CISCO产品介绍 北京新脉远望科技有限公司 版权所有 Beijing Cyberplus Technology Co., Ltd. Agenda • CISCO hardware products – Router – Catalyst switch – WLAN – Security • CISCO IOS software Campus network Architectures Router Midrang routers ISR • • • • • • • Redundant Fixed chassis or modular internal or external power supplies On-board and Advanced Integration Module (AIM)-VPN Power over Ethernet support Integrated firewall/Intrusion Prevention System (IPS) Integrated IP communications Support for many interface and module types WIC/VIC/VWIC/HWIC WIC: WIC-1T, WIC-2T, WIC-1ADSL VIC: VIC2-2FXO, VIC2-2FXS, VIC2-4FXO VWIC: VWIC2-2MFT-T1/E1, VWIC-2MFT-G703 HWIC: HWIC-1FE, HWIC-2FE, HWIC-1GE-SFP, HWIC-4T, HWIC-1ADSL, HWIC-1CE1T1-PRI, HWIC-2CE1T1-PRI, HWIC-4T1/E1 AIM/NM Network Modules NM-16ESW, NM-4T, NM-1T3/E3, NM-1A-T3/E3, NM1FE2W-V2, NME-IPS-K9, NME-WAE-522-K9, NME-NAM120S, NME-AIR-WLC6-K9, NME-AIR-WLC8-K9, NMEAIR-WLC12-K9, NME-AIR-WLC25-K9 Advanced Integration Modules AIM-ATM, AIM-IPS-K9, AIM-VPN/SSL-3, AIM-CUE, AIM2CUE-K9, AIM-TPO-1, AIM-TPO-2 ISR 3800 user side Console/AUX slot HWIC slot On board Gigabit Ethernet NM slot ASR 1000 Carrier Class Route chassis Design with Redundant FP, RP, and Cisco IOS® Capabilities and Designed for 40-Gbps and Beyond Forwarding Separate Hardware Modules for RP and FP, Providing Additional Level of Resilience Against Hardware and Software Failures. Allows Deployment in TimingSensitive Environments—IPRAN Multi-Processor Multi-Threaded QFP Chip Processing of Up to 160 Packets in Parallel Cisco ASR 1002 Cisco ASR 1004 Cisco ASR 1006 Chassis comparison Model Shared port adapters Cisco ASR 1000 Series Embedded Services Processor (ESP) Route processor Number of SIPs supported Redundancy Built-in Gigabit Ethernet ports Cisco ASR 1002 3 SPA slots Cisco ASR 1004 Cisco ASR 1006 8 SPA slots 12 SPA slots 1 ESP slot 1 ESP slot 2 ESP slots Integrated in chassis Integrated in chassis Yes, software Yes, 4 Gigabit Ethernet (SFP) ports 1 route-processor 2 route-processor slot slots 2 3 Yes, software 0 Yes, hardware 0 Cisco 7600 • • • • • High performance, with up to 720 Gbps in a single chassis, or 40 Gbps capacity per slot Supports the full Catalyst® 6000 Series of high-density/high-speed Ethernet module Supports FlexWAN module for evolution from the Cisco 7500 to the Cisco 7600 Supports Broad range of WAN interfaces Supervisor engine support: – Cisco Route Switch Processor 720 – Cisco Catalyst 6500 Supervisor Engine 32 – Cisco Catalyst 6500 Supervisor Engine 720 SIP 200/400/600 SIP Product Number Description Cisco 7600 SIP200 Cisco 7600 SIP400 Cisco 7600 SIP600 7600-SIP-200 622-Mbps SPA interface processor 4 2.5-Gbps SPA interface processor 1 x 10-Gbps SPA 1 Interface Processor 7600-SIP-400 7600-SIP-600 Maximum Number of SPAs 4 GSR 12000 Device components: Chassis Alarm card CSC, SFC power supply fan tray Line card , SIP, SPA Product Specification Cisco XR 12000 and 12000 Series 16-Slot Chassis Cisco XR 12000 and 12000 Series 10-Slot Chassis Slot capacity Aggregate switching capacity 16 slots Cisco 12016: 80 Gbps 10 slots Cisco 12010: 50 Gbps Cisco 12416: 320 Gbps Cisco 12410: 200 Gbps Cisco 12816: 1280 Gbps Cisco12810: 800 Gbps Cisco 12016: 2.5 Gbps/slot Full-duplex throughput per Cisco 12416: 10 Gbps/slot slot Cisco 12816: 40 Gbps/slot Cisco 12010: 2.5 Gbps/slot Cisco 12410: 10 Gbps/slot Cisco 12810: 40 Gbps/slot Cisco XR 12000 and 12000 Series 6Slot Chassis 6 slots Cisco 12006: 30 Gbps Cisco 12406: 120 Gbps Cisco 12006: 2.5 Gbps/slot Cisco 12406: 10 Gbps/slot Cisco XR 12000 and 12000 Series 4-Slot Chassis 4 slots Cisco 12404: 80 Gbps Cisco 12404: 10 Gbps/slot Catalyst switch Catalyst Switch 6500 Modular chassis in a variety of form factors 3, 4, 6, 9, and 13-slot versions Enhanced (“E”) chassis offer higher system power capacity and better signal integrity 3, 4, 6, and 9-slot versions Classic switching bus traces/connectors Crossbar fabric traces/connectors Redundant power supplies Fan tray for system cooling NEB-A and V-E chassis have vertical slot alignment, dual fan trays, front-to-back air flow, air filtration system Supervisor Engine 720 Name WS-SUP720-3B WS-SUP7203BXL VS-S720-10G3C VS-S720-10G3CXL VSS No 2 Gigabit No 2 Gigabit Yes 2 SFP based gigabit Yes 2 SFP based gigabit 1 10/100/100 2 10Gb Uplinks IPv4 Routing IPv6 Routing L2 Bridging MPLS MAC Entries Routes Netflow Entries 1 10/100/100 In hardware In hardware 2 10Gb In hardware In hardware Up to 400 Mpps** In hardware Up to 400 Mpps** In hardware Up to 450 Mpps** In hardware Up to 450 Mpps** In hardware Up to 200 Mpps** In hardware Up to 200 Mpps** In hardware Up to 225 Mpps** In hardware Up to 225 Mpps** In hardware Up to 400 Mpps** Up to 1024 VRFs with a total of up to 256,000 routes per system. 64,000 Up to 400 Mpps** Up to 1024 VRFs with a total of up to 1,000,000 routes per system. 64,000 Up to 450 Mpps** Up to 1024 VRFs with a total of up to 256,000 routes per system. 96,000 Up to 450 Mpps** Up to 1024 VRFs with a total of up to 1,000,000 routes per system. 96,000 256,000 (IPv4); 128,000 (IPv6) 128,000 1,000,000 (IPv4); 500,000 (IPv6) 256,000 256,000 (IPv4); 128,000 (IPv6) 128,000 1,000,000 (IPv4); 500,000 (IPv6) 256,000 Supervisor engine 32 Feature Uplinks Supervisor Engine 32 • Eight Gigabit Ethernet ports, SFP based + one 10/100/1000 RJ-45 port OR • Two 10 Gigabit Ethernet ports, XENPAK based + one 10/100/1000 RJ-45 port Backplane Performance Deep Packet Inspection Performance (NBAR, FPM) Cisco Express Forwarding 32 Gbps shared bus Up to 15 Mpps IPv4 services N/A Distributed Cisco Express Forwarding Hardware-Based Forwarding Engine No Hardware-based and PISA assisted for features like NBAR and FPM No PFC3B onboard PFC3B onboard MSFC Daughter Card Version MSFC2A PISA(MSFC2A integrated) Hardware-based Supervisor Engine 32 PISA • Eight Gigabit Ethernet ports, SFP based + one 10/100/1000 RJ-45 port OR • Two 10 Gigabit Ethernet ports, XENPAK based + one 10/100/1000 RJ-45 port 32 Gbps shared bus Up to 15 Mpps IPv4 services 2Gbps PFC & DFC Provides the key components enabling high performance hardware packet processing Supervisor 32 (all variants) supports PFC3B Supervisor 720 supports: PFC3A PFC3B PFC3BXL Supervisor 720-10G supports: PFC3C PFC3CXL The DFC utilizes the same ASICs as those found on the PFC so it supports local Layer 2 and Layer 3 switching Power Supply Power Supply (Part Number) 950WDC (PWR 950-DC) 1300WDC (WS CDC-1300W) 1400WAC (PWR 1400W-AC) 2500WDC (WS CDC-2500W) 3000WAC (WS CAC-3000W) 4000WAC (WS CAC-4000W) 4000WDC (PWR 4000DC) 6000WAC (WS CAC-6000W) 8700WAC (WS CAC-8700W-E) Cisco Catalyst 6503 X Cisco Catalyst 6506 Cisco Catalyst 6509 Cisco Catalyst 6509-NEB X X X X X X X X X X X X X X X X X X X X Cisco Catalyst 6509-NEB-A Cisco Catalyst 6513 X X X X X X X X X X X X X Fan tray 10-gigabit Ethernet module Feature WS-X670410GE Ports 4 Optics XENPAK Oversubscription 1:1 WS-X6708-10G-3C WS-X6708-10G-3CXL 8 X2 2:1 WS-X6716-10G-3C WS-X6716-10G-3CXL 16 X2 4:1 Gigabit Ethernet Primary Applications High Performance Distribution, Core Layer and Data Center High Performance Distribution, Core Layer and Data Center High Performance Distribution, Core Layer and Data Center Data Center and Server Farm Data Center and Server Farm Base Server Farm Base Server Farm Wiring closet Wiring closet Wiring closet Product Number Interface Module Class Ports/Optics Interface Type WS-X6748-SFP CEF720 48, SFP WS-X6748-GE-TX CEF720 48, RJ-45 WS-X6724-SFP CEF720 24, SFP WS-X6816-GBIC dCEF256 16, GBIC WS-X6516A-GBIC CEF256 16, GBIC WS-X6516-GBIC WS-X6416-GBIC WS-X6148A-GE-TX WS-X6148A-GE-45AF WS-X6548-GE-45AF CEF256 Classic Classic Classic CEF 256 16, GBIC 16, GBIC 48, RJ-45 48, PoE RJ-45 48, PoE RJ-45 GBIC Device WS-G5484 WS-G5486 WS-G5487 Type 1000BASESX 1000BASELX/LH 1000BASEZX Wavelength (nm) Fiber Type Core Size (Micron) 62.5 50.0 Cable Distance 220 m 550 m 850 MMF 1310 SMF 9/10 10km 1550 SMF 9/10 70 to 100 km SFP SFP Wavelength Maximum Distance GLC-SX-MM 850nm 275m:62.5μm multimode fiber (MMF) 550m:50μm MMF GLC-LH-SM 1310nm 550m:50/62.5μm MMF 10KM:9/10 μm single-mode fiber (SMF) GLC-ZX-SM 1550nm 70Km:9/10μm SMF 100Km:8μm dispersion shifted fiber 10GE module 10 GE Physical Interface 10GBASE-SR 10GBASE-LX4 10GBASE-LR 10GBASE-ER 10GBASE-ZR X2 Product ID XENPAK Product ID Operating Range Over: 62.5 micron Multi-Mode Fiber (FDDIgrade) 50 micron Multi-Mode Fiber (MMF) 10 micron Single Mode Fiber (SMF) X2-10GB-SR XENPAK-10GB-SR 26m-33m 66m-300m - X2-10GB-LX4 XENPAK-10GB-LX4 300m 240m-300m - X2-10GB-LR XENPAK-10GB-LR+ - - 10 km X2-10GB-ER XENPAK-10GB-ER+ - - 40 km - XENPAK-10GB-ZR - - 80 km Service module WiSM: WS-SVC-WISM-1-K9 IDS: WS-SVC-IDS2-BUN-K9, Application Control Engine : ACE20-MOD-K9, Network Analysis Module WS-SVC-NAM-1-250S WS-SVC-NAM-2-250S Anomaly Detection Module: WS-SVC-ADM-1-K9, Anomaly Guard Module : WS-SVC-AGM-1-K9, Firewall: WS-SVC-FWM-1-K9, Content Switching Module: WS-X6066-SLB-S-K9 Catalyst 4500-E and 4500 Series 24 Gbps per slot Chassis support 2.2(31)SGA6 onwards E-Series and Classic supervisors E-Series and Classic line cards 6 Gbps per slot E-Series and Classic supervisors Classic line cards Supervisor Engine Detailed Cisco Catalyst 4500 Supervisor Matrix Chassis Support Line Card support 320 Gbps / 250 mpps All E-Series and Classic 4 GE or 2 10 GbE (TwinGig) Supervisor V-10GE Full Layer 2/3/4 136 Gbps/ 102mpps All Classic 4GE and 10GbE Supervisor V Full Layer 2/3/4 96 Gbps/ 72mpps All Classic 2GE Supervisor IV Full Layer 2/3/4 64 Gbps/ 48mpps 4507R-E, 4507-R, 4506-E, Classic 4506, 4503-E, 4503 2GE Supervisor 6L-E Basic Layer 2/3/4 280 Gbps/ 225 mpps 4507R-E, 4507-R, 4506-E, E-Series 4506, 4503-E, 4503 and Classic 4GE and 10GE (TwinGig) 2 Supervisor II-Plus- Basic Layer 10GE 2/3/4 108 Gbps/ 81mpps 4507R-E, 4507-R, 4506-E, Classic 4506, 4503-E, 4503 4GE and 10GbE 2 Supervisor II-Plus 64 Gbps/ 48mpps 4507R-E, 4507-R, 4506-E, Classic 4506, 4503-E, 4503 2GE Supervisor Engines Layer Services 2/3/4 Bandwidth/ Throughput Supervisor 6-E Full Layer 2/3/4 Basic Layer 2/3/4 2 Line Card Line-Card Type Cisco Catalyst 4500 E-Series Line Cards Cisco Catalyst 4500 Series Classic Line Cards Per Slot Bandwidth 24 Gbps 6 Gbps Chassis Support Supervisor Support Cisco Catalyst 4503-E, 4506-E, 4507R-E, and 4510R-E Cisco Catalyst 4503, 4506, 4507R, and 4510R1 Switches Supervisor Engine 6-E, Cisco Catalyst 4503-E, 4506-E, 4507R-E, and 4510R-E Switches Supervisor Engine 6L-E, Supervisor Engine 6-E, Supervisor Engine 6L-E, Supervisor Engine V-10GE, Supervisor Engine V, Supervisor Engine IV, Supervisor II-Plus-10GE, Supervisor Engine II-Plus, Supervisor Engine II-Plus-TS2 Catalyst switch2960/3560/3750 WLAN • WLC Cisco unified wireless LAN controllers aggregrate WLAN client traffic and control the wireless network • APs Lightweight access points are used in all unified wireless architectures and provides client wireless access, and tunneling to the WLC • WCS Cisco wireless control system provides centralized management, RF planning and visualization tools, and location services AP • Aironet 1130AG Series Dual-band 802.11a/b/g access points support indoor Wireless Mesh • Aironet 1140 Series 802.11n access point •Aironet 1240AG Series 802.11a/b/g dual-band access point support Wireless Mesh •Aironet 1250 Series 802.11n access point • Aironet 1520 Series Multiple-radio support (802.11a, 802.11b/g) Multiple uplink options • Aironet 1300 Series Single-band 802.11b/g outdoor access points and bridges •Aironet 1400 Series High-speed, high-performance outdoor bridge Available in an Standalone version only WLC WCS • • WCS is the management platform for Cisco’s controller-based solution WCS is used for: Network planning and ongoing monitoring Real-time visibility and control of the air space Unified policies that are centrally managed and enforced Management of Cisco controllers, lightweight APs, Cisco IOS® Access points Autonomous to LWAPP/CAPWAP migration tool Provisioning and configuration of Context Aware Services and applications • WCS is optional, but highly recommended when: Multiple controllers are deployed, supporting numerous APs Advanced WLAN services are deployed (wIDS, location, voice, …) Google Map integration, aIOS, Spectrum analysis Client Troubleshooting Security Firewall—ASA & FWSM IDS/IPS ACS Firewall IDS/IPS ACS Key Scenarios Device Administration Remote Access Wireless and 802.1x Compliance Features Authentication policy (e.g. require complex password) Authorization enforcement (e.g. network access, device command authorization) Accounting Additional resources • Product datasheet http://www.cisco.com/web/CN/products/index.html • EoS/EoL announcement http://www.cisco.com/web/CN/products/products_netsol/eos/index.html Cisco IOS Release Naming Example: Cisco IOS Packaging Base—entry level image (IP Base, Enterprise Base) Services—addition of IP Telephony Service, MPLS, Voice over IP (VoIP), Voice over Frame Relay (VoFR), and ATM (SP Services, Enterprise Services) Advanced—addition of VPN, Cisco IOS Firewall, 3DES encryption, SSH, Cisco IOS IPsec and Intrusion Detection Systems (IDS) (Advanced Security, Advanced IP Services) Enterprise—addition of multiprotocols, including IBM, IPX, AppleTalk (Enterprise Base, Enterprise Services) Additional resources Bug Toolkit Search for software bugs http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs Software Advisor Choose appropriate software for your network device http://tools.cisco.com/Support/Fusion/FusionHome.do Rival products 华为 Juniper 迈普 阿尔卡特-朗讯 H3C 中兴 Router comparison Cisco ISR 800 Huawei AR 18-12/18 AR 18-20 ISR 1800 ISR 2800 ISR 3800 Cisco 7200 Cisco 7600 AR-28-1X AR-28-40/80 AR46 NE 20 NE 80E Switch comparison Cisco Catalyst 2918 Catalyst 3560 Catalyst 3560E Catalyst 3750 Catalyst3750E Catalyst 4500 Catalyst 6500 Huawei Quidway S2300 Quidway S3300 Quidway S5600 H3C Quidway S5600 Quidway S6500 Quidway S8500