幻灯片 1 - 北京新脉远望科技有限公司

advertisement
CISCO产品介绍
北京新脉远望科技有限公司 版权所有
Beijing Cyberplus Technology Co., Ltd.
Agenda
• CISCO hardware products
– Router
– Catalyst switch
– WLAN
– Security
• CISCO IOS software
Campus network Architectures
Router
Midrang routers
ISR
•
•
•
•
•
•
•
Redundant Fixed chassis or modular
internal or external power supplies
On-board and Advanced Integration Module
(AIM)-VPN
Power over Ethernet support
Integrated firewall/Intrusion Prevention System
(IPS)
Integrated IP communications
Support for many interface and module types
WIC/VIC/VWIC/HWIC
WIC:
WIC-1T, WIC-2T, WIC-1ADSL
VIC:
VIC2-2FXO, VIC2-2FXS, VIC2-4FXO
VWIC:
VWIC2-2MFT-T1/E1, VWIC-2MFT-G703
HWIC:
HWIC-1FE, HWIC-2FE, HWIC-1GE-SFP, HWIC-4T,
HWIC-1ADSL, HWIC-1CE1T1-PRI, HWIC-2CE1T1-PRI,
HWIC-4T1/E1
AIM/NM
Network Modules
NM-16ESW, NM-4T, NM-1T3/E3, NM-1A-T3/E3, NM1FE2W-V2, NME-IPS-K9, NME-WAE-522-K9, NME-NAM120S, NME-AIR-WLC6-K9, NME-AIR-WLC8-K9, NMEAIR-WLC12-K9, NME-AIR-WLC25-K9
Advanced Integration Modules
AIM-ATM, AIM-IPS-K9, AIM-VPN/SSL-3, AIM-CUE, AIM2CUE-K9, AIM-TPO-1, AIM-TPO-2
ISR 3800 user side
Console/AUX slot
HWIC slot
On board Gigabit
Ethernet
NM slot
ASR 1000
 Carrier Class Route chassis Design with Redundant FP, RP,
and Cisco IOS® Capabilities and Designed for 40-Gbps and
Beyond Forwarding
 Separate Hardware Modules for RP and FP, Providing
Additional Level of Resilience Against Hardware and Software
Failures.
Allows Deployment in TimingSensitive Environments—IPRAN
 Multi-Processor Multi-Threaded
QFP Chip Processing of Up to 160
Packets in Parallel
Cisco ASR 1002
Cisco ASR 1004
Cisco ASR 1006
Chassis comparison
Model
Shared port
adapters
Cisco ASR 1000
Series Embedded
Services Processor
(ESP)
Route processor
Number of SIPs
supported
Redundancy
Built-in Gigabit
Ethernet ports
Cisco ASR
1002
3 SPA slots
Cisco ASR 1004
Cisco ASR 1006
8 SPA slots
12 SPA slots
1 ESP slot
1 ESP slot
2 ESP slots
Integrated in
chassis
Integrated in
chassis
Yes, software
Yes, 4 Gigabit
Ethernet (SFP)
ports
1 route-processor 2 route-processor
slot
slots
2
3
Yes, software
0
Yes, hardware
0
Cisco 7600
•
•
•
•
•
High performance, with up to 720 Gbps in a single chassis, or 40 Gbps
capacity per slot
Supports the full Catalyst® 6000 Series of high-density/high-speed Ethernet
module
Supports FlexWAN module for evolution from the Cisco 7500 to the Cisco
7600
Supports Broad range of WAN interfaces
Supervisor engine support:
– Cisco Route Switch Processor 720
– Cisco Catalyst 6500 Supervisor Engine 32
– Cisco Catalyst 6500 Supervisor Engine 720
SIP 200/400/600
SIP
Product Number
Description
Cisco 7600 SIP200
Cisco 7600 SIP400
Cisco 7600 SIP600
7600-SIP-200
622-Mbps SPA
interface processor
4
2.5-Gbps SPA
interface processor
1 x 10-Gbps SPA 1
Interface
Processor
7600-SIP-400
7600-SIP-600
Maximum
Number of SPAs
4
GSR 12000
Device components:
Chassis
Alarm card
CSC, SFC
power supply
fan tray
Line card , SIP, SPA
Product
Specification
Cisco XR 12000 and 12000
Series 16-Slot Chassis
Cisco XR 12000 and 12000
Series 10-Slot Chassis
Slot capacity
Aggregate
switching
capacity
16 slots
Cisco 12016: 80 Gbps
10 slots
Cisco 12010: 50 Gbps
Cisco 12416: 320 Gbps
Cisco 12410: 200 Gbps
Cisco 12816: 1280 Gbps
Cisco12810: 800 Gbps
Cisco 12016: 2.5 Gbps/slot
Full-duplex
throughput per Cisco 12416: 10 Gbps/slot
slot
Cisco 12816: 40 Gbps/slot
Cisco 12010: 2.5 Gbps/slot
Cisco 12410: 10 Gbps/slot
Cisco 12810: 40 Gbps/slot
Cisco XR 12000
and 12000 Series 6Slot Chassis
6 slots
Cisco 12006: 30
Gbps
Cisco 12406: 120
Gbps
Cisco 12006: 2.5
Gbps/slot
Cisco 12406: 10
Gbps/slot
Cisco XR 12000 and
12000 Series 4-Slot
Chassis
4 slots
Cisco 12404: 80 Gbps
Cisco 12404: 10
Gbps/slot
Catalyst switch
Catalyst Switch 6500
 Modular chassis in a variety of form factors 3, 4, 6, 9,
and 13-slot versions
Enhanced (“E”) chassis offer higher system power
capacity
and better signal integrity
3, 4, 6, and 9-slot versions
Classic switching bus traces/connectors
Crossbar fabric traces/connectors
Redundant power supplies
Fan tray for system cooling
NEB-A and V-E chassis have vertical slot alignment, dual
fan trays, front-to-back air flow, air filtration system
Supervisor Engine 720
Name
WS-SUP720-3B
WS-SUP7203BXL
VS-S720-10G3C
VS-S720-10G3CXL
VSS
No
2 Gigabit
No
2 Gigabit
Yes
2 SFP based
gigabit
Yes
2 SFP based gigabit
1 10/100/100
2 10Gb
Uplinks
IPv4
Routing
IPv6
Routing
L2 Bridging
MPLS
MAC
Entries
Routes
Netflow
Entries
1 10/100/100
In hardware
In hardware
2 10Gb
In hardware
In hardware
Up to 400 Mpps**
In hardware
Up to 400 Mpps**
In hardware
Up to 450 Mpps**
In hardware
Up to 450 Mpps**
In hardware
Up to 200 Mpps**
In hardware
Up to 200 Mpps**
In hardware
Up to 225 Mpps**
In hardware
Up to 225 Mpps**
In hardware
Up to 400 Mpps**
Up to 1024 VRFs
with a total of up to
256,000 routes per
system.
64,000
Up to 400 Mpps**
Up to 1024 VRFs
with a total of up to
1,000,000 routes per
system.
64,000
Up to 450 Mpps**
Up to 1024 VRFs
with a total of up to
256,000 routes per
system.
96,000
Up to 450 Mpps**
Up to 1024 VRFs with
a total of up to
1,000,000 routes per
system.
96,000
256,000 (IPv4);
128,000 (IPv6)
128,000
1,000,000 (IPv4);
500,000 (IPv6)
256,000
256,000 (IPv4);
128,000 (IPv6)
128,000
1,000,000 (IPv4);
500,000 (IPv6)
256,000
Supervisor engine 32
Feature
Uplinks
Supervisor Engine 32
• Eight Gigabit Ethernet ports, SFP
based + one 10/100/1000 RJ-45 port
OR
• Two 10 Gigabit Ethernet ports,
XENPAK based + one 10/100/1000
RJ-45 port
Backplane
Performance
Deep Packet Inspection
Performance (NBAR, FPM)
Cisco Express Forwarding
32 Gbps shared bus
Up to 15 Mpps IPv4 services
N/A
Distributed Cisco Express
Forwarding
Hardware-Based Forwarding
Engine
No
Hardware-based and PISA
assisted for features like NBAR
and FPM
No
PFC3B onboard
PFC3B onboard
MSFC Daughter Card
Version
MSFC2A
PISA(MSFC2A integrated)
Hardware-based
Supervisor Engine 32 PISA
• Eight Gigabit Ethernet ports,
SFP based + one 10/100/1000
RJ-45 port
OR
• Two 10 Gigabit Ethernet ports,
XENPAK based + one
10/100/1000 RJ-45 port
32 Gbps shared bus
Up to 15 Mpps IPv4 services
2Gbps
PFC & DFC
Provides the key components enabling high performance
hardware packet processing
Supervisor 32 (all variants) supports PFC3B
Supervisor 720 supports:
PFC3A
PFC3B
PFC3BXL
Supervisor 720-10G supports:
PFC3C
PFC3CXL
The DFC utilizes the same ASICs as those found on the
PFC so it supports local Layer 2 and Layer 3 switching
Power Supply
Power Supply (Part Number)
950WDC (PWR 950-DC)
1300WDC (WS CDC-1300W)
1400WAC (PWR 1400W-AC)
2500WDC (WS CDC-2500W)
3000WAC (WS CAC-3000W)
4000WAC (WS CAC-4000W)
4000WDC (PWR 4000DC)
6000WAC (WS CAC-6000W)
8700WAC (WS CAC-8700W-E)
Cisco
Catalyst
6503
X
Cisco
Catalyst
6506
Cisco
Catalyst
6509
Cisco
Catalyst
6509-NEB
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
Cisco
Catalyst
6509-NEB-A
Cisco
Catalyst
6513
X
X
X
X
X
X
X
X
X
X
X
X
X
Fan tray
10-gigabit Ethernet module
Feature
WS-X670410GE
Ports
4
Optics
XENPAK
Oversubscription 1:1
WS-X6708-10G-3C
WS-X6708-10G-3CXL
8
X2
2:1
WS-X6716-10G-3C
WS-X6716-10G-3CXL
16
X2
4:1
Gigabit Ethernet
Primary Applications
High Performance
Distribution, Core Layer
and Data Center
High Performance
Distribution, Core Layer
and Data Center
High Performance
Distribution, Core Layer
and Data Center
Data Center and Server
Farm
Data Center and Server
Farm
Base Server Farm
Base Server Farm
Wiring closet
Wiring closet
Wiring closet
Product Number
Interface
Module Class
Ports/Optics Interface
Type
WS-X6748-SFP
CEF720
48, SFP
WS-X6748-GE-TX
CEF720
48, RJ-45
WS-X6724-SFP
CEF720
24, SFP
WS-X6816-GBIC
dCEF256
16, GBIC
WS-X6516A-GBIC
CEF256
16, GBIC
WS-X6516-GBIC
WS-X6416-GBIC
WS-X6148A-GE-TX
WS-X6148A-GE-45AF
WS-X6548-GE-45AF
CEF256
Classic
Classic
Classic
CEF 256
16, GBIC
16, GBIC
48, RJ-45
48, PoE RJ-45
48, PoE RJ-45
GBIC
Device
WS-G5484
WS-G5486
WS-G5487
Type
1000BASESX
1000BASELX/LH
1000BASEZX
Wavelength
(nm)
Fiber
Type
Core Size
(Micron)
62.5
50.0
Cable
Distance
220 m
550 m
850
MMF
1310
SMF
9/10
10km
1550
SMF
9/10
70 to 100 km
SFP
SFP
Wavelength
Maximum Distance
GLC-SX-MM
850nm
275m:62.5μm multimode fiber
(MMF)
550m:50μm MMF
GLC-LH-SM
1310nm
550m:50/62.5μm MMF
10KM:9/10 μm single-mode fiber
(SMF)
GLC-ZX-SM
1550nm
70Km:9/10μm SMF
100Km:8μm dispersion shifted
fiber
10GE module
10 GE
Physical
Interface
10GBASE-SR
10GBASE-LX4
10GBASE-LR
10GBASE-ER
10GBASE-ZR
X2 Product ID
XENPAK Product
ID
Operating Range Over:
62.5 micron
Multi-Mode
Fiber (FDDIgrade)
50 micron
Multi-Mode
Fiber (MMF)
10 micron
Single
Mode Fiber
(SMF)
X2-10GB-SR
XENPAK-10GB-SR
26m-33m
66m-300m
-
X2-10GB-LX4
XENPAK-10GB-LX4
300m
240m-300m
-
X2-10GB-LR
XENPAK-10GB-LR+
-
-
10 km
X2-10GB-ER
XENPAK-10GB-ER+
-
-
40 km
-
XENPAK-10GB-ZR
-
-
80 km
Service module
WiSM:
WS-SVC-WISM-1-K9
IDS:
WS-SVC-IDS2-BUN-K9,
Application Control Engine :
ACE20-MOD-K9,
Network Analysis Module
WS-SVC-NAM-1-250S
WS-SVC-NAM-2-250S
Anomaly Detection Module:
WS-SVC-ADM-1-K9,
Anomaly Guard Module :
WS-SVC-AGM-1-K9,
Firewall:
WS-SVC-FWM-1-K9,
Content Switching Module:
WS-X6066-SLB-S-K9
Catalyst 4500-E and 4500 Series
24 Gbps per slot
Chassis support 2.2(31)SGA6
onwards
E-Series and Classic supervisors
E-Series and Classic line cards
6 Gbps per slot
E-Series and Classic supervisors
Classic line cards
Supervisor Engine
Detailed Cisco Catalyst 4500 Supervisor Matrix
Chassis Support
Line Card
support
320 Gbps /
250 mpps
All
E-Series
and
Classic
4 GE or 2 10
GbE (TwinGig)
Supervisor V-10GE Full Layer 2/3/4
136 Gbps/
102mpps
All
Classic
4GE and
10GbE
Supervisor V
Full Layer 2/3/4
96 Gbps/
72mpps
All
Classic
2GE
Supervisor IV
Full Layer 2/3/4
64 Gbps/
48mpps
4507R-E, 4507-R, 4506-E, Classic
4506, 4503-E, 4503
2GE
Supervisor 6L-E
Basic Layer
2/3/4
280 Gbps/
225 mpps
4507R-E, 4507-R, 4506-E, E-Series
4506, 4503-E, 4503
and
Classic
4GE and
10GE
(TwinGig)
2
Supervisor II-Plus- Basic Layer
10GE
2/3/4
108 Gbps/
81mpps
4507R-E, 4507-R, 4506-E, Classic
4506, 4503-E, 4503
4GE and
10GbE
2
Supervisor II-Plus
64 Gbps/
48mpps
4507R-E, 4507-R, 4506-E, Classic
4506, 4503-E, 4503
2GE
Supervisor
Engines
Layer
Services
2/3/4 Bandwidth/
Throughput
Supervisor 6-E
Full Layer 2/3/4
Basic Layer
2/3/4
2
Line Card
Line-Card
Type
Cisco Catalyst
4500 E-Series
Line Cards
Cisco Catalyst
4500 Series
Classic Line
Cards
Per Slot
Bandwidth
24 Gbps
6 Gbps
Chassis Support
Supervisor Support
Cisco Catalyst 4503-E,
4506-E, 4507R-E, and
4510R-E
Cisco Catalyst 4503,
4506, 4507R, and
4510R1 Switches
Supervisor Engine 6-E,
Cisco Catalyst 4503-E,
4506-E, 4507R-E, and
4510R-E Switches
Supervisor Engine 6L-E,
Supervisor Engine 6-E,
Supervisor Engine 6L-E,
Supervisor Engine V-10GE,
Supervisor Engine V,
Supervisor Engine IV,
Supervisor II-Plus-10GE,
Supervisor Engine II-Plus,
Supervisor Engine II-Plus-TS2
Catalyst switch2960/3560/3750
WLAN
• WLC
Cisco unified wireless LAN controllers aggregrate WLAN client traffic and control
the wireless network
• APs
Lightweight access points are used in all unified wireless architectures and
provides client wireless access, and tunneling to the WLC
• WCS
Cisco wireless control system provides centralized management, RF planning and
visualization tools, and location services
AP
• Aironet 1130AG Series
Dual-band 802.11a/b/g access points
support indoor Wireless Mesh
• Aironet 1140 Series
802.11n access point
•Aironet 1240AG Series
802.11a/b/g dual-band access point
support Wireless Mesh
•Aironet 1250 Series
802.11n access point
• Aironet 1520 Series
Multiple-radio support (802.11a, 802.11b/g)
Multiple uplink options
• Aironet 1300 Series
Single-band 802.11b/g outdoor access points and bridges
•Aironet 1400 Series
High-speed, high-performance outdoor bridge
Available in an Standalone version only
WLC
WCS
•
•
WCS is the management platform for Cisco’s
controller-based solution
WCS is used for:
Network planning and ongoing monitoring
Real-time visibility and control of the air space
Unified policies that are centrally managed and enforced
Management of Cisco controllers, lightweight APs, Cisco IOS®
Access points
Autonomous to LWAPP/CAPWAP migration tool
Provisioning and configuration of Context Aware Services and
applications
•
WCS is optional, but highly recommended when:
Multiple controllers are deployed, supporting numerous APs
Advanced WLAN services are deployed (wIDS, location, voice, …)
Google Map integration, aIOS, Spectrum analysis Client
Troubleshooting
Security
Firewall—ASA & FWSM
IDS/IPS
ACS
Firewall
IDS/IPS
ACS
 Key Scenarios
Device Administration
Remote Access
Wireless and 802.1x
 Compliance Features
Authentication policy (e.g. require
complex password)
Authorization enforcement (e.g.
network access, device command
authorization)
Accounting
Additional resources
• Product datasheet
http://www.cisco.com/web/CN/products/index.html
• EoS/EoL announcement
http://www.cisco.com/web/CN/products/products_netsol/eos/index.html
Cisco IOS Release Naming
Example:
Cisco IOS Packaging
Base—entry level image (IP Base,
Enterprise Base)
Services—addition of IP Telephony
Service, MPLS, Voice over IP
(VoIP), Voice over Frame Relay
(VoFR), and ATM (SP Services,
Enterprise Services)
Advanced—addition of VPN, Cisco
IOS Firewall, 3DES encryption,
SSH, Cisco IOS IPsec and Intrusion
Detection Systems (IDS) (Advanced
Security, Advanced IP Services)
Enterprise—addition of multiprotocols, including IBM, IPX,
AppleTalk (Enterprise Base,
Enterprise Services)
Additional resources
Bug Toolkit
Search for software bugs
http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs
Software Advisor
Choose appropriate software for your network device
http://tools.cisco.com/Support/Fusion/FusionHome.do
Rival products
华为
Juniper
迈普
阿尔卡特-朗讯
H3C
中兴
Router comparison
Cisco
ISR 800
Huawei
AR 18-12/18
AR 18-20
ISR 1800
ISR 2800
ISR 3800
Cisco 7200
Cisco 7600
AR-28-1X
AR-28-40/80
AR46
NE 20
NE 80E
Switch comparison
Cisco
Catalyst 2918
Catalyst 3560
Catalyst 3560E
Catalyst 3750 Catalyst3750E
Catalyst 4500
Catalyst 6500
Huawei
Quidway S2300
Quidway S3300
Quidway S5600
H3C Quidway S5600
Quidway S6500
Quidway S8500
Download