-based controls. For example, you can make popular social media applications readonly to enable compliance with regulations like Financial Industry Regulatory Authority (FINRA) and the Health Insurance Portability and Accountability Act (HIPAA) and to enforce acceptable-use policies.
Leading network firewall, and site-to-site and remote access VPN support: Cisco delivers the world’s most trusted and widely deployed firewall and VPN. The optional Cisco AnyConnect VPN Client can be easily integrated with Cisco ASA with FirePOWER Services. Cisco AnyConnect 4.0 features granular, always-on, application-level VPN. Additionally, Cisco ASA supports Cisco AnyConnect mobile and native Android and iOS VPN clients.

Cisco ASA 5500-X Series Migration Options
Legacy FirewallsMigration to Cisco NGFW
Cisco ASA 5505Cisco ASA 5506-X
Cisco ASA 5510Cisco ASA 5508-X
Cisco ASA 5512-XCisco ASA 5516-X
Cisco ASA 5515-XCisco ASA 5516-X
Cisco ASA 5520Cisco ASA 5525-X or Cisco FirePower 2100 Series
Cisco ASA 5540Cisco ASA 5545-X or Cisco FirePower 2100 Series
Cisco ASA 5550Cisco ASA 5555-X or Cisco FirePower 2100 Series
Cisco ASA 5580Cisco FirePower 4100 Series
Cisco ASA 5585-XCisco FirePower 4100 Series

Throughput Performance Enhancements 
Appliance (Maximum Throughput)Firewall + Application Control (AVC)Firewall + Application Control (AVC) and IPS
Cisco ASA 5506-X250 Mbps125 Mbps
Cisco ASA 5506W-X250 Mbps125 Mbps
Cisco ASA 5506H-X250 Mbps125 Mbps
Cisco ASA 5508-X450 Mbps250 Mbps
Cisco ASA 5512-X300 Mbps150 Mbps
Cisco ASA 5515-X500 Mbps250 Mbps
Cisco ASA 5516-X850 Mbps450 Mbps
Cisco ASA 5525-X1,100 Mbps650 Mbps
Cisco ASA 5545-X1,500 Mbps1,000 Mbps
Cisco ASA 5555-X1,750 Mbps1,250 Mbps
Cisco ASA 5585-X w/ SSP-104.5 Gbps2 Gbps
Cisco ASA 5585-X w/ SSP-207 Gbps3.5 Gbps
Cisco ASA 5585-X w/ SSP-4010 Gbps6 Gbps
Cisco ASA 5585-X w/ SSP-6015 Gbps10 Gbps
Cisco Firepower 21001.9 Gbps1.9 Gbps
Cisco Firepower 21203 Gbps3 Gbps
Cisco Firepower 21304.75 Gbps4.75 Gbps
Cisco Firepower 21408.5 Gbps8.5 Gbps
Cisco Firepower 411012 Gbps10 Gbps
Cisco Firepower 412020 Gbps15 Gbps
Cisco Firepower 414025 Gbps20 Gbps
Cisco Firepower 415030 Gbps24 Gbps
Cisco Firepower 9300 w/ 3 SM-44135 Gbps133 Gbps

More Related Topics
The New Cisco Firepower 2100 Series
Cisco’s High-end Next Generation Firewalls-Firepower 4100 and 9300 Series
What are the Considerations While Buying a Cisco Next-Generation Firewall?
NGFW-Cisco ASA with FirePOWER Services
How to Enable the Wireless Access Point (ASA 5506W-X)?
The Most Common NGFW Deployment Scenarios
EoS and EoL Announcement for the Cisco ASA 5512-X and ASA 5515-X
Migration to Cisco NGFW

Cisco 860 and 880 Migration Options

$
0
0
Positioning of Cisco 860 and 880 Series Integrated Services Routers

The Cisco 860 and 880 Series routers complement the Cisco 850 and 870 Series by adding support for new technologies such as 3G WWAN, voice, and 802.11n WLAN to the Cisco 800 Series portfolio.

In this article, we collected the list of End-of-Sale models for Cisco 800 Series. You can read the following tables to find the detailed Cisco 860 and 880 Migration options.


End of Sale for Cisco 881 Series Routers
End-of-Sale Product Part NumberProduct DescriptionReplacement Product Part NumberReplacement Product Description
CISCO881G-G-K9881G FE Sec Router with Adv IP Serv, 3G Global GSM/HSPAC881G+7-K9WAN FE (non-US) 3.7G HSPA+ R7 w/SMS/GPS (MC8705)
CISCO881G-K9Cisco 881G Ethernet Sec Router w/3G B/UC881G+7-K9WAN FE (non-US) 3.7G HSPA+ R7 w/SMS/GPS (MC8705)
CISCO881G-S-K9881G FE Sec Router bundle with Adv IP Serv, 3G SprintC881G-S-K9C881 3G Sprint EV-DO Rev A/0/1xRTT 800/1900MHz w/SMS/GPS
CISCO881G-V-K9881G FE Sec Router bundle with Adv IP Serv, 3G VerizonC881G-V-K9C881 3G Verizon EV-DO Rev A/0/1xRTT 800/1900MHz w/SMS/GPS
CISCO881W-GN-A-K9Cisco 881 Ethernet Sec Router 802.11n FCC CompC881W-A-K9Cisco 881 Eth Sec Router with 802.11n FCC Compliant
CISCO881W-GN-E-K9Cisco 881 Ethernet Sec Router 802.11n ETSI CompC881W-E-K9Cisco 881 Eth Sec Router with 802.11n ETSI Compliant
CISCO881W-GN-P-K9Cisco 881 Ethernet Sec Router 802.11n Japan CompC881W-P-K9Cisco 881 Eth Sec Router with 802.11n Japan Compliant -?? Not in DCT

End of Sale for Cisco 886 Series Routers
End-of-Sale Product Part NumberProduct DescriptionReplacement Product Part NumberReplacement Product Description
CISCO886-K9Cisco 886 ADSL2/2+ AnnexB RouterCISCO886VA-K9Cisco 886 VDSL/ADSL over ISDN Multi-mode Router
CISCO886-SEC-K9Cisco 886 ADSL2/2+ AnnexB Sec Router w/Adv IPCISCO886VA-SEC-K9Cisco 886 VDSL/ADSL over ISDN Multi-mode Router w/Adv IP
CISCO886G-K9886G ADSL2/2+ AnnexB Sec Router w/Adv IP, 3G Global GSM/HSPACheck announcement for detailed information on replacing this product.
CISCO886GW-GN-E-K9Cisco 886 ADSL2/2+ Annex B Router w/3G 802.11n ETSICheck announcement for detailed information on replacing this product.
CISCO886W-GN-E-K9Cisco 886 ADSL2/2+ Annex B Router w/802.11n ETSI CompCheck announcement for detailed information on replacing this product.

End of Sale for Cisco 887 Series Routers
End-of-Sale Product Part NumberProduct DescriptionReplacement Product Part Number
Replacement Product Description
CISCO887-K9Cisco 887 ADSL2/2+ Annex A RouterCISCO887VA-K9Cisco 887 VDSL/ADSL over POTS Multi-mode Router
CISCO887-SEC-K9Cisco 887 ADSL2/2+ Annex A Sec Router w/Adv IPCISCO887VA-SEC-K9Cisco 887 VDSL/ADSL over POTS Multi-mode Router w/Adv IP
CISCO887G-K9887G ADSL2/2+ AnnexA Sec Router w/Ad.IP, 3G Global GSM/HSPAC887VAG+7-K9VDSL2/ADSL2+ over POTS (non-US) 3.7G HSPA+ R7 w/SMS/GPS
CISCO887GW-GN-A-K9Cisco 887 ADSL2/2+ Annex A Router w/3G 802.11n FCC CompCheck announcement for detailed information on replacing this product.
CISCO887GW-GN-E-K9Cisco 887 ADSL2/2+ Annex A Router w/3G 802.11n ETSI CompCheck announcement for detailed information on replacing this product.
CISCO887MW-GN-E-K9Cisco 887 ADSL2/2+ Annex M Router 802.11n ETSI CompCheck announcement for detailed information on replacing this product.C887VA-M-W-E-K9 ??
CISCO887W-GN-A-K9Cisco 887 ADSL2/2+ Annex A Router 802.11n FCC CompCheck announcement for detailed information on replacing this product.C887VA-W-A-K9 ??
CISCO887W-GN-E-K9Cisco 887 ADSL2/2+ Annex A Router 802.11n ETSI CompCheck announcement for detailed information on replacing this product.C887VA-W-E-K9 ??

End of Sale for Cisco 886 Series Routers
End-of-Sale Product Part NumberProduct DescriptionReplacement Product Part NumberReplacement Product Description
CISCO888G-K9Cisco 888 G.SHDSL Sec Router w/3G B/UC888EG+7-K9G.SHDSL w/EFM (non-US) 3.7G HSPA+ R7 w/SMS/GPS
CISCO887M-K9Cisco 887 ADSL2/2+ Annex M RouterCISCO887VA-M-K9Cisco 887 VDSL/ADSL Annex M over POTS Multi-mode Router

More info from http://www.cisco.com/c/en/us/products/collateral/routers/800-series-routers/qa_c67_458826.html

More Related
Cisco 800 Series Router Migration Option
Upgrade Your Cisco Routers
The New Cisco RV Series VPN Routers-RV340, RV345
Cisco 809 Industrial ISR vs. 829 Industrial ISR
The “Always On” ISR 4000 Will Replace the Popular Cisco 1900/2900/3900 Series
Cisco’s IoT Part-The IR809, Cisco’s Smallest Multimode 3G and 4G LTE Wireless Router
Cisco’s IoT Part-The Cisco 829 Industrial Integrated Services Routers

The Interfaces, Wi-Fi Options Support for 890 Series ISRs

$
0
0
The 890 ISRs are ideal for medium-sized branch offices with up to 25-30 remote workers. These fixed-configuration routers come with powerful management tools, such as the web-based Cisco Configuration Professional, which simplifies setup and deployment.

Cisco 890 Series ISRs come with an 8-port managed switch, providing LAN ports to connect multiple devices. An optional Power-over-Ethernet (PoE) capability can also supply power to IP phones and other devices. Eleven Cisco 890 Series models are available.

Cisco 892FSP ISR, Front and Back

The Interfaces, Wi-Fi Options Support for 890 Series ISRs
Table1 describes the interfaces, Wi-Fi options, and integrated capabilities supported by each of the Cisco 890 Series ISR models.
Table1. Platform Support for 890 Series ISRs

Model

WAN Interfaces

LAN Interfaces

802.11a/g/n Option

Integrated USB 2.0/AUX/Console

Integrated Dial Backup
Cisco 892FSP1-port GE or 1‑port SFP
1-port GE
8-port 10-/100-/1000-Mbps managed switchNoYesNo
Cisco 896VA1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex B
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesISDN
Cisco 897VA1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex A/M
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)Yes
Cisco CleanAir®technology
YesISDN (only on Cisco 897VA-K9)
Cisco 897VAB1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex A with Bonding
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesNo
Cisco 898EA1-port GE or 1‑port SFP
4 pair Ethernet in the first mile (EFM)
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesNo
Cisco 891F1-port GE or 1‑port SFP
1-port FE
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)Yes
Cisco CleanAir technology
YesV.92 analog modem
ISDN BRI
Cisco 891-24X2-port GE or 2‑port SFP24-port 10-/100-/1000-Mbps managed switch (8-ports PoE capable with integrated power supply)NoYesNo

The following Table2 lists the part numbers and Cisco IOS Software and WLAN software image details for each of the 890 Series ISR models.
Table2. Product Part Numbers and Software Images

Product Part Number

Product Description
Integrated Services Routers
C892FSP-K9Cisco 892FSP Gigabit Ethernet security router with SFP
C896VA-K9Cisco 896VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex B
C897VA-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A
C897VAW-A-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A with Wireless
C897VAW-E-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A with Wireless
C897VA-M-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex M
C897VAM-W-E-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex M with Wireless
C897VAB-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL2/ADSL2+ Bonding over POTS
C898EA-K9Cisco 898EA Gigabit Ethernet security router with SFP and 4 channel multimode G.SHDSL (EFM/ATM)
C891F-K9Cisco 891F Gigabit Ethernet security router with SFP
C891-24X/K9Cisco 891 Gigabit Ethernet security router with SFP and 24-ports Ethernet Switch
C891FW-A-K9Cisco 891F Gigabit Ethernet security router with SFP and Dual Radio 802.11n Wifi for FCC -A domain
C891FW-E-K9Cisco 891F Gigabit Ethernet security router with SFP and Dual Radio 802.11n Wifi for ETSI -E domain
Cisco 892FSP is supported only on Cisco IOS Software Release 15.2(4)M and later
Cisco 896, 897, 898EA is supported only on Cisco IOS Software Release 15.2(4)M1 and later
Cisco 891F is supported only on Cisco IOS Software Release 15.3(3)M2, 15.4(1)T and later
C897VAB is supported only on Cisco IOS Software Release 15.4(3)M1 and later
C891-24X is supported only on Cisco IOS Software Release 15.5(1)T and later
Memory Options
FL-8XX-512U1GB512 MB DRAM upgrade to 1 GB for Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F model (Feature License)
Router Software Images
ImageC800-universalk9-mz: Universal image for Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F, 891-24X
Access Point Software Images
ap802-k9w7-tarAutonomous software image for ap802
ap802-rcvk9w8-tarLightweight Access Point Protocol (LWAPP) recovery image for ap802
Power over Ethernet Options
800-IL-PM-4 with 125W PSU4-port 802.3af capable internal power module for C896, C897, C898, C891F routers
Security Services
Scan SafeCloud Web Security
ScanSafe Connectorhttp://www.cisco.com/en/US/prod/vpndevc/ps6525/ps6538/ps6540/isr_web_security.html.
Supported SFP Types on the Cisco 892F Series and Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F
GLC-LH-SM1000BASE-LX/LHSFP transceiver module for MMF and SMF, 1300-nm wavelength, dual LC/PC connector
GLC-SX-MM1000BASE-SXSFP transceiver module for MMF, 850-nm wavelength, dual LC/PC connector
GLC-ZX-SM1000BASE-ZXSFP transceiver module for SMF, 1550-nm wavelength, dual LC/PC connector
GLC-BX-D1000BASE-BX10SFP module for single-strand SMF, 1490-nm TX/1310-nm RX wavelength, single LC/PC connector
GLC-BX-U1000BASE-BX10SFP module for single-strand SMF, 1310-nm TX/1490-nm RX wavelength, single LC/PC connector
GLC-T1000BASE-T standard
GLC-GE-100FXCisco 100BASE-FX SFP for Gigabit Ethernet SFP ports with multimode fiber-optic (MMF) link
GLC-FE-100LXCisco 100BASE-LX10SFP with single-mode fiber-optic (SMF) link
GLC-FE-100BX-U100BASE-BX10-U SFP module for 100-MB ports, 1310 nm TX/1550 nm RX wavelength, 10 km over single-strand SMF
GLC-FE-100BX-D100BASE-BX10-D SFP module for 100-MB ports, 1550 nm TX/1310 nm RX wavelength, 10 km over single-strand SMF
CWDM-SFP-1470=Cisco Coarse-Wavelength Division Multiplexing (CWDM) 1470-nm SFP Gigabit Ethernet and 1G/2G fibre Channel
GLC-LH-SMD*1000BASE-LX/LH SFP transceiver module for MMF and SMF, 1300-nm wavelength
GLC-ZX-SMD*1000BASE-ZX SFP transceiver module for SMF, 1550-nm wavelength, dual LC/PC connector
GLC-EX-SMD*1000BASE-EX SFP transceiver module for SMF, 1310-nm wavelength
*Not supported on the Cisco 892F
Rack Mount Kit for 890
ACS-890-RM-19Rackmount kit for all 890s, except C891-24X
ACS-2901-RM-19Rackmount kit for 891-24X
WAASX Feature License
FL-C890-WAASXWAASx Feature License
Data Sheet Reference from http://www.cisco.com/c/en/us/products/collateral/routers/800-series-routers/data_sheet_c78-519930.html

More Related
Cisco 800 Series Router Migration Option
How to Add PoE Power Supply for Cisco 890 Series Router?
EoS and EoL Announcement for the Cisco 800 Series ISR Power Supply

Read the IP Phone Registration Process with CUCM, and How about the SCCP and SIP Phone Registration?

$
0
0
For the beginners who are using IP Phones, it’s necessary to understand the basics of IP Phone boot process better. How to register the IP Phone with the call-management system (CUCM or CME)? How to finish the Cisco IP Phone Boot Process? Now in this article, we will share the main information about the IP Phone, SCCP & SIP Phone Registration Process with CUCM.

This article covers the IP Phone Registration Process with the Cisco Unified Communications Manager (CUCM). It covers both SCCP and SIP Phone Registration Process to help the beginners to understand the basics of IP Phone boot process better which will help in Configuration and Troubleshooting the Network related issues easily.

IP Phone Registration Process & SCCP Phone Registration Process
1. SCCP phone obtains the Power (PoE or AC adapter).
2. The phone loads its locally stored firmware image.
3. The phone learns the Voice VLAN ID via CDP from the switch.
4. The phone uses
DHCP to learn its IP address, subnet mask, default gateway and TFTP server address.
5. The phone contacts the TFTP server and requests its configuration file. Each phone has a customized configuration file named SEP.cnf.xml created by CUCM and uploaded to TFTP when the administrator creates or modifies the phone.
6. The phone registers with the primary CUCM server listed in its configuration file. CUCM then sends the soft key template to the phone using SCCP messages.



What is in that SEP<mac_address>.cnf.xml file ?

This file contains a list of CUCM server, in order, that the phone should register with. It lists teh TCP ports it should use for SCCP communication. It also lists the firmware version for each device model and the service URLs that each device should be using.

The CUCM server sends other configurations such as DNs, softkeys and speed dials via the SCCP messages in the last phase of the registration process.

SIP Phone Registration Process
SIP Phones use a different set of steps to achieve the same goal. Steps 1 to 4 are the same as SCCP Phones, refer the steps as illustrated in the figure: SCCP Phone Boot Process.
1. The phone contacts the TFTP server and requests the Certificate Trust List file (only if the cluster is secured).
2. The phone contacts the TFTP server and requests its SEP.cnf.xml configuration file.
3. If the SIP Phone has not been provisioned before boot time, the SIP Phone downloads the default configuration XMLDefault.cnf.xml file from the TFTP server.
4. The SIP phone requests a firmware upgrade (Load ID file), if one was specified in the configuration file. This process allows the phone to upgrade the firmware image automatically when required for a new version of CUCM.
5. The phone downloads the SIP dial rules configured for that phone.
6. The phone Establish connection with the primary CUCM and the TFTP server end to end.
7. The phone Registers with the primary CUCM server listed in its configuration file.
8. The phone downloads the appropriate localization files from TFTP.
9. The phone downloads the softkey configurations from TFTP.
10. The phone downloads custom ringtones (if any) from TFTP.


About TFTP server:
TFTP is a critical service for IP Phones. The Phone use TFTP to download their config files, firmware and other data. Without TFTP, the phones simply do not function properly. When you make a configuration change to a device, CUCM creates or modifies a config file for the device and uploads it to the TFTP server. TFTP service much therefore provided by one or more CUCM servers in the cluster.
Note:A generic TFTP server will not have the integrated capability that a CUCM TFTP server does and will not correctly fulfill the role.

Recommendation
Take note of the place where the files are logged. Cisco CallManager 3.x and 4.x, by default, stores trace files in the C:\Program Files\Cisco\Trace\CCM\ directory, but these files can be specified to be stored elsewhere in the trace configuration. Other services log their traces in their respective directories. As mentioned earlier, in Versions 5.x/6.x/7.x, they are stored in the location that the RTMT specifies.

Browse in the Windows Explorer to the trace directory in order to collect the correct trace files. Then choose View > Details from the menu bar in order to view dates and times. Make the window large enough to see these values.

Note:If you reproduce a problem, make sure to select the file for the timeframe when you reproduced it. Look at the modification date and the timestamps in the file. The best way to collect the right traces is to reproduce a problem, quickly locate the most recent file, and copy it from Cisco CallManager.

Files are overwritten after some period of time. In order to find the current file that is logged, click View > Refresh on the menu bar and look at the dates and times on the files. You can view and configure the location, size, and lifespan of the trace files, as shown in the preceding diagram.

Traces can be CPU intensive for the Cisco CallManager server. It is a good practice to turn off traces after you have collected them. Follow the same procedure used to enable the traces, but uncheck the "Trace On" settings and save.

Video: Add IP Phones to Cisco Unified Communications Manager 7.x and later
This video explains the step by step procedure to quickly add a Cisco IP phone to Cisco Unified Communications Manager 7.x and later.


This video is really good to understand the basics of "Boot up" process of the IP phones, but it seems like FLP (fast link pulse), option 66 (TFTP server Name), option 150 (TFTP server IP), etc... Are missing.

The Detailed Guide from https://supportforums.cisco.com/document/86036/ip-phone-sccp-sip-phone-registration-process-cucm

More Related…
Understanding the Cisco IP Phone Boot Process & Voice Vlan
How to Save Power on Cisco IP Phones?
How to Start up a Cisco IP Phone?
Updated: Cisco IP Phone 7800 Series

The Interfaces, Wi-Fi Options Support for 890 Series ISRs

$
0
0
The 890 ISRs are ideal for medium-sized branch offices with up to 25-30 remote workers. These fixed-configuration routers come with powerful management tools, such as the web-based Cisco Configuration Professional, which simplifies setup and deployment.

Cisco 890 Series ISRs come with an 8-port managed switch, providing LAN ports to connect multiple devices. An optional Power-over-Ethernet (PoE) capability can also supply power to IP phones and other devices. Eleven Cisco 890 Series models are available.

Cisco 892FSP ISR, Front and Back

The Interfaces, Wi-Fi Options Support for 890 Series ISRs
Table1 describes the interfaces, Wi-Fi options, and integrated capabilities supported by each of the Cisco 890 Series ISR models.
Table1. Platform Support for 890 Series ISRs

Model

WAN Interfaces

LAN Interfaces

802.11a/g/n Option

Integrated USB 2.0/AUX/Console

Integrated Dial Backup
Cisco 892FSP1-port GE or 1‑port SFP
1-port GE
8-port 10-/100-/1000-Mbps managed switchNoYesNo
Cisco 896VA1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex B
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesISDN
Cisco 897VA1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex A/M
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)Yes
Cisco CleanAir®technology
YesISDN (only on Cisco 897VA-K9)
Cisco 897VAB1-port GE or 1‑port SFP
VDSL/ADSL2+ Annex A with Bonding
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesNo
Cisco 898EA1-port GE or 1‑port SFP
4 pair Ethernet in the first mile (EFM)
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)NoYesNo
Cisco 891F1-port GE or 1‑port SFP
1-port FE
8-port 10-/100-/1000-Mbps managed switch (4‑ports PoE capable with 125W power supply adapter)Yes
Cisco CleanAir technology
YesV.92 analog modem
ISDN BRI
Cisco 891-24X2-port GE or 2‑port SFP24-port 10-/100-/1000-Mbps managed switch (8-ports PoE capable with integrated power supply)NoYesNo

The following Table2 lists the part numbers and Cisco IOS Software and WLAN software image details for each of the 890 Series ISR models.
Table2. Product Part Numbers and Software Images

Product Part Number

Product Description
Integrated Services Routers
C892FSP-K9Cisco 892FSP Gigabit Ethernet security router with SFP
C896VA-K9Cisco 896VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex B
C897VA-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A
C897VAW-A-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A with Wireless
C897VAW-E-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex A with Wireless
C897VA-M-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex M
C897VAM-W-E-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL/ADSL2+ Annex M with Wireless
C897VAB-K9Cisco 897VA Gigabit Ethernet security router with SFP and VDSL2/ADSL2+ Bonding over POTS
C898EA-K9Cisco 898EA Gigabit Ethernet security router with SFP and 4 channel multimode G.SHDSL (EFM/ATM)
C891F-K9Cisco 891F Gigabit Ethernet security router with SFP
C891-24X/K9Cisco 891 Gigabit Ethernet security router with SFP and 24-ports Ethernet Switch
C891FW-A-K9Cisco 891F Gigabit Ethernet security router with SFP and Dual Radio 802.11n Wifi for FCC -A domain
C891FW-E-K9Cisco 891F Gigabit Ethernet security router with SFP and Dual Radio 802.11n Wifi for ETSI -E domain
Cisco 892FSP is supported only on Cisco IOS Software Release 15.2(4)M and later
Cisco 896, 897, 898EA is supported only on Cisco IOS Software Release 15.2(4)M1 and later
Cisco 891F is supported only on Cisco IOS Software Release 15.3(3)M2, 15.4(1)T and later
C897VAB is supported only on Cisco IOS Software Release 15.4(3)M1 and later
C891-24X is supported only on Cisco IOS Software Release 15.5(1)T and later
Memory Options
FL-8XX-512U1GB512 MB DRAM upgrade to 1 GB for Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F model (Feature License)
Router Software Images
ImageC800-universalk9-mz: Universal image for Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F, 891-24X
Access Point Software Images
ap802-k9w7-tarAutonomous software image for ap802
ap802-rcvk9w8-tarLightweight Access Point Protocol (LWAPP) recovery image for ap802
Power over Ethernet Options
800-IL-PM-4 with 125W PSU4-port 802.3af capable internal power module for C896, C897, C898, C891F routers
Security Services
Scan SafeCloud Web Security
ScanSafe Connectorhttp://www.cisco.com/en/US/prod/vpndevc/ps6525/ps6538/ps6540/isr_web_security.html.
Supported SFP Types on the Cisco 892F Series and Cisco 892FSP, 896VA, 897VA, 897VAB, 898EA, 891F
GLC-LH-SM1000BASE-LX/LHSFP transceiver module for MMF and SMF, 1300-nm wavelength, dual LC/PC connector
GLC-SX-MM1000BASE-SXSFP transceiver module for MMF, 850-nm wavelength, dual LC/PC connector
GLC-ZX-SM1000BASE-ZXSFP transceiver module for SMF, 1550-nm wavelength, dual LC/PC connector
GLC-BX-D1000BASE-BX10SFP module for single-strand SMF, 1490-nm TX/1310-nm RX wavelength, single LC/PC connector
GLC-BX-U1000BASE-BX10SFP module for single-strand SMF, 1310-nm TX/1490-nm RX wavelength, single LC/PC connector
GLC-T1000BASE-T standard
GLC-GE-100FXCisco 100BASE-FX SFP for Gigabit Ethernet SFP ports with multimode fiber-optic (MMF) link
GLC-FE-100LXCisco 100BASE-LX10SFP with single-mode fiber-optic (SMF) link
GLC-FE-100BX-U100BASE-BX10-U SFP module for 100-MB ports, 1310 nm TX/1550 nm RX wavelength, 10 km over single-strand SMF
GLC-FE-100BX-D100BASE-BX10-D SFP module for 100-MB ports, 1550 nm TX/1310 nm RX wavelength, 10 km over single-strand SMF
CWDM-SFP-1470=Cisco Coarse-Wavelength Division Multiplexing (CWDM) 1470-nm SFP Gigabit Ethernet and 1G/2G fibre Channel
GLC-LH-SMD*1000BASE-LX/LH SFP transceiver module for MMF and SMF, 1300-nm wavelength
GLC-ZX-SMD*1000BASE-ZX SFP transceiver module for SMF, 1550-nm wavelength, dual LC/PC connector
GLC-EX-SMD*1000BASE-EX SFP transceiver module for SMF, 1310-nm wavelength
*Not supported on the Cisco 892F
Rack Mount Kit for 890
ACS-890-RM-19Rackmount kit for all 890s, except C891-24X
ACS-2901-RM-19Rackmount kit for 891-24X
WAASX Feature License
FL-C890-WAASXWAASx Feature License
Data Sheet Reference from http://www.cisco.com/c/en/us/products/collateral/routers/800-series-routers/data_sheet_c78-519930.html

More Related
Cisco 800 Series Router Migration Option
How to Add PoE Power Supply for Cisco 890 Series Router?
EoS and EoL Announcement for the Cisco 800 Series ISR Power Supply

Migrating to Cisco Catalyst 3850 and 3650 Switches

$
0
0
Why migrate to the Cisco Catalyst 3850 and 3650 Series switches? Compare and see what you’ve been missing. Aging switches were not designed to handle today’s digital challenges. Get up-to-date switching solutions with the Cisco Catalyst 3850 and 3650 Series switches.

These enterprise-class access switches will get you ready for 802.11ac Wave 2 with Cisco Catalyst Multigigabit Technology to deliver speeds beyond 1 Gigabit on existing Category 5e/6 cables.

Improvements over previous generations include:
• Better customer and employee experiences through higher performance and improved support for mobility with converged wired and wireless
• Advanced security to handle increasing threats
• Reduced cost and complexity through support for software defined networking (SDN) and SmartOperations

Without the right switching solutions—the applications, services, and devices you deploy cannot live up to their potential. Digital transformation makes having the right foundation to stay competitive more important than ever before. See the benefits you could be receiving now by comparing the Cisco Catalyst 3850 and 3650 Series to older switches (see table below).


Catalyst 3850/3650-Differences & Similarities


 More Related
The New Catalyst 9000 Switches Simplify IoT & Cloud Requirements
The Roles Campus LAN Switches Play in a Modern Enterprise Network
Cisco 800 Series Router Migration Option
Why Migrate to the Cisco Catalyst 6800 Series Switches?

Q and A: Cisco Catalyst 9400 Overview

$
0
0
As the most important member of Cisco Catalyst 9000 family, Cisco Catalyst 9400 Series switches are built for security, IoT and cloud.

Catalyst 9400 Series form the foundational building block for SD-Access―Cisco’s lead enterprise architecture.

The platform provides unparalleled investment protection with a chassis architecture that is capable of supporting up to 9Tbps of system bandwidth and unmatched power delivery for high density IEEE 802.3BT (60W PoE). Redundancy is now table stakes across the portfolio.

The Catalyst 9400 delivers state-of-the-art High Availability (HA) with capabilities like uplink resiliency, N+1/N+N redundancy for power supplies.

The platform is enterprise optimized with an innovative dual-serviceable fan tray design, side to side airflow and is closet-friendly with ~16” depth.
A single system can scale up to 384 access ports with your choice of 1G copper UPoE and PoE+ options.

The platform also supports advanced routing and infrastructure services, SD-Access capabilities and network system virtualization. These features enable optional placement of the platform in the core and aggregation layers of small to medium-sized campus environments.

Q: What is the system architecture on the Cisco Catalyst 9400?
A: The Catalyst 9400 system is based on centralized architecture using the Cisco UADP ASIC 2.0 running open Cisco IOS XE Software. This architecture has several key benefits including simplicity of upgrades, investment protection, and superior high availability.

Q: What are the different chassis models available on the Cisco Catalyst 9400?
A: The Catalyst 9400 supports two chassis types, 7-slot and 10-slot, and both support redundant supervisor slots. The 7-slot chassis has 5 line-card slots that can serve up to 240 line-card ports and the 10-slot chassis has 8 line-card slots that can serve up to 384 line-card ports.

Q: What are the different datasheets and SKUs on the Cisco Catalyst 9400?
A: Refer to the Cisco Catalyst 9400 data sheets that provide the technical and product details of the series:
Catalyst 9400 Chassis data sheet
Catalyst 9400 Supervisor data sheet
Catalyst 9400 Line Card data sheet
Cisco Catalyst 9500 Latest Datasheet Version

Q: What uplink combination is available on the Cisco Catalyst 9400 Supervisor?
A: The Cisco Catalyst 9400 offers a flexible uplink architecture for both 10 and 40 Gigabit Ethernet deployments, helping ensure your investment will be protected for the future.
The supervisor supports one of the following combinations of uplink ports in a standalone configuration:
• Native 40 Gigabit Ethernet uplinks: 2x QSFP
• Native 10 Gigabit Ethernet uplinks: 8x SFP+
• Mixed uplink deployment: 1x QSFP+ and 4x SFP+

Q: On the Cisco Catalyst 9400, what is the uplink combination with redundant supervisors?
A: In redundant supervisor configuration, one of the following combination of uplinks ports is supported:
• 1x QSFP on each supervisor
• 4x SFP+ on each supervisor

Q: What are the SSD onboard storage options on the Cisco Catalyst 9400?
A: On the supervisor module, you can order an optional SSD for onboard storage. The supervisor module supports 240-, 480-, or 960-GB configurations. It is recommended to configure this module on both supervisors (active and redundant) at the time of order. For dual-supervisor configuration, it is recommended that you order the same size of SSD module on both supervisors.

Q: What line cards are available on the Cisco Catalyst 9400?
A: The Cisco Catalyst 9400 supports the following line-card modules to serve the diverse needs of modular campus deployments:
• 48-port UPoE RJ-45 (All 10/100/1000-Mbps)
• 48-port data RJ-45 (All 10/100/1000-Mbps)


Q: What is the airflow design on the Cisco Catalyst 9400?
A: The Catalyst 9400 supports a side-to-side airflow design that is most common in campus modular access deployments.

Q: What is unique about the Cisco Catalyst 9400 fan-tray design?
A: The Catalyst 9400 has an innovative fan-tray design that allows you to service the fan tray from the front or the back using the same fan tray. In certain rack deployments, this design allows you to retain your cable connectivity to the modules while servicing the fan tray from the rear.

Q: What is unique about the Cisco Catalyst 9400 power design?
A: The Catalyst 9400 power-design architecture is unique and superior in many ways. The novel design supports:
• Modular power supply
• Superior high-availability capabilities to support N + 1 or N + N modes of operation • Combined mode of operation
• Ability to mix-and-match inputs from 110V and 220V sources
• Platinum rated efficient power supplies
• Power shared across data, PoE and system components

Q: How many power supplies can the 7- and 10-slot chassis hold?
A: Both 7- and 10-slot chassis support up to 8 modular power supplies.

Q: How do I decide the number of power supplies I need on the Cisco Catalyst 9400?
A: Use the Cisco Power Calculator to estimate the power requirements on the Catalyst 9400. This tool allows you to configure current and future power needs based on the devices, line cards, and access endpoints and recommends the number of power supplies you need for your deployment:
http://www.cisco.com/c/en/us/support/web/tools-catalog.html

Q: Do the power supplies separate the power into data and inline (POE) categories?
A: No. The power from the power supplies is shared between data, PoE and other system components.

Q: What redundant mode does the Cisco Catalyst 9400 system support?
A: The Catalyst 9400 system supports N + N redundant mode and N+1 redundant mode. The system allows changing of the power supply modes with a simple CLI. For N + N mode, N power supplies are active and N are in standby. For N+1 mode, N power supplies are active and 1 is in standby.

Q: On the Cisco Catalyst 9400, what is the default power supply mode?
A: The default mode is a combined mode; User can change the mode of operation either N+N or N+1 mode.

Q: Do the Cisco Catalyst 9400 Switches come with built-in RFID?
A: Yes, the Catalyst 9400 switches come with built-in passive RFID tags on all the components so that you have an inventory of the different components, including separated RFID tags for the supervisor, all line-card modules, the power supplies, the fan tray, and the chassis.

Q: What management ports are available on the Cisco Catalyst 9400?
A: The Catalyst 9400 comes with a mini-B type USB console port and a 10/100/1000 Ethernet (RJ-45) dedicated management port on the front panel of the switch. The Ethernet port is in a separate VRF instance called “Mgmt-vrf”. This setup segments the management traffic from the global routing table of the switch.

Q: Can I use both console ports simultaneously on the Cisco Catalyst 9400?
A: No. The RJ-45 port is the default and console switches to USB when the USB cable is connected.

Q: Do the Cisco Catalyst 9400 Switches support Online Insertion and Removal (OIR)?
A: Yes, OIR is supported on all the modules and power supplies.

Q: What pluggable transceiver modules do the Cisco Catalyst 9400 switches support?
A: Refer to the Cisco Transceiver Module Compatibility Matrixes for the supported list
http://www.cisco.com/c/en/us/support/interfaces-modules/transceiver-modules/products-device-support-tables-list.html



More Related…
Why Migrate to the Cisco Catalyst 9400 Series Switches?
The New Catalyst 9000 Switches Simplify IoT & Cloud Requirements

The RV340W Dual WAN Gigabit VPN Router with Wireless-Specs

$
0
0
Nowadays, small business requires more secure networking. And now the Cisco Small Business RV Series Routers can meet the needs of small businesses.

Cisco Small Business RV Series Routers, offering virtual private networking (VPN) technology, can help your remote workers connect to your network through a secure Internet pathway.

The RV340W, a part of the RV34x Series, is the wireless counterpart of the RV340 Router.


With several added security features such as Web Filtering, Application Control, and IP Source Guard, the RV340W delivers highly secure, broadband, wired and wireless connectivity to small offices and remote employees. These new security features also provide the ease of fine-tuning permitted activity on the network.

In this article we will list the main specifications of the RV340W Dual WAN Gigabit VPN Router with Wireless.

Note: To read more about the RV340W Dual WAN Gigabit VPN Router with Wireless, click here.

Product Specifications


Specifications

Description
Standards802.11 (Wi-Fi), 802.11ac, 802.1n, 802.11g, 802.11b, 802.11a, 802.3u, 802.1D, 802.1p, 802.1w (Rapid Spanning Tree), 802.1X (security authentication), 802.1Q Virtual Local Area Network (VLAN), IPv4 (RFC 791), IPv6 (RFC 2460), Routing Information Protocol (RIP) v1 (RFC 1058), RIP v2 (RFC 1723)
Operating SystemLinux
Cabling TypeCategory 5e or better
PortsLAN, WAN, USB, Console

Physical Interfaces
SpecificationsDescription
Ports4 RJ-45 10/100/1000 Ethernet
2 WAN
2 USB ports
1 Console
ButtonsReset button, Wi-Fi button
SwitchPower Switch
Physical Security
KensingtonYes
Physical Specifications
Physical dimensions
(W x D x H)
280 x 44 x 170 mm (11.0 x 1.45 x 6.69 in)
Weight1.2 kg (2.65 lbs)


Network Capabilities
SpecificationsDescriptions
VLAN SupportYes; Port-based and 802.1Q tag-based VLANs
Network ProtocolsDynamic Host Configuration Protocol (DHCP) server
Point-to-Point Protocol over Ethernet (PPPoE)
Point-to-Point Tunneling Protocol (PPTP)
Domaine Name System (DNS) proxy
Internet Group Management Protocol (IGMP) proxy and multicast forwarding
Rapid Spanning Tree Protocol (RSTP)
Dynamic Domain Name System (DynDNS, NOIP)
Network Address Translation (NAT), Port Address Translation (PAT)
One-to-one NAT
Port management
Port mirroring
Number of VLANs1 management VLAN (1-4096 range), up to 32 VLANs
802.1X supplicantYes
Routing ProtocolsStatic routing
Dynamic routing
RIP v1 and v2
NATPAT, Network Address Port Translation (NAPT) protocol
Network edge (DMZ)Software-configurable to any LAN IP address
Spanning treeYes
Load balancingYes
IPv6Dual-stack IPv4 and IPv6
6to4 tunneling
Stateless address auto-configuration
DHCPv6 Server for IPv6 Clients on LAN
DHCP v6 client for WAN connectivity
Internet Control Message Protocol (ICMP) v6
Static IPv6 Routing
Dynamic IPv6 Routing with RIPng
IPv6 host support
IPv6 RADIUS,
Network Time Protocol (NTP)
Layer 2802.1Q-based VLANs, 32 active VLANs plus one management VLAN


Security
SpecificationsDescription
Access controlYes, management access control list (ACL) plus MAC ACL
Secure ManagementHTTPS
FirewallStateful packet inspection (SPI) firewall, port forwarding and triggering, Denial-of-Service (DoS) prevention, software-based DMZ
DoS attacks prevented:

  • SYN Flood

  • Echo Storm

  • ICMP Flood

  • UDP Flood

  • TCP Flood

Blocks Java, cookies, active-X, HTTP proxy
Web FilterFilters malicious and blocks harmful websites
Content FilterStatic URL blocking or keyword blocking
Application ControlYes

VPN

Specifications

Description
IPSec50 simultaneous connections (any combination of Remote Access and site-to-site), up to 650 Mbps throughput
IPSec Remote AccessYes
L2TP over IPSecYes
GRE over IPSecYes
Cisco SSL VPN (Cisco AnyConnect)2 tunnels included. Max 50 tunnels with optional router licenses. Up to 33 Mbps throughput
PPTP25 connections, up to 100 Mbps throughput
Teleworker mode (Cisco IPSec VPN)Router acts as a client to connect to central VPN gateway in teleworker mode.
VPN PassthroughIPSec, PPTP, L2TP

Configuration

Specifications

Description
Web user interfaceSimple, browser-based configuration (HTTP, HTTPS)
Command-line interface (CLI)Command line using SSH
Management protocolsWeb browser, Simple Network Management Protocol (SNMP) v3, Bonjour
Remote managementYes
Event loggingLocal, remote syslog, email alerts
Network diagnosticsLogging, Ping, Traceroute, DNS lookup, and Port Mirror
Web firmware upgradeFirmware upgradable through web browser, imported and exported configuration file
Dynamic Host Configuration Protocol (DHCP)DHCP Client
IPv6 hostYes
HTTP redirectYes
System timeSupports NTP, daylight savings manual entry
LanguagesGUI supports English


Wireless

Specifications

Description
Radio and modulation typeDual radio, Orthogonal Frequency Division Multiplexing (OFDM) IEEE 802.11a/n: OFDM (BPSK/QPSK/16QAM.64AM/256AM)
IEEE 802.11ac: OFDM (BPSK/QPSK/16QAM.64AM/256AM)
WLAN802.11n/ac
4x4 MIMO with 2 spatial streams at 5 GHz
3x3 MIMO with 2 spatial streams at 2.4 GHz
20-, 40-, and 80-Mhz channels for 802.11ac
20- and 40-Mhz for 802.11n
PHY data rate up to 2.7Gbps:
- 2.4 GHz: 450Mbps (64-QAM), 600Mbps (256-QAM)
- 5 GHz: 1.7Gbps (256-QAM), 2.1Gbps (1024-QAM)
802.11 Dynamic Frequency Selection (DFS)
Operating channels11 North America, 13 most of Europe, auto-channels selection
Wireless isolationWireless isolation between clients
External antennas4
Antenna gain in dBi2.4 GHz: 3 dBi per antenna
5 GHz: 5 dBi per antenna
Receiver sensitivity2.4 GHz:
-802.11b: -82 dBm at 11 Mbps,
-802.11g: -71 dBm at 54 Mbps,
802.11n (HT20): -69 dBm at MCS7,
HT20, -65 dBm at mcs15, HT40

5 GHz:
-802.11ac (VHT20): -59 dBm at MCS8
-802.11ac (VHT40): -54 dBm at MCS9
-802.11ac (VHT80): -51 dBm at MCS9
Radio frequencyDual-band, works on 2.4 GHz and 5 GHz
Active WLAN clientsSupports up to 50 concurrent clients
Multiple SSIDsSupports multiple Service Set Identifiers (SSIDs), up to 8 separate virtual networks, 4 per radio.
Wireless VLAN MapSupports SSID to VLAN mapping with wireless client isolation
WLAN SecurityWired Equivalent Privacy (WEP), WPA, WPA2-PSK, WPA2-ENT, 802.11i
Wi-Fi Multimedia (WMM)WMM, WMM power save (WMM-PS)

Environmental
SpecificationsDescription
Power12V 1.5 A
CertificationsFCC, CE, IC, Wi-Fi
Operating temperature0° to 40°C (32° to 104°F)
Storage temperature0° to 70°C (32° to 158°F)
Operating humidity10% to 85% non-condensing
Storage humidity5% to 90% non-condensing

Info from https://supportforums.cisco.com/document/13322301/product-specifications-rv340w-dual-wan-gigabit-vpn-router-wireless

More Related
Cisco RV340W VPN Router, For Any Small-business Network that Requires…
How to Install your Cisco RV340W and Launch the Web-based Device Manager?
The New Cisco RV Series VPN Routers-RV340, RV345

Cisco Updates Catalyst 2960-X Series Switches to Meet Customers’ Needs

$
0
0

Cisco updated the hot Catalyst 2960-X/XR Series in bright features.
The Cost-effective access switches that scale: Get the enterprise-class features you want at a great price. Our 2960-X Series are stackable Gigabit Ethernet Layer 2 and Layer 3 access switches.
The simple Catalyst 2960-X/XR Series are easy to deploy, manage, and troubleshoot. They offer automated software installation and port configuration. And they help you cut costs with energy-efficient features.

Product Highlights
Cisco Catalyst 2960-X switches feature:
●   24 or 48 Gigabit Ethernet ports with line-rate forwarding performance
●   Gigabit Small Form-Factor Pluggable (SFP) or 10G SFP+ uplinks
●   FlexStack Plus for stacking of up to 8 switches with 80 Gbps of stack throughput (optional)
●   Power over Ethernet Plus (PoE+) support with up to 740W of PoE budget
●   24-port PoE fanless switch for deployment outside the wiring closet
●   Reduced power consumption and advanced energy management features
●   USB and Ethernet management interfaces for simplified operations
●   Application visibility and capacity planning with integrated Full (Flexiable) NetFlow and NetFlow-Lite
●   LAN Base or LAN Lite Cisco IOS software features
●   Enhanced limited lifetime warranty (E-LLW) offering next-business-day hardware replacement
●   Identify, classify and control of trusted internal network traffic through Domain Name System as an Authoritative Source (DNS-AS)

FlexStack-Plus on Cisco Catalyst 2960-X Series Switches

FlexStack and FlexStack Plus Supported Combinations
2960-XR IP Lite2960-X LAN Base2960-S/SF LAN Base
2960-XR IP LiteYes--
2960-X LAN Base-YesYes
2960-S or 2960-SF LAN Base-YesYes

FlexStack-Plus Scalability and Performance
Stack MembersStack BandwidthStack LimitCisco IOS Feature Set
2960-XR IP Lite80G8IOS IP Lite
2960-XLAN Base80G8IOS LAN Base
2960-X LAN Base mixed with
2960-S/SF LAN Base
40G4IOS LAN Base

Cisco Catalyst 2960-XR models also offer:
●   Power resiliency with optional dual field-replaceable power supplies
●   IP Lite Cisco IOS software with dynamic routing and Layer 3 features

Switch Models and Configurations
Catalyst 2960-X switches include a single fixed power supply and are available with either the Cisco IOS LAN Base or LAN Lite feature set.
Catalyst 2960-XR switch models include a field-replaceable modular power supply and can accommodate a second power supply. Catalyst 2960-XR is available only with the Cisco IOS IP Lite feature set.

Learn more: Cisco Catalyst 2960-X vs. 2960-XR Series Switches

Catalyst 2960-X Series Software Features
All Catalyst 2960-X Series Switches use a single Universal Cisco IOS Software Image for all SKUs. Depending on the switch model, the Cisco IOS image automatically configures the LAN Lite, LAN Base, or IP Lite feature set.

LAN Lite models have reduced functionality and scalability for small deployments with basic requirements. Cisco Catalyst 2960-X Family of Switches are available with the LAN Base and LAN Lite feature sets and Catalyst 2960-XR Family of switches are available IP Lite feature sets.

Note that each switch model is tied to a specific feature level; LAN Lite cannot be upgraded to LAN Base and LAN Base cannot be upgraded to IP Lite.
For more information about the features included in the LAN Lite, LAN Base and IP Lite feature sets, refer to Cisco Feature Navigator: http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp.

Cisco ONE Software
Cisco ONE Software for Access Switching is available for the Cisco Catalyst 2960-X and Cisco Catalyst 2960-XR Series Switches.
Cisco ONE Software is a new way for customers to purchase and use our infrastructure software. It offers a simplified consumption model, centered on common customer scenarios in the data center, WANs, and LANs.

Cisco ONE Software and services provide customers with four primary benefits:
●   Software suites that address typical customer use scenarios at an attractive price
●   Investment protection of their software purchase through software services-enabled license portability
●   Access to ongoing innovation and new technology with Cisco Software Support Service (SWSS)
●   Flexible licensing models to smoothly distribute customer's software spend over time
For ordering information for Cisco ONE Software for the Cisco Catalyst 2960-X and Cisco Catalyst 2960-XR Series Switches, go to http://www.cisco.com/c/en/us/products/software/one-access/switching-part-numbers.html.

Download: Cisco Catalyst 2960-X Series Switches Data Sheet

Read the Benefits of Migrating to Cisco Catalyst 2960 and 2960XR Switches. Compare and see what you’ve been missing.


Read more: Compare the Catalyst 2960-X/XR to the Previous 2960 Access Switches
                  Comparison of Cisco Catalyst 2960 Switches

More Related…
Cisco Catalyst 2960-X Switches: Enterprise Ready
Cisco 2960S and 2960-X Series’ Problems from Users
Cisco Catalyst 2960-X/XR vs. Catalyst 3650 vs. Cisco 3850 Series
How to Install or Replace an AC Power Supply in a Cisco 2960-X Switch?
How to Configure the Voice VLAN Feature on the Catalyst 2960 and 2960-S Switches?

Updated: Compare Catalyst 4500 Models

$
0
0
The Catalyst 4500E Series is Cisco SD-Access-ready, and it’s the industry's most widely deployed modular platform for campus access and distribution deployments.

Now with Supervisor 9-E (new), 8-E, and 8L-E, these switches offer 928 Gbps of wired and wireless converged access per system.
Learn more: The New Cisco Catalyst 4500E Supervisor Engine 9-E

Read the supervisor and model comparison of Cisco 4500 Series switches as follows.
Supervisors

Model

Supervisor 8E

Supervisor 8LE

Supervisor 7E

Supervisor 7LE

Supervisor 6E

Supervisor 6LE
DocumentationData sheetData sheetData sheetData sheetData sheetData sheet
PerformanceSupervisor 8ESupervisor 8LESupervisor 7ESupervisor 7LESupervisor 6ESupervisor 6LE
Switching capacity928 Gbps560 Gbps848 Gbps520 Gbps320 Gbps280 Gbps
IPv4 throughput250 Mpps225 Mpps250 Mpps225 Mpps250 Mpps225 Mpps
IPv6 throughput125 Mpps110 Mpps125 Mpps110 Mpps125 Mpps110 Mpps
Bandwidth per slot48 Gbps48 Gbps48 Gbps48 Gbps24 Gbps24 Gbps
ScalabilitySupervisor 8ESupervisor 8LESupervisor 7ESupervisor 7LESupervisor 6ESupervisor 6LE
Number of routes256K for IPv4, 128K for IPv664K for IPv4, 32K for IPv6256K for IPv4, 128K for IPv664K for IPv4, 32K for IPv6256K for IPv4, 128K for IPv664K for IPv4, 32K for IPv6
Number of packet buffers128K128K128K128K64K64K
NetFlow entries128K128K128K128K--
MAC learning rate per second20K14K20K14K13K8K
Dynamic Host Control Protocol (DHCP) snoop entries12K12K12K12K12K3K
Number of 10/100/1000 portsUp to 384 accessUp to 240 accessUp to 384 accessUp to 240 accessUp to 384 accessUp to 240 access
10 GE and 1 GE uplinks8 10 GE / 1 GE4 10 GE / 4 1 GE4 10 GE / 1 GE2 10 GE / 4 1 GE2 10 GE / 4 1 GE (TwinGig)2 10 GE / 4 1 GE (TwinGig)
1 GE non-blocking fiber ports384 + 8 uplinks240 + 4 uplinks384 + 4 uplinks240 + 4 uplinks138120
10 GE fiber ports96 + 8 uplinks60 + 4 uplinks96 + 4 uplinks60 + 2 uplinks3030
Supported ChassisSupervisor 8ESupervisor 8LESupervisor 7ESupervisor 7LESupervisor 6ESupervisor 6LE
4503-EYesYesYesYesYesYes
4506-EYesYesYesYesYesYes
4507R+EYesYesYesYesYesYes
4507R-EYesYesYesYesYesYes
4510R+EYes-Yes-Yes-
4510R-ERoadmap-Yes-Yes-
SystemSupervisor 8ESupervisor 8LESupervisor 7ESupervisor 7LESupervisor 6ESupervisor 6LE
CPUQuad core 2.2 GHzQuad core 1.8 GHzDual core 1.5 GHzDual core 1.5 GHz1.3 GHz1 GHz
DRAM4 GB4 GB2 GB (upgradable to 4 GB)2 GB (upgradable to 4 GB)512 MB (upgradable to 1 GB)512 MB
Bootflash2 GB2 GB1 GB1 GB128 MB128 MB
Layer 2 and 3 Services ScalabilitySupervisor 8ESupervisor 8LESupervisor 7ESupervisor 7LESupervisor 6ESupervisor 6LE
Security and QoS entries (combined)128K64K128K64K128K64K
MAC address55K55K55K55K55K55K
Multicast routes32K32K32K32K32K32K
I/O policers16K16K16K16K16K16K
Spanning Tree instances10K10K10K10K10K10K
Active VLANs4K4K4K4K4K4K
Switch Virtual Interface (SVI)4K4K4K4K4K4K
VRF-Lite instances646464646464
Embedded WiresharkYesYesYesYesNoNo
LISP readinessYes (hardware-ready)NoNoNoNoNo
SDN readinessYes (hardware-ready)Yes (hardware-ready)Yes (hardware-ready)Yes (hardware-ready)NoNo
Native wireless controller supportYes (hardware-ready)NoNo

Cisco Catalyst 4500-E Switch Model Comparisons

Model

Catalyst 4510R+E Switch

Catalyst 4507R+E Switch

Catalyst 4510R-E Switch

Catalyst 4507R-E Switch

Catalyst 4506-E Switch

Catalyst 4503-E Switch
Total Slots10710763
SupervisorsCatalyst 4510R+E SwitchCatalyst 4507R+E SwitchCatalyst 4510R-E SwitchCatalyst 4507R-E SwitchCatalyst 4506-E SwitchCatalyst 4503-E Switch
Supervisor 8-ESupportedSupportedSupportedSupportedSupportedSupported
Supervisor 8L-ESupportedSupportedSupportedSupported
Supervisor 7-ESupportedSupportedSupportedSupportedSupportedSupported
Supervisor 7-LESupportedSupportedSupportedSupported
Supervisor 6ESupportedSupportedSupportedSupportedSupportedSupported
Supervisor 6-LE-Supported-SupportedSupportedSupported
Supervisor V-10 GESupported
Supervisor Engine Slot Number5, 63,45, 63, 411
Supervisor Engine RedundancyYesYesYesYesNoNo
Line CardsCatalyst 4510R+E SwitchCatalyst 4507R+E SwitchCatalyst 4510R-E SwitchCatalyst 4507R-E SwitchCatalyst 4506-E SwitchCatalyst 4503-E Switch
Line Card Slots858552
Line Card SupportE-Series (requires E-Series chassis) and classic
Line Card Slot Speed48 Gbps, 24 Gbps, and 6 Gbps48 Gbps, 24 Gbps, and 6 Gbps24 Gbps and 6 Gbps24 Gbps and 6 Gbps48 Gbps, 24 Gbps, and 6 Gbps48 Gpbs, 24 Gbps, and 6 Gbps
PowerCatalyst 4510R+E SwitchCatalyst 4507R+E SwitchCatalyst 4510R-E SwitchCatalyst 4507R-E SwitchCatalyst 4506-E SwitchCatalyst 4503-E Switch
Power Supply Bays2
AC InputYes
DC InputYes
Integrated Power over Ethernet (PoE)Yes
PoE Plus (PoEP)Yes
Universal PoE (UPOE)Yes
Minimum Number of Power Supplies1
Fan Tray Bays1
MountCatalyst 4510R+E SwitchCatalyst 4507R+E SwitchCatalyst 4510R-E SwitchCatalyst 4507R-E SwitchCatalyst 4506-E SwitchCatalyst 4503-E Switch
Location of 19-inch Rack-MountFront
Location of 23-inch Rack-MountFront (option)
Supervisor engine slots do not support switching line-card modules.
Line-card slots do not support supervisor engines."

Cisco Catalyst 4500 Switch Model Comparison

Model

Catalyst 4510R Switch

Catalyst 4507R Switch

Catalyst 4506 Switch

Catalyst 4503 Switch
Total Slots10763
Supervisor Engine Slots22221111
Line Card Slot Speed6 Gbps6 Gbps6 Gbps6 Gbps
Supervisor Engine RedundancyYes (Supervisor Engine 6-E,V-10GE, V)Yes (Supervisor Engine 6-E, 6L-E, V-10GE, V, IV, II-Plus-10GE, II-Plus)NoNo
Supervisor Engines SupportedSupervisor Engine 6-E,V-10GE, VSupervisor Engine 6-E, 6L-E, V-10GE, V, IV, II-Plus-10GE, II-PlusSupervisor Engine 6-E, 6L-E, V-10GE, V, IV, II-Plus-10GE, II-PlusSupervisor Engine 6-E, 6L-E, V-10GE, V, IV, II-Plus-10GE, II-Plus Engine II-Plus-TS
Line Card Slots825252
Power Supply Bays2222
AC InputYesYesYesYes
DC InputYesYesYesYes
Integrated Power over Ethernet (PoE)YesYesYesYes
Minimum Number of Power Supplies1111
Fan Tray Bays1111
Location of 19-inch Rack-MountFrontFrontFrontFront
Location of 23-inch Rack-MountFront (option)Front (option)Front (option)Front (option)
Get the Best Prices on Cisco 4500 Models

More Related…
Decode the Cisco Catalyst 4500E–Enterprise-Class Campus Platform
Cisco 4500E Supervisor 8E vs. Supervisor 7E vs. Supervisor 7LE
Updated: Cisco Catalyst 4500 Supervisor Engine 8-E and 8L-E
How to Upgrade Cisco 4500 SUP7-E&Sup7L-E ROMMON to Support VSS?
Cisco Catalyst 4500-E & Cisco 4500 Series Model Comparison
Cisco Catalyst 4500-X Series Switch Family

Only Cisco Goes Beyond the 802.11ac Wave 2 Standard

$
0
0
Cisco Wireless for 802.11ac Wave 2 and Beyond

Most Versatile Wireless in the World

  • Understands and automatically adapts to changes in the environment

Innovation Beyond the Latest Standard

  • Designed for the best network performance and highest user experience

Expand to Meet Any Use Case –Today and Tomorrow

  • Add new functionality with minimal impact to operations and cost


Innovations Only Cisco Delivers
Radio Frequency Excellence for High-Density Environments
Cisco Wireless for 802.11ac Wave 2 and Beyond-.png

Hardware Matters…

AP 3800
-Industry’s first mGig AP
-CPU not sold to anyone else

Traditional Hardware Acceleration in an Access Point
Zero Impact Application Visibility and Control


Flexible Radio Assignment


Flexible Radio Assignment allows the Access Point  to meet multiple use case.

  1. By default the access point serves both 2.4 and 5Ghz devices. Delivering 1.7Gbps but support the widest range of device types.

  2. It can also transition to support 5GHz on both radios boosting performance to 5.2GBps.

  3. The access point can also run in wireless security monitoring mode that collects location based data and identifies potential security risks.


Self Optimizing Network
Flexible Radio Assignment

When we talk about self optimizing network – people jump to the thought that is is merely interference detection and mitigation
Where we detect, locate interfference
We then mitigate the interference to minimize impact to the Wi-Fi network. We introduced CleanAir more than 5 years ago and it has been great in identify and resolving wireless interference problems.


Self Optimizing Network
Flexible Radio Assignment

Notes:But CleanAir is only half the story – What if there is not a problem? In the workspace of tomorrow often people gather in non-traditional areas like common areas, cafes and so on. Cisco has developed what we call Flexible Radio Assignment. Because we rely on custom silicone what we have done is develop our mission critical access points to have two radios. 1 That runs on 5GHz. all the time, and the second radio has the ability to run as 2.4 or 5GHz. And our second antenna can run in serving or monitoring mode. Where monitoring mode is collecting location-based data and supporting wireless intrusion protection activities.
The Way this works is first and foremost the access points look for redundant 2.4 radios radios that are not needed– the Wi-Fi network will convert these to 5GHz to maximize coverage. If one 2.4 radio goes down the network will convert one of the 5GHz radios back to 2.4.
But say for instance a Pop-up meeting or gathering happens in the workspace – and people start messaging others to come by.
Well the sudden increase in users as well as their devices will in this case prompt the APs to turn the 2.4 radios to 5GHz to and perhaps they change automatically from monitoring to serving mode to maximize coverage and support the flash crowd of users.


Self Optimizing Network
Flexible Radio Assignment

Notes:Once the crowd disperses – then the network will resolve back to the original operating configuration. Of course you can manually configure the APs in a permanent state if you desire.

Smart Antenna Port – 2nd Physical Antenna Connection



Offload Wireless Traffic Faster
Multigigabit Technology

Notes: With the Cisco Aironet 3800 we are able to join forces with our Multi-gigabit access switches to seamlessly offload network traffic that exceeds 1 gig from the wireless network to the wired without any bottleneck. We are delivering on our vision to offer the best end-to-end solution that not only removes the bottle neck, but minimizes the Total Cost of Ownership by conserving the existing cabling – and reaching up to 5X the speed.
For the the 2800 and 1850 Aironet Access points we offer the ability aggregate links across two GigE ports for environments that exceed 1Gbps.


Multigigabit Ethernet-Why Not Use 10GBASE-T?



Multigigabit Ethernet – Cisco Innovation
Key Differentiators


Expandability and Investment Protection
Meet Any Wi-Fi Use Case


Positioned to Capture the 802.11ac Wave 2 Transition

Notes: Cisco is dedicated to bringing the world’s most innovative 802.11ac Wave 2 portfolio. If you need standard 802.11ac Wave 2 functionality we offer the enterprise –class Aironet 1850 that meets or the cost-optimized 8130 access point.  We have now extended our 802.11ac Wave 2 to our mission critical and best-in-class AP series. Both the 2800 and 3800 include

  • The ability to run as 2.4 & 5GHz or have 2 - 5GHz radios

  • They support 4x4:3SS

  • They support all the latest HDX functionality – CleanAir, ClientLink

  • And the support the new Flexible Radio Assignment & Smart Antenna Ports

  • The 3800 Also adds Multi-Gigabit Uplinks and Modularity


Cisco AP 2800/3800 and Flexible Radio Assignment–Your Network, Thinking its way through the Options
Flexible Radio Assignment AP 2800/3800


Flexible Radio Assignment allows the Access Point  to meet multiple use case.

  1. By default the access point serves both 2.4 and 5Ghz devices. Delivering 1.7Gbps but support the widest range of device types.

  2. It can also transition to support 5GHz on both radios boosting performance to 5.2GBps.

  3. The access point can also run in wireless security monitoring mode that collects location based data and identifies potential security risks.




More Related…
Cisco Aironet 2800 and 3800 APs, Keep Your Connected World Spinning
Cisco Aironet 3802 AP to be Crowned “Wi-Fi Certified”

The Cisco ASR 1000 Series Router Family

$
0
0
Cisco’s ASR 1000 Series comes in several models with different throughputs and port densities so that have the right size ASR, with the right amount of power and performance without having to spend more than you need to.

We even offer non-modular models which allow you to pay incrementally for the additional throughput you need as your network and business needs grow without having to buy a new platform.
Across the router family, speeds range from 2.5 Gbps to 200 Gbps.

I can assure you that the Cisco ASR 1000 offers you the best price/performance value of any similar router in the marketplace.


Cisco Branch Platform Portfolio


Cisco ASR1001-X Overview
Delivering High Performance iWAN and Cloud Services


Appliance-Level Performance:

  • Up to 20 Gbps On Demand Performance

  • 19M Packets Per Second

  • Up to 8G Suite-B Crypto throughput with diverse security solutions – DMVPN, FlexVPN, GETVPN

  • 2M Firewall or NAT Sessions

  • I/O on Demand (2x10G and 6x1G) that are MACsec capable (XE3.14) + 1xNIM + 1x SPA

  • 8G (default) Control Plane Memory to allow scaled Internet Peering and Edge Services

  • Supports SyncE & Startum 3E to hold the negotiated frequency if the source is lost

Simplified Management:

  • Cisco Prime and future support of APIC EM


ASR1001-X



Network Interface Modules


ASR 1001-HX   60G Fixed


ASR 1002-HX (Kahuna) 100G Fixed


ASR1000 Modular Chassis


ASR1009-X–Power Efficient 9RU with 100G per Slot


1013 vs 1009-X:
9-X: 300Gbps
13RU: 200Gbps + 160 = 360Gbps
10x10 EPA x 2 = 200G per slot
Up to 6 10x10 EPAs = 600G of 10G Ethernet connectivity
1013
4 x 10x10 EPAs in 2 MIP slots = 400G
6x10G * 4 = 240G

ASR1000-X modular chassis configuration


ASR 1009/6-X Power Supply


  • AC or DC power supply modules

1)    Fault tolerance - Detects short circuits and component failures within the PS, if a failure is found, the unit is shut down
2)    High efficiency - More than 85% efficient to reduce power waste even at low loads
3)    Load sharing
4)    Redundancy (N+1)
5)    Hot-swappable

  • Both chassis default config is 2xPS (non-redundant model).

  • ASR1009-X may need 3xPS (non-redundant model) in some high power consumption configs.

  • Each chassis can accommodate up to 6 power supplies, providing both chassis-level and facility-level power fault tolerance.


RP3–Next Gen Route Processor


  • Positioned to help customers migrate from RP1s & RP2s

  • Investment protection – Supports most of existing and all planned ESPs (ESP100-X, ESP200-X, ESP400-X), interface cards (SIP40, MIP100) and modular chassis (ASR1013, ASR1006-X and ASR1009-X)

  • Higher maximum DRAM capacity - 8G default, expandable to 64GB

  • Built-in SSD drive - 100GB default, upgradeable to 400GB+ for log / core /data collection and for running container apps in the future

  • Larger Flash memory - 8G default for NVRAM contents

  • Dedicated Crypto Assist chip for better crypto performance and scale (CPS)

  • Same price as RP2

Embedded Services Processors (ESP)


More Related Cisco ASR 1000 Series Topics
The New ASR1001-HX—The Most Powerful Compact Service Router
Cisco ASR 1000 Series Can Help Solve…
The New Cisco ASR 1001-X Router
The New Cisco ASR 1009-X & Cisco ASR 1006-X Router

Compare Cisco Wireless APs: Indoor 802.11ac Wave 2 AP

$
0
0
1810w Series vs. 1810OEAP Series vs. 1830 Series vs. 1850 Series vs. 2800 Series vs. 3800 Series

Cisco Aironet 802.11ac G2 Series Indoor Access Points1810w Series1810OEAP Series1830 Series1850 Series2800 Series3800 Series
Wi-Fi standards supported802.11 a/b/g/n/ac (Wave 2)802.11 a/b/g/n/ac (Wave 2)802.11 a/b/g/n/ac (Wave 2)802.11 a/b/g/n/ac (Wave 2)802.11 a/b/g/n/ac (Wave 2)802.11 a/b/g/n/ac (Wave 2)
Targeted deployment sizeMulti-dwelling unitsTeleworkers or micro-branchesSmall or midsize enterprisesSmall and midsize enterprisesMidsize to large enterprises that require advanced featuresMidsize to large enterprises that require mission-critical traffic
Modularity supportNoNoNoNoNoYes
Number of radiosDual (2.4 GHz and 5.0 GHz)Dual (2.4 GHz and 5.0 GHz)Dual (2.4GHz and 5.0GHz)Dual (2.4GHz and 5.0GHz)Dual (XOR and 5 GHz)Dual (XOR and 5 GHz)
Combined data rate1 Gbps1 Gbps1 Gbps2 Gbps5 Gbps5 Gbps
MIMO radio design: number of spatial streams2x2:2 MU/SU-MIMO2x2:2 MU/SU-MIMO3x3:2 MU/SU-MIMO4 x 4:4 (SU-MIMO),
4 x 4:3 (MU-MIMO)
4x4:3 MU/SU-MIMO4x4:3 MU/SU-MIMO
Channel width2.4 GHz: 20 MHz 5 GHz: 20/40/80 MHz2.4 GHz: 20 MHz 5 GHz: 20/40/80 MHz2.4 GHz: 20 MHz 5 GHz: 20/40/80 MHz2.4 GHz: 20 MHz 5 GHz: 20/40/80 MHz2.4 GHz: 20 MHz 5 GHz: 20/40/80/160 MHz2.4 GHz: 20 MHz 5 GHz: 20/40/80/160 MHz
Concurrent MU-MIMO users222333
Max client count400400400400400400
Max Client Count with Client Link enabledN/AN/AN/AN/A256256
Autonomous access point optionWith Mobility ExpressWith Mobility ExpressWith Mobility ExpressWith Mobility ExpressWith Mobility Express *With Mobility Express *
Ethernet support1 x GbE uplink 3 x GbE downlink with 1 PoE out1 x GbE uplink 3 x GbE downlink with 1 PoE out1 x GE2 x GE1 x Multigigabit 1 x GE
USB portNoNoYesYesYesYes
Bluetooth low energyIntegratedIntegratedwith USB dongle*with USB dongle*with USB dongle*with USB dongle*
Beam formingTransmit beamforming (Tx BF)Transmit beamforming (Tx BF)Transmit beamforming (TxBF)Transmit beamforming (TxBF)ClientLink 4.0 and transmit beamforming (TxBF) ClientLink 4.0 and transmit beamforming (TxBF)
RF interference avoidanceSpectrum Analysis*Spectrum Analysis*Spectrum Analysis*Spectrum Analysis*CleanAirCleanAir
Video StreamYes802.11 a/b/g/n/ac (Wave 2)YesYesYesYes
Band SelectYesYesYesYesYesYes
Rogue access point detectionYesYesYesYesYesYes
Adaptive wireless intrusion protection system (wIPS)Yes*802.11 a/b/g/n/ac (Wave 2)Yes*Yes*YesYes
Office ExtendYesYesYes*Yes*Yes*Yes*
Flex ConnectYes-YesYesYesYes
PowerAC/DC, 802.3at PoE+, Enhanced PoE
802.3af (full radio functionality, disabled PoE out)
AC/DC, 802.3at PoE+, Enhanced PoE
802.3af (full radio functionality, disabled PoE out)
AC/DC, 802.3at PoE+, Enhanced
PoE 802.3af (full radio functionality, disabled USB)
AC/DC, 802.3at PoE+, Enhanced PoE
802.3af (reduced capabilities USB and AUX port disabled, 1852e: 2.4GHz reduced to 3x4)
802.3at PoE+AC/DC, 802.3at PoE+, Unversal PoE
Temperature range0 to 40° C0 to 40° C0 to 40° C1850i: 0 to 40° C
1850e: -20 to 50° C
2802i: 0 to 40° C
2802e: -20 to 50° C
3802i: 0 to 40° C
3802e: -20 to 50° C
3802p: -20 to 50° C
AntennasInternal onlyInternal onlyInternal only1850i: Internal
1850e: External
2802i: Internal
2802e: External
3802i: Internal
3802e: External
3802p: External
Limited lifetime warrantyYesYesYesYesYesYes
*Planned for future support

Reference from http://www.cisco.com/c/dam/en/us/products/collateral/wireless/aironet-1140-series/C45-614928-00_Channel_AAG_Cisco_Unified_Wireless_Network_Portfolio.pdf

More Related…
Cisco Wireless Portfolio Overview & Comparison
Cisco Aironet 1810 Series OfficeExtend Access Points Overview
NEW Cisco Aironet 1850 Series Access Points Focus on Wave 2 Wifi
New Cisco Aironet 1830 Series APs-Gigabit Wi-Fi Has Fully Arrived
Cisco Aironet 3800, the Newest Best-in-Class Access Point
Cisco Aironet 2800, the New Indoor 802.11ac Wave 2 APs
Cisco Aironet 2800 and 3800 APs, Keep Your Connected World Spinning

Recommendations: Campus LAN and Wireless LAN Design

$
0
0
In this article, we will introduce three designs of Campus LAN and Wireless LAN: the high-density large campus, medium campus and Small campus.

The high-density large campus design has multiple distribution layers connected to a core layer and dense demands in the access layer for wired ports and WLAN devices. The preferred design has capacity for supporting over 15,000 wired and wireless users and devices, is highly available for critical business continuity, and has the capabilities to support advanced features such NetFlow and network virtualization and segmentation. You may select this design for cases where densities may not be as high as supported; however, the requirements dictate needs for critical business continuity or advanced capabilities.

If there are three or more interconnected distributions or requirements for connectivity at a common location, you use a Layer 3 LAN core in order to simplify the connectivity and management. You use one of the two core options in order to meet the core needs in the high-density large campus design.

The flagship platforms for these options:
• Catalyst 6800 Series with Supervisor 6T—Family members in the Catalyst Series accommodate a variety of core densities, covering the features commonly used in a campus core. You can merge the devices into a VSS mode, with options for redundant supervisors in each member switch offering a highly available configuration, managed as a single device. This is a preferred option for easy configuration and management, using the most widely deployed core campus platform.
• Cisco Nexus 7700 Series—Family members in the Cisco Nexus Series have a variety of density options and can be segmented into virtual device contexts, allowing the same devices to be used for a campus core and a data center core. When there are requirements for core switches to be independently managed with the ability to have virtual PortChannels between the switches, or a need for high-density 100 Gigabit Ethernet, these switches are a preferred option.

In the high-density large campus, you make choices for the wired distribution and access based on the most highly available platforms for the role, the highest density and widest selection of interface options, redundant power and modular control plane, with the most advanced software feature capabilities.

In the high density large campus design, centralized wireless is the preferred option, using APs with 802.11ac Wave 2 and CleanAir capabilities.
High-density large campus suggested deployment platforms


MEDIUM-DENSITY CAMPUS DESIGN
The medium-density campus design is a single distribution layer, which can be standalone or used as a collapsed core connected to another distribution, or other services, or perhaps connected to WAN router at a remote site that has grown large enough to need an aggregation layer. The demands in the access layer for wired ports and WLAN devices typically number in the hundreds versus the thousands for a large design, with requirements for less than a few groups of 50 or fewer APs. The preferred design strives for typical business continuity needs not requiring every redundant component offered and standard network capabilities.

You make choices for the wired distribution and access with a bias towards size and flexibility in order to accommodate the space and power requirements of medium sized installations in a way that can elastically expand as an organization grows. Where densities and advanced software feature capabilities are not as strong of a requirement, options with a more economical and common sparing preference are shown.

In the medium-density campus design, converged access and centralized wireless using FlexConnect are the preferred options. These are equivalent to the small-site campus design with the addition of a distribution layer.
Medium campus suggested deployment platforms


SMALL-SITE CAMPUS DESIGN
The small-site campus design is a single access switch or single access switch stack. The demands in the access layer for wired ports and WLAN devices typically number in the dozens (versus the hundreds in the medium design), with requirements for less than 25 APs. The preferred design strives to minimize cost with minimal numbers of components and features offered, though advanced and mission critical options are available choices for networks that require these capabilities.

In the small-site campus design, you make choices for the wired access with a bias towards size and flexibility in order to accommodate the space and power requirements of small sites. Densities and advanced software feature capabilities are not as strong of a requirement, so options with the most economical preference are shown. In the small-site campus design, converged access and centralized wireless using FlexConnect are the preferred options.
Small campus suggested deployment platforms



The Full Guide Here: http://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Aug2016/Campus_LAN_Wireless_LAN_Design_Aug2016.pdf

More Related…
Cisco ONE for WAN-Benefits
Cisco Wireless Portfolio Overview & Comparison
Cisco Switches-Comparison and Solutions
Cisco Catalyst Multigigabit Technology & Multigigabit Technology Products
Viewing all 107 articles
Browse latest View live