Cisco Reference Guide January 2013
Cisco Reference Guide January 2013
Cisco Reference Guide January 2013
Whats New
The 2013 edition includes many new products; they are highlighted in the At-a-Glance section of each chapter. This edition also includes updates to products, services, and solutions across all technologies.
Introduction
Contents
Introduction.................................................................................................................................i
Cisco Architectures and Solutions.................................................................................................................................................................................viii Cisco Borderless Network Architecture and Solutions................................................................................................................................viii Cisco Collaboration Architecture and Solutions.................................................................................................................................................. ix Cisco Unified Data Center and Cloud Platform and Solutions................................................................................................................ ix Cisco Smart Business Architecture...................................................................................................................................................................................x Cisco IP Next-Generation Network Architecture for Service Providers............................................................................................x Cisco Small Business Solutions......................................................................................................................................................................................... xi Industry Solutions from Cisco.............................................................................................................................................................................................xii Product Warranty Information.............................................................................................................................................................................................xiii Partner and Customer Support.........................................................................................................................................................................................xvi Helpful Cisco Websites.......................................................................................................................................................................................................... xvii Cisco Capital Financing........................................................................................................................................................................................................xviii Cisco Certified Refurbished Equipment ...............................................................................................................................................................xviii
Chapter 2: Switching.............................................................................................................2-1
Switching At-a-Glance..............................................................................................................................................................................................................2-1 Cisco Catalyst 6500 Series Switches........................................................................................................................................................................2-5 Cisco Catalyst 4500E Series Switches.....................................................................................................................................................................2-8 Cisco Catalyst 4500-X Series Switches.................................................................................................................................................................2-12 Cisco Catalyst 4900M Series Switch.......................................................................................................................................................................2-14 Cisco Catalyst 4900 Series Switches......................................................................................................................................................................2-15 Cisco Catalyst 3750 v2 Series Switches...............................................................................................................................................................2-16 Cisco Catalyst 3750-X Series Switch.......................................................................................................................................................................2-18 Cisco Catalyst 3560 v2 Series Switches..............................................................................................................................................................2-21 Cisco Catalyst 3560-X Series Switches................................................................................................................................................................2-22 Cisco Catalyst 2960-S Series Switches...............................................................................................................................................................2-25 Cisco Catalyst 2960-SF Series Switches............................................................................................................................................................2-27 Cisco Catalyst 2960 Series Switches.....................................................................................................................................................................2-28 Cisco Catalyst 3560-C Series Compact Switches......................................................................................................................................2-32 Cisco Catalyst 2960-C Series Compact Switches......................................................................................................................................2-33 Cisco ESW 500 Series Switches................................................................................................................................................................................2-34 Cisco 300 Series Managed Switches....................................................................................................................................................................2-35 Cisco ME 3800X Series Carrier Ethernet Switch Router........................................................................................................................2-36 Cisco ME 3600X Series Ethernet Switches.......................................................................................................................................................2-38 Cisco ME 3400 Series Ethernet Access Switches......................................................................................................................................2-40 Cisco ME 3400E Series Ethernet Access Switches...................................................................................................................................2-42 Cisco Catalyst 3750 Metro Series Switches.....................................................................................................................................................2-44 Cisco Catalyst 4500E Series Ethernet Access Switches......................................................................................................................2-49 Cisco 2500 Series Connected Grid Switches................................................................................................................................................2-52 Cisco Switching Services.................................................................................................................................................................................................2-53
ii
Introduction
Chapter 4: Collaboration.......................................................................................................4-1
Collaboration At-a-Glance....................................................................................................................................................................................................4-1 Cisco Hosted Collaboration Solution......................................................................................................................................................................... 4-9 Cisco HCS for Unified Communications and Mobility..............................................................................................................................4-10 Cisco HCS for Contact Center.......................................................................................................................................................................................4-11 Cisco HCS for TelePresence...........................................................................................................................................................................................4-11 Cisco WebEx Meetings Server.....................................................................................................................................................................................4-11 Cisco Unified MeetingPlace Conferencing........................................................................................................................................................4-12 Cisco Unified Video Advantage....................................................................................................................................................................................4-13 Cisco WebEx Meetings........................................................................................................................................................................................................4-13 Cisco WebEx Meeting Center........................................................................................................................................................................................4-14 Cisco WebEx Training Center.........................................................................................................................................................................................4-16 Cisco WebEx Event Center...............................................................................................................................................................................................4-16 Cisco WebEx Support Center........................................................................................................................................................................................4-17 Cisco WebEx Cloud Connected Audio..................................................................................................................................................................4-18 Cisco WebEx Advanced Services.............................................................................................................................................................................4-18 Cisco Unified Contact Center Enterprise.............................................................................................................................................................4-19 Cisco Unified Contact Center Express..................................................................................................................................................................4-20 Cisco Unified Intelligence Center..............................................................................................................................................................................4-21 Cisco Unified Customer Voice Portal.....................................................................................................................................................................4-22 Cisco Customer Care Services...................................................................................................................................................................................4-22 Cisco SocialMiner Social Media Customer Care Solution...................................................................................................................4-22 Cisco Finesse Agent Desktop.......................................................................................................................................................................................4-23 Cisco MediaSense..................................................................................................................................................................................................................4-24 Cisco WebEx Social...............................................................................................................................................................................................................4-25 Cisco Unified Communications Manager...........................................................................................................................................................4-26 Cisco Unified Communications Manager Assistant...................................................................................................................................4-27 Cisco Unified Communications Manager Express.....................................................................................................................................4-28 Cisco Business Edition 6000..........................................................................................................................................................................................4-28 Cisco Business Edition 3000..........................................................................................................................................................................................4-30 Cisco Unified Communications Manager Session Management Edition...............................................................................4-31 Cisco IP Communicator......................................................................................................................................................................................................4-32 Cisco Unified IP Phone 6900 Series........................................................................................................................................................................4-33 Cisco Unified IP Phone 7900 Series........................................................................................................................................................................4-35 Cisco Unified IP Phone 8900 Series........................................................................................................................................................................4-36 Cisco Unified IP Phone 9900 Series........................................................................................................................................................................4-38 Cisco SPA500 Series IP Phones.................................................................................................................................................................................4-40 Cisco Virtualization Experience Client (VXC)...................................................................................................................................................4-41 Cisco Unified Attendant Console Portfolio........................................................................................................................................................4-41 Cisco Emergency Responder.......................................................................................................................................................................................4-43 Cisco Intercompany Media Engine...........................................................................................................................................................................4-44
Introduction iii
Cisco Unified Survivable Remote Site Telephony and Cisco Unified Enhanced SRST..............................................4-45 Cisco Unified Communications Services...........................................................................................................................................................4-46 Cisco Jabber for Mac...........................................................................................................................................................................................................4-46 Cisco WebEx Connect Service....................................................................................................................................................................................4-47 Cisco Unified Personal Communicator.................................................................................................................................................................4-47 Cisco Unified Presence......................................................................................................................................................................................................4-48 Cisco Unity Connection......................................................................................................................................................................................................4-49 Speech Connect for Cisco Unity Connection.................................................................................................................................................4-49 Cisco SpeechView..................................................................................................................................................................................................................4-49 Cisco Unity Express...............................................................................................................................................................................................................4-50 Cisco Unified Survivable Remote Site Voicemail.........................................................................................................................................4-50 Cisco Unified Messaging Gateway...........................................................................................................................................................................4-51 Cisco Unity Unified Messaging....................................................................................................................................................................................4-51 Speech Connect for Cisco Unity................................................................................................................................................................................4-52 Cisco Jabber Messaging Integration Platform...............................................................................................................................................4-52 Cisco WebEx Meetings on Mobile Devices......................................................................................................................................................4-53 Cisco Mobile Supervisor...................................................................................................................................................................................................4-53 Cisco TelePresence System 3010............................................................................................................................................................................4-55 Cisco TelePresence TX1300 Series........................................................................................................................................................................4-55 Cisco TelePresence System Profile Series.......................................................................................................................................................4-56 Cisco TelePresence MX Series...................................................................................................................................................................................4-56 Cisco TelePresence EX Series.....................................................................................................................................................................................4-57 Cisco Jabber Video for TelePresence...................................................................................................................................................................4-58 Cisco TelePresence System 500 Series..............................................................................................................................................................4-58 Cisco TelePresence System Integrator C Series.........................................................................................................................................4-59 Cisco TelePresence Video Communication Server..................................................................................................................................4-60 Cisco TelePresence MSE 8000 Series..................................................................................................................................................................4-60 Cisco TelePresence Server 7010..............................................................................................................................................................................4-61 Cisco TelePresence MCU 4500 Series................................................................................................................................................................4-61 Cisco TelePresence ISDN Gateway.........................................................................................................................................................................4-62 Cisco TelePresence Advanced Media Gateway...........................................................................................................................................4-62 Cisco TelePresence Management Suite..............................................................................................................................................................4-63 Cisco TelePresence Manager.......................................................................................................................................................................................4-64 Cisco TelePresence Exchange System................................................................................................................................................................4-65 Cisco WebEx Telepresence............................................................................................................................................................................................4-67 Cisco TelePresence Touch...............................................................................................................................................................................................4-67 Cisco TelePresence System Clinical Presence............................................................................................................................................4-68 Cisco TelePresence System Intern MXP.............................................................................................................................................................4-68 Cisco TelePresence Synch..............................................................................................................................................................................................4-69 Cisco TelePresence System Educator MXP.....................................................................................................................................................4-69 Cisco TelePresence Services....................................................................................................................................................................................... 4-70 Cisco Unified Application Environment................................................................................................................................................................. 4-70 Cisco UC Integration for Microsoft Office Communicator................................................................................................................... 4-71 Cisco Unified Communications 500 Series for Small Business...................................................................................................... 4-71 Cisco Unified Communications on the Cisco Unified Computing System................................................................................................................................................................................................................. 4-73 Cisco Unified Border Element (Cisco UBE)....................................................................................................................................................... 4-73 Cisco TDM Gateways............................................................................................................................................................................................................ 4-74 Cisco Unified SIP Proxy...................................................................................................................................................................................................... 4-74 Cisco VG Series Gateways.............................................................................................................................................................................................. 4-75 Cisco AS5400XM Universal Gateway..................................................................................................................................................................... 4-75 Cisco ATA 187 Analog Telephone Adaptor......................................................................................................................................................... 4-77 Cisco Unified Workspace Licensing........................................................................................................................................................................ 4-78 Cisco Unified Communications Software Subscription.........................................................................................................................4-80
Chapter 5: Security...............................................................................................................5-1
Security At-a-Glance.................................................................................................................................................................................................................5-1 Cisco IOS Security.....................................................................................................................................................................................................................5-4 Cisco ASA 5500 Series Adaptive Security Appliances.............................................................................................................................5-5 Cisco Intrusion Prevention System............................................................................................................................................................................5-12 Cisco Catalyst 6500 Series ASA Services Module.....................................................................................................................................5-14 Cisco TrustSec Technology..............................................................................................................................................................................................5-15 Cisco NAC Appliance (Clean Access).....................................................................................................................................................................5-16 Cisco Identity Services Engine.....................................................................................................................................................................................5-18
iv Introduction
Cisco Secure Access Control System....................................................................................................................................................................5-19 Cisco Email Security Appliances................................................................................................................................................................................5-22 Cisco Web Security Appliances.................................................................................................................................................................................5-23 Cisco M-Series Content Security Management Appliance................................................................................................................5-26 Cisco Cloud Web Security..............................................................................................................................................................................................5-28 Cisco Web Filtering.................................................................................................................................................................................................................5-28 Cisco AnyConnect Secure Mobility Solution..................................................................................................................................................5-29 Cisco Adaptive Wireless IPS Software..................................................................................................................................................................5-30 VPN Services for Cisco ASA Series........................................................................................................................................................................5-30 Cisco 3300 Series Mobility Services Engine...................................................................................................................................................5-31 Cisco Virtual Office.................................................................................................................................................................................................................5-32 Cisco Security Manager.....................................................................................................................................................................................................5-33 Cisco Video Surveillance Manager..........................................................................................................................................................................5-34 Virtualized Physical Security Applications on the Cisco Unified Computing Systems..............................................5-34 Cisco Physical Access Gateway.................................................................................................................................................................................5-35 Cisco Physical Access Manager.................................................................................................................................................................................5-35 Cisco Video Surveillance 2600 Series IP Cameras...................................................................................................................................5-36 Cisco Video Surveillance 4000 Series High-Definition IP Cameras...........................................................................................5-36 Cisco Video Surveillance 5000 Series HD IP Dome Cameras.........................................................................................................5-37 Cisco Video Surveillance 6000 Series IP Cameras...................................................................................................................................5-38 Cisco Video Surveillance 2900 Series PTZ IP Dome Cameras......................................................................................................5-38 Cisco Video Surveillance Encoders........................................................................................................................................................................5-39 Cisco Physical Security Operations Manager................................................................................................................................................5-39 Cisco Physical Security Multiservices Platform............................................................................................................................................5-40 Cisco IPICS Server Software.........................................................................................................................................................................................5-41 Cisco IPICS Dispatch Console......................................................................................................................................................................................5-41 Cisco IPICS Mobile Client.................................................................................................................................................................................................5-42 Cisco Services Portfolio for Physical and Security Products...........................................................................................................5-42 Cisco Security Services....................................................................................................................................................................................................5-44
Cisco Virtual Security Gateway...................................................................................................................................................................................6-34 Cisco ASA 1000V Cloud Firewall................................................................................................................................................................................6-35 Cisco Intrusion Prevention: Cisco IPS 4500 Series Sensors.............................................................................................................6-36 Cisco Security Manager.....................................................................................................................................................................................................6-36 Cisco Tidal Enterprise Scheduler...............................................................................................................................................................................6-37 Cisco Intelligent Automation for Cloud...................................................................................................................................................................6-38 Cisco Cloud Portal...................................................................................................................................................................................................................6-38 Cisco Workplace Portal.......................................................................................................................................................................................................6-39 SAP IT Process Automation.............................................................................................................................................................................................6-39 Cisco Network Services Manager.............................................................................................................................................................................6-39 Cisco Virtual Network Management Center.....................................................................................................................................................6-40 Cisco Data Center Network Manager: Converged......................................................................................................................................6-41 Cisco Application Control Engine Products......................................................................................................................................................6-42 Vblock Infrastructure Packages....................................................................................................................................................................................6-43 FlexPod..............................................................................................................................................................................................................................................6-43 Storage Reference Architecture..................................................................................................................................................................................6-44 Cisco Data Center Services............................................................................................................................................................................................6-45
Cisco Prime Fulfillment.........................................................................................................................................................................................................9-15 Cisco Prime Collaboration.................................................................................................................................................................................................9-15 Cisco Media Gateway Controller Node Manager..........................................................................................................................................9-16 Cisco Broadband Troubleshooter...............................................................................................................................................................................9-17 Cisco Mobile Wireless Transport Manager.........................................................................................................................................................9-17 Lifecycle Services for Network Management Products and Solutions......................................................................................9-17 Technical Services for Operating Network Management Products..............................................................................................9-18
Introduction
vii
viii
services throughout the data center consistently and uniformly. Cisco Unified Fabric includes Cisco Data Center Switching, Storage Networking, Network Management, and Virtualized Networking products as well as Cisco Data Center Interconnect solutions. Cisco Unified Computing: The Cisco Unified Computing System (Cisco UCS) represents a radical simplification of traditional architectures through its simplified, converged architecture, combined with its centralized management. Cisco UCS simplifies IT Management by reducing the time spent on tactical, operational activities, and provides easier scaling through rapid deployment, reduced opportunity cost, and better capital resource usage and a lower cost of scale in which Cisco UCS scales incrementally with optimized density and at lower costs. Cisco Unified Management: Cisco Unified Management features end-to-end management software solutions. These solutions provide an intelligent, automated approach to IT management, offering speed and enterprise-grade reliability while simplifying deployment and operation of physical, virtual, bare metal, and cloud infrastructure. Cisco Professional Services: Cisco Services make networks, applications, and the people who use them work better together. With a collaborative delivery methodology that joins the strengths of Cisco, our skilled network of partners, and our customers, we achieve the best results.
For more information about Cisco Data Center and Virtualization Architecture and Solutions, visit http://www.cisco.com/go/datacenter.
Deliver compelling and differentiated services to customers (residential, business, and mobile) Optimize network and business operationsachieve profit-line savings as well as revenue growth Capitalize on near- and long-term opportunities with an intelligent, flexible, and scalable network Take advantage of an open, standards-based IP infrastructure to build strategic alliances with application and content providers and device manufacturers, etc. to create new services and revenue streams Cisco provides the networking solutions, technical experience and expertise, and supporting resources to help service providers reach their goals. The Cisco IP NGN architecture vision encompasses a true end-to-end solution with fundamental enablers for video, mobile Internet, and data center and cloud-based services. Network Infrastructure: Cisco network infrastructure solutions let you deliver personalized, nextgeneration services and media experiences anywhere, anytime. The Cisco IP NGN infrastructure enables end-to-end scale, resiliency, and efficiency with solutions that provide a multiservice convergence platform so you can serve residential, business, and mobile customers with a single network infrastructure. The network infrastructure solutions are designed to scale and adapt with the evolving needs of the network. The infrastructure solutions include broadband, cable, Carrier Ethernet, carrier-grade IPv6, core networks, edge networks, Internet Protocol Television (IPTV), Telco TV, network management, optical transport, and security. Videoscape: Cisco Videoscape brings together different content sources, devices, and complex technologies to create a better than being there video experience. Videoscape reinvents the TV experience, simplifying access to the TV experiencedelivering content from any source to any screen. The power of Cisco Videoscape rests in the combination of cloud, network, and clients working together to deliver amazing end-user experiences and transform the economics of network operations. Mobile Internet: Cisco delivers an integrated architecturefrom the client, to the network, to the cloud that helps service providers rapidly deploy new services, manage risk, and provide an exceptional user experience. Cisco supports all leading radio access technologies to enable networks with full mobility for faster service deployment, increased scalability, and improved and cost-effectiveness. Ciscosmobile Internet network based on the Cisco IP NGN contains one of the industrys most comprehensive mobile portfolios that includes an intelligent management system, next-generation Universal Mobile Telecommunications Service/ High Speed Packet Access (UMTS/ HSPA) solutions, Code Division Multiple Access (CDMA) solutions, carrier-grade service provider Wi-Fi infrastructure, Long Term Evolution (LTE) Evolved Packet Core, small cells, Voice and Video over LTE (V2oLTE), and mobile Videoscape. Data center and cloud: Ciscos data center and cloud solutions help service providers evolve their businesses and capitalize on new opportunities. Greater efficiencies are established using Ciscos Unified Service Delivery (USD) as an infrastructure, creating a foundation for delivering cloud-based services. Cisco CloudVerse combines computing, networking, and storage resources within the data center, connects clouds, and delivers a high-quality cloud experience to the end user. In order to create the best possible experience, the Cisco Network Positioning System (NPS) identifies the underlying intelligence in the network for optimizing performance, allowing the Cisco Cloud Intelligent Network to take advantage of resources across the entire network for a transparent and reliable user experience. The Cisco IP NGN architecture effectively integrates each of these distinct application-oriented solutions. Beyond the proven routing and switching strengths that these solutions offer, they also provide servicespecific innovations that deliver enhanced qualities for video, mobile Internet, and data center and cloud services that encompass our holistic Connected Life vision. Cisco IP NGN solutions can serve as the intelligent platform to transform the business and consumer experiences you deliver to subscribers at home, at work, and when mobile.
For more information about Cisco service provider solutions, visit http:/ / www.cisco.com/ go/ sp.
xii
Warranty duration: 90 days Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the return materials authorization (RMA) request. Actual delivery times might vary depending on customer location. Software warranty: 90 days Warranty allows guest access only to Cisco.com. Warranty duration: 90 days Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the RMA request. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty duration: 1 year Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the RMA request. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty duration: 90 days Warranty provides that the media on which the software is furnished will be free of defects in materials and workmanship under normal use and that the software substantially conforms to its published specifications. Software is provided as is, and in no event does Cisco warrant that the software is error-free or that customer will be able to operate the software without problems or interruptions. The end-user license agreement grants to customer a nonexclusive and nontransferable license to use for customers internal business purposes the software and the documentation for which the customer has paid the required license fees. Warranty allows guest access only to Cisco.com.
Product Warranty Information xiii
Warranty duration: 3 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the RMA request. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Hardware warranty duration: 1 year Software warranty duration: 1 year Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery within 10 working days after receipt of the defective product at Ciscos site. Actual delivery times of replacement products might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty is available on optical hardware and software products. Hardware warranty duration: 5 years Software warranty duration: 1 year Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery within 15 working days after receipt of the defective product at Ciscos site. Actual delivery times of replacement products might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty applies to Cisco Catalyst Express 500 Series Switches and Cisco Catalyst 2960, 2975, 3560, 3560-E, 3750, 3750-E, 4500, and 4500-E Series Switches. Some limitations apply. Warranty duration: Warranty is valid as long as the original end user continues to own or use the product, provided that fan and power supply warranty is limited to 5 years. In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the announcement of discontinuance. Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the RMA request. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty applies to Cisco Catalyst 2960-S, 3560-X, 3750-X, 2960-C, and 3560-C Series Switches. Warranty duration: Warranty is valid as long as the original end user continues to own or use the product, provided that fan and power supply warranty is limited to 5 years. In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the announcement of discontinuance. Hardware replacement: Where available, Cisco or its service center will use commercially reasonable efforts to ship a replacement part for next-day replacement. Where next-business-day replacement is not available, a replacement will be shipped the same business day if the RMA is received before the fulfillment warehouse cut-off time. Actual delivery times might vary depending on customer location. Warranty includes 90 days of Cisco Technical Assistance Center (TAC) support during local business hours, 8 hours per day, 5 days per week. Warranty allows guest access only to Cisco.com. Available for Cisco Small Business Pro Switch Warranty duration: 5 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within 10 working days after receipt of the RMA request. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty duration: 1 year Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery upon receipt of the defective product at Ciscos site. Part will be shipped using ground shipping with shipping charges prepaid. Warranty allows guest access only to Cisco.com.
xiv
Warranty duration: 3 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery upon receipt of the defective product at Ciscos site. Part will be shipped using ground shipping with shipping charges prepaid. Warranty allows guest access only to Cisco.com. Warranty duration: 5 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery upon receipt of the defective product at Ciscos site. Part will be shipped using ground shipping with shipping charges prepaid. Warranty allows guest access only to Cisco.com. Warranty duration: Warranty is valid as long as the original end user continues to own or use the product, provided that fan and power supply warranty is limited to 1 year. In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the announcement of discontinuance. Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery upon receipt of the defective product at Ciscos site. Part will be shipped using ground shipping with shipping charges prepaid. Warranty allows guest access only to Cisco.com. Warranty duration: Warranty is valid as long as the original end user continues to own or use the product, provided that fan and power supply warranty is limited to 5 years. In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the announcement of discontinuance. Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement for next-business-day delivery, where available. Otherwise, commercially reasonable efforts will be used to ship a replacement part for delivery upon receipt of the defective product at Ciscos site. Actual delivery times may vary depending on Customer location. Warranty allows guest access only to Cisco.com. Warranty is applicable to Cisco Unified Computing System products only. Hardware warranty duration: 3 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part within the next Cisco business day after receipt of the RMA request. Actual delivery times of replacement products might vary depending on customer location. Software, including freeware operating systems and applications, is provided as is, and in no event does Cisco warrant that the software is error-free or that the customer will be able to operate the software without problems or interruptions. Warranty allows guest access only to Cisco.com.
Cisco Limited 1-Year Return Warranty applies to select service provider video, transport, and access for Repair (RFR) Hardware hardware only. Warranty
Warranty duration: 1 year Hardware replacement: Cisco or its service center will use commercially reasonable efforts to repair or replace the defective product and ship the repaired or replacement part for delivery within 30 working days. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty applies to select service provider video, transport, and access hardware only. Warranty duration: 3 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to repair or replace the defective product and ship the repaired or replacement part for delivery within 30 working days. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com.
xv
Warranty applies to select service provider video, transport, and access hardware only. Warranty duration: 5 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to repair or replace the defective product and ship the repaired or replacement part for delivery within 30 working days. Actual delivery times might vary depending on customer location. Warranty allows guest access only to Cisco.com. Warranty is available to qualified worldwide service providers on select optical hardware and software products only. Warranty duration: 5 years Software duration: 5 years Hardware replacement: Cisco or its service center will use commercially reasonable efforts to ship a replacement part for delivery within 15 working days after receipt of the defective product at Ciscos site. Actual delivery times of replacement products might vary depending on customer location. Warranty allows guest access only to Cisco.com.
Cisco Limited 5-Year Hardware and 5-Year Software Warranty for Qualified Service Providers
Technical Support Email Addresses English and Spanish Hanzi (Chinese) Kanji (Japanese) Hangul (Korean) Service Support Center (SSC)
Distributor SMARTnet Teams Comstor/Westcon Group D&H ScanSource Ingram Micro Tech Data
xvi
Newsletters Cisco Borderless Networks Monthly Update Cisco Collaboration Insights e-Newsletter Cisco Data Center Insights Business Advantage Cisco Technical Services e-Newsletter
xvii
The Cisco Community Central website is a group of communities designed to foster collaboration among Cisco employees, customers, users, and Cisco Partners. Visit the website at: http://www.myciscocommunity.com/. A consolidated resource for design guides, application deployment guides, white papers, videos, and other technical reference materials is available at: http:/ / www.cisco.com/ go/ design zone. Cisco Smart Designs are pretested networking solutions that enable partners to deliver the benefits of Cisco products and technologies to small and medium-sized business (SMB) customers. For more information, visit: http://www.cisco.com/go/partner/smartdesigns. The one-stop shop for Cisco merchandise, including Cisco collateral and product documentation, logo merchandise, Cisco Press books, and software is available at: http:/ / www.cisco.com/go/marketplace. Cisco Press Bookstore is the only authorized publisher of Cisco, giving you access to industry experts and educators. It provides networking, business, and certification titles for yourunique learning needs. Find out more at: http:/ / www.cisco.com/ go/ marketplace. The interactive Product Advisor tool provides a list of product recommendations based on your preference and highlights a list of products that meet your needs. It is available for the following technologies: routing, switching, wireless, and security. For more information, visit: http://www.cisco.com/en/US/products/prod_tools_index.html
Cisco Bookstore
Product Advisor
Important facts to know: More than 2800 current and end-of-sale models from all technology areas are available. Products are remanufactured, tested, and reconditioned to Cisco factory specifications. Products are sold with the same Cisco warranty terms and conditions as new products. Cisco Technical Services can be attached to refurbished equipment to provide the same features and value as provided on new equipment. Products are 25 to 70 percent off original list price; reseller discounts are available for Cisco partners. Products have the same part numbers except that they end with the suffix -RF. A licensed copy of Cisco IOS Software is installed. Products are available through Cisco authorized channels worldwide; no special certifications or authorizations are required to resell. These products may not be available in certain countries. No returns are accepted; all sales are final. Inventory varies daily; products are sold on a first-come, first-served basis. For more information about Cisco Certified Refurbished Equipment, including product availability, current promotions, and ordering instructions, visit: http:/ / www.cisco.com/ go/ remarketing
xviii
Chapter 1: Routing
This chapter includes only a subset of Cisco products and part numbers. Also, you will see products listed multiple times because they serve multiple roles and are used differently in small, medium, and large networks.
Routing
Routing At-a-Glance
Product Branch-Office Routers Cisco 3900 Series Integrated Services Routers Ideal for high-end deployments requiring business continuity, WAN flexibility, WAN optimization, superior collaboration capabilities, and investment protection Delivers scalable rich-media services including telepresence, support for medianet, highest density of service virtualization, and lowest total cost of ownership (TCO) with energy efficiency Offers field-upgradable motherboard and circuit-speed WAN performance up to 350 Mbps with services such as security, mobility, WAN optimization, unified communications, video, and customized applications Has 3-rack-unit (3RU) modular form factor 1-5 Features Page
Ideal for midrange deployments requiring business agility, WAN flexibility, and 1-10 secure collaboration Provides rich-media services including telepresence, support for medianet, service virtualization, and lower total cost of ownership (TCO) with energy efficiency Offers circuit-speed WAN performance up to 75 Mbps with services such as security, mobility, WAN optimization, unified communications, voice gateway, video, and customized applications Has 1-rack-unit (1RU) to 2RU modular form factor Ideal for small offices requiring modular flexibility for highly secure mobility and customizable applications Offers entry-level, highly secure solution for WAN deployments; offers service virtualization and low total cost of ownership (TCO) Offers circuit-speed performance up to 25 Mbps with concurrent services Offers factory-selectable dual radio 802.11n access point and doublewide highspeed WAN interface card (HWIC) support; has desktop form factor Ideal for small offices and teleworkers, or for service providers to deploy as part of their managed network services Delivers data, security, wireless, third-generation wireless, Survivable Remote Site Telephony (SRST), and Cisco Unified Border Element (Cisco UBE) Provides for highly scalable true zero-touch deployments 1-15
1-19
WAN Routers Cisco 7600 Series Routers Ideal for service providers that deliver consumer and business services over a single converged Carrier Ethernet network As industry-leading carrier-class edge router, offers integrated, high-density Ethernet switching, IP/ Multiprotocol Label Switching (IP/ MPLS) routing, and 10Gbps interfaces Offers a choice of form factors built for high availability Ideal for medium-sized to large enterprises and service providers Offers industry-leading performance, service capabilities, reliability, and efficiencies in a compact form factor supporting up to 100 Gbps Provides highly secure, high-performance and integrated hardware-based services without the need for additional hardware modules Extends network as a platform for cloud computing to help conserve resources and optimize performance Offers Cisco Unified Border Element support for Session Initiation Protocol (SIP) trunking; lowers total communications costs; optimizes network interconnections; and enables rich collaboration applications Simplifies operations, reduces network costs, and increases resiliency through its Virtual Switch System 1440 technology Automates network services and energy control and minimizes total cost of ownership (TCO) with features such as Cisco Generic Online Diagnostics (GOLD), Onboard Failure Logging (OBFL), SmartCallHome, and Cisco EnergyWise technology Delivers comprehensive features for operational management, integrated services, quality of service (QoS), and high availability Integrates services through its portfolio of service modules 1-23
1-32
See 2-5
Chapter 1: Routing
1-1
Service Provider Core and Edge Routers Cisco Carrier Routing System Ideal for service providers across all market segments Cisco CRS-3: Are powered by the Cisco QuantumFlow Array Cisco CRS-1: Are built on the Cisco Silicon Packet Processor (SPP) Scales easily from numerous single-chassis form factors to a massive multichassis system, up to 322 Tbps Provides industry-leading efficiency, requiring low power, cooling, and rack-space use for intelligent, service-rich bandwidth capacity Cisco CRS-1 and CRS-3 models: Use Cisco IOS XR Software, a unique self-healing, distributed operating system Ideal for large enterprises and service providers Cisco XR 12000 Series Routers: Extend highly secure virtualization, integral service delivery, continuous system operation, and multiservice scale Cisco 12000 Series Routers: Feature Cisco I-Flex, a portfolio of shared port adapters (SPAs) and SPA interface processors (SIPs) Ideal for carriers offering residential and business services Delivers nonstop video and enhanced scalability in a reduced carbon footprint, along with industry-leading levels of carrier transport Provides carrier-class reliability for continuous service operation and high availability Scales up to 6.4 Tbps per system and delivers comprehensive system redundancy Ideal for medium-sized to large enterprises and service providers Offers industry-leading performance, service capabilities, reliability, and efficiencies in a compact form factor supporting up to 100 Gbps Provides highly secure, high-performance, and integrated hardware-based services without the need for additional hardware modules Extends network as a platform for cloud computing to help conserve resources and optimize performance Designed for the mobile wireless and wireline preaggregation and aggregation functions with flexible WAN and LAN interfaces Delivers high availability through in-box hardware redundancy and In-Service Software Upgrade (ISSU) Ideal for mobile backhaul deployment with compact form factor, temperature-hardened platform, modular Ethernet and time-division multiplexing (TDM) interface cards, comprehensive timing synchronization support, and hardware-assisted operations, administration, and maintenance (OA&M) functions Provides rich Carrier Ethernet features that enable the delivery of intelligent Layer 2 and 3 services Ideal for service providers that deliver consumer and business services over a single converged Carrier Ethernet network As industry-leading carrier-class edge router, offers integrated, high-density Ethernet switching, IP/ Multiprotocol Label Switching (IP/ MPLS) routing, and 10-Gbps interfaces Offers a choice of form factors built for high availability 1-26
1-28
1-30
1-32
1-35
1-23
Connected Grid Routers Cisco 2000 Series Connected Grid Routers Designed specifically for the harsh, rugged environments often found in the energy and 1-38 utility industries KEMA certified to meet challenging compliance standards such as IEC 61850-3 and IEEE 1613 Offers integrated security to help address compliance with critical infrastructure protection mandates Offers high-availability design for optimum network uptime and redundancy Offers network and device management tools for deployments, upgrades, and remote monitoring Offers advanced quality of service (QoS) capabilities to support mission-critical communications such as Supervisory Control and Data Acquisition (SCADA) Provides comprehensive network security features based on open standards Offers mutual authentication and authorization of all nodes connected to the network Offers IEEE 802.1x-based authentication and role-based access control (RBAC) Provides certificate-based identity and strong username and passwords Offers link-layer encryption in the Neighborhood Area Network (NAN) mesh (Advanced Encryption Standard 1 [AES-128]) Offers network-layer encryption in the WAN (IP Security [IPsec]) Provides scalable key management, generation, exchange, and revocation of encryption keys Provides network segmentation of users, devices, and applications in NAN and WAN Provides access lists on field area router to filter traffic between users and devices Offers high-performance firewall in the control center to protect critical assetsHas tamper-resistant mechanical design; security alerts generated if compromised Has hardware chip to store router X.509 certificate and other security credentials Provides tamper-proof secure storage of router configuration and data 1-39
1-2
Chapter 1: Routing
Routing
Small Business Routers Cisco SRP 500 Series Services-Ready Platforms Enable service providers to deliver differentiated, converged service offers that increase bandwidth usage and average revenue per user while reducing customer turnover Offer fixed-configuration customer premises equipment (CPE) that enables service providers to create, provision, and deploy premium revenue-generating services to small businesses Support a variety of high-quality voice, data, security, wireless, and application services Provides highly secure network access devices, designed and built for small businesses Offers highly secure VPN connectivity for remote workers Provides strong security features, including an advanced stateful packet inspection (SPI) firewall, encryption, authentication, and access control Provides Fast Ethernet ports and Gigabit Ethernet ports 1-41
1-42
SERVICES Cisco Routing and Switching Services use leading practices and time-tested methodologies to help you to: Successfully integrate new technologies and applications onto the routing and switching platform Reduce risk, delays, and the total cost of network deployments Keep network devices and applications secure, available, and operating reliably Optimize your secure wired and wireless networks to meet future needs Achieve operational excellence FOR MORE INFORMATION Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. End-of-Life and End-of-Sale Information Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, what replacement products are available, and information about product support: http://www.cisco.com/en/US/products/prod_end_of_life.html. Cisco Services Cisco Services can be ordered directly or through our global network of certified partners; to order, please visit: http://www.cisco.com/web/services/order-services/index.html Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com, the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or reference the URL listed in the For More Information section for each product. For more Cisco routing platforms, refer to the Cisco Routing Guide at http:/ / www.cisco.com/ go/ routerguide. 1-43
Integrated WAN Ports Interface Slots (EHWIC) Service Module Slots ISM Slots PVDM3 Slots USB Ports (v2.0) Default/Max Flash
Default/Max SDRAM Modular LAN Switchports (with optional PoE) WAN Optimization
Chapter 1: Routing
1-3
WAAS Support on SRE Service Modules 700, 710, 900, and 910
SRE 700, 710, 900, and 910 with WAAS 4.3 or later
SRE 700, 710, 900, and 910 with WAAS 4.3 or later
SRE 700, 710, 900, and 910 with WAAS 4.3 or later Yes
SRE 700, 710, 900, and 910 with WAAS 4.3 or later Yes
SRE 700, 710, 900, and 910 with WAAS 4.3 or later Yes
SRE 700, 710, 900, and 910 with WAAS 4.3 or later Yes
SRE 700, 710, 900, and 910 with WAAS 4.3 or later Yes
No
No
No
Platform supports Cisco WAAS Express WAAS Express Optimized TCP Connections WAAS Express WAN Capacity Advanced Security Stateful Firewall Onboard Hardware VPN Acceleration (DES, 3DES, AES) Intrusion prevention Content filtering ScanSafe Web Security Unified Communication Local conferencing Voice and Video DSP support Survivable Remote Site Telephony (SRST) Cisco Unified Communications Manager Express Cisco Unity Express (network module [NM], service module [SM], or ISM) Cisco Unified Border Element sessions Cisco Unified SIP Proxy
Yes
Yes
500
500
500
250
250
150
150
10 Mbps
10 Mbps
10 Mbps
6 Mbps
6 Mbps
6 Mbps
4 Mbps
Enabled via Security License for Universal IOS Image. FW, IPS, and Content Filtering, ScanSafe Web Security need additional subscription licenses Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes Yes
Enabled via Unified Communications License for Universal IOS Image. CCME/ SRST support through separate feature licenses Yes PVDM3 and PVDM2 Up to 1500 Up to 450 Yes PVDM3 and PVDM2 Up to 1350 Up to 400 Yes Yes Yes Yes Yes Yes
PVDM3 PVDM3 PVDM3 PVDM3 PVDM3 PVDM3 and and and and and and PVDM2 PVDM2 PVDM2 PVDM2 PVDM2 PVDM2 Up to 1200 Up to 3503 32 ports; 300 mailboxes 950 Up to 730 Up to 2503 32 ports; 300 mailboxes 800 Up to 250 Up to 150 32 ports; 300 mailboxes 600 Up to 100 Up to 100 32 ports; 300 mailboxes 400 Up to 50 Up to 50 32 ports; 300 mailboxes 200 Up to 35 Up to 35 10 ports; 100 mailboxes 100
2500
2100
200 CPS (with SRE700 and SRE900) Up to 900 FXS: 112 FXO: 64 BRI: 40
100 CPS (with SRE700 and SRE900) Up to 720 FXS: 64 FXO: 40 BRI: 24
100 CPS (with SRE700 and SRE900) Up to 400 FXS:40 FXO: 28 BRI: 16
10 CPS (with SRE700 and SRE900) Up to 150 FXS: 40 FXO: 28 BRI: 16 Up to 100 FXS: 16 FXO: 16 BRI: 8
Up to 840
Maximum voice FXS: 108 support for analog FXO: 60 and Basic Rate BRI: 38 Interface (BRI)
Up to 2 GB available for use; upgrade to 4 GB available in future. LAN Switching counts for the Cisco 2911 through Cisco 3945 and Cisco 3945E routers based on latest generation of switch service module. Scales to documented phone support in 15.0.1 build.
1-4
Chapter 1: Routing
Branch-Office Routers
Cisco 3900 Series Integrated Services Routers
Cisco 3900 Series Integrated Services Routers (ISRs) are designed to power the next phase of branch-office evolution, providing rich-media collaboration and virtualization to the branch office while reducing operating costs. Cisco 3900 Series Integrated Services Routers build on 25 years of Cisco innovation and product leadership. The new Cisco Integrated Services Routers Generation 2 (ISR G2) platforms are architected to enable the next phase of branch-office evolution, providing rich-media collaboration and virtualization to the branch office while maximizing operational cost savings. The new routers support new high-capacity digital signal processors (DSPs) known as PVDM3 for higher-density voice services plus basic videoconferencing capabilities, highpowered service modules with improved availability, multicore CPUs, Gigabit Ethernet switching with Cisco Enhanced Power over Ethernet (ePoE), and new energy visibility and control capabilities while enhancing overall system performance. Additionally, a new Cisco IOS Software Universal image and Cisco Services-Ready Engine (SRE) module enable you to decouple the deployment of hardware and software, providing a flexible technology foundation that can quickly adapt to evolving network requirements. Overall, the Cisco 3900 Series offers exceptional total cost of ownership (TCO) savings and network agility through the intelligent integration of market-leading security, unified communications, wireless, and application services. The routers include: Services on demand: The Cisco 3900 Series Integrated Services Routers reduce initial capital outlays by decoupling the delivery of software from hardware on optional service modules. In addition, you receive a Universal Cisco IOS Software image capable of enabling all of Ciscos rich Cisco IOS Software features and allowing you to quickly deploy new services. Investment protection: The Cisco 3900 Series reduces deployment costs and increases flexibility. The platform offers a modular, field-upgradable motherboard called the Services Performance Engine (SPE). SPEs allow you to invest in a Cisco 3900 Series ISR today and boost its performance later by upgrading to a higher-performance engine. Investment protection is also offered with support for most existing modules from previous-generation ISRs. The Cisco Unified Border Element features on the Cisco 3900 provide additional investment protection by allowing enterprises to gracefully transition from traditional time-division multiplexing (TDM) voice to IP-based unified communications without the need for hardware upgrades. Energy efficiency: The Cisco 3900 Series architecture includes higher-efficiency power supplies with intelligent power management, with full Cisco EnergyWise feature support in the future. Both Cisco 3925 and 3945 routers support dual power supplies for power-supply redundancy for branch-office or retail environments running mission-critical applications. High performance: The Cisco 3900 Series offers significant performance improvements over previousgeneration ISRs. Overall, the Cisco 3900 Series offers unparalleled total-cost-of-ownership (TCO) savings and network agility through the intelligent integration of security, wireless, rich media, and application services.
Routing
Cisco 3925E
Chapter 1: Routing
1-5
Cisco 3945
Modular Services Performance Engine (SPE) 150, which can be upgraded for even higher performance as next-generation WAN environments evolve Four integrated 10/ 100/ 1000 Ethernet ports with two ports capable of RJ-45 or SFP connectivity Four service-module slots Four EHWIC slots Four onboard DSP slots Up to 950 SIP trunk sessions One integrated-services-module slot Dual integrated power supplies Fully integrated power distribution to modules supporting 802.3af PoE Modular Services Performance Engine (SPE) 100 for even higher performance as WAN environments evolve Three integrated 10/ 100/ 1000 Ethernet ports with two SFP ports Two service-module slots Four EHWIC slots Four onboard DSP slots Up to 800 SIP trunk sessions One integrated-services-module slot Dual integrated power supplies Fully integrated power distribution to modules supporting 802.3af PoE
Cisco 3925
1-6
Chapter 1: Routing
It is fully interoperable with Cisco WAAS Modules for Services-Ready Engine (SRE) and Cisco WAAS appliances and can be managed by a common Cisco WAAS Central Manager. Cisco WAAS Express offers Context-Aware Data Redundancy Elimination (DRE) for reduced latency and increased end-user experience. Organizations can enable Cisco WAAS Express as an on-demand service on the router and can expand to the Cisco WAAS Modules for SRE or a dedicated Cisco WAAS appliance as business needs grow. WAN optimization with Cisco WAAS Software on Cisco Integrated Services Routers Generation 2 (ISR G2) Cisco WAAS Software on Cisco 3900 Series provides router-integrated, on-demand WAN optimization and application acceleration for branch offices. Cisco WAAS offers the option to integrate physically with first- and second-generation Cisco ISRs. The Cisco Services Ready Engine (SRE) Modules on the ISR G2 platform, which decouple software services from the underlying hardware, can deliver WAN optimization as an on-demand service as required for business objectives and IT budget. Cisco WAAS Software is licensed with two types of feature capability for deployment on the Cisco SRE Modules. The software licenses are common across Cisco SRE 700 SM, SRE 710 SM, SRE 900 SM, and SRE 910 SM. Transport license: Supports WAN optimization features including DRE, Lempel-Ziv (LZ) compression, and Transport Flow Optimization (TFO) Enterprise license: Includes Cisco WAAS Transport license functions (DRE, LZ compression, and TFO) plus application-specific accelerations for protocols including Common Internet File System (CIFS) and Messaging Application Programming Interface (MAPI) Multigigabit fabric (MGF) The Cisco 3900 Series introduces an innovative MGF that allows for efficient module-to-module communication, enabling tighter services interactions across modules while reducing the overhead on the router processor. TDM interconnectivity fabric Unified communications services in the branch office are significantly enhanced with the use of TDM interconnectivity fabric in the router architecture, allowing for scaling of DS-0 channel capacity. Integrated Gigabit Ethernet ports The Cisco 3900 Series provides up to four 10/ 100/ 1000 Ethernet WAN ports. Two of the 10/ 100/ 1000 Ethernet WAN ports on the Cisco 3900 Series can support Small Form-Factor Pluggable (SFP)-based connectivity in lieu of RJ-45 ports, enabling fiber connectivity. High-capacity packet voice video digital signal processor module (PVDM3) Enhanced architecture delivers a new packet-processing engine optimized for video and rich-media applications, while concurrently supporting packet voice. The PCDM3 enables scaling of high-definition (HD) voice capacity and is optimized for enhanced video capabilities. It supports a full suite of medianet features. Innovative universal-serial-bus (USB)-based console access A new, innovative, mini-B USB console port supports management connectivity when traditional serial ports are not available. Traditional console and auxiliary ports are also available. Optional integrated power supply for distribution of PoE and universal DC power supply An optional upgrade to the internal power supply provides inline power (802.3af-compliant PoE, Cisco ePoE, and Cisco Inline Power) to optional integrated switch modules. An optional DC power supply that extends possible deployment environments such as central offices and industrial environments will be available in the future. Optional integrated redundant power supply (RPS) and PoE boost Power redundancy is available by installing an optional integrated RPS, thereby decreasing network downtime and protecting the network from power-supply failures. When populated with dual integrated power supplies, the Cisco 3900 Series can operate in a configurable PoE boost mode in lieu of redundant power mode whereby the power capacity of the platform is increased to almost twice the normal power to support additional PoE ports. Designed for flexible deployments The Cisco 3945 and 3925 are designed for Network Equipment Building Systems (NEBS) environments.
Routing
Chapter 1: Routing
1-7
Specifications
Services and Slot Density Embedded hardware-based cryptography acceleration (IPSec + Secure Sockets Layer [SSL]) Cisco Unified Communications Manager Express Sessions Cisco Unified SRST sessions Cisco Unified Border Element sessions Total onboard WAN or LAN 10/ 100/ 1000 ports RJ-45-based ports SFP-based ports Service-module slots Doublewide service-module slots EHWIC slots Doublewide EHWIC slots ISM slots Online insertion and removal (OIR) Onboard DSP (PVDM3) slots Memory DDR2 ECC DRAM: Default Memory DDR2 ECC DRAM: Maximum Compact Flash (external): Default Compact Flash (external): Maximum External USB 2.0 slots (Type A) USB console port (Type B) (up to 115.2 kbps) Serial console port (up to 115.2 kbps) Serial auxiliary port (up to 115.2 kbps) Power-supply options Redundant power supply WAN Optimization with WAAS Express Optimized TCP Connections with WAAS Express WAS Capacity with WAAS Express DRAM Required for WAAS Express Power Specifications AC input voltage AC input frequency AC input current range, AC power supply (maximum) AC input surge current Typical power (no modules) (watts) Maximum power with AC power supply (watts) Maximum power with PoE power supply (platform only) (watts) Maximum endpoint PoE power available from PoE power supply (watts) Maximum endpoint PoE power capacity with PoE boost (watts) Dimensions (H x W x D) 100 to 240 VAC autoranging 47 to 63 Hz 7.1 to 3.0A <50A 105 540 540 520 1040 5.25 x 17.25 x 18.75 in. (133.35 x 438.15 x 476.25 mm) 100 to 240 VAC autoranging 47 to 63 Hz 7.1 to 3.0A <50A 100 420 420 520 1040 5.25 x 17.25 x 18.75 in. (133.35 x 438.15 x 476.25 mm) 100 to 240 VAC autoranging 47 to 63 Hz 7.1 to 3.0A <50A 105 540 540 520 1040 5.25 x 17.25 x 18.75 in. (133.35 x 438.15 x 476.25 mm) 100 to 240 VAC autoranging 47 to 63 Hz 7.1 to 3.0A <50A 100 420 420 520 1040 5.25 x 17.25 x 18.75 in. (133.35 x 438.15 x 476.25 mm) Cisco 3945E Yes Cisco 3925E Yes Cisco 3945 Yes Cisco 3925 Yes
450 1500 2500 4 4 2 4 1 3 1 0 Services modules 3 1 GB 2 GB Slot 0: 256 MB Slot 1: None Slot 0: 4 GB Slot 1: 4 GB 2 1 1 1 Internal: AC, PoE, and DC Internal: AC, PoE, and DC
400 1350 2100 4 4 2 2 1 3 1 0 Services modules 3 1 GB 2 GB Slot 0: 256 MB Slot 1: None Slot 0: 4 GB Slot 1: 4 GB 2 1 1 1 Internal: AC, PoE, and DC Internal: AC, PoE, and DC
350 1200 950 3 3 2 4 1 4 2 1 Services modules 4 1 GB 2 GB Slot 0: 256 MB Slot 1: None Slot 0: 4 GB Slot 1: 4 GB 2 1 1 1 Internal: AC, PoE, and DC Internal: AC, PoE, and DC Yes 500 10 Mbps 4 GB
250 730 800 3 3 2 2 1 4 2 1 Services modules 4 1 GB 2 GB Slot 0: 256 MB Slot 1: None Slot 0: 4 GB Slot 1: 4 GB 2 1 1 1 Internal: AC, PoE, and DC Internal: AC, PoE, and DC Yes 500 10 Mbps 4 GB
1-8
Chapter 1: Routing
Routing
Rack height Rack-mount 19 in. (48.3 cm) EIA Rack-mount 23 in. (58.4 cm) EIA Wall-mount Weight with AC power supply (no modules) Weight with PoE power supply (no modules) Typical weight (with modules) Airflow Optional airflow kit (includes filter)
3 rack units (3RU) Included Optional No 39 lb (17.7 kg) 40 lb (18.1 kg) 60 lb (27.2 kg) Back to front None
3RU Included Optional No 39 lb (17.7 kg) 40 lb (18.1 kg) 60 lb (27.2 kg) Back to front None
3 RU Included Optional No 39 lb (17.7 kg) 40 lb (18.1 kg) 60 lb (27.2 kg) Back to front Front to back
3RU Included Optional No 39 lb (17.7 kg) 40 lb (18.1 kg) 60 lb (27.2 kg) Back to front Front to back
The Cisco 3900 Series supports a wide range of modules that span industry-leading breadth of services at the branch office. For a list of modules supported on the Cisco 3900 Series, visit: http://www.cisco.com/en/US/products/ps10536/products_relevant_interfaces_and_modules.html.
Chapter 1: Routing
1-9
Cisco 3925 SRE Bundle, SRE 900 or SRE 910, PVDM3-64, UC and SEC License PAK Cisco 3945 SRE Bundle, SRE 700 or SRE 710, PVDM3-64, UC and SEC License PAK Cisco 3925 SRE Bundle, SRE 700 or SRE 710, PVDM3-64, UC and SEC License PAK Cisco 3945, 2x SRE 900 or SRE 910, WAAS Enterprise Medium License, SRE-V License, 4GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 3925, 2x SRE 900 or SRE 910, WAAS Enterprise Medium License, SRE-V License, 4GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 3945, SRE 900 or SRE 910, 24 port L3 ESM w/PoE, 4 GB RAM, SRE-V License, 768 MB ISR CF, IMC Software Cisco 3925, SRE 900 or SRE 910, 24 port L2 ESM w/PoE, 4 GB RAM, SRE-V License, 768 MB ISR CF, IMC Software Cisco 3945, SRE 900 or SRE 910, SRE-V License, 4 GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 3925, SRE 900 or SRE 910, SRE-V License, 4 GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 3945, SRE 900 or SRE 910, SEC License PAK, WAAS Enterprise Large License Cisco 3925, SRE 900 or SRE 910, SEC License PAK, WAAS Enterprise Large License WAAS Express Feature License for Cisco 3900 Series
Select WAAS Express License Part Numbers Cisco 3900 Series Export Restriction Compliance License (Required by U.S. Export regulations for more than 85Mbps throughput or 225 IPsec tunnels) FL-39-HSEC-K9
1
Additional HSEC license available for high performance/ scale IPsec deployments
Routing
WAN optimization with Cisco WAAS Software on Cisco Integrated Services Routers Generation 2 (ISR G2) Cisco WAAS Software on the Cisco 2900 Series provides router-integrated, on-demand WAN optimization and application acceleration for branch offices. The Cisco Services-Ready Engine (SRE) Modules on the ISR G2 platform, which decouple software services from the underlying hardware, can deliver WAN optimization as an on-demand service as required for business objectives and IT budget. Cisco WAAS Software is licensed with two types of feature capability for deployment on the Cisco SRE Modules. The software licenses are common across Cisco SRE 700 SM, SRE 710 SM, SRE 900 SM, and SRE 910 SM. Transport license: Supports WAN optimization features including Data Redundancy Elimination (DRE), Lempel-Ziv (LZ) compression, and Transport Flow Optimization (TFO) Enterprise license: Includes Cisco WAAS Transport license functions (DRE, LZ compression, and TFO) plus application-specific accelerations for protocols including Common Internet File System (CIFS) and Messaging Application Programming Interface (MAPI) Multigigabit fabric The Cisco 2900 Series introduces an innovative multigigabit fabric (MGF) that allows for efficient module-to-module communication, enabling tighter services interactions across modules while reducing the overhead on the route processor. TDM interconnectivity fabric Unified communications services in the branch office are significantly enhanced with the use of a TDM interconnectivity fabric in the system architecture, allowing for scaling of DS-0 channel capacity. High-capacity, video-ready Packet Voice Video Digital Signal Processor Module (PVDM3) The enhanced architecture of the PCSM3 delivers a new packet-processing engine optimized for video and rich-media applications, while concurrently supporting packet voice. The module enables scaling of high-definition (HD) voice capacity and is optimized for enhanced video capabilities. It supports a full suite of medianet features. Integrated Gigabit Ethernet ports All onboard WAN ports are 10/ 100/ 1000 Gigabit Ethernet WAN routed ports. One of the three 10/ 100/ 1000 Ethernet WAN ports on the Cisco 2921 and 2951 supports Small FormFactor Pluggable (SFP)-based connectivity in lieu of a RJ-45 port and enabling fiber connectivity. Innovative USB-based console access A new, innovative USB console port offers management connectivity for devices without a serial port such as modern laptop computers. Traditional console and auxiliary ports are also available. Optional integrated power supply for distribution of PoE and universal DC power supply An optional upgrade to the internal power supply provides inline power (802.3af-compliant PoE and Cisco Inline Power) to integrated switch modules. On the Cisco 2911, 2921, and 2951, an optional DC power supply will be available in the future that extends deployment into central offices and industrial environments. Optional external redundant power supply (RPS) The Cisco 2911, 2921, and 2951 allow for power redundancy through the use of an external RPS device, thereby decreasing network downtime and protecting the network from power-supply failures. Redundant power on the Cisco 2900 Series is supported through the Cisco RPS 2300 Redundant Power System. You can use the Cisco RPS 2300 to provide redundant power for Cisco 2900 Series ISRs as well as Cisco Catalyst switches. To use the Cisco RPS 2300, an external RPS adapter is required (configurable option) to connect the platform to the external RPS. PoE boost When connected to an external RPS device, the Cisco 2911, 2921, and 2951 can operate in a PoE boost configuration in lieu of redundant power mode, whereby the power capacity of the platform is increased to twice the normal level to power additional PoE ports. Designed for flexible deployments The Cisco 2911 and 2951 are designed for NEBS environments. The Cisco 2911 is 12 inches deep and has an optional fan filter for deployments in a variety of environments. An assembly that provides front-to-back airflow is also available for 23-inch racks.
Specifications
Services and Slot Density Embedded hardware-based cryptography acceleration (IPSec + SSL) Cisco Unified SRST Sessions Cisco Unified CCME Sessions Cisco 2901 Yes 35 35 Cisco 2911 Yes 50 50 Cisco 2921 Yes 100 100 Cisco 2951 Yes 250 150
1-12
Chapter 1: Routing
Routing
Total onboard WAN 10/ 100/ 1000 Ports RJ-45-based ports SFP-based ports (use of SFP port disables the corresponding RJ-45 port) Service Module slots Double-wide Service Module slots (use of a double-wide slot will occupy all single-wide service module slots in a 2900) EHWIC slots Double-wide EHWIC slots (use of a doublewide EHWIC slot will consume two EHWIC slots) ISM slots Onboard DSP (PVDM) slots Memory DDR2 ECC DRAM - Default Memory (DDR2 ECC DRAM) - Maximum Compact Flash (external) - Default Compact Flash (external) - Maximum
2 2 0 0 0
3 3 0 1 0
3 3 1 1 1
3 3 1 2 1
4 2
4 2
4 2
4 2
1 2 512 MB 2 GB slot 0: 256 MB slot 1: none slot 0: 4 GB slot 1: 4 GB 2 1 1 1 Cisco RPS 2300 Yes 250 6 Mbps 2.5 GB 100 to 240 VAC auto ranging 47 to 63 Hz 2.2 to 1.0A <50A 50 210 250 200 750
1 3 512 MB 2 GB slot 0: 256 MB slot 1: none slot 0: 4 GB slot 1: 4 GB 2 1 1 1 Cisco RPS 2300 Yes 250 6 Mbps 2.5 GB 100 to 240 VAC auto ranging 47 to 63 Hz 3.4 to 1.4A <50A 60 320 370 280 750
1 3 512 MB 2 GB slot 0: 256 MB slot 1: none slot 0: 4 GB slot 1: 4 GB 2 1 1 1 Cisco RPS 2300 Yes 500 10 Mbps 4 GB 100 to 240 VAC auto ranging 47 to 63 Hz 3.4 to 1.4A <50A 70 340 405 370 750
External USB 2.0 flash memory slots (Type A) 2 USB Console port (Type B) (up to 115.2 kbps) 1 Serial console port Serial auxiliary port Power-supply options RPS support (External) WAN Optimization with WAAS Express Optimized TCP Connections with WAAS Express WAS Capacity with WAAS Express DRAM Required for WAAS Express Power Specifications AC input voltage AC input frequency AC input current range AC power supply (maximum) AC input surge current Typical Power (no modules) (Watts) Maximum Power with AC power supply (Watts) Maximum Power with PoE power supply (platform only) (Watts) Maximum end-point PoE power available from PoE power supply (Watts) 100 to 240 VAC auto ranging 47 to 63 Hz 1.5 to 0.6A <50A 40 150 175 130 1 1 AC and PoE No Yes 150 6 Mbps 2.5 GB
Maximum end-point PoE power capacity with N/A PoE Boost (Watts) Physical Specifications Dimensions (H x W x D) 1.75 x 17.25 x 17.3 in. (44.5 x 438.2 x 439.4 mm) 1RU (rack unit) included optional Yes 13.4 lb (6.1 kg) 14.3 lb (6.5 kg)
3.5 x 17.25 x 12 in. (88.9 x 438.2 x 304.8 mm) 2RU included optional Yes 18 lb (8.2 kg) 19 lb (8.6 kg)
3.5 x 17.25 x 18.5 3.5 x 17.25 x 18.5 in. (88.9 x 438.2 in. (88.9 x 438.2 x 469.9 mm) x 469.9 mm) 2RU included optional No 29 lb (13.2 kg.) 30 lb (13.6 kg) 2RU Included Optional No 29 lb (13.2 kg) 30 lb (13.6 kg)
Rack height Rack-mount 19in. (48.3 cm) EIA Rack Mount 23in. (58.4 cm) EIA Wall-mount (refer to installation guide for approved orientation) Weight with AC power supply (no modules) Weight with AC PoE power supply (no modules)
Chapter 1: Routing
1-13
Online model comparison chart: http://www.cisco.com/en/US/products/ps10536/prod_series_comparison.html Additional HSEC license available on 2921/ 2951 for high performance/ scale IPsec deployments
Cisco 2900 Series UCS Express Bundles C2951-WAAS-UCSE/K9 Cisco 2951, 2x SRE 900 or SRE 910, WAAS Enterprise Medium License, SRE-V License, 4GB ISR RAM, 768 MB ISR CF, IMC Software C2951-ES24-UCSE/K9 C2951-UCSE/K9 C2921-UCSE/K9 C2911-UCSE/K9 C2951-WAAS-SEC/K9 Cisco 2951, SRE 900 or SRE 910, 24 port L2 ESM, 4 GB ISR RAM, SRE-V License, 768 MB ISR CF, IMC Software Cisco 2951, SRE 900 or SRE 910, SRE-V License, 4 GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 2921, SRE 900 or SRE 910, SRE-V License, 2.5 GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 2911, SRE 900 or SRE 910, SRE-V License, 2.5 GB ISR RAM, 768 MB ISR CF, IMC Software Cisco 2951, SRE 900 or SRE 910, SEC License PAK, WAAS Enterprise Large License
1-14
Chapter 1: Routing
Routing
C2921-WAAS-SEC/K9 C2911-WAAS-SEC/K9 C2951-WAASX-SEC/K9 C2921-WAASX-SEC/K9 C2911-WAASX-SEC/K9 C2901-WAASX-SEC/K9 C2951-WAASX/K9 C2921-WAASX/K9 C2911-WAASX/K9 C2901-WAASX/K9
Cisco 2921, SRE 700 or SRE 710, SEC License PAK, WAAS Enterprise Medium License Cisco 2911, SRE 700 or SRE 710, SEC License PAK, WAAS Enterprise Small License Router BundleC2951, WAASX F-License, Sec License, Max Mem Router BundleC2921, WAASX F-License, Sec License, Max Mem Router BundleC2911, WAASX F-License, Sec License, Max Mem Router BundleC2901, WAASX F-License, Sec License, Max Mem Router BundleC2951, WAASX Feature License, Max Mem Router BundleC2921, WAASX Feature License, Max Mem Router BundleC2911, WAASX Feature License, Max Mem Router BundleC2901, WAASX Feature License, Max Mem
Cisco 2900 Series Export Restriction Compliance License (Required by U.S. Export regulations for more than 85Mbps throughput or 225 IPsec tunnels) FL-29-HSEC-K9 U.S. Export Restriction Compliance license for 2921/ 2951
Chapter 1: Routing
1-15
Overall, the Cisco 1900 Series offers unparalleled TCO savings and network agility through the intelligent integration of security, wireless, and application services.
Cisco 1921
Integrated wireless LAN The Cisco 1941W offers a secure integrated access point in a single device. The integrated access point is based on the IEEE 802.11n draft 2.0 standard that uses multiple-input, multiple-output (MIMO) to improve coverage for existing 802.11a/b/ g clients and new 802.11n clients. The Cisco 1941W supports dual radios802.11 b/g/n and 802.11a/nand is capable of operating in both autonomous and unified modes. WAN optimization with Cisco Wide Area Application Services (WAAS) Express Cisco WAAS Express, based on Cisco IOS Software and integrated into the Cisco 1941 router, offers bandwidth optimization and application acceleration capabilities in a cost-effective solution. Cisco WAAS Express is fully integrated in Cisco IOS Software, with no additional hardware requirement (the maximum DRAM is needed in the router). This integration allows significant savings in capital expenditures (CapEx) by enabling a small-footprint branch-office deployment. Cisco WAAS Express increases remote user productivity, reduces WAN bandwidth costs, and offers investment protection by interoperating with existing Cisco WAAS infrastructure. It uniquely provides network transparency, improving deployment flexibility with on-demand service enablement, and integrating with native Cisco IOS Software services such as security, NetFlow, and quality of service (QoS). It is fully interoperable with Cisco WAAS Modules for Services-Ready Engine (SRE) and Cisco WAAS appliances and can be managed by a common Cisco WAAS Central Manager. It offers Context-Aware Data Redundancy Elimination (DRE) for reduced latency and increased enduser experience. Organizations can enable Cisco WAAS Express as an on-demand service on the router and can expand to the Cisco WAAS Modules for SRE or a dedicated Cisco WAAS appliance as business needs grow.
Routing
Specifications
Services and Slot Density Embedded hardware-based crypto acceleration (IPSec + SSL) Total Onboard LAN 10/100/1000 RJ-45-Based Ports EHWIC Slots Double-Wide EHWIC slots (use of a double-wide EHWIC slot will consume two EHWIC slots) ISM Slots Memory (DDR2 DRAM) - Default Memory (DDR2 DRAM) - Maximum Compact FlashDefault Cisco 1941, Cisco 1941W Yes 2 2 2 1 1 (0 on the Cisco 1941W) 512 MB 2.0 GB External slot 0: 256 MB slot 1: none External slot 0: 4 GB slot 1: 4 GB 2 1 1 1 AC, PoE (Internal) No Yes 150 4 Mbps 2.5 GB 100240 V ~ 4763 Hz 1.50.6 <50 A 100240 V ~ 4763 Hz 1.50.6 <50 A Cisco 1921 Yes 2 2 2 1 0 512 MB 512 MB Internal 256 MB Internal 256 MB 1 1 1 1 AC, PoE No No
Compact FlashMaximum
External USB flash memory slots (Type A) USB Console Port (Type B) (up to 115.2 kbps) Serial Console Port (up to 115.2 kbps) Serial Auxiliary Port (up to 115.2 kbps Power Supply Options Redundant Power Supply Support WAN Optimization with WAAS Express Optimized TCP Connections with WAAS Express WAS Capacity with WAAS Express DRAM Required for WAAS Express Power Specifications AC Input Voltage AC Input Frequency AC Input Current range AC Power Supply (Max) (Amps) AC Input Surge Current
Chapter 1: Routing
1-17
Typical Power (No Modules) Maximum Power capacity with AC power supply
35 W 110 W
25W 60 W 70 W 80 W
Maximum Power capacity with PoE power supply 110 W (platform only) Maximum PoE device power capacity with PoE power supply Physical Specifications Dimensions (H x W x D) Rack Height Rack-mount 19in. (48.3 cm) EIA Wall-mount (refer to installation guide for approved orientation) Weight-with AC power supply (no modules) Weight-with PoE power supply (no modules) Maximum Weight-Fully Configured Airflow Cisco 1941W WLAN Specifications WLAN hardware 3.5 in x 13.5 in x 11.5 in 2 RU Included Yes 12 lbs 12.8 lbs 14 lbs Front to Side 80 W
1.75 in x 13.5 in x 11.5 in 1 RU Optional Yes 7 lb 7 lbs (external PoE) 8 lbs Back to side
IEEE 802.11n draft 2.0 standards-based access point with 802.11a/b/ g compatibility Automatic rate selection for 802.11a/ g/ n Dual radios for 802.11b/ g/ n and 802.11a/ n modes. RP-TNC connectors for field-replaceable external antennas 2-dB default antenna gain 2 x 3 multiple input, multiple output (MIMO) radio operation Wi-Fi 802.11n Draft v2.0 certified Autonomous or unified access point Cisco WCS support for monitoring of autonomous-mode access points Option to maximize throughput or maximize range Software-configurable transmit power Radio roles, including access point, root bridge, non-root bridge, and workgroup bridge Wi-Fi Multimedia (WMM) certification Traffic specifications (TSPEC) Call Admission Control (CAC) to ensure voice quality is maintained Unscheduled Automatic Power Save Delivery (UPSD) to reduce latency Unified access point features: Supported by wireless LAN controller and Cisco WCS Configurable local or central switching for HREAP mode Radio management through Cisco WCS Transparent roaming with mobility groups
Certifications
16 16 Standard 802.11i Wi-Fi Protected Access (WPA) and AES (WPA2) EAP authentication: Cisco LEAP, PEAP, Extensible Authentication Protocol Transport Layer Security (EAP TLS), Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST), Extensible Authentication Protocol-Subscriber Information Module (EAP-SIM), Extensible Authentication Protocol-Message Digest Algorithm 5 (EAP-MD5), and Extensible Authentication Protocol-Tunneled TLS (EAP-TTLS) Static and dynamic Wired Equivalent Privacy (WEP) Temporal Key Integrity Protocol/ Simple Security Network (TKIP/ SSN) encryption MAC authentication and filter User database for survivable local authentication using LEAP and EAP-FAST Configurable limit to the number of wireless clients Configurable RADIUS accounting for wireless clients Pre-Shared Keys (PSKs) (WPA-small office or home office [WPA-SOHO]) 16 16
1-18
Chapter 1: Routing
Cisco 1900 Series supports a wide range of modules that span an industry-leading breadth of services at the branch office. Please refer to the following link for the list of modules supported on the Cisco 1900: http://cisco.com/en/US/products/ps1900/products_relevant_interfaces_and_modules.html.
Routing
WAAS Express License for the Cisco 1941 Router FL-C1941-WAASX C1921-4SHDSL/K9 C1921-ADSL2-M/K9 CISCO1921-ADSL2/K9 C1941-SEC-SRE/K9 Cisco 1900 Series DSL Bundles
Chapter 1: Routing
1-19
WAN optimization with Cisco Wide Area Application Services (WAAS) Express Cisco WAAS Express, based on Cisco IOS Software and integrated into the Cisco 880 3G, 891, and 892 routers, offers bandwidth optimization and application acceleration capabilities in a cost-effective solution. Cisco WAAS Express is fully integrated in Cisco IOS Software, with no additional hardware requirement (the maximum DRAM is needed in the router). This integration allows significant savings in capital expenditures (CapEx) by enabling a small-footprint branch-office deployment. It increases remote user productivity, reduces WAN bandwidth costs, and offers investment protection by interoperating with existing Cisco WAAS infrastructure. It uniquely provides network transparency, improving deployment flexibility with on-demand service enablement, and integrating with native Cisco IOS Software services such as security, NetFlow, and quality of service (QoS). Cisco WAAS Express is fully interoperable with Cisco WAAS Modules for Services-Ready Engine (SRE) and Cisco WAAS appliances and can be managed by a common Cisco WAAS Central Manager. It offers Context-Aware DRE for reduced latency and increased end-user experience. Organizations can enable Cisco WAAS Express as an on-demand service on the router and can expand to the Cisco WAAS Modules for SRE or a dedicated Cisco WAAS appliance as business needs grow. An 8-port 10/ 100 Fast Ethernet managed switch with VLAN support and 4-port support for PoE (optional) to power IP phones or external access points Metro Ethernet features including: One 1000 BASE-T Gigabit Ethernet WAN port One 10/ 100 BASE-T Fast Ethernet WAN port Optional SFP port on Cisco 892F platform Intelligent hierarchical quality of service (HQoS): Supports hierarchical queuing and shaping Connectivity Fault Management (CFM), based on 802.1ag 802.3ah standards-based link operations, administration, and maintenance (OA&M) Ethernet Local Management Interface (E-LMI) for the customer edge CFM Interworking and backward compatibility Performance management based on IP service-level agreement (SLA) for Ethernet Dedicated console and auxiliary ports for configuration and management Two USB 2.0 ports for security eToken credentials, booting, and loading configuration from USB Easy setup, deployment, and centralized and remote-management capabilities through web-based tools and Cisco IOS Software
Routing
Specifications
Feature Fixed LAN Port Connections PoE Fixed WAN Port Connections Cisco 861 4-port 10/ 100 Ethernet switch No 1-port 10/100 Ethernet Cisco 881 4-port 10/ 100 Ethernet switch Optional 2-port 1-port 10/100 Ethernet Cisco 886A/ 887VA 4-port 10/100 Ethernet switch Optional 2-port 887VA: 1-port Multi-mode VDSL2 and ADSL2/2+, annex A 887VA-M: 1-port Multi-mode VDSL2 and ADSL2/2+, annex M 886VA: 1-port Multi-mode VDSL2 and ADSL2/2+, annex B IEEE 802.11 b/g/n (W model) Yes (G model) 886VA model only) No No Cisco 888/ 888E 4-port 10/ 100 Ethernet switch Optional 2-port 888: 1-port G.SHDSL (ATM mode) 888E: 1-port G.SHDSL (EFM mode) Cisco 891 8-port 10/ 100 Ethernet switch Optional 4-port 1-port 10/ 100 Ethernet, 1-port GE Cisco 892/ 892F 8-port 10/ 100 Ethernet switch Optional 4-port 1-port 10/100 Ethernet, 1-port GE; Ethernet, 1-port GE or SFP (892F model only)
Wireless LAN
IEEE 802.11 b/g/n (W model) Yes (G model) Yes No Yes (SRST model)
Chapter 1: Routing
1-21
FXO
No
No
No
No
No
Voice BRI
No
No
Yes (SRST model) Yes (CUBE model) 20 Yes Yes Yes Yes No
No
No
SIP IP-to-IP Trunking Maximum VPN Tunnels Content Filtering Stateful Firewall Inline IPS ScanSafe Connector WAN Optimization with WAAS Express Optimized TCP Connections with WAAS Express WAN Capacity with WAAS Express DRAM Required for WAAS Express
No
No
5 No Yes No No No
75
75
1.5 Mbps
2 Mbps
768 MB
768 MB
1-22
Chapter 1: Routing
Routing
CISCO888GW-G-AN-K9, EN-K9 CISCO888EW-GN-E-K9 C888EG+7-K9 C881-CUBE-K9 C886VA-CUBE-K9 C887VA-CUBE-K9 C888-CUBE-K9 C888E-CUBE-K9 C892F-CUBE-K9 C881SRSTW-GN-A-K9, E-K9 C888SRSTW-GN-A-K9, E-K9 CISCO891W-AGN-A-K9, N-K9 CISCO892W-AGN-E-K9
Cisco 888 G.SHDSL Wireless Router with 3G; 802.11n (Americas-A, Europe-E) Cisco 888E G.SHDSL Router with 802.11n ETSI Compliant and 802.3ah EFM Support Secure Router with Ethernet over G.SHDSL (EFM) and Embedded 3.7G HSPA+ Release 7 with SMS/ GPS Cisco 881 Ethernet Security Router with integrated CUBE Licenses Cisco 886VA Secure router with VDSL2/ ADSL2+ over ISDN and integrated CUBE licenses Cisco 887VA router with VDSL2/ ADSL2+ over ISDN and integrated CUBE licenses Cisco 888 G.SHDSL Router with integrated CUBE licenses Cisco 888E G.SHDSL Router with 802.3ah EFM Support and integrated CUBE licenses Cisco 892F SFP Gigabit Ethernet Security Router and integrated CUBE licenses Cisco 881 SRST Ethernet Security Router with FXS, FXO; 802.11n (Americas-A, Europe-E) Cisco 881 SRST Ethernet Security Router with FXS, BRI; 802.11n (Americas-A, Europe-E) Cisco 891W Gigabit Ethernet Security Router w/802.11n (Americas-A, Australia-N) Cisco 892W Gigabit Ethernet Security Router w/802.11n ETSI Comp
WAN Routers
Cisco 7600 Series Routers
The Cisco 7600 Series Routers combine optical WAN and metropolitanarea network (MAN) networking and high-volume Ethernet aggregation with a focus on the delivery of high-touch services for the IP and Multiprotocol Label Switching (MPLS) edge. These routers combine Layer 2 and Layer 3 networking capabilities with a high-bandwidth, high-performance architecture, including hardware-based forwarding of MPLS, IPv4, and IPv6. Cisco 7600 Series form factors include the Cisco 7603-S, 7604, 7606-S, 7609-S, and 7613 models. Each router can deliver DS-0 to OC-192 WAN and n x 10-Mbps Ethernet to n x 10-Gigabit Ethernet connectivity into service provider edge, MAN, and enterprise networks for a variety of quadruple-play (data, voice, video, and mobile) and aggregation solutions. All Cisco 7600 Series Routers comply with Network Equipment Building Standards (NEBS).
Chapter 1: Routing
1-23
Specifications
Feature Fixed Ports Cisco 7603-S Cisco 7604 Cisco 7606-S With RSP720 : Two Gigabit Ethernet ports (port 1 supports 1-Gbps (SFP); port 2 is configurable for either SFP or 10/ 100/1000BASE-T With RSP720-10GE: Two X2 based 10GE ports,2 GE SFP ports and one 10/ 100/ 1000BASE-T With SUP2T: Two X2 based 10GE ports ,3 GE SFP ports Cisco 7609-S With RSP720 : Two Gigabit Ethernet ports (port 1 supports 1-Gbps (SFP); port 2 is configurable for either SFP or 10/100/ 1000BASE-T With RSP72010GE: Two X2 based 10GE ports,2 GE SFP ports and one 10/ 100/ 1000BASE-T With SUP2T: Two X2 based 10GE ports ,3 GE SFP ports 9 (vertical) Same as Cisco 7603 RSP720-3C RSP720-3CXL RSP720-10G-3C RSP720-10G-3CXL Supervisor2T Supervisor2TXL Up to 60 Mpps 1440 Gbps Same as Cisco 7603-S Cisco 7613-S With RSP720 : Two Gigabit Ethernet ports (port 1 supports 1-Gbps (SFP); port 2 is configurable for either SFP or 10/ 100/1000BASE-T With RSP72010GE: Two X2 based 10GE ports,2 GE SFP ports and one 10/ 100/ 1000BASE-T With SUP2T: Two X2 based 10GE ports ,3 GE SFP ports 13 (horizontal) Same as Cisco 7603 RSP720-3C RSP720-3CXL RSP720-10G-3C RSP720-10G-3CXL Supervisor2T Supervisor2TXL Up to 60 Mpps 2Tbps Same as Cisco 7603-S With RSP720 : Same as Cisco 7603-S Two Gigabit Ethernet ports (port 1 supports 1-Gbps (SFP); port 2 is configurable for either SFP or 10/ 100/1000BASE-T Wiith RSP72010GE: Two X2 based 10GE ports,2 GE SFP ports and one 10/ 100/ 1000BASE-T
RSP720-3C RSP720-3CXL RSP720-10G-3C RSP720-10G-3CXL Supervisor2T Supervisor2TXL Up to 60 Mpps 960 Gbps Same as Cisco 7603-S
1G on RSP7203C 2G on RSP7203CXL
1G on RSP720-3C 2G on RSP7203CXL 2G on Supervisior2T Same as Cisco 7603-S 20 RU Yes, up to 2 per rack 36.75 x 17.2 x 20.7 in.
1G on RSP720-3C 2G on RSP7203CXL 2G on Supervisior2T Same as Cisco 7603-S 18 RU Yes, up to 2 per rack 33.3 x 17.2 x 18.1 in.
Same as Cisco 7603-S 7 RU Yes, up to 6 per rack 12.25 x 17.37 x 21.75 in.
1-24
Chapter 1: Routing
Routing
7613-RSP7XL-10G-R 7613-RSP7C-10G-R CISCO7613 7613-2SUP720XL-2PS 7613-SUP7203B-PS 7613-SUP720XL-PS Cisco 7609-S Systems CISCO7609-S 7609S-RSP720C-P 7609S-RSP720CXL-P 7609S-RSP720CXL-R 7609S-RSP720C-R 7609S-RSP7XL-10G-R 7609S-RSP7C-10G-P 7609S-RSP7XL-10G-P 7609S-RSP7C-10G-R Cisco 7606-S Systems CISCO7606-S 7606S-RSP720C-R 7606S-RSP720CXL-P 7606S-RSP720CXL-R 7606S-RSP720C-P 7606S-RSP7C-10G-P 7606S-RSP7XL-10G-P 7606S-RSP7XL-10G-R 7606S-RSP7C-10G-R 7606S-SUP2T-P 7606S-SUP2T-R 7606S-SUP2TXL-P 7606S-SUP2TXL-R Cisco 7604 Systems 7604-RSP720C-P 7604-RSP720C-R 7604-RSP720CXL-P 7604-RSP720CXL-R 7604-RSP7C-10G-P 7604-RSP7C-10G-R 7604-RSP7XL-10G-P 7604-RSP7XL-10G-R Cisco 7603-S Systems CISCO7603-S 7603S-RSP720C-P 7603S-RSP720C-R 7603S-RSP720CXL-P 7603S-RSP720CXL-R 7603S-RSP7C-10G-P 7603S-RSP7C-10G-R 7603S-RSP7XL-10G-P 7603S-RSP7XL-10G-R
Cisco 7613 Chassis,13-slot, Red System, 2RSP720-3CXL-10GE, 2PS Cisco 7613 Chassis,13-slot, Red System, 2RSP720-3C-10GE, 2PS Cisco 7613 Chassis Cisco 7613 13-slot, Redundant System, 2 SUP720-3BXL and 2 PS Cisco 7613 Chassis, 13-slot, SUP7203B, Power Supply Cisco 7613 13-slot, SUP720-3BXL and PS Cisco 7609-S Chassis including fans Cisco 7609S Chassis, 9-slot, RSP720-3C, PS Cisco 7609S Chassis, 9-slot, RSP720-3CXL, PS Cisco 7609S Chassis, 9-slot, Redundant System, 2RSP720-3CXL, 2PS Cisco 7609S Chassis, 9-slot, Redundant System, 2RSP720-3C, 2PS Cisco 7609S Chassis, 9-slot, Red System, 2RSP720-3CXL-10GE, 2PS Cisco 7609S Chassis, 9-slot, RSP720-3C-10GE, PS Cisco 7609S Chassis, 9-slot, RSP720-3CXL-10GE, PS Cisco 7609S Chassis, 9-slot, Red System, 2RSP720-3C-10GE, 2PS Cisco 7606-S Chassis Cisco 7606S Chassis,6-slot, Redundant System, 2RSP720-3C, 2PS Cisco 7606S Chassis,6-slot, RSP720-3CXL, PS Cisco 7606S Chassis,6-slot, Redundant System, 2RSP720-3CXL, 2PS Cisco 7606S Chassis,6-slot, RSP720-3C, PS Cisco 7606S Chassis,6-slot, RSP720-3C-10GE, PS Cisco 7606S Chassis,6-slot, RSP720-3CXL-10GE, PS Cisco 7606S Chassis,6-slot, Red System, 2RSP720-3CXL-10GE, 2PS Cisco 7606S Chassis,6-slot, Red System, 2RSP720-3C-10GE, 2PS Cisco 7606S Chassis,6-slot, VS-S2T-10G,PS Cisco 7606S Chassis,6-slot,Red System, 2VS-S2T-10G,2PS Cisco 7606S Chassis,6-slot, VS-S2T-10G-XL,PS Cisco 7606S Chassis,6-slot, VS-S2T-10G-XL,PS Cisco 7604 Chassis,4-slot, RSP720-3C, PS Cisco 7604 Chassis,4-slot, Redundant System, 2RSP720-3C, 2PS Cisco 7604 Chassis,4-slot, RSP720-3CXL, PS Cisco 7604 Chassis,4-slot, Redundant System, 2RSP720-3CXL, 2PS Cisco 7604 Chassis,4-slot, RSP720-3C-10GE, PS Cisco 7604 Chassis,4-slot, Red System, 2RSP720-3C-10GE, 2PS Cisco 7604 Chassis,4-slot, RSP720-3CXL-10GE, PS Cisco 7604 Chassis,4-slot, Red System, 2RSP720-3CXL-10GE, 2PS Cisco 7603-S Chassis Cisco 7603S Chassis, 3-slot, RSP720-3C, PS Cisco 7603S Chassis, 3-slot, Redundant System, 2RSP720-3C, 2PS Cisco 7603S Chassis, 3-slot, RSP720-3CXL, PS Cisco 7603S Chassis, 3-slot, Redundant System, 2RSP720-3CXL, 2PS Cisco 7603S Chassis, 3-slot, RSP720-3C-10GE, PS Cisco 7603S Chassis, 3-slot, Red System, 2RSP720-3C-10GE, 2PS Cisco 7603S Chassis, 3-slot, RSP720-3CXL-10GE, PS Cisco 7603S Chassis, 3-slot, Red System, 2RSP720-3CXL-10GE, 2PS
Chapter 1: Routing
1-25
Specifications
Feature Design Slots 16 slot Single-Shelf System Midplane design Line card: 16 x 40-Gbps/ 140Gbps slots Switch Fabric Card: 8 dedicated slots Route Processor: 2 dedicated slots Fan Controller: 2 dedicated slots 1280 Gbps (40-Gbps/ slot) 4480 Gbps (140-Gbps/ slot) 8 slot Single-Shelf System Midplane design Line card: Eight 40-Gbps/ 140-Gbps slots Switch-fabric card: 4 dedicated slots Route processor: 2 dedicated slots Fan tray: 2 fan trays 640 Gbps(40-Gbps/ slot) 2240 Gbps (140Gbps/slot) Maximum DC power needed when chassis is fully configured with line cards with traffic running: 5992W Chassis power supply maximum DC output: 7.7kW 38.5 x 17.5 x 36.6 in (97.79 x 44.45 x 92.964 cm) with base cosmetics; With cable management and front cover38.5 x 17.5 x 40.5 in (97.79 x 44.45 x 102.87 cm) 330.8 lb (148.86 kg) chassis with fan, PDU and blanks (as shipped) 650lb (292.5 kg) chassis as shipped, including power shelves, and all line cards and route processors 4 slot Single-Shelf System Midplane design Line card: 40-Gbps/ 140-Gbps slots Switch fabric card: 4 dedicated slots Route processor: 2 dedicated slots Fans: 4 fans, 1 fan tray 320 Gbps (40-Gbps/ slot) 1120 Gbps (140Gbps/slot) AC input = 4270VA @ 16000 BTU/HR DC input = 4326W @16200 BTU/HR Maximum DC = 9.1kW @ 31,050 BTU/ hr Maximum AC = 10.4kW @ 32,668 BTU/hr Fabric Card Chassis Midplane design Switch Fabric Card: 24 slots Shelf Controller: 2 dedicated slots
Routing
Full-Duplex Throughput
Power
Maximum DC power needed when chassis is fully configured with line cards with traffic running: 10.92kW Chassis power supply maximum DC output: 13.2kW
Dimensions (H x W x D)
84 x 23.6 x 36 in (213.36 x 59.94 x 91.44 cm); With cable management and front cover84 x 23.6 x 39.71 in (213.36 x 59.94 x 100.84 cm)
30 x 17.643 x 30.28 in (76.2 x 44.813 x 76.91 cm) without doors and cosmetics
Without cable management and front cover84 x 23.6 x 35 in (213.36 x 59.94 x 88.9 cm); With cable management and front cover84 x 23.6 x 41 in (213.36 x 59.94 x 104.2 cm) 644 lbs (292 kg) as shipped, chassis only with fan trays installed 712.8 lbs (323 kg) chassis only as shipped, including power shelves, without power modules 1559 lbs (707 kg) chassis fully configured
Weight
939 lbs (425 kg) as shipped, chassis only with build in rack and fan trays installed 1008 lbs (457 kg) chassis only as shipped, including power shelves, without power modules, and with build in rack 1595 lbs (723 kg) chassis fully configured, using all card slots, power shelves, cosmetics, and with build in rack
260 lb (117.93 kg) chassis with fan, power modules and blanks (as shipped) 380 lb (172.37 kg) chassis as shipped, including power shelf, fabric cards, and all line cards and route processors
IP Features
Control-plane packet handling, IPv4, IPv6, (X)ACLs, QoS/ class of service (CoS) using Modular QoS CLI (MQC), IP packet classification and marking, Queuing (both ingress and egress), Policing (both ingress and egress), Diagnostic and network management support Cisco IOS XR GFEC: standard G.975 Reed-Salomon algorithm EFEC: standard G.975.1 two orthogonally concatenated BCH super FEC code Full C-band tunable laser with 50-GHz spacing Router-to-router SONET/ SDH-like operations, administration, maintenance, and provisioning (OAM&P) Multiprotocol BGP Version 4 (MP-BGPv4), Open Shortest Path First Version 2 (OSPFv2), OSPFv3, IS-IS, Static routes, RPL, Multicast, MPLS, High availability, Security, Manageability
Online model comparison chart: http://www.cisco.com/en/US/products/ps5763/prod_models_comparison.html With AC input power shelf or DC input power shelf, front covers installed Including chassis rack-mount flanges Including cable-management system and front cover Chassis only, including power shelf for 16-slot chassis Chassis fully configured, using all card slots, AC or DC power shelf for 16-slot chassis, & AC or DC input power supplies
Chapter 1: Routing
1-27
Specifications
Feature Cisco XR 12000/ 12000 16-slot Chassis 16 slots 12016: 80 Gbps; 12416: 320 Gbps; 12816: 1280 Gbps Cisco XR 12000/ 12000 Series 10Slot Chassis 10 slots 12010: 50 Gbps; 12410: 200 Gbps; 12810: 800 Gbps Cisco XR 12000/ 12000 Series 6-Slot Chassis 6 slots 12006: 30 Gbps; 12406: 120 Gbps Cisco XR 12000/ 12000 Series 4-Slot Chassis 4 slots 12404: 80 Gbps
1-28
Chapter 1: Routing
Routing
12016: 2.5 Gbps/ slot 12010: 2.5 Gbps/ slot 12416: 10 Gbps/ slot 12410: 10 Gbps/ slot 12816: 40 Gbps/ slot 12810: 40 Gbps/ slot 71.5 x 17.25 x 22.0 in (181.6 x 184.26 x 55.9 cm); 72.5 x 18.75 x 24.0 in. 7; (43.8 x 47.6 x 61.0 cm)8 37.5 x 19 x 22.0 in. (95.25 x 48.26 x 55.9 cm); 24.0 in. (61.0 cm)
12006: 2.5 Gbps/ slot 12406: 10 Gbps/ slot 18.5 in. (47.0 cm) chassis width; 17.3 in. (43.9 cm); 18.9 in. (48.0 cm); chassis depth 28.0 in. (71.1 cm) 18.5 in. (47.0 cm); chassis width: 17.3 in (43.9 cm) 18.9 in. (48.0 cm) chassis depth: 28.0 in. (71.1 cm) Four
8.75 in. (22.23 cm) chassis width 17.38 in. (44.15 cm) 18.9 in. (48.01 cm) chassis depth 27.5 in. (69.85 cm) 8.75 in. (22.23 cm); chassis width: 17.38 in (44.15 cm) 18.9 in. (48.01 cm) chassis depth: 27.5 in. (69.85 cm) Eight
Weight
One
Two
Cisco IOS XR or Cisco IOS Software Operating System; Cisco Express Forwarding for distributed packet forwarding 12800Line cards that support 2.5-, 5-, 10-, or 20-Gbps capability; 12400Line cards that support 2.5-, 5- or 10-Gbps capability; 12000Line cards that support 2.5-Gbps capability IPv4/ v6, MPLS, BGPv4/ v6, IS-IS, OSPFv2.0, RIPv2, IGMP, DVMRP, and PIM DX/ SX Packet over SONET/ SDH (POS), Ethernet, ATM, copper (DS-3/ E3), Channelized (CT1, CT3, ChOC-3/ CHSTM1, ChOC-12/ CHSTM4, ChOC-48/ CHSTM16); see Cisco IOS XR Software release notes for specific connectivity support on the Cisco XR 12000 Series
Protocols Connectivity
Cisco XR 12000 10-Slot Systems XR-12410/200-AC XR-12410/200-DC 12010-AC 12010-DC 12810/800-AC 12810/800-DC XR-12406/120-AC XR-12406/120-DC 12006-AC 12006-DC XR-12404/80-AC XR-12404/80-DC
Chapter 1: Routing
1-29
1-30
Chapter 1: Routing
Specifications
Model Dimensions Cisco ASR 9006 Height17.5 in. (444.5 mm) Width17.5 in. (444.5 mm) Depth: With doors31.45 in. (798.8 mm) Without doors28.65 in (727.2 mm) Weight: 110 lbs (50 kg) (Unloaded) 230 lbs (106.8 kg) (Fully Loaded) Horizontal Same as Cisco ASR 9010 Cisco ASR 9010 Height36.75 in. (933.5 mm) Width17.5 in. (444.5 mm) Depth: With doors31.45 in. (798.8 mm) Without doors28.65 in (727.2 mm) Weight: 191 lbs (86.8 kg) (Unloaded) 375 lb (170.5 kg) (maximum) Cisco ASR 9922 Height: 77 in. (44 RU chassis) Width: 17.75 in. Depth: With doors: 31.45 in. (798.8 mm) Without doors: 28.65 in. (727.2 mm) Weight: 420 lbs (unloaded) 800 lbs (maximum) Vertical Dual redundant RPs in 2 slots RSPs segregated into RP and FC 20 line card slots 2 RPs 7 FCs 4 fan trays 4 DC PEMs or 4 AC PEMs 1 fan filter Fabric redundancy Fan redundancy Feed redundancy Power-supply redundancy RSP redundancy Software redundancy Yes 19-inch 21 and 23 inch adapters available Front-to-back Up to 48Tbps 7 fabric cards Supports 6+1 redundancy Operate in Active/ Active nonblocking mode Built-in service-intelligence and traffic-prioritization capability 4 fan trays 12 high-efficiency fans per tray Variable-speed fans for optimal thermal performance No single point of failure
Routing
Slot Orientation Cisco ASR 9000 Series RSP Cisco ASR 9000 Series LCs Commons Components
Four line card slots Two RSPs Two fan trays One PEM (either DC or AC) One fan filter Same as Cisco ASR 9010
Eight line card slots Two RSPs Two fan trays Two PEMs (either DC or AC) One fan filter Fabric redundancy Fan redundancy Feed redundancy Power-supply redundancy RSP redundancy Software redundancy Yes 19-inch 21 and 23 inch adapters available Front-to-back Up to 6.4 Tbps One per RSP Active/Active non-blocking operation mode in dual RSP redundant configuration. Fully redundant in dual RSP redundant configuration Built-in service-intelligence and traffic-prioritization capability Two fan trays Twelve high-efficiency fans per tray Variable-speed fans for optimal thermal performance No single point of failure
Rack Mounting
Same as Cisco ASR 9010 Note: Minimum 17.75-in. opening between posts is needed for proper operation. Side-to-back Up to 3.2 Tbps Same as Cisco ASR 9010
Thermal
Two fan trays Six high-efficiency fans per tray Variable-speed fans for optimal thermal performance No single point of failure Up to 3 power modules (AC or DC) for future scalability Multiple power module types Same as Cisco ASR 9010 Note: Mixing of AC and DC modules is not supported. DC modules can be mixed and matched.
Power Modularity Up to 6 power modules (AC or DC) for future scalability Multiple power module types 3-kW AC power module 2.1 and 1.5-kW DC power modules Note: Mixing of AC and DC modules is not supported. DC modules can be mixed and matched. Module redundancy: 1:N-1:1 Feed redundancy PEM redundancy Up to 16 power modules (AC or DC) for future scalability Multiple power module types 3-kW AC power module 2.1-kW DC power modules Note: Mixing of AC and DC modules is not supported. DC modules can be mixed and matched. Module redundancy: 1:N-1:1 Feed redundancy PEM Redundancy
Redundancy
1-32
Chapter 1: Routing
Routing
Three SPA slots One integrated 10-Gigabit Ethernet SIP (ASR1000-SIP10) One integrated route processor (Cisco ASR 1000 Series Route Processor 1 [RP1]) One embedded services processor (Cisco ASR 1000 Series Embedded Services Processor 5 [ASR1000-ESP5] or Cisco ASR 1000 Series Embedded Services Processor 10 [ASR1000ESP10]) Four built-in 1-Gigabit Ethernet ports Support of software redundancy Three SPA slots One integrated SIP40 One integrated router processor One integrated embedded services processor engine at 5 Gbps by default and upgradable to 10, 20, or 36 Gbps through software upgrade licenses Six built-in 1-Gigabit Ethernet ports Support of software redundancy Up to 10,000 Cisco Unified Border Element sessions Eight SPA slots Two SIP cards (Cisco ASR 1000 Series SPA Interface Processor 10 [ASR1000-SIP10] or Cisco ASR 1000 Series SPA Interface Processor 40 [ASR1000-SIP40]), each with 4 SPA slots One route processor (ASR1000-RP1 or ASR1000-RP2) One embedded services processor (ASR1000-ESP10, ASR1000-ESP20, or ASR1000-ESP40) Support of software redundancy Up to 16,000 Cisco Unified Border Element sessions Twelve SPA slots Three SIP cards (ASR1000-SIP10 or ASR1000-SIP40), each with 4 SPA slots Up to two route processors (ASR1000-RP1 or ASR1000-RP2) Up to two embedded services processors (ASR1000-ESP10, ASR1000-ESP20, ASR1000-ESP40, or ASR1000-ESP100) In-box hardware redundancy (dual embedded services processors [ESPs] and dual route processor) optional Up to 16,000 Cisco Unified Border Element sessions Twenty-four SPA slots Six SIP cards (ASR1000-SIP10 or ASR1000-SIP40), each with 4 SPA slots Up to two route processors (ASR1000-RP2) Up to two ESPs (ASR1000-ES40, or ASR1000-ESP100) In-box hardware redundancy (dual ESP and dual route processor) optional
Chapter 1: Routing
1-33
Specifications
Feature Built-in Gigabit Ethernet Ports Integrated Daughter Card Embedded Service Processor Slots Route Processor Slots SIP Card Slots Shared Port Adapter Slots Bandwidth Cisco ASR1001 4 No Integrated Cisco ASR10012XOC3POS 4 2 x OC-3 Ports Integrated Cisco ASR10014XT3 4 4 x T3 Ports Integrated Cisco ASR1001HDD 4 1 x 160GB Hard Disk Drive Integrated Cisco ASR 10014X1GE 4 4 x GE Ports Integrated
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps Up to 1.8 Gbps 4 GB (default); upgradeable to 8GB or 16GB IOS XE 3.2.0S Yes, Dual AC or DC by default 1 RU Yes
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps Up to 1.8 Gbps 4 GB (default); upgradeable to 8GB or 16GB IOS XE 3.2.0S Yes, Dual AC or DC by default 1 RU Yes
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps Up to 1.8 Gbps 4 GB (default); upgradeable to 8GB or 16GB IOS XE 3.2.0S Yes, Dual AC or DC by default 1 RU Yes
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps Up to 1.8 Gbps 4 GB (default); upgradeable to 8GB or 16GB IOS XE 3.3.0S Yes, Dual AC or DC by default 1 RU Yes
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps Up to 1.8 Gbps 4 GB (default); upgradeable to 8GB or 16GB IOS XE 3.3.0S Yes, Dual AC or DC by default 1 RU Yes
Forwarding Rate Crypto Performance Route Processor Memory Minimum Cisco IOS Release Redundant Power Supply Chassis Height Rack Mountable Dimensions (H x W x D) Airflow Feature Built-in Gigabit Ethernet Ports Integrated Daughter Card Embedded Service Processor Slots Route Processor Slots SIP Card Slots Shared Port Adapter Slots Bandwidth
1.71 x 17.3 x 18.5 in. 1.71 x 17.3 x 18.5 in. 1.71 x 17.3 x 18.5 in. 1.71 x 17.3 x 18.5 in. 1.71 x 17.3 x 18.5 in. Front-to-back Cisco ASR10018XCHT1E1 4 8 x Channelized T1/E1 Ports Integrated Front-to-back Cisco ASR1002/ ASR1002-X 4/6 No/No 1 ESP5 or ESP10/Integrated Integrated/ Integrated Integrated/ Integrated 3/3 Up to 10 Gbps with ESP-10/ up to 36 Gbps Front-to-back Cisco ASR1004 0 No 1 ESP10, ESP20, or ESP40 1 RP1 or RP2 2 8 Up to 40 Gbps with ESP-40 Front-to-back Cisco ASR1006 0 No 2 ESP10, ESP20, ESP40, or ESP100 2 RP1 or RP2 3 12 Up to 100 Gbps with ESP-100 Front-to-back Cisco ASR 1013 0 No 2 ESP40, or ESP100 2 RP2 6 24 Up to 100 Gbps with ESP-100
Integrated Integrated 1 2.5 Gbps; upgradable to 5 Gbps with Performance Upgrade License Up to 7.5 Mpps
Forwarding Rate
Up to 8 Mpps with ESP-10/ up to 30 Gbps Up to 4 Gbps with ESP-10/ up to 4 Gbps 4 GB (default); 4 GB (max.) /4 GB (default); 16 GB (max.) IOS XE 2.1.0 /IOS XE 3.7.0S Yes, Dual AC or DC by default 2 RU
Up to 23 Mpps with ESP-40 Up to 11 Gbps with ESP-40 RP1: 2 GB (default); 4 GB (max.) RP2: 8 GB (default); 16 GB (max.) IOS XE 2.1.0 Yes, Dual AC or DC by default 4 RU
Up to 59 Mpps with ESP-100 Up to 29 Gbps with ESP-100 RP1: 2 GB (default); 4 GB (max.) RP2: 8 GB (default); 16 GB (max.) IOS XE 2.1.0 Yes, Dual AC or DC by default 6 RU
Up to 59 Mpps with ESP-100 Up to 29 Gbps with ESP-100 RP1: 2 GB (default); 4 GB (max.) RP2: 8 GB (default); 16 GB (max.) IOS XE 3.1.0S Yes, Dual AC or DC by default 13 RU
Up to 1.8 Gbps
Minimum Cisco IOS Release Redundant Power Supply Chassis Height 1-34
Chapter 1: Routing
Routing
Yes
Yes
Chapter 1: Routing
1-35
Specifications
Model Dimensions (H x W x D) Chassis Height Cisco ASR 900 Series RSP Cisco ASR 900 Series IMs Commons Components Cisco ASR 903 5.22 x 17.44 x 9.22 in. (132.6 x 443 x 234.2 mm) 3RU Dual redundant RSPs in 2 slots 6 Interface Module slots Two RSPs One fan tray Two Power Supplies (either DC or AC) Fan redundancy Feed redundancy Power-supply redundancy RSP redundancy Software redundancy Yes: ETSI 19 inch 23 inch Side-to-Side 55Gbps Active / Standby non-blocking operation mode in dual RSP redundant configuration Fully redundant in dual RSP redundant configuration Built-in service-intelligence and traffic- prioritization capability Chapter 1: Routing
Rack Mounting
1-36
Routing
Thermal
Twelve high-efficiency fans per tray Variable-speed fans for optimal thermal performance Fully operational in single fan failure scenario Maximum 550Watt input power Up to 2 power supplies (AC or DC) Note: Mixing of AC and DC modules is not supported. Module redundancy: 1:1 Modules operate in load share mode.
Power
Metro IP Services
ATM License
Chapter 1: Routing
1-37
Specifications
Feature Grid Router WAN Interface Card (GRWIC) Slots Gigabit Ethernet density T1/ E1 WAN Module Serial RS-232 Module Ethernet Switch Module GRWIC-4G-LTE-V GRWIC-2SHDSL GRWIC-VA-DSL-A GRWIC-VA-DSL-B GRWIC-VA-DSL-M GRWIC-ISDN-1B-U GRWIC-ISDN-1B-S/T Flash Memory (External) DRAM Memory Power Supply Dimensions (H x W x D) Cisco CGR 2010 4 2 (dual-purpose ports: 100/ 1000 fiber SFP and/ or 10/ 100/ 1000 Gigabit copper) Yes1 or 2 port T1/ E1 CSU/ DSU module YesUp to 8 ports on a single module. 32 ports maximum with all 4 slots populated Yes6-port or 10-port module Cisco Connected Grid 2G/ 3G/ 4G Multimode LTE Module for Verizon Cisco Connected Grid G.SHDSL GRWIC Cisco Connected Grid VDSL2 and ADSL2/ 2+ GRWIC - Annex A Cisco Connected Grid VDSL2 and ADSL2/ 2+ GRWIC - Annex B Cisco Connected Grid VDSL2 and ADSL2/ 2+ GRWIC - Annex M Cisco Connected Grid ISDN BRI U GRWIC Cisco Connected Grid ISDN BRI S/ T GRWIC 256 MB (default) second compact flash slot can be populated with additional flash memory 1024 MB (default) External high AC/ DC and low DC power supply options available for redundant power supply support 3.5 x 17.25 x 15 in. (88.9 x 438.2 x 381 mm)
1-38
Chapter 1: Routing
Routing
Specifications
CGR 1240 (Pole Mount) CGR 1120 (Din-Rail Mount)
Physical Specifications Dimensions (H x W x D) 28.7 cm x 24.6 cm x 21.6 cm 11.3 in. x 9.7 in. x 8.5 in. (without Antennas) 8.9 cm x 22.9 cm (W) x 20 cm 3.5 in. x 9.0 in. x 7.8 in. 2 RU
Rack height
Chapter 1: Routing
1-39
Rack mount 19 in. Pole mount Wall mount Din-rail mount Typical weight fully configured
Yes Yes No 23 lbs (10.4 kg) Unit weight includes base chassis with four communication modules, AC power supply, and 8-Amp-hr battery backup unit -40 to 70C (-40 to 158F) with type test to 85C (185F) for 16 hours 20-28 Watts depending on configuration (without battery charging) Additional power consumption for battery charging and external radios 75 Watts
Yes, via 19-in. rack tray No Yes Yes 8 lbs (3.6 kg) Unit weight includes base chassis with two communication modules and integrated AC/ DC power supply -40 to 60C (-25 to 140F) with type test up to 85C (185F) for 16 hours 16-23 Watts depending on configuration
Maximum Power Consumption or Dissipation Communication Modules IEEE 802.15.4g WPAN 3.5G (AT&T and non-U.S. version) HSPA+/UMTS/GSM/GPRS/EDGE CDMA EV-DO Rev A/ 0/ 1xRTT A(Sprint, Verizon, other carriers) IEEE 802.16e- 2.3 GHz WiMAX IEEE 802.16e- 1.8 GHz WiMAX IEEE 802.16e- 3.6 GHz WiMAX IEEE 802.16e- 1.4 GHz WiMAX On-Board Interfaces Gigabit Ethernet combination ports (10/100/1000 copper, 100/1000 SFP) 10 / 100 Fast Ethernet copper ports Wi-Fi (IEEE 802.11 b/ g/ n) Serial (RS-232/RS-485) GPS for location IRIG-B2 Digital alarm inputs2 Digital alarm outputs2 USB Type A host ports2 Console and AUX port(RJ-45) SD flash slot (default memory) Power Options Power supply
40 Watts
4 Yes 2 Yes BNC connector 2 2 2 1 1 (2 GB) AC power supply: 100 - 240 VAC
6 Yes 2 Yes No 4 1 1 1 1 (2 GB) Integrated AC/ DC power supply: 3-phase AC power supply: 100-240 VAC 10.6-52 VDC (nominal), 9-60 VDC (max) -
Integrated modular battery backup unit (BBU) and smart charging and monitoring system CGR1240 can be deployed with up to threeBBU modules stacked and provide upto 12 Amp hours The CGR 1240 provides support for powering third-party radios: Voltage output: 12 VDC plus or minus 5 percent Power output: 12 W (continuous)
1 2
Operating temperature range depends of type of communication modules and battery backup options Built into the platform hardware, software support enabled in a future release
1-40
Chapter 1: Routing
Routing
Specifications
Feature WAN Cisco SRP 521W FE Cisco SRP 526W Asymmetric DSL (ADSL) 2+ Annex B(ISDN)* Mobile Data Network 4 ports Fast Ethernet Voice Ports USB 2.0 Ports 2 FXS, 1 FXO (relay 1 2 FXS, 1 FXO (relay 1 Cisco SRP 527W ADSL 2+ Annex A(POTS)* Mobile Data Network 4 ports Fast Ethernet 2 FXS, 1 FXO (relay 1 4 FXS, 1 FXO 2 4 FXS, 1 FXO 2 4 FXS, 1 FXO 2 Cisco SRP 541W GE Cisco SRP 546W Asymmetric DSL (ADSL) 2+ Annex B(ISDN)* GE/Mobile Data Network 4 ports-GE Cisco SRP 547W ADSL 2+ Annex A(POTS)* GE/Mobile Data Network 4 ports-GE
Chapter 1: Routing
1-41
Specifications
Feature WAN Cisco RV110W 10/100 Mbps Fast Ethernet Cisco RV120W 10/100 Mbps Fast Ethernet 802.11n 4 ports 10/100 Mbps Fast Ethernet IPsec 10 No Cisco RV215W 10/100/100 Mbps Fast Ethernet 802.11n 4 ports 10/100 Mbps Fast Ethernet IPsec 5 No Cisco RV180 10/100/100 Mbps Fast Ethernet 802.1Q 4 ports 10/100 Mbps Fast Ethernet with managed switch IPsec 10 No Cisco RV220W 10/100/1000 Mbps Gigabit Ethernet 802.11a/b/g/n 4 ports 10/100/1000 Mbps Gigabit Ethernet SSL and IPsec 5 (SSL) 25 (IPsec) Yes
Wireless Support 802.11n LAN 4 ports 10/100 Mbps Fast Ethernet IPsec 5 No
VPN Connectivity Maximum VPN Connections Optional Cisco ProtectLink Gateway Security
Routing
Chapter 1: Routing
1-43
1-44
Chapter 2: Switching
Chapter 2: Switching
This chapter provides only a subset of Cisco products and part numbers. Also, you will see products listed multiple times because they have dual roles and are used differently in small, medium, and large networks.
Switching
Switching At-a-Glance
Product Cisco Catalyst 6500 Series Switches Features Flagship Cisco Catalyst switching services platform for campus core and distribution deployments Offers Cisco Catalyst 6500 Virtual Switching System (VSS), which bolsters availability and scales to 4-terabit capacity Provides hardware that is capable up to 180 gigabits per slot Scales to high-density 10-/ 100-/ 1000-megabit, 10-Gigabit Ethernet, and 40-Gigabit Ethernet connectivity; is 100-Gigabit Ethernetready Offers integrated services modules that enhance security, manageability, and wireless control Provides full Network Virtualization feature set from Virtual Route Forwarding Lite (VRF-Lite), Easy Virtual Network (EVN), Multiprotocol Label Switching (MPLS), MPLS Traffic Engineering (MPLS-TE), and Advanced Virtual Private LAN Services (VPLS) Offers comprehensive Cisco TrustSec security features with 802.1x, Secure Group Tag (SGT), MAC Security (MACsec) encryption, and Security Group Access Control List (SGACL) policing Offers Cisco Application Visibility and Control with rich Flexible NetFlow functions and Network Analysis Modules (NAMs) Flexible modular system that supports nonblocking 48 gigabits per slot and 848 gigabits per system with multiple media line cards and 1 and 10-Gigabit Ethernet uplinks Provides leadership in power delivery, availability, and energy management with Universal Power over Ethernet (UPOE), Energy-Efficient Ethernet (EEE), and Cisco EnergyWise technology Offers operational simplicity including Flexible NetFlow, Packet Sniffer, Auto Smartports, SmartInstall, and network automation with Embedded Event Manager (EEM) Redefines high availability with complete hardware redundancy and true In-Service Software Upgrade (ISSU), Cisco Nonstop Forwarding (NSF), and Virtual Switching System (VSS) functions to maximize uptime and network resiliency A comprehensive security suite including MACsec encryption Provides IPv6 leadership in campus access with first-hop security and integrates simultaneous IPv4 and IPv6 support Offers medianet capabilities to simplify video quality of service (QoS), monitoring, and security Cisco Catalyst switching platform for space-constrained distribution deployments Offers best-in-class scalability, up to 800 Gbps switching capacity Provides up to 40 1-Gigabit Ethernet and 10-Gigabit Ethernet ports, hot-swappable uplink module, power supplies, and fans Offers compact, one-rack-unit (1RU) low-power form factor Cisco Catalyst switching platform for low-density 1-Gigabit Ethernet distribution deployments Offers 12- and 24-Gigabit Ethernet Small Form-Factor Pluggable (SFP) port models, and 1 and 10-Gigabit Ethernet uplink modules Offers StackWise and StackPower to contribute to scalability and resiliency Offers Flexible NetFlow with uplink Service Module For more information, refer to the following section Campus LAN: Access Switches. Page 2-5 Campus LAN: Core and Distribution Switches
2-8
2-12
2-18
Campus LAN: Access Switches Cisco Catalyst 4500E Series Switches Flexible modular system that supports nonblocking 48 gigabits per slot and 848 gigabits 2-8 per system with multiple media line cards and 1 and 10-Gigabit Ethernet uplinks Provides leadership in power delivery, availability, and energy management with Universal Power over Ethernet (UPOE), Energy Efficient Ethernet (EEE), and Cisco EnergyWise technology Offers operational simplicity including Flexible NetFlow, Packet Sniffer, Auto Smartports, SmartInstall, and network automation with Embedded Event Manager (EEM) Redefines high availability with complete hardware redundancy and true In-Service Software Upgrade (ISSU), Cisco Nonstop Forwarding (NSF), and Cisco Catalyst 6500 Virtual Switching System (VSS) functions to maximize uptime and network resiliency A comprehensive security suite including MAC Security (MACsec) encryption Provides IPv6 leadership in campus access with first-hop security and integrates simultaneous IPv4 and IPv6 support Offers medianet capabilities to simplify video quality of service (QoS), monitoring, and security Chapter 2: Switching 2-1
Stackable enterprise-class fixed-configuration switches for campus and branch offices Offers 24 or 48 ports of 10-/ 100-Mbps Fast Ethernet or 100BASE-FX fiber connections, and Gigabit Small Form-Factor Pluggable (SFP) uplinks Enables intelligent Layer 24 services including dynamic IP routing Reduces the cost of network operations with Cisco Catalyst Smart Operations Stackable enterprise-class fixed-configuration switches ideal for campus and branch offices Delivers scalable in-depth security solutions with Flexible NetFlow for real-time traffic flow analysis and MAC Security (MACsec) hardware encryption Lets you deploy video with confidence using built-in Traffic Simulator and Mediatrace technologies Helps ensure investment protection for evolving business needs with four optional uplink network modules with 1- or 10-Gigabit Ethernet ports Provides increased power availability and operational efficiency with Cisco StackPower and EnergyWise technologies Supports full hardware redundancy with dual redundant, modular power supplies and fans Provides scalability and ease of management with Cisco StackWise Plus technology Helps ensure most efficient and comprehensive Power over Ethernet Plus (PoE+) support in the industry with 30W on every port in 1 rack unit (1RU) Reduces operational overhead with Cisco Catalyst Smart Operations Enterprise-class fixed-configuration switches for campus and branch offices Offers 24 or 48 ports of 10-/ 100-Mbps Fast Ethernet and Gigabit Small Form-Factor Pluggable (SFP) uplinks Enables intelligent Layer 24 services including dynamic IP routing Reduces the cost of network operations with Cisco Catalyst Smart Operations Standalone fixed-configuration switches ideal for campus environments and branch offices Delivers scalable in-depth security solutions with Flexible NetFlow for real-time traffic flow analysis and MAC Security (MACsec) hardware encryption Allows you to deploy video with confidence using built-in Traffic Simulator and Mediatrace technologies Helps ensure investment protection for evolving business needs with four optional uplink network modules with 1- or 10-Gigabit Ethernet ports Helps ensure most efficient and comprehensive Power over Ethernet Plus (PoE+) support in the industry with 30W on every port in 1 rack unit (1RU) Reduces operational overhead with Cisco Catalyst Smart Operations Offers stackable switches with 48- and 24-port Gigabit Ethernet Enhanced Power over Ethernet FlexStack technology Delivers enhanced LAN services for midsize enterprise and branch-office networks through Cisco FlexStack technology in these stackable and standalone switches Offers Layer 2 switching with intelligent Layer 24 services Offers Enhanced Power over Ethernet Plus (PoE+) for next-generation high-power devices with 48 and 24 full PoE ports Automates infrastructure deployment through Cisco Catalyst Smart Operations Offers unprecedented low levels of box power consumption Provides the features of the Cisco Catalyst 2960-S Series with 10-/ 100-Mbps Fast Ethernet interfaces Available in 48- and 24-port models with Gigabit Small Form-Factor (SFP) uplinks Offers FlexStack stacking through an optional module; Cisco Catalyst 2960-SF Switches can be stacked with Cisco Catalyst 2960-S Switches for mixed 10/ 100 and 10/100/1000 stacks Supports Power over Ethernet Plus (PoE+) to deliver up to 30W per port to the advanced endpoints Provides switches with 48- and 24-port Fast Ethernet Power over Ethernet (PoE) Offers standalone fixed-configuration switches that are ideal for midmarket and branch-office networks Offers Layer 2 switching with intelligent Layer 24 services Provides Fast Ethernet connectivity Supports PoE including 24 full PoE ports and 24-port configurations with PoE supported on 8 ports
2-16
2-18
2-21
2-22
2-25
2-27
2-28
2-2
Chapter 2: Switching
Campus LAN: Compact Switches Cisco Catalyst 3560-C Series Switches Provides 8- and 12-port Gigabit and Fast Ethernet Power over Ethernet (PoE) and non-PoE switches Provides Power to Device (PD) and Power Source Equipment (PSE) capabilities, enabling PoE power pass-through for simplified power and network cabling infrastructure Offers MAC Security (MACsec) encryption for enhanced security Offers Cisco Catalyst Smart Operations for zero-touch deployment and ongoing operational simplicity Provides PoE Plus (PoE+) for up to 30W per port Offers fanless switch for silent operation Provides 8- and 12-port Fast Ethernet Power over Ethernet (PoE) and non-PoE switches Provides 8-port Gigabit Ethernet switch Offers Power to Device (PD) and Power Source Equipment (PSE) capability enabling PoE power pass-through for simplified power and network cabling infrastructure Offers Cisco Catalyst Smart Operations for zero-touch deployment and ongoing operational simplicity Offers fanless switch for silent operation Offers Ethernet switches ideal for small business networks Provides Small Form-Factor Pluggable (SFP) expansion slots for fiber-optic or Gigabit Ethernet uplink connectivity Supports an optional redundant power supply that provides uninterrupted failover to help ensure continuous operation Designed to be easy to use and manage by small businesses and the partners who serve them Rigorously tested to deliver the high availability and performance of a Cisco switch Provides a high level of security and fine-grained control to safeguard the network from unauthorized users Offers embedded quality-of-service (QoS) intelligence to prioritize delay-sensitive services such as voice and video For product information, refer to Chapter 6: Data Center. Offers ideal solution for space-constrained deployments that require highperformance wire-speed services and the modular flexibility of deploying Gigabit Ethernet and 10 Gigabit Ethernet, all in a small 2-rack-unit (2RU) form factor Data center top-of-rack switch optimized for lower latency, high throughput, and support for 10/100/1000 Ethernet as well as 10 Gigabit Ethernet Offers Layer 24 switching and intelligent services with dynamic IP routing Provides dual, hot-swappable internal AC or DC power supplies Provides hot-swappable field-replaceable fan tray with redundant fans Offers ideal solution for data center top-of-rack deployments and for spaceconstrained branch-office core deployments that require high-performance wirespeed services in a 1-rack-unit (1RU) form factor Offers data center top-of-rack optimized switches that emphasize buffering for highthroughput and full-mesh traffic profiles Offers Layer 24 switching and intelligent services with dynamic IP routing Provides dual, hot-swappable internal AC or DC power supplies Provides hot-swappable fan trays Offers data centeroptimized cooling with front-to-back or back-to-front cooling 2-32
Switching
2-33
Campus LAN: Small Business Switches Cisco ESW 500 Series Switches 2-34
2-35
Data Center Switches Cisco Nexus Switches Cisco Catalyst 4900M Series Switches See 6-1 2-14
2-15
Service Provider: Aggregation Switches Cisco Catalyst 6500 Series Switches Offers highly scalable system that is the foundation of the Cisco Borderless Networks 2-5 (securely connect anyplace at anytime); delivers granular scalability and virtualization (anyplace), secure identity-based access with Cisco TrustSec technology (anywhere), and remotely managed operational efficiency (anytime) Simplifies operations, reduces network costs, and increases resiliency through its Cisco Catalyst 6500 Virtual Switch System (VSS) 4T technology Automates network services and energy control and minimizes total cost of ownership (TCO) with backward compatibility and features such as Cisco Generic Online Diagnostics (GOLD), Onboard Failure Logging (OBFL), and SmartCallHome Delivers comprehensive features for Smart Operations, Security, Application Visbility and Control, and Resiliency Provides WAN with Shared Port Adapater (SPA) Interface Processor (SIP) modules; provides Virtual Private LAN Services (VPLS) capability in a Cisco Catalyst 6500 Supervisor Engine 720 infrastructure Provides Network Virtualization with Multiprotocol Label Switching (MPLS) and native VPLS capabilities in a Cisco Catalyst 6500 Supervisor Engine 2T infrastructure Infrastructure-ready for IPv6 deploymentfull IPv4 and IPv6 feature parity Chapter 2: Switching 2-3
Offers converged, full-featured aggregation platform designed specifically for the mobile, business, and residential markets Complements the Cisco 7600 Series Routers and Cisco ASR 9000 Series Aggregation Services Routers by providing a rich and scalable feature set of Layer 2 and Layer 3 VPN services in a compact package Built specifically for the convergence of wireless and wireline services Enables service providers to initiate Multiprotocol Label Switching (MPLS)-based VPN services from within the access layer Helps reduce total cost of ownership (TCO) and operating expenses Simplifies deployment with a compact form factor Promotes continuous switch operation Helps shield subscribers from malicious users and traffic Supports deployment of advanced Ethernet business services Provides tools to deliver high service availability Offers a path for flexible and differentiated services Enhances network services security against malicious use Enhances intelligence at the Metro Ethernet edge Ideal for service providers seeking to deliver residential triple-play services and business services Supports traffic shaping, tunneling, and VLAN mapping Offers cost-effective path from current to future service requirements Provides residential and business services Supports voice, video, data, wholesale, Layer 2, and Layer 3 VPN services Offers high-performance, scalable, and easy-to-manage solution that reduces capital expenditures (CapEx) and operating expenses (OpEx), improving quality of experience (QoE) Designed specifically for the harsh, rugged environments often found in the energy and utility industries KEMA certified to meet challenging compliance standards such as IEC 61850-3 and IEEE 1613 Provides tools for easy deployment, management, and replacement Offers advanced quality-of-service (QoS) capabilities to support mission-critical substation applications such as supervisory control and data acquisition (SCADA) and IEC 61850 generic object oriented substation event (GOOSE) messaging
2-36
Service Provider: Ethernet Access Switches Cisco ME 3600X Series Ethernet Access Switches Cisco ME 3400 Series Ethernet Access Switches Cisco ME 3400E Series Ethernet Access Switches Cisco Catalyst 3750 Metro Series *NEW PRODUCT* 2-38
2-40
2-42
2-44
2-49
Connected Grid Switches Cisco 2500 Series Connected Grid Switches 2-52
Services Cisco Routing and Switching Services use leading practices and time-tested methodologies to help you: Successfully integrate new technologies and applications onto the routing and switching platform Reduce risk, delays, and the total cost of network deployments Keep network devices and applications secure, available, and operating reliably Optimize your secure wired and wireless networks to meet future needs Achieve operational excellence For More Information Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. Cisco Services You can order Cisco Services directly or through our global network of certified partners. For more information, please visit: http://www.cisco.com/web/services/order-services/index.html. End-of-Life and End-of-Sale Products Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, the replacement products that are available, and information about product support. http://www.cisco.com/en/US/products/prod_end_of_life.html Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com, refer to the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or reference the URL listed in the For More Information section of each product. For more information about Cisco switching platforms, refer to the Cisco Catalyst Switch Guide at: http://www.cisco.com/go/switchguide. 2-53
2-4
Chapter 2: Switching
Switching
Specifications
Feature Slots Max 10/100/1000 ports Max 1 GE ports1 Max 10 GE ports1 Max 40 GE ports Maximum forwarding performance (IPv4) Height (RU) Weight (chassis)
1
Catalyst 6509-E 9 385 387 130 32 510 Mpps 14 60 lbs (27.3 kg)
Catalyst 6513-E 13 529 534 180 44 720 Mpps 19 79.1 lbs (35.9 kg)
Catalyst 6509-V-E 9 vertical 385 387 130 32 510 Mpps 21 121 lbs (54.9 kg )
Assumes use of supervisor uplinks in single supervisor configuration Chapter 2: Switching 2-5
Catalyst Supervisor Engines 2T Switch fabric Virtual Switching System (VSS) Uplinks Integrated 2T Yes 2T-XL Integrated 2T Yes 720-10G Integrated 720G Yes 720-10G-XL Integrated 720G Yes 720-3B Integrated 720G No 720-3BXL Integrated 720G No
2 x 1 GE (SFP) 2 x 10 GE (X2) 1 x 10/ 100/ 1000 RJ-45 6503-E 6504-E 6506-E 6509-E 6509-V-E 6513-E 6503-E 6504-E 6506-E 6509-E 6509-V-E 6513-E DFC3B(XL) DFC3C(XL)
1 x 1 GE (SFP) 1 x 1 GE (SFP) or 10/ 100/ 1000 RJ-45 6503-E 6504-E 6506-E 6509-E 6509-V-E 6513-E DFC3B(XL) DFC3C(XL) 6503-E 6504-E 6506-E 6509-E 6509-V-E 6513-E DFC3B(XL) DFC3C(XL)
Chassis
Supported distributed forwarding card (DFC) Multilayer switch feature card (MSFC) Policy feature card (PFC) 40G Line Cards
DFC4(XL)
DFC4(XL)
DFC3B(XL) DFC3C(XL)
MSFC5
MSFC5
MSFC3
MSFC3
MSFC3
MSFC3
PFC4
PFC4XL
PFC3C
PFC3CXL
PFC3B
PFC3BXL
Catalyst 6900 Series 6904-40G 40 GE mode Ports Optics 4 x 40 GE CFP 10 GE mode 16 x 10 GE FourX adapter, SFP+ 80 Gbps 2:1 (1:1 performance mode) 2 GB DFC4E(XL) Yes No Mixed mode 2 x 40 GE 8 x 10 GE CFP, FourX Adapter, SFP+ 80 Gbps 2:1 (1:1 performance mode) 2 GB DFC4E(XL) Yes No
Supported with Yes Sup 2T Supported with No other Sup 10G Line Cards Catalyst 6900 Series 6908-10G Ports Optics 8 X2, OneX adapter, SFP+ 80 Gbps 1:1
Catalyst 6800 Series 6816-10G 16 X2, OneX adapter, SFP+ 40 Gbps 4:1 (1:1 performance mode) 1 GB 6816-10T 16 None (RJ-45)
Catalyst 6700 Series 6716-10G 16 X2, OneX adapter, SFP+ 40 Gbps 4:1 (1:1 performance mode) 1 GB 6716-10T 16 None (RJ-45) 6708-10G 8 X2, OneX adapter, SFP+ 40 Gbps 2:1 (1:1 performance mode) 1 GB 6704-10G 4 XENPAK
40 Gbps 1:1
Onboard memory
2 GB
2-6
Chapter 2: Switching
Forwarding engine
DFC4E(XL)
DFC4E(XL)
DFC4E(XL)
CFC, optional DFC3B(XL) / DFC3C(XL); upgradable to DFC4A(XL) Requires CFC or DFC4A(XL) Yes
Switching
Supported with Yes Sup 2T Supported with No Sup 720 /Sup 720 10G 1G Line Cards
Yes
Yes
No
No
No
Yes
Catalyst 6800 Series 6848-SFP Ports Optics Onboard memory 48 SFP 1 GB 6848-TX 48 None (RJ-45) 1 GB 6824-SFP 24 SFP 1 GB
Catalyst 6700 Series 6748-SFP 48 SFP 256 MB, upgradable to 512 MB or 1 GB CFC, optional DFC3B(XL) / DFC3C(XL) upgradable to DFC4A(XL) Requires CFC or DFC4A(XL) Yes 6748-TX 48 None (RJ-45) 256 MB, upgradable to 512 MB or 1 GB CFC, optional DFC3B(XL) / DFC3C(XL) upgradable to DFC4A(XL) Requires CFC or DFC4A(XL) Yes 6724-SFP 24 SFP 256 MB, upgradable to 512 MB or 1 GB CFC, optional DFC3B(XL) / DFC3C(XL) upgradable to DFC4A(XL) Requires CFC or DFC4A(XL) Yes
Forwarding engine
DFC4A(XL)
DFC4A(XL)
DFC4A(XL)
Supported with Yes Sup 2T Supported with No Sup 720 /Sup 720 10G
Yes No
Yes No
Chapter 2: Switching
2-7
Ease of use: The Cisco Catalyst 4500E supports features such as EEM, Auto Smartports, SmartInstall, and Universal images on the Supervisor Engine 7-E and 7L-E that provide simplified deployment and operational simplicity for customers. IP communications: The Cisco Catalyst 4500E supports up to 60 watts per port through Cisco Prestandard Universal Power over Ethernet (UPOE) and is backward compatible with IEEE up to 30W Power over Ethernet Plus (PoE+). Cisco EnergyWise technology: This technology on the Cisco Catalyst 4500E Series allows IT operations and facilities to measure and fine-tune power usage to realize significant cost savings. The technology focuses on reducing power usage on all devices connected to a Cisco network, ranging from PoE devices such as IP phones and wireless access points to integration with IP-enabled building and lighting controllers. For more information, visit: http://www.cisco.com/en/US/products/ps10195/index.html. Extended warranty: Cisco Catalyst 4500E Series and Cisco Catalyst 4500 Switches extend the warranty from the previously offered 90-day warranty to a limited lifetime warranty (LLW). For more information, visit: http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps4324/product_bulletin_c25-533284. html.
Switching
Specifications
4500 E-Series Chassis Slots Redundant Supervisor Option Gigabit Ethernet GBIC/SFP density (including uplink) 10 GE Fiber port density (including uplink) 10/100/1000 density (including uplink) 100BASE-FX, LX-10, BX-D density Rack Unit (RU) Backplane Capacity using Supervisor 7-E Power Over Ethernet Plus (PoEP) Support (after software upgrade on premium linecard) Universal Power Over Ethernet (UPoP) Support 1+1 Power Supply Protection Hot-Swappable Power Supplies AC Internal AC External with power shelf DC Internal AC Internal AC External with power shelf DC Internal AC Internal AC External with power shelf DC Internal Cisco 4503-E 3 No 100 Cisco 4506-E 6 No 244 Cisco 4507R+-E 7 Yes 244 with Dual Sup 7-Es 64 Cisco 4510R+-E 10 Yes 388 with Dual Sup 7-Es
28
64
100
100
244
244
388
Up to 60W of UPOE
Up to 60W of UPOE
Up to 60W of UPOE
Up to 60W of UPOE
Yes Yes
Yes Yes
Yes Yes
Yes Yes
Max. watt Power Supported 9000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 96 96 96 96 96 96 9000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 240 240 240 240 240 240 9000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 240 240 240 240 240 240 9000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 289 364 384 240 240 240
Chapter 2: Switching
2-9
Max. number of UPOE devices (60W) Max. power supplies AC Internal AC External with power shelf DC Internal Unit weight (with Fan Tray) Dimensions (H x W x D) Supervisor Engines Chassis supported Enhanced Layer 3 option Total bandwidth (Gbps) Packets per second (Mpps) CPU MHz NetFlow Onboard memory (DRAM) On-Board Flash Compact Flash /SD Support Switching Capacity & Throughput Multilayer Switching (E)IGRP, OSPF, IS:IS, BGP Supervisor Redundancy QoS 48 48 48 32.25 lbs. (14.63 kgs.) 12.25 x 17.31 x 12.50 in (31.12 x 43.97 x 31.70 cm) Supervisor 7-E (WS-X45-Sup7-E) All yes 848 250 (IPv4) 125 (IPv6) Dual Core 1500 Flex NetFlow 2 GB upgradable to 4GB 1 GB Yes, SD 848 Gbps, 250 Mpps Enhanced L2/3/4 Services & Routing Yes WS-C4507R+E WS-C4510R+E 8Q/Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No Yes 256K 55K Unicast, 32K Multicast 120 120 120 40.50 lbs. (18.37 kgs) 17.38 x 17.31 x 12.50 in (44.13 x 43.97 x 31.70 cm) Supervisor 7L-E (WS-X45-Sup7L-E) All yes 520 225 (IPv4) 110 (IPv6) Dual Core 1500 Flex NetFlow 2 GB upgradable to 4GB 1 GB Yes, SD 520 Gbps, 225 Mpps Enhanced L2/3/4 Services & Routing Yes 120 120 120 44.50 lbs. (20.19 kgs) 19.19 x 17.31 x 12.50 in (48.74 x 43.97 x 31.70 cm) Supervisor 6-E (WS-X45-Sup6-E) All yes 320 250 (IPv4) 125 (IPv6) 1300 no 512 MB upgradable to 1 GB 128 MB Yes, CF 320 Gbps, 250 Mpps Enhanced L2/3/4 Services & Routing Yes WS-C4507R+E WS-C4510R+E 8Q/Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No Yes 256K 55K Unicast, 32K Multicast 120 120 120 54.50 lbs. (24.73 kgs) 24.35 x 17.31 x 12.50 in. (61.84 x 43.97 x 31.70 cm) Supervisor 6L-E (WS-X45-Sup6L-E) All yes 280 225 (IPv4) 110 (IPv6) 800 no 512 MB upgradable to 1 GB 64 MB 128 MB Yes, CF 280 Gbps, 225 Mpps Enhanced L2/3/4 Services & Routing Yes WS-C4507R+E 8Q/Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No Yes 57K 55K Unicast, 16K Multicast
WS-C4507R+E 8Q/Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No Yes 64k 55K Unicast, 32K Multicast
WS-C4506E-S6L-96V+
2-10
Chapter 2: Switching
WS-C4507RES6L-96V+
Cisco Catalyst 4507R-E PoE Bundle WS-C4507R-E WS-X45-SUP6L-E 2xWS-X4648-RJ45V+E Cisco Catalyst 4510R-E PoE Bundle WS-C4510R-E WS-X45-SUP6-E 2xWS-X4648-RJ45V+E Cisco Catalyst 4510R_E PoE Bundle WS-C4510R+E WS-X45-SUP7-E 2xWS-X4748-RJ45V+E Cisco Catalyst 4503E PoE Bundle with SUP7L-E WS-C4503-E WS-X45-SUP7L-E WS-X4648-RJ45V+E Cisco Catalyst 4506E PoE Bundle with SUP7-L-E WS-C4506-E WS-X45-SUP7L-E 2 x WS-X4648-RJ45V+E Cisco Catalyst 4507R+E PoE Bundle with SUP7-LE WS-C4507R+E WS-X45-SUP7L-E 2 x WS-X4648-RJ45V+E Cisco Catalyst 4500 E-Series Sup7-E, (SFP+) or 4x1G(SFP) Cisco Catalyst 4500 E-Series Sup7L-E, 2x10GE(SFP+) or 4x1G(SFP) Cisco Catalyst 4500 E-Series Sup6-E, 2x10GE(X2) w/Twin Gig Cisco Catalyst 4500 E-Series Sup6-E Lite, 2x10GE(X2) w/Twin Gig Cisco Catalyst 4500 Supervisor V-10GE, 2x10GE(X2), 4x1GE (SFP) Cisco Catalyst 4503-E Chassis, One WS-X4648-RJ45V+E, Sup6L-E, 1300W PS Cisco Catalyst 4506-E Chassis, Two WS-X4648-RJ45V+E, Sup6L-E, 1300W PS Cisco Catalyst 4506-E Chassis, Two 24G PoEP Line Cards, Sup6L-E, 2800W PS Cisco Catalyst 4506-E Chassis, Two 24G PoEP Line Cards, Sup6L-E, 4200W PS Catalyst 4500 E-Series 24-Port GE (SFP) Cisco Catalyst 4500 FE Switching Module, 48-100FX MMF(MTRJ) Cisco Catalyst 4500 FE Switching Module, 48-100FX MMF(MTRJ) (Spare) Cisco Catalyst 4500 10/ 100 Auto Module, 48-Ports (RJ-45) Cisco Catalyst 4500 10/ 100 Auto Module, 48-Ports (RJ-45)(Spare) Cisco Catalyst 4500 PoE 802.3af 10/ 100, 48-Ports (RJ45) Cisco Catalyst 4500 PoE 802.3af10/ 100, 48-Ports (RJ45) (Spare) Cisco Catalyst 4500 PoE+ Ready10/ 100/ Cisco Catalyst 4500 E-Series 48-Port PoE+ Ready 10/ 100/ 1000(RJ45) Cisco Catalyst 4500 PoE+ Ready10/ 100/ 1000, 48-Port(RJ45) Cisco Catalyst 4500 E-Series 48-Port PoE+ Ready 10/ 100/ 1000(RJ45) Cisco Catalyst 4500 E-series 48 port 10/ 100/ 1000 data card Cisco Catalyst 4500 E-Series 48-Port 10/ 100/ 1000 UPOE Cisco Catalyst 4500 E-Series 48 port 10/ 100/ 1000 PoE+
WS-C4510RES6-96V+
Switching
WS-C4510RE-S7+96V+
WS-C4503E-S7L+48V+
WS-C4506E-S7L+96V+
WS-C4507RE+96V+
WS-X45-SUP7-E (=) WS-X45-SUP7L-E (=) WS-X45-SUP6-E (=) WS-X45-SUP6L-E (=) WS-X4516-10GE (=) WS-C4503E-S6L-1300 WS-C4506E-S6L-1300 WS-C4506E-S6L-2800 WS-C4506E-S6L-4200 WS-X4624-SFP-E (=) WS-X4148-FX-MT WS-X4148-FX-MT= WS-X4148-RJ WS-X4148-RJ= WS-X4248-RJ45V WS-X4248-RJ45V= WS-X4548-RJ45V+ WS-X4648-RJ45V+E WS-X4548-RJ45V+= WS-X4648-RJ45V+E= WS-X4748-RJ45-E WS-X4748-UPOE+E WS-X4748-RJ45V+E
Chapter 2: Switching
2-11
Product Overview
Hardware Features WSC4500X16SFP+ Environmental Height Dimension (H x W x D) Inches (cm) Power Redundancy Unit Weight Pounds (Kilograms) Hot Swappable Fans (N+1 redundancy) Avg/Max Power Consumption Airflow Rack Mounting Options Uplink/Network Module Optic Types (All 8 ports) Optics WSC4500X-F16SFP+ WSC4500X24X-IPB WSC4500X24X-ES WSC4500X32SFP+ WSC4500X-F32SFP+ WSC4500X40X-ES
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 23lb (10.43kg) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 23lb (10.43kg) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 24lb (10.89kg) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 24lb (10.89kg) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 24 (10.89) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 24 (10.89) Yes
1RU 1.75 (4.4) x 17.25 (43.8) x 21.875 (55.6) 1+1 AC or DC 24 (10.89) Yes
330/400 Watts Front to Back Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR, DWDM, CWDM, GLC-T
330/400 Watts Back to Front Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR*, DWDM, CWDM, GLC-T
330/400 Watts Front to Back Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR, DWDM, CWDM, GLC-T
330/400 Watts Front to Back Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR, DWDM, CWDM, GLC-T
330/400 Watts Front to Back Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR, DWDM, CWDM, GLC-T
330/400 Watts Back to front Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR*, DWDM, CWDM, GLC-T
330/400 Watts Front to Back Front and Rear Mount SFP/SFP+ Optics LR, SR, ER, LRM, ZR, DWDM, CWDM, GLC-T
2-12
Chapter 2: Switching
Ports Maximum Gigabit 16 Ethernet (Fiber) Ports1 Maximum 10 Gigabit Ethernet (fiber) Ports1 Switching Capacity Throughput
16 16
24 24
24 24
32 32
32 32
40 40
16
Switching
Performance/Scalability
320 Gbps 225 Mpps 110 Mpps 64K for IPv4 32K for IPv6 55K 4094
480 Gbps 225 Mpps 110 Mpps 64K for IPv4 32K for IPv6 55K 4094
480 Gbps 225 Mpps 110 Mpps 64K for IPv4 32K for IPv6 55K 4094
800 Gbps 250 Mpps for IPv4 125 Mpps for IPv6 256K for IPv4 128K for IPv6 55K 4094
800 Gbps 250 Mpps for IPv4 125 Mpps for IPv6 256K for IPv4 128K for IPv6 55K 4094
800 Gbps 250 Mpps for IPv4 125 Mpps for IPv6 256K for IPv4 128K for IPv6 55K 4094
Routes Supported MAC Addresses Per VLAN Spanning Tree (PVST) Protocol and VLAN IDs Switched Virtual Interfaces (SVIs) Active VLANs Multicast Routes Security and Quality-ofService (QoS) Hardware Entries Switched Port Analyzer (SPAN)
4094 4094 24K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 24K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 24K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 24K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 32K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 32K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
4094 4094 32K 64K Ingress 64K Egress 8 Bidirectional 32 MB Dual Core 1.5GHZ 4 GB Hardware Switched Yes Yes
Shared Buffer CPU Synchronous Dynamic RAM (SDRAM) IPv6 Support USB Port Optional SD Card
1
Both the 32-port and 16-port versions can be configured with an optional expansion network module. Refer to product data sheet for details. Catalyst 4500-X Switches WS-C4500X-16SFP+ WS-C4500X-F-16SFP+ WS-C4500X-24X-IPB WS-C4500X-24X-ES WS-C4500X-32SFP+ WS-C4500X-F-32SFP+ WS-C4500X-40X-ES C4KX-NM-8SFP+ Catalyst 4500-X 16 Port 10GE IP Base, Front-to-Back Cooling i.e. Port Side to Power Supply Cooling (No P/ S) Catalyst 4500-X 16 Port 10GE IP Base, Back-to-Front Cooling i.e. Power Supply Side to Port Side Cooling (No P/ S) Catalyst 4500-X 24 Port 10GE IP Base, Front-to-Back Cooling i.e. Port Side to Power Supply Cooling (No P/ S) Catalyst 4500-X 24 Port 10GE Enterprise Services, Front-to-Back Cooling i.e. Port Side to Power Supply Cooling (No P/ S) Catalyst 4500-X 32 Port 10GE IP Base, Front-to-Back Cooling i.e. Port Side to Power Supply Cooling (No P/ S) Catalyst 4500-X 32 Port 10GE IP Base, Back-to-Front Cooling i.e. Power Supply Side to Port Side Cooling (No P/ S) Catalyst 4500-X 40 Port 10G Enterprise Services, Front-to-Back Cooling Port Side to Power Supply Cooling (No P/ S) Catalyst 4500-X 8 Port 10GE Network Module Chapter 2: Switching 2-13
Base product ID for software upgrade licenses on Catalyst 4500-X (paper delivery) Catalyst 4500-X IP BASE software license Catalyst 4500-X 16-port IP BASE to Enterprise Services upgrade license Catalyst 4500-X 32-port IP BASE to Enterprise Services upgrade license Catalyst 4500-X Base product ID for software upgrade licenses (electronic delivery) Catalyst 4500-X 16-port IP BASE to Enterprise Services upgrade license (electronic delivery) Catalyst 4500-X 32-port IP BASE to Enterprise Services upgrade license (electronic delivery)
Specifications
Feature Forwarding bandwidth (Gbps) Maximum stack members Packets per second (Mpps) MAC addresses supported Routes supported Onboard memory (DRAM) 10 GbE copper density Gigabit Ethernet SFP density (Using Twin Gigabit) 10G X2 fiber port density Cisco 4900M 320 0 250 55,000 256,000 512MB 16 32 24
2-14
Chapter 2: Switching
40 0 AC/DC 3.5 x 17.2 x 17.9in (89 x 437 x 455 cm) 25 to 39 (11.3 to 17.6kgs)
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Maximum stack members Total stack bandwidth (Gbps) Cisco 4948E and 4948E-F 176 0 0
Chapter 2: Switching
2-15
Packets per second (Mpps) MAC addresses supported Routes supported Onboard memory (DRAM) 10 GE density Gigabit Ethernet GBIC/ SFP density 10 GE XENPAK/ X2 port density 10/100/1000 density 10/100 density Max. watt power consumption AC/DC support Dimensions (H x W x D) Unit weight
131 55,000 57,000 512MB 4 48 4 SFP+ 48 0 300 AC/DC 1.75 x 17.5 x 19.4 in 14 lbs
Quality of service (QoS): Traffic shaping smooths a sudden traffic flow outburst without dropping packets; Shaped Round Robin guarantees bandwidth to mission-critical applications; and Scavenger Queuing protects against worms overloading resources. Management: Cisco Smartports quicken and simplify configuration of advanced Cisco Catalyst intelligent capabilities. Express setup facilitates quick and easy setup through a web interface, and resource templates help tailor switch resources for the application. Security: Dynamic Host Configuration Protocol (DHCP) Snooping allows only trusted ports to relay DHCP messages, eliminating rogue DHCP servers. Cisco Network Admission Control (NAC) prevents the propagation of costly worms and viruses; Dynamic ARP Inspection and IP Source Guard prevent against man-in-the-middle attacks; 802.1x and Identity-Based Network Services allow only authorized persons on the network; and port security prevents MAC address flooding attacks. Cisco EnergyWise technology helps reduce companywide power consumption and carbon footprint. These switches have a limited lifetime warranty.
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Maximum stack members Total stack bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported 10 GE density Gigabit Ethernet GBIC/ SFP density 10 GE XENPAK/ X2 port density 10/100/1000 density 10/100 density 100BASE-FX density Measured 100% Throughput power consumption (with max. 15.4 W PoE loads) PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) AC/DC support Dimensions (H x W x D) Cisco 3750V2- Cisco 3750V2- Cisco 3750V2- Cisco 3750V2- Cisco 3750V224TS 48TS 24PS 48PS 24FS 32 9 32 6.5 12,000 11,000 0 2 0 0 24 0 39 32 9 32 13.1 12,000 11,000 0 4 0 0 48 0 57 32 9 32 6.5 12,000 11,000 0 2 0 0 24 0 444 32 9 32 13.1 12,000 11,000 0 4 0 0 48 0 458 32 9 32 6.5 12,000 11,000 0 2 0 0 0 24 61
AC only 1.73 x 17.46 x 11.62 in. (4.4 x 44.3 x 29.5 cm.) 8.2 lbs. (3.7 kgs.)
AC only 1.73 x 17.46 x 11.62 in. (4.4 x 44.3 x 29.5 cm.) 9.2 lbs. (4.2 kgs.)
24 24 AC only 1.73 x 17.46 x 11.62 in. (4.4 x 44.3 x 29.5 cm.) 10 lbs. (4.6 kgs.)
24 48 AC only 1.73 x 17.46 x 11.62 in. (4.4 x 44.3 x 29.5 cm.) 11 lbs. (5.0 kgs.)
AC only 1.73 x 17.5 x 11.8 in. (4.4 x 44.5 x 30.1 cm.) 9.15 lbs. (4.15 kgs.)
Unit weight
Cisco Catalyst 3750X24T-L Cisco Catalyst 3750X48T-L Cisco Catalyst 3750X24P-L Cisco Catalyst 3750X48P-L Cisco Catalyst 3750X-48PF-L Cisco Catalyst 3750X24T-S Cisco Catalyst 3750X48T-S Cisco Catalyst 3750X24P-S Cisco Catalyst 3750X48P-S Cisco Catalyst 3750X-48PF-S Cisco Catalyst 3750X24T-E Cisco Catalyst 3750X48T-E Cisco Catalyst 3750X24P-E Cisco Catalyst 3750X48P-E Cisco Catalyst 3750X-48PF-E Cisco Catalyst C3750X12S-S Cisco Catalyst C3750X24S-S Cisco Catalyst C3750X12S-E Cisco Catalyst C3750X24S-E
Four optional uplink network modules with Gigabit Ethernet or 10-Gigabit Ethernet ports Industry-first PoE+ with 30W power on all ports in 1-rack-unit (1RU) form factor Dual redundant, modular power supplies and fans MAC Security (MACsec) hardware-based encryption Flexible NetFlow and switch-to-switch hardware encryption with the uplink service module and Open Shortest Path First (OSPF) for routed access in IP Base image IPv4 and IPv6 routing, multicast routing, advanced quality of service (QoS), and security features in hardware Enhanced limited lifetime warranty (LLW) with next-business-day (NBD) advance hardware replacement and 90-day access to Cisco Technical Assistance Center (TAC) support Enhanced Cisco EnergyWise technology for operational cost optimization by measuring actual power consumption of the PoE devices, reporting, and reducing energy consumption across the network USB Type-A and Type-B ports for storage and console, respectively, and an out-of-band Ethernet management port Cisco StackPower technology: An innovative feature and industry first for sharing power among stack members Cisco StackWise Plus technology for ease of use and resiliency with 64 Gbps of throughput Investment protection with backward compatibility with all other models of Cisco Catalyst 3750 Series Switches
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Maximum stack members Total stack bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported 10 GE density 10 GE SFP+ 10/100/1000 density 10/100 density 100BASE-FX density Measured 100% Throughput power consumption (without PoE loads, 1 Gps uplink module) PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) AC/DC support Dimensions (H x W x D) Unit weight Cisco 3750X-24T 160 Cisco 3750X-48T 160 Cisco 3750X-24P 160 Cisco 3750X-48P 160 Cisco 3750X-48PF 160
9 64
9 64
9 64
9 64
9 64
24
48
48
24
48
48
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 15.6 lbs. (7.1 kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 16.3 lbs. (7.4 kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm) 15.8 lbs. (7.2 kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 16.5 lbs. (7.5 kgs.)
AC and DC 1.75 x 17.5 x 19.5 in (4.45 x 44.5 x 49.5 cm.) 16.7 lbs. (7.6 kgs.)
Chapter 2: Switching
2-19
Feature Forwarding bandwidth (Gbps) Maximum stack members Total stack bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported 10 GE density 10 GE SFP+ 10/100/1000 density Measured 100% Throughput power consumption (without PoE load, I Gbps uplink module) AC/DC support Dimensions (H x W x D) Unit weight
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 15. lbs. (6.8 kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 15. 4 lbs. (7.0 kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 15. lbs. (6.8kgs.)
AC and DC 1.75 x 17.5 x 18.0 in (4.45 x 44.5 x 46.0 cm.) 15. 4 lbs. (7.0 kgs.)
Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, LAN Base feature set (Stackpower cables need to be purchased separately) Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, LAN Base feature set (Stackpower cables need to be purchased separately) Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, LAN Base feature set (Stackpower cables need to be purchased separately) Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, LAN Base feature set (Stackpower cables need to be purchased separately) Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, LAN Base feature set (Stackpower cables need to be purchased separately) Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC Power Supply 1 RU, IP Base feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC Power Supply 1 RU, IP Base feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, IP Base feature set Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set Cisco 3750-X stackable 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC Power Supply 1 RU, IP Services feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC Power Supply 1 RU, IP Services feature set Cisco 3750-X stackable 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, IP Services feature set Stackable 12 GE SFP Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Stackable 24 GE SFP Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Stackable 12 GE SFP Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set Stackable 24 GE SFP Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set
Switching
Specifications
Feature Cisco 3560V2-24TS 32 6.5 12,000 11,000 128/32 MB 2 0 24 24 Cisco 3560V2-48TS 32 13.1 12,000 11,000 128/32 MB 4 0 48 41 Cisco 3560V2-24PS 32 6.5 12,000 11,000 128/16 MB 2 0 24 435 Cisco 3560V2-48PS 32 13.1 12,000 11,000 128/16 MB 4 0 48 452 Cisco 3560V224TS-SD 32 6.5 12,000 11,000 128/32 MB 2 0 24 24
Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported Onboard memory (DRAM/ Flash) Gigabit Ethernet GBIC/ SFP density 10/100/1000 density 10/100 density Measured 100% Throughput power consumption (with Max. 15.4 W PoE loads) PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W)
24 24
24 48
Chapter 2: Switching
2-21
AC only 1.73 x 17.46 x 11.62 in.; (4.4 x 44.3 x 29.5 cm.) 10 lbs. (4.6 kgs.)
AC only 1.73 x 17.46 x 11.62 in.; (4.4 x 44.3 x 29.5 cm.) 11 lbs. (5 kgs.)
DC power supply 1.73 x 17.46 x 11.62 in.; (4.4 x 44.3 x 29.5 cm.) 8 lbs. (3.7 kgs.)
Cisco Catalyst 3560X-24T-L Cisco Catalyst 3560X-48T-L Cisco Catalyst 3560X-24P-L Cisco Catalyst 3560X-48P-L Cisco Catalyst 3560X-48PF-L Cisco Catalyst 3560X-24T-S Cisco Catalyst 3560X-48T-S Cisco Catalyst 3560X-24P-S Cisco Catalyst 3560X-48P-S Cisco Catalyst 3560X-48PF-S 2-22
Chapter 2: Switching
Cisco Catalyst 3560X-24T-E Cisco Catalyst 3560X-48T-E Cisco Catalyst 3560X-24P-E Cisco Catalyst 3560X-48P-E Cisco Catalyst 3560X-48PF-E
Low-density access, IP Services feature set, and optional two 10-Gigabit Ethernet SFP+ uplinks Medium-density access, IP Services feature set, and optional two 10-Gigabit Ethernet SFP+ uplinks Low-density access, IP Services feature set, PoE+, and optional two 10-Gigabit Ethernet SFP+ uplinks
Switching
Medium-density access, IP Services feature set, PoE+, and optional two 10-Gigabit Ethernet SFP+ uplinks Medium-density access, IP Services feature set, PoE+, optional two 10-Gigabit Ethernet SFP+ uplinks, and 1100-WAC power supply
Specifications
Feature Forwarding bandwidth (Gbps) Maximum stack members Total stack bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported 10 GE density 10 GE SFP+ 10/100/1000 density 10/100 density 100BASE-FX density Measured 100% Throughput power consumption (without PoE loads, 1 Gps uplink module) PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) AC/DC support Cisco 3560X-24T 160 0 65.5 12,000 11,000 2 2 24 24 0 93.5 Cisco 3560X-48T 160 0 101.2 12,000 11,000 2 2 48 48 0 120.4 Cisco 3560X-24P 160 0 65.5 12,000 11,000 2 2 24 24 0 99.3 Cisco 3560X-48P 160 0 101.2 12,000 11,000 2 2 48 48 0 133.9 Cisco 3560X-48PF 160 0 101.2 12,000 11,000 2 2 48 48 0 137.2
24
48
48
24
48
48
AC and DC
AC and DC
AC and DC
AC and DC
AC and DC
Chapter 2: Switching
2-23
1.75 x 17.5 x 18.0 in 1.75 x 17.5 x 18.0 in 1.75 x 17.5 x 18.0 in 1.75 x 17.5 x 18.0 in 1.75 x 17.5 x 19.5 in (4.45 x 44.5 x 46.0 (4.45 x 44.5 x 46.0 (4.45 x 44.5 x 46.0 (4.45 x 44.5 x 46.0 (4.45 x 44.5 x 49.5 cm.) cm.) cm) cm.) cm.) 15.4 lbs. (7.0 kgs.) 16.1 lbs. (7.3 kgs.) 15.7 lbs. (7.1 kgs.) 16.4 lbs. (7.4 kgs.) 16.6 lbs. (7.5 kgs.)
Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, LAN Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, LAN Base feature set Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, LAN Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, LAN Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, LAN Base feature set Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Base feature set Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, IP Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, IP Base feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, IP Base feature set Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet ports, with 350W AC power supply 1 RU, IP Services feature set Cisco 3560-X standalone 24 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, IP Services feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 715W AC power supply 1 RU, IP Services feature set Cisco 3560-X standalone 48 10/ 100/ 1000 Ethernet PoE+ ports, with 1100W AC power supply 1 RU, IP Services feature set
2-24
Chapter 2: Switching
Switching
Specifications
Feature Cisco 2960S- 48FPD-L 88 4 20 101.2 8,000 128 MB 2 - 48 - - 48 48 81 Cisco 2960S- 48LPD-L 88 4 20 101.2 8,000 128 MB 2 - 48 - - 24 48 71 Cisco 2960S- 24PD-L 88 4 20 65.5 8,000 128 MB 2 - 24 - - 24 24 55 Cisco 2960S- 48TD-L 88 4 20 101.2 8,000 128 MB 2 - 48 - - 0 0 55 Cisco 2960S- 24TD-L 88 4 20 65.5 8,000 128 MB 2 - 24 - - 0 0 39 Cisco 2960S- 48FPS-L 88 4 20 77.4 8000 128 MB 0 4 48 - - 48 48 79
Forwarding bandwidth (Gbps) Maximum Stack Members Total Bandwidth of Stack (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) 10 GE SFP+ Density Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (Watts)
Chapter 2: Switching
2-25
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 13 lbs. (5.9 kgs.) Cisco 2960S- 48LPS-L 88 4 20 77.4 8,000 128 MB 0 4 48 - - 24 48 71
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs.) Cisco 2960S- 24PS-L 88 4 20 41.7 8,000 128 MB 0 4 24 - - 24 24 55
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs) Cisco 2960S- 48TS-L 88 4 20 77.4 8,000 128 MB 0 4 48 - - 0 0 52
AC only 1.75 x 17.5 x 11.8 in. (4.5 x 44.5 x 29.9 cm.) 9.5 lbs. (4.3 kgs.) Cisco 2960S- 24TS-L 88 4 20 41.7 8,000 128 MB 0 4 24 - - 0 0 40
AC only 1.75 x 17.5 x 11.8 in. (4.5 x 44.5 x 29.9 cm.) 9.5 lbs. (4.3 Kgs.) Cisco 2960S- 48TS-S 88 4 20 74.4 8,000 128 MB 0 4 48 - - 0 0 53
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 13 lbs. (5.9 kgs.) Cisco 2960S- 24TS-S 88 4 20 38.7 8000 128 MB 0 4 24 - - 0 0 36
Forwarding bandwidth (Gbps) Maximum Stack Members Total Bandwidth of Stack (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) 10 GE SPF+ Density Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (Watts) AC/DC support Dimensions (H x W x D)
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs.)
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs.)
AC only 1.75 x 17.5 x 11.8 in. (4.5 x 44.5 x 29.9 cm.) 10.5 lbs. (4.8 kgs.)
AC only 1.75 x 17.5 x 11.8 in. (4.5 x 44.5 x 29.9 cm.) 10 lbs. (4.5 kgs.)
AC only 1.75 x 17.5 x 11.8 in. (4.5 x 44.5 x 29.9 cm.) 10.5 lbs. (4.8 kgs.)
AC only 1.75 x 17.5 x 11.8 in. ( 4.5 x 44.5 x 29.9 cm.) 10 lbs. (4.5 kgs.)
Unit weight
WS-C2960S-48LPD-L
WS-C2960S-24PD-L
2-26
Chapter 2: Switching
Cisco Catalyst 2960-S 48 Ethernet 10/ 100/ 1000 ports, 4 1 Gigabit Ethernet SFP uplink ports, optional Cisco FlexStack stacking support, LAN Base image Cisco Catalyst 2960-S 24 Ethernet 10/ 100/ 1000 ports, 4 1 Gigabit Ethernet SFP uplink ports, optional Cisco FlexStack stacking support, LAN Base image Cisco Catalyst 2960-S 48 Ethernet 10/ 100/ 1000, 2 One Gigabit Ethernet SFP uplink ports, LAN Lite software Cisco Catalyst 2960-S 24 Ethernet 10/ 100/ 1000, 2 One Gigabit Ethernet SFP uplink ports, LAN Lite software
Switching
Specifications
Feature Catalyst 2960S- F48FPS-L 88 Catalyst 2960S- F48LPS-L 88 Catalyst 2960S- F24PS-L 88 Catalyst 2960S- F48TS-L 88 Catalyst 2960S- F24TS-L 88 Catalyst 2960S- F48TS-S 88 Catalyst 2960S- F24TS-S 88
Forwarding bandwidth (Gbps) Maximum Stack Members Total Bandwidth of Stack (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) Gigabit Ethernet SFP density
4 20 13.1
4 20 13.1
4 20 6.5
4 20 13.1
4 20 6.5
4 20 10.1
4 20 6.5
8000 128 MB 4
8,000 128 MB 4
8,000 128 MB 2
8,000 128 MB 4
8,000 128 MB 2
8,000 128 MB 2
8000 128 MB 2
Chapter 2: Switching
2-27
10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (Watts) AC/DC support Dimensions (H x W x D)
48 48
48 24
24 24
48 0
24 0
48 0
24 0
48
48
24
61
54
47
35
27
35
27
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 13 lbs. (5.9 kgs.)
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs.)
AC only 1.75 x 17.5 x 15.2 in. (4.5 x 44.5 x 38.6 cm.) 12.5 lbs. (5.7 kgs.)
AC only 1.75 x 17.5 x 12.4 in. (4.5 x 44.5 x 29.9 cm.) 10.5 lbs. (4.8 kgs.)
AC only 1.75 x 17.5 x 12.4 in. (4.5 x 44.5 x 29.9 cm.) 10 lbs. (4.5 kgs.)
AC only 1.75 x 17.5 x 12.4 in. (4.5 x 44.5 x 29.9 cm.) 10.5 lbs. (4.8 kgs.)
AC only 1.75 x 17.5 x 12.4 in. ( 4.5 x 44.5 x 29.9 cm.) 10 lbs. (4.5 kgs.)
Unit weight
2-28
Chapter 2: Switching
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (with Max. PoE loads) AC/DC support Dimensions (H x W x D) Unit weight Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) Cisco 296024TC-L 16 Cisco 296024TT-L 16 Cisco 296048TC-L 16 Cisco 296048TT-L 16 Cisco 296024-S 16
6.6
6.6
10.1
10.1
3.6
8,000 64 MB 2
8,000 64 MB 0
8,000 64 MB 2
8,000 64 MB 0
8,000 64 MB 0
2 24 0 -
2 24 0 -
2 48 0 -
2 48 0 -
0 24 0 -
27
28
39
42
22
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.) Cisco 296024TC-S 16
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.) Cisco 296048TC-S 16
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.) Cisco 296048TT-S 16
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.) Cisco 2960-48PST-L 16
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm) 8 lbs. (3.6 kgs.) Cisco 2960-48PST-S 16
6.5 8,000 64 MB
10.1 8,000 64 MB
10.1 8,000 64 MB
6.5 8,000 64 MB
13.3 8,000 64 MB
Chapter 2: Switching
2-29
Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (with Max. PoE loads) AC/DC support Dimensions (H x W x D) Unit weight Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Onboard memory (DRAM) Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 3 devices (7.3W) Measured 100% Throughput power consumption (with Max. PoE loads) AC/DC support Dimensions (H x W x D) Unit weight Feature Forwarding bandwidth (Gbps) Packets per second (Mpps)
2 24 0 -
22 48 0 -
2 48 0 -
2 48 0 24
2 48 0 24
48
48
27
39
42
460
460
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.) Cisco 2960-8TC-S 16
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.)
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs (3.6 kgs.) Cisco 2960-8TC-L 16
AC only
AC only
1.73 x 17.5 x 12.9 in. 1.73 x 17.5 x 13 in. (4.4 x 44.5 x 32.8 (4.4 x 44.5 x 33.2 cm.) cm.) 12 lbs. (5.4 kgs.) 12 lbs. (5.4 kgs.) Cisco 2960G-8TC-L 32
2.7 8,000 64 MB 1
2.7 8,000 64 MB 1
11.9 8,000 64 MB 1
1 8 0 -
1 8 0 -
7 0 0 -
12
12
22
AC only 1.73 x 10.6 x 6.4 in. (4.4 x 27 x 16.3 cm) 3 lbs. (1.4 kgs.) Cisco 296024LT-L 16 Cisco 296024PC-L 16
AC only 1.73 x 10.6 x 6.4 in. (4.4 x 27 x 16.3 cm) 3 lbs. (1.4 kgs.) Cisco 296024LC-S 16
AC only 1.73 x 10.6 x 8.1 in. (4.4 x 27 x 20.5 cm) 3 lbs. (1.4 kgs.) Cisco 2960-24PC-S 16
6.5
6.5
6.5
6.5
2-30
Chapter 2: Switching
MAC addresses supported Onboard memory (DRAM) Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) PoE: Max. 802.3af Class 2 devices (7.3W) Measured 100% Throughput power consumption (with Max. PoE loads) AC/DC support Dimensions (H x W x D) Unit weight
8,000 64 MB 0
8,000 64 MB 2
8,000 64 MB 2
8,000 64 MB 2
Switching
2 24 0 8
2 24 0 24
2 24 0 8
2 24 0 24
24
24
162
433
162
433
AC only 1.73 x 17.5 x 9.3 in. (4.4 x 44.5 x 23.6 cm.) 8 lbs. (3.6 kgs.)
AC only
AC only
AC only 1.73 x 17.5 x 13 in. (4.4 x 44.5 x 33.2 cm) 12 lbs. (5.4 kgs.)
1.73 x 17.5 x 12.9 in. 1.73 x 17.5 x 13 in (4.4 x 44.5 x 32.8 (4.4 x 44.5 x 33.2 cm.) cm) 10 lbs. (4.5 kgs.) 10 lbs. (4.5 kgs.)
Chapter 2: Switching
2-31
Specifications
Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) VLANS Onboard memory (DRAM) Gigabit Ethernet GBIC/SFP density 10/100/1000 density 10/100 density PoE Budget Dimensions (H x W x D) Unit weight WS-C3560CG8TC-S 10 WS-C3560CG8PC-S 10 WS-C3560CPD8PT-S 10 WS-C3560C8PC-S 2.8 WS-C3560C12PC-S 3.2
13.2
13.2
13.2
3.8
4.6
1005 128 MB 2
1005 128 MB 2
1005 128 MB 0
1005 128 MB 2
1005 128 MB 2
10 0W
10 124W
10 Upto 23.8W
1.75x10.6x8.4 (in) 1.75x10.6x9.4 (in) 44.4x269x213 (cm) 44.4x269x238 (cm) 3.0 lbs 1.35(kg) 4.1lbs 1.86(kg) 3.3 lbs 1.5(kg)
2-32
Chapter 2: Switching
Switching
Specifications
Feature WSC2960CPD8TT-L 2.8 WSC2960CPD8PT-L 2.8 WSC2960CG8TC-L 10 WSC2960C8TC-L 2.8 WSC2960C8TC-S 2.8 WSC2960C8PC-L 2.8 WSC2960C12PC-L 3.2
Forwarding bandwidth (Gbps) Packets per second (Mpps) VLANS Onboard memory (DRAM) Gigabit Ethernet GBIC/SFP density 10/100/ 1000 density 10/100 density PoE Budget Dimensions (H x W x D)
3.8
3.8
13.2
3.8
3.8
3.8
4.6
255 128 MB
255 128 MB
255 128 MB
255 128 MB
255 128 MB
2552 128 MB
255 128 MB
10
8 Upto 30.8W* 1.75 x 10.6 x 6.8(in) 44.4 x 269 x 172(cm) 2.4 lbs 1.08(kg)
8 0W 1.75 x 10.6 x 8.4 (in) 44.4 x 269 x 213(cm) 2.8 lbs 1.27(kg)
8 124W 1.75 x 10.6 x 9.4(in) 44.4 x 269 x 238(cm) 4.1 lbs 1.86(kg)
12 124W 1.75 x 10.6 x 9.4 (in 44.4 x 269 x 238(cm) 4.1 lbs 1.86(kg)
Unit weight
Specifications
Product Product Number ESW-5408P ESW-54024P ESW-54024 ESW-54048 ESW-5208P ESW-52024P ESW-52048P Fast Ethernet Switches without PoE ESW-52024 ESW-52048 Copper FE ports N/A N/A N/A N/A 8 24 48 24 48 Copper GigE ports 8 24 24 48 None 4 2 4 2 SFP GigE ports None None None None None None 2 None 2 Combo SFP GigE ports3 1 4 4 4 1 2 None 2 None PoE support Yes Yes No No Yes Yes Yes No No PoE ports @7.5 Watts 8 24 N/A N/A 8 24 48 N/A N/A N/A N/A 4 12 24 N/A N/A PoE ports @15.4 Watts
Gigabit Ethernet Switches with PoE Gigabit Ethernet Switches without PoE Fast Ethernet Switches with PoE
2-34
Chapter 2: Switching
Cisco ESW 500 Forty-eight 10/ 100 PoE ports; 4 expansion ports: Two 10/ 100/ 1000BASE-T and 2 SFP slots Cisco ESW 500 Eight 10/ 100/ 1000 PoE ports; 1 expansion port: One 10/ 100/ 1000BASE-T and 1 combo* SFP slot Cisco ESW 500 Twenty-four 10/ 100/ 1000 Ethernet ports; 4 expansion ports: 4 combo* SFP slots Cisco ESW 500 Twenty-four 10/ 100/ 1000 PoE ports; 4 expansion ports: 4 combo* SFP slots Cisco ESW 500 Forty-eight 10/ 100/ 1000 Ethernet ports; 4 expansion ports: 4 combo* SFP slots
Switching
* Combo SFP slots include one 10/100/1000BASET Ethernet port and 1 SFP-based Gigabit Ethernet slot for fiber, 1 port
active at a time
Specifications
Category Switch Model SKU Copper FE ports Copper GigE ports Combo PoE miniSupport GBIC GigE ports* 2 2 2 2 2 2 2 62W 124W 180W PoE Ports @7.5 Watt 8 8 24 PoE ports @15.4 Watt 4 8 12 -
Gigabit Ethernet Switches with PoE Gigabit Ethernet Switches without PoE
8 8 26 8 18 26 50
Chapter 2: Switching
2-35
Fast Ethernet Switches with PoE and GigE uplinks Fast Ethernet Switches without PoE and with GigE uplinks Fast Ethernet Switches without PoE and without GigE uplinks
8 8 24 48 8 24 48 8
0 0 2 2 0 2 2 0
2 2 2 2 2 2 2 0
8 8 24 48 -
4 8 12 24 -
Each combo mini-GBIC port includes one 10/ 100/ 1000BaseT Ethernet port and 1 mini-GBIC Gigabit Ethernet port for fiberwith one port active at a time.
2-36
Chapter 2: Switching
Switching
Specifications
Features Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported GE density 10GE density AC/DC support Dimensions (H x W x D) Unit weight Cisco ME 3800X-24FS 44 (full duplex) 65 256,000 80,000 24 2 AC and DC modular and redundant 1.72-in. x 17.50-in. x 20.33-in. (4.47cm x 44.45cm x 51.6cm) 14.50 lb (6.57 kg)
Chapter 2: Switching
2-37
Cisco ME 3800X Series License Options METROETHERNETSERVICES Layer 2 feature license targeted for Layer 2 aggregation Enhanced QoS, with deep buffers and Hierarchical QoS Layer 2 features for L2 VPN including EVC framework Ethernet OAM Synchronous Ethernet and SynchE ESMC support Layer 3 feature license targeted for Layer 3 aggregation IPv6 and IPv4 routing (OSPF, ISIS, EIGRP,BGP) Layer 3 multicast PIM SM and SSM Bidirectional Forwarding Detection (BFD) Multi-VRF CE (VRF lite) with service awareness (ARP, ping, SNMP, syslog, traceroute, FTP, TFTP) MPLS feature license targeted for MPLS aggregation MPLS label imposition/ disposition MPLS Traffic Engineering (TE) and Fast Reroute (FRR) Ethernet over MPLS (EoMPLS) H-VPLS VPLS MPLS VPN MPLS OAM Enables full scalability for Layer 2, IP routing, and MPLS resources GLC-FE-100FX, GLC-FE-100EX, GLC-FE-100ZX, GLC-FE-100LX, GLC-FE-100BX-U, GLCFE-100BX-D, GLC-LH-SM, GLC-SX-MM, GLC-ZX-SM, GLC-T, CWDM-SFP-1470, CWDMSFP-1490, CWDM-SFP-1510, CWDM-SFP-1530, CWDM-SFP-1550, CWDM-SFP-1570, CWDM-SFP-1590, CWDM-SFP-1610, GLC-EX-SMD, GLC-BX-U, GLC-BX-D, SFP-GE-L, SFP-GE-S, SFP-GE-T, DWDM-SFP-xx, CAB-SFP-50CM SFP-10G-SR, SFP-10G-LR, SFP-10G-ER, SFP-10G-ZR, SFP-10G-LRM, SFP-H10GBCUxM
METROIPSERVICES
METROAGGREGATIONSERVICES
SERVICESCALABILITY SFP
SFP+
2-38
Chapter 2: Switching
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported GE density 10GE density AC/DC support Dimensions (H x W x D) Unit weight Cisco ME 3600X-24TS 44 (full duplex) 65 16,000 20,000 24 2 AC and DC modular and redundant 1.72-in. x 17.50-in. x 20.33-in. (4.47cm x 44.45cm x 51.6cm) 14.15 lb (6.41 kg) Cisco ME 3600X-24FS 44 65 16,000 20,000 24 2 AC and DC modular and redundant 1.72-in. x 17.50-in. x 20.33-in. (4.47cm x 44.45cm x 51.6cm) 14.50 lb (6.57 kg)
Chapter 2: Switching
2-39
Cisco ME 3600X Series license Options METROIPACCESS Layer 2 and Layer 3 feature license targeted for Layer 2 and Layer 3 premium Services Enhanced QoS, with deep buffers and Hierarchical QoS Ethernet OAM, IP-SLA Layer 2 features for L2 VPN including EVC framework Layer 3 features for advanced IP routing protocols including IP Routing protocols like RIPv1/ v2, EIGRP, OSFP, BGPv4, HSRP,VRRP Layer 3 IPv4 and v6 Unicast Routing Secured Layer 3: Multi-VRF CE Timing: SynchE and ESMC MPLS features license targeted for MPLS deployment in the access and MPLS based VPN Services MPLS label imposition /Disposition on all ports MPLS Traffic engineering and Fast Reroute Ethernet over MPLS (EoMPLS) VPLS H-VPLS MPLS VPN MPLS OAM The 10GE Upgrade license allows service providers to enable 10 Gigabit Ethernet on the uplink only when required, supporting a pay-as-you-grow strategy. GLC-FE-100FX, GLC-FE-100EX, GLC-FE-100ZX, GLC-FE-100LX, GLC-FE-100BX-U, GLCFE-100BX-D, GLC-LH-SM, GLC-SX-MM, GLC-ZX-SM, GLC-T, CWDM-SFP-1470, CWDMSFP-1490, CWDM-SFP-1510, CWDM-SFP-1530, CWDM-SFP-1550, CWDM-SFP-1570, CWDM-SFP-1590, CWDM-SFP-1610, GLC-EX-SMD, GLC-BX-U, GLC-BX-D, SFP-GE-L, SFP-GE-S, SFP-GE-T, DWDM-SFP-xx, CAB-SFP-50CM SFP-10G-SR, SFP-10G-LR, SFP-10G-ER, SFP-10G-ZR, SFP-10G-LRM, SFP-H10GB-CUxM
ADVANCEDMETROIPACCESS
10GEUPGRADE
SFP+
Cisco ME-3400-24FS
Cisco ME-3400G-2CS Two dual-purpose (10/ 100/ 1000 and SFP) ports with two SFP uplinks AC version only Single-tenant unit access Cisco ME-3400G12CS Twelve dual-purpose (10/ 100/ 1000 and SFP) ports with 4 SFP uplinks Redundant AC and DC versions Gigabit access Small Layer 2 aggregation
Metro-specific software: User-Network Interface (UNI), Enhanced Network Interface (ENI), and Network-Node Interface (NNI) port types: The Cisco ME 3400 Series software introduces the concepts of UNI, ENI, and NNI for Ethernet access switches. Because the software can identify the application of each port, it can provide many powerful default behaviors, thereby simplifying deployment, troubleshooting, and provisioning of the Cisco ME 3400 Series. Quality of service (QoS): The Cisco ME 3400 Series supports the Cisco Modular QoS CLI (MQC) to provide a modular and highly extensible framework for deploying QoS. By using an application-specific integrated circuit (ASIC)-based QoS solution, the Cisco ME 3400 Series provides policing, marking, shaping, and scheduling without affecting performance. Comprehensive security solution: As Metro Ethernet networks expand, it is a challenge to provide the same level of security as other access technologies. Cisco ME 3400 Series Switches provide a comprehensive security solution for Ethernet access networks by addressing their security features with respect to each of three areas: subscriber, switch, and network security. Ethernet operations, administration, and maintenance (Ethernet OAM): The Cisco ME 3400 Series supports industry-standard OAM and provisioning (OAM&P) tools including IEEE 802.1ag Connectivity Fault Management (CFM) and the Ethernet Local Management Interface (E-LMI) protocols. IEEE 802.1ag allows operators to monitor and troubleshoot end-to-end Ethernet networks and allows service providers to check connectivity, isolate network problems, and identify customers affected by them. The E-LMI protocol, developed by the Metro Ethernet Forum (MEF), enables service providers to automatically configure the customer-edge device to match the subscribed service. This automatic provisioning reduces not only the effort to set up the service, but also the amount of coordination required between the service provider and enterprise customer. In addition, the Cisco ME 3400 Series supports the IEEE 802.3ah Ethernet-in-theFirst-Mile (EFM) standard for service providers to perform link monitoring, fault isolation and detection, and loopback on the link between the customer equipment and the service provider network.
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported GE density FE density AC/DC support Dimensions (H x W x D) Unit weight Cisco ME 340024TS 8.8 6.5 8,000 5,000 2 24 AC and DC 1.73 x 17.5 x 9.52 in. (4.4 x 44.5 x 24.2 cm) 6.9 lb (2.9 kg) Cisco ME 340024FS 8.8 6.5 8,000 5,000 2 24 AC power 1.73 x 17.5 x 9.52 in. (4.4 x 44.5 x 24.2 cm) 7.5 lb (2.9 kg) Cisco ME 3400G-2CS 8.8 6.5 8,000 5,000 4 0 AC 1.73 x 10.6 x 7.1 in. (4.4 x 26.9 x 18.2 cm) 3.5 lb (1.6 kg) Cisco ME 3400G-12CS 32 26 8,000 5,000 16 0 Redundant AC and DC 1.73 x 17.5 x 11.0 in. (4.4 x 44.5 x 27.9 cm) AC: 9.3 lb (4.2 kg); DC: 9.0 lb (4.1 kg)
METROACCESS
METROIPACCESS
Layer 3 feature images targeted for Layer 3 VPN services IP routing (RIPv1/ v2, EIGRP, OSFP, BGPv4) Secured Layer 3Multi-VRF CE Enhanced routingPolicy-based routing (PBR)
Cisco ME 3400EG-2CS Two dual-purpose (10/ 100/ 1000 and SFP) ports with two SFP uplinks AC version only Single-tenant unit access Cisco ME 3400EG12CS Twelve dual-purpose (10/ 100/ 1000 and SFP) ports with four SFP uplinks Two modular power-supply slots; AC and DC power supplies Gigabit access Small Layer 2 aggregation and mobile preaggregation
2-42
Chapter 2: Switching
Comprehensive security solution: As Metro Ethernet networks expand, it is a challenge to provide the same level of security as other access technologies. Cisco ME 3400E Series Switches provide a comprehensive security solution for Ethernet access networks by addressing their security features with respect to each of three areas: subscriber, switch, and network security. Ethernet operations, administration, and maintenance (Ethernet OAM): The Cisco ME 3400 Series supports industry-standard OAM and provisioning (OAM&P) tools including IEEE 802.1ag Connectivity Fault Management (CFM) and the Ethernet Local Management Interface (E-LMI) protocols. IEEE 802.1ag allows operators to monitor and troubleshoot end-to-end Ethernet networks and allows service providers to check connectivity, isolate network problems, and identify customers affected by them. The E-LMI protocol, developed by the Metro Ethernet Forum (MEF), enables service providers to automatically configure the customer-edge device to match the subscribed service. This automatic provisioning reduces not only the effort to set up the service, but also the amount of coordination required between the service provider and enterprise customer. In addition, the Cisco ME 3400 Series supports the IEEE 802.3ah Ethernet-in-the-First-Mile standard for service providers to perform link monitoring, fault isolation and detection, and loopback on the link between the customer equipment and the service provider network.
Switching
Specifications
Feature Forwarding bandwidth (Gbps) Packets per second (Mpps) MAC addresses supported Routes supported GE density FE density AC/DC support Dimensions (H x W x D) Unit weight Cisco ME 3400E-24TS 8.8 6.5 8,000 5,000 2 24 Redundant AC and DC 1.75 x 17.5 x 9.3 in. (4.45 x 44.5 x 23.6 cm) 6.4 lb (2.9 kg) Cisco ME 3400EG-2CS 8.8 6.5 8,000 5,000 4 0 AC 1.73 x 10.6 x 7.2 in. (4.4 x 26.9 x 18.3 cm) 3.4 lb (1.5 kg) Cisco ME 3400EG-12CS 32 26 8,000 5,000 16 0 Redundant AC and DC 1.75 x 17.5 x 12.0 in. (4.45 x 44.5 x 30.5 cm) 8.5 lb (3.9 kg)
METROIPACCESS
Chapter 2: Switching
2-43
Layer 2 VPN Service Standard 802.1Q Tunneling creates a hierarchy of 802.1Q tags. This feature helps service providers use a single VLAN to support customers who have multiple VLANs, while preserving customer VLAN IDs and segregating traffic from different customers within the service provider infrastructure even when they appear to be on the same VLAN. Selective QinQ gives service providers more flexibility in segregating customer traffic in the network. Layer 2 Protocol Tunning (L2PT) allows for transport of the customers control protocols, thereby allowing for a true virtual-circuit service across service providers shared infrastructure. Layer 3 VPN Service MultiVirtual Route Forwarding customer edge (Multi-VRF CE) (VRF-lite) forms virtual packet-forwarding tables by associating one or more Layer 3 interfaces with each VRF, allowing the creation of multiple Layer 3 VPNs on a single Cisco Catalyst 3750 Metro Series Switch. Interfaces in a VRF could be either physical, as in an Ethernet port, or logical, as in a VLAN switched virtual interface (SVI), requiring the METROIPACCESS Cisco IOS Software feature image. IP Multicast support in Multi-VRF CE allows customers to migrate to Multi-VRF CE without affecting applications and services that depend on IP Multicast. VRF-aware services (Address Resolution Protocol [ARP], Ping, Simple Network Management Protocol [SNMP], Hot Standby Router Protocol [HSRP], Unicast Reverse Path Forwarding [URPF], Syslog, Traceroute, FTP, and Trivial File Transfer Protocol [TFTP]). Support for multiple IP routing protocols (Routing Information Protocol Versions 1 and 2 [RIPv1 and v2], Enhanced IGRP [EIGRP], Open Shortest Path First [OSPF], Intermediate System-to-Intermediate System [IS-IS], and Border Gateway Protocol Version 4 [BGPv4]) offers flexible options for peering between end customers and service providers. Availability and Scalability Superior Redundancy for Fault Backup IEEE 802.1w Rapid Spanning Tree Protocol (RSTP) provides rapid spanning-tree convergence independent of spanning-tree timers and offers the benefit of distributed processing. Per-VLAN Rapid Spanning Tree (PVRST+) allows rapid spanning-tree reconvergence on a per-VLAN spanning-tree basis, without requiring the implementation of spanning-tree instances. Cisco Hot Standby Router Protocol (HSRP) is supported to create redundant, fail-safe routing topologies. Unidirectional Link Detection Protocol (UDLD) and Aggressive UDLD allow unidirectional links caused by incorrect fiber-optic connections or port faults to be detected and disabled on fiber-optic interfaces. Flex Link provides fast failover of ports without overhead of control protocols such as the Spanning Tree Protocol. VLAN Flex Link Load Balancing provides high availability and load balancing based on VLAN. Switch-port autorecovery (errdisable) automatically attempts to reactivate a link that is disabled because of a network error. Equal-cost routing provides for load balancing and redundancy. Bandwidth aggregation up to 800 Mbps through Cisco Fast EtherChannel technology enhances fault tolerance and offers higher-speed aggregated bandwidth between switches and to routers and individual servers. Accelerate Layer 3 reconvergence through the use of Link-State Tracking by taking down associated downstream ports when all the corresponding upstream ports are down. Customer switches that are connected to the downstream ports can then take the appropriate failover action. Resilient Ethernet Protocol (REP) provides fast Layer 2 reconvergence in a ring network and offers an alternative to Spanning Tree Protocol. Pseudowire redundancy enables service providers to configure their MPLS network to detect a failure in the network and reroute Layer 2 service to another endpoint that can continue to provide service. High-Performance IP Routing MPLS Traffic Engineering (TE) Fast Reroute (FRR) guarantees fast recovery after a link or node failure. FRR protects MPLS networks from link and node failures by locally repairing the label switched path (LSP) at the point of failure, rerouting all LSP traffic crossing a failed link over backup tunnels that bypass the failed link or node. Cisco Express Forwarding hardware routing architecture delivers extremely high-performance IP routing. Basic IP Unicast routing protocols (static and RIP Versions 1 and 2) are supported for small-network routing applications. Advanced IP Unicast routing protocols (OSPF, EIGRP, IS-IS, and BGPv4) are supported for load balancing and constructing scalable LANs. IPv6 improves the scalability of IP networks by supporting the growing number of users, applications, and services. The functions supported include access control lists (ACLs), Dynamic Host Configuration Protocol (DHCP), routing (Unicast routing, RIP, OSPFv3, and static routes), Multicast Listener Discovery (MLD) snooping, stateless autoconfig, default router preference, HTTP, and Secure HTTP (HTTPS). HSRP provides dynamic load balancing and failover for routed links; up to 32 HSRP links are supported per unit.
Chapter 2: Switching 2-45
Switching
Inter-VLAN IP routing provides for full Layer 3 routing between two or more VLANs. Bidirectional Forwarding Detection (BFD) allows rapid detection of path and system failures by using a fast hello mechanism. BFD can provide failure detection on any kind of path between systems. Routing protocols supported include OSPF, IS-IS, BGP, HSRP, and EIGRP. Protocol Independent Multicast (PIM) for IP Multicast routing is supported, including PIM sparse mode (PIM-SM), PIM dense mode (PIM-DM), and PIM sparse-dense mode. The Cisco IOS Software IP Services image is required. Cisco recommends 128 SVIs. A maximum of 1000 are supported (depending on the number of routes and multicast entries). Multicast Efficient Multicast Distribution Multicast VLAN Registration provides efficient multicast distribution in ring networks by dedicating a single VLAN for multicast traffic, thereby removing duplicate multicast traffic in other VLANs. PIM-SM provides efficient routing of multicast traffic by establishing distribution trees across WANs. Source Specific Multicast (SSM) reduces the need for IP Multicast address management and prevents DoS attacks against receivers. SSM mapping provides a mapping of source to group, which allows listeners to find and connect to multicast sources dynamically, reducing dependencies on the application. Robust Multicast Control Internet Group Management Protocol (IGMP) Snooping enables intelligent management of multicast traffic by examining IGMP messages. Multicast Listener Discovery (MLD) snooping v1 and v2 enable efficient distribution of IPv6 Multicast data. With MLD snooping, IPv6 Multicast data is selectively forwarded to a list of ports that want to receive the data, instead of being flooded to all ports in a VLAN. IGMP Fast Leave provides a fast channel-changing capability for Internet Protocol Television (IPTV) services. IGMP Filtering provides control of groups each user can access. IGMP Throttling controls the maximum number of multicast groups each user can access. IGMP Proxy allows users anywhere on a downstream network to join an upstream sourced multicast group. QoS and Control Advanced QoS Standard 802.1p CoS and differentiated services code point (DSCP) field classification are provided, using marking and reclassification on a per-packet basis by source and destination IP address, source and destination MAC address, VLAN ID, or Layer 4 TCP/ User Datagram Protocol (TCP/ UDP) port number. Cisco control-plane and data-plane QoS ACLs on all ports help ensure proper marking on a per-packet basis. Shaped Round Robin (SRR) scheduling helps ensure differential prioritization of packet flows by intelligently servicing the queues. Weighted Tail Drop (WTD) provides per-QoS class congestion avoidance at the queues before a disruption occurs. Priority queue rate limiting provides optional protection against lower-priority queue starvation. The ES ports offer the following additional functions: Hierarchical QoS (H-QoS) with traffic classification, policing, queuing, shaping, and scheduling at the class, VLAN, and interface levels Traffic classification based on MPLS experimental (EXP) bits 2 Rate 3 Color policing Weighted Random Early Detection (WRED) for congestion avoidance Class-Based Weighed Fair Queuing (CBWFQ) for bandwidth management Low-Latency Queuing provides strict-priority queuing for delay-sensitive data. Configurable control-plane queue assignment allows service providers to assign control-plane traffic to a specific egress queue. Prioritization of control-plane traffic enables service providers to set QoS markings globally for CPUgenerated traffic so these protocol packets will receive priority in the network. There is no performance penalty for advanced QoS functions. Advanced Traffic Control Upstream and downstream traffic flows from the end station or the uplink are easily managed using ingress policing and egress shaping. Ingress policing provides bandwidth monitoring in increments as low as 8 kbps. Ingress policing is provided based on CoS, VLAN ID, DSCP, and QoS ACLs (IP ACLs or MAC ACLs), which can include source and destination IP address, source and destination MAC address, Layer 4 TCP/ UDP information, or any combination of these fields.
2-46 Chapter 2: Switching
Egress Weighted Fair Queuing (WFQ) guarantees the Committed Information Rate (CIR) between traffic flows and queues. Egress shaping for each queue provides smooth traffic control of available bandwidth. Egress port rate limiting allows the service provider to control the traffic rate that is transmitted out of the port.
Switching
Network Security Subscriber Security IEEE 802.1x allows dynamic, port-based security by providing user authentication. IEEE 802.1x with VLAN assignment allows a dynamic VLAN assignment for a specific user regardless of where the user is connected. IEEE 802.1x and port security are provided to authenticate the port and manage network access for all MAC addresses. IEEE 802.1x readiness check simplifies deployment by generating a report for end hosts capable of 802.1x. An absence of local switching behavior provides security and isolation between User-Network Interfaces (UNIs), helping ensure that users cannot monitor or access other users traffic on the same switch. DHCP Snooping prevents malicious users from spoofing a DHCP server and sending out bogus addresses. This feature also prevents numerous other attacks such as ARP poisoning. Dynamic ARP Inspection helps ensure user integrity by preventing malicious users from exploiting the insecure nature of the ARP protocol. IP Source Guard prevents a malicious user from spoofing or taking over another users IP address by creating a binding table between a clients IP and MAC address, port, and VLAN. Switch Security Control Plane Security prevents DoS attacks on the CPU. Secure Shell (SSH) Protocol, Kerberos, and SNMPv3 provide network security by encrypting administrator traffic during Telnet and SNMP sessions. SSH, Kerberos, and the cryptographic version of SNMPv3 require a special cryptographic software image because of U.S. export restrictions. Port security secures the access to an access or trunk port based on MAC address. After a specific timeframe, the aging feature removes the MAC address from the switch to allow another device to connect to the same port. Multilevel security on the console access prevents unauthorized users from altering the switch configuration. TACACS+ and RADIUS authentication facilitate centralized control of the switch and restrict unauthorized users from altering the configuration. Configuration File Security helps ensure that only authenticated users have access to the configuration file. Per-VLAN MAC address learning prevents MAC address table overflow attacks. Network Security Cisco security VLAN ACLs on all VLANs prevent unauthorized data flows from being bridged within VLANs. Cisco standard and extended IP security router ACLs define security policies on routed interfaces for control-plane and data-plane traffic. Port-based ACLs for Layer 2 interfaces allow for application of security policies on individual switch ports. MAC address notification allows administrators to be notified of users added to or removed from the network. Network Monitoring Remote Switched Port Analyzer (RSPAN) allows for remote monitoring of the user interface. Bidirectional data support on the Switched Port Analyzer (SPAN) port allows the Cisco Intrusion Detection System (IDS) to take action when an intruder is detected. Manageability The Cisco IOS Software command-line interface (CLI) provides a common user interface and command set with all Cisco routers and Cisco Catalyst desktop switches. Service Assurance Agent (SAA) provides service-level management throughout the network. IEEE 802.1ag Connectivity Fault Management (CFM) provides standard support for transport fault management. It allows for discovery and verification of path for Layer 2 services. Ethernet Local Management Interface(E-LMI) enables auto configuration of customer premises equipment (CPE) by customer located equipment CLE to support Metro Ethernet services. IEEE 802.3ah Ethernet-in-the-First-Mile provides standard support for monitoring, remote failure indication, loopback, and OAM discovery on the link between the customer equipment and service provider network.
Chapter 2: Switching
2-47
ITU-T Y.1731 introduces the support for fault management functions, including alarm indication signal (AIS), remote defect indication (RDI) and locked signal (LCK) to detect and signal a failure in the service path. Switching Database Manager templates for Layer 2 and Layer 3 deployment allow the administrator to easily optimize memory allocation to the desired features based on deployment-specific requirements. VLAN trunks can be created from any port, using standards-based 802.1Q tagging. Up to 1005 VLANs per switch and up to 128 spanning-tree instances per switch are supported. Four thousand VLAN IDs are supported. RSPAN allows administrators to remotely monitor ports in a Layer 2 switch network from any other switch in the same network. For enhanced traffic management, monitoring, and analysis, the embedded Remote Monitoring (RMON) software agent supports four RMON groups (history, statistics, alarms, and events). Layer 2 traceroute eases troubleshooting by identifying the physical path that a packet takes from source to destination. MPLS OAM allows service providers to quickly troubleshoot and monitor MPLS networks. All nine RMON groups are supported through a Switched Port Analyzer (SPAN) port, permitting traffic monitoring of a single port, a group of ports, or the entire stack from a single network analyzer or RMON probe. Domain Name System (DNS) provides IP address resolution with user-defined device names. TFTP reduces the cost of administering software upgrades by downloading from a centralized location. Network Timing Protocol (NTP) provides an accurate and consistent time stamp to all intranet switches. The Cisco Catalyst 3750 Metro Series supports the Cisco CNS 2100 Series Intelligence Engine and SNMP for networkwide management. Cisco IP Solution Center (ISC) applications help reduce overall administration and management costs by providing automated resource management and rapid profile-based provisioning capabilities. Configuration Rollback helps in error recovery by providing the capability to replace the current running configuration with any saved Cisco IOS Software configuration file. Embedded Event Manager (EEM) offers the ability to monitor events and take user-defined action when the monitored events occur or a threshold is reached. DHCP-based autoconfiguration and image update simplifies management of a large number of switches by automatically downloading a specified configuration and image. Service Diagnostics automates a set of network diagnostic procedures derived from the vast troubleshooting experiences of Cisco network experts. These diagnostic tools help customers increase network uptime, reduce time to repair, and improve service levels. Digital optical monitoring (DOM) support provides a service provider with the capability to perform inservice transceiver monitoring and troubleshooting operations. DOM threshold functions allow the monitoring of real-time optical parameters on DOM Small FormFactor Pluggable (SFP) devices and the comparison against factory-reset values, generating alarm and warning thresholds. CiscoWorks Support CiscoWorks network management software provides management capabilities on a per-port and perswitch basis, providing a common management interface for Cisco routers, switches, and hubs. SNMP versions 1, 2c, and 3 and Telnet provide comprehensive in-band management, and a CLI-based management console provides detailed out-of-band management. Cisco Discovery Protocol Versions 1 and 2 enable automatic switch discovery for a CiscoWorks network management station. The CiscoWorks 2000 LAN Management Solution is supported.
Switching
Cisco Catalyst 4506-E Port density up to 400 1000BASE-2BX-D, or 240 1000BASE-BX-D or 100BASE-BX-D Support for both classic and E-Series line cards Support for up to 280-Gbps, 210-Mpps, or 24-Gbps per-slot bandwidth when used with the Supervisor Engine 6-E and Supervisor Engine 6L-E Cisco Catalyst 4503-E Port density up to 160 1000BASE-2BX-D, or 96 1000BASE-BX-D or 100Base-BX-D Support for both classic and E-Series line cards Up to 136-Gbps, 102-Mpps, or 24-Gbps per-slot bandwidth when used with the Supervisor Engine 6-E and Supervisor Engine 6L-E
Delivering advanced switching solutions that scale bandwidth as ports are added, the Cisco Catalyst 4500E Series is powered by leading-edge, application-specific integrated circuit (ASIC) technology that offers wire-speed Layer 2 and Layer 3 10/ 100 or gigabit switching. Offering modular supervisor-engine flexibility with complete line-card compatibility, Layer 2 switching can scale up to 320 Gbps or 250 Mpps. Scalability: The Cisco Catalyst 4500E Series meets network-subscriber connectivity requirements of up to 384 fiber Fast Ethernet or 400 Gigabit Ethernet ports in a chassis. The Cisco Catalyst 4500E Series supports density requirements for both business and residential service environments. These switches offer network operators who are building next-generation access networks flexibility in fiber options by supporting all types of fiber deployments (single and dual strands). With the support of the single strand of fiber, network operators can reduce the fiber requirement by 50 percent, providing significant savings in fiber, cable management, and other installation costs as well as long-term operating expenses. Redundancy: The Cisco Catalyst 4500E 7- and 10-slot chassis support 1 + 1 supervisor-engine redundancy for integrated resiliency. Redundant supervisor engines help ensure that network downtime is minimized. Minimal network downtime facilitates reduced operating expenses (OpEx) and increased customer satisfaction. The Cisco Catalyst 4500E Series supports redundant power supplies in all chassis types. The Cisco Catalyst 4500E running on Cisco IOS Software supports In-Service Software Upgrade (ISSU), enabling software, line-card upgrades without affecting service for subscribers. Service-oriented software services: The Cisco Catalyst 4500E Series provides a wide range of software services that allow service providers to deliver residential and business services based on subscriber requirements. Important features include: Advanced security: Enabling security features such as Dynamic Host Configuration Protocol (DHCP) Snooping, access control lists (ACLs), Secure Shell (SSH) Protocol, Port Security, Control Plane Policing (CoPP), Dynamic ARP Inspection (DAI), IP Source Guard, and Private VLANs (PVLANs) on the Cisco Catalyst 4500E Series enhances control and flexibility in the network. By enabling these features selectively or collectively, a network administrator can prevent unauthorized access to the network, prevent hackers from disrupting services, and prevent a deliberate or accidental broadcast storm. Video services: Protocol Independent Multicast (PIM), dense and sparse mode; Internet Group Management Protocol (IGMP); IGMP Snooping; proxy reporting; Multicast Listener Discovery (MLD) v1 and v2; and Cisco Group Management Protocol provide for efficient standards-based and Cisco product-enhanced broadcast video service deployment without compromising performance. Source Specific Multicast (SSM) and SSM Mapping (mapping IGMPv2 joins to Source Specific PIM joins) provide additional scale and control of multicast. Cisco IOS Software network services: The Cisco Catalyst 4500E Series takes advantage of more than 15 years of development with large-scale deployments across the entire world, to provide mature Layer 2 and Layer 3 features that allow service providers to differentiate their services and meet service-level agreements (SLAs). Intelligent management capability: The Cisco Catalyst 4500E Series supports a variety of management options suited for managing service provider networks, such as Cisco IOS Embedded Event Manager (EEM), Cisco Generic Online Diagnostics (GOLD), Flexible NetFlow, and Smart Call Home. With EEM and GOLD, network operators can design scripts based on their specific requirements to troubleshoot the network. With Smart Call Home, the Cisco IOS Software on the Cisco Catalyst switch automatically detects problems in the network and automatically collects the required debug information and logs a trouble ticket. With Flexible NetFlow, statistics about the network can be captured in hardware for flowand VLAN-based statistics monitoring. This data can be exported, collected, and analyzed for network traffic accounting, usage-based network billing, network planning, network monitoring, and data-mining capabilities. Investment protection: Evolutionary centralized modular architecture provides maximum backward compatibility across several generations of Cisco Catalyst 4500E Series Switches. Upgrading all system ports to higher-level functions and features is easy with a simple supervisor-engine upgrade.
For more information, please visit: http://www.cisco.com/en/US/products/ps10195/index.html. Cisco Catalyst 4500E Series and Cisco Catalyst 4500 Switches extend the warranty from the previously offered 90-day warranty to a limited lifetime warranty (LLW). For more information, visit: http:/ / www.cisco.com/ en/US/prod/collateral/switches/ps5718/ps4324/product_bulletin_c25-533284.html.
Specifications
4500 E-Series Chassis Slots Redundant Supervisor Option Gigabit Ethernet SFP density 100BASE-FX, LX-10, BX-D density Rack Unit (RU) Cisco 4503-E 3 No 160 (using 2BX-D) 96 7 Cisco 4506-E 6 No 400 (using 2BX-D) 240 10 Cisco 4507R+-E 7 Yes 400 (using 2BX-D) 240 11 Cisco 4510R+-E 10 Yes 384(using BX-D) 384 14
2-50
Chapter 2: Switching
Backplane Capacity using Supervisor 7-E Stackable 1+1 Power Supply Protection Hot-Swappable Power Supplies AC Internal AC External with power shelf DC Internal Unit weight (with Fan Tray) Dimensions (H x W x D) Supervisor Engines Chassis supported
Switching
Max. watt power consumption 6000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 32.25 lbs. (14.63 kgs.) 12.25 x 17.31 x 12.50 in (31.12 x 43.97 x 31.70 cm) All yes 848 250 (IPv4) 125 (IPv6) Dual Core 1500 Flex NetFlow 1 GB upgradable to 2GB 128 MB Yes 848 Gbps, 250 Mpps Enhanced L2/ 3/ 4 Services & Routing Yes 4507R+E, 4510R+E, 4507R-E, 4510R-E, WS-C4507R, WS-C4507R+E, and WS-C4510R-E 8Q/ Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No No Yes 256K 32K Multicast 6000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 40.50 lbs. (18.37 kgs) 17.38 x 17.31 x 12.50 in (44.13 x 43.97 x 31.70 cm) 6000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 44.50 lbs. (20.19 kgs) 19.19 x 17.31 x 12.50 in (48.74 x 43.97 x 31.70 cm) All yes 280 225 (IPv4) 110 (IPv6) 800 no 512 MB upgradable to 1 GB 64 MB 128 MB Yes 280 Gbps, 225 Mpps Enhanced L2/ 3/ 4 Services & Routing Yes 4507R, 4507R-E, WS-C4507R-E, and WS-C4507R+E 8Q/ Port, MQC, Dynamic Tx Queue sizing, policing, shaping, congestion avoidance with DBL marking No No No 57K 55K Unicast, 16K Multicast 6000W 1,400 + power shelf = 7,500 1,400 + UPS = 7,500 54.50 lbs. (24.73 kgs) 24.35 x 17.31 x 12.50 in. (61.84 x 43.97 x 31.70 cm)
Enhanced Layer 3 option Total bandwidth (Gbps) Packets per second (Mpps) CPU MHz NetFlow Onboard memory (DRAM) On-Board Flash Compact Flash Support Switching Capacity & Throughput Multilayer Switching (E)IGRP, OSPF, IS:IS, BGP Supervisor Redundancy
QoS
WS-X45-SUP6L-E (=) Cisco Catalyst 4500 E-Series Sup6-E Lite, 2x10GE(X2) w/Twin Gig
Chapter 2: Switching
2-51
Catalyst 4500 and 4500-E Series Line Cards ME-X4248-FE-BX= ME-X4248-FE-SFP WS-X4248-FE-SFP WS-X4248-FE-SFP= WS-X4448-GB-SFP WS-X4448-GBSFP= ME-X4248-FE-SFP and GLC-FE-100BX-D48 48-port FE SFP FTTH module, GLC-FE-100BX-D48 is required Cisco Catalyst 4500 48-Port 100BASE-X (SFPs Optional) Cisco Catalyst 4500 48-Port 100BASE-X (SFPs Optional) Cisco Catalyst 4500 48-Port 1000Base-X (SFPs Optional) Cisco Catalyst 4500 48-Port 1000Base-X (SFPs Optional)
Specifications
Feature Forwarding bandwidth (Gbps) Forwarding rate (mpps) MAC addresses supported Onboard memory (DDR2 SDRAM) Cisco 2520-24TC 8 6.5 8,000 256 MB Cisco 2520-16S-8PC 8 6.5 8,000 256 MB
2-52
Chapter 2: Switching
2 (dual-purpose ports: 100/ 1000 fiber SFP and/or 10/100/1000 Gigabit copper) 24 28.6W External high AC/ DC and low DC power supply options available for redundant power supply support 1.75 x 1.75 x 14 in. (4.45 x 44.5 x 35.6 cm) 9.1 lbs. (4.1 kg)
2 (dual-purpose ports: 100/ 1000 fiber SFP and/or 10/100/1000 Gigabit copper) 8 16-port fiber SFP 8 max 40.3W External high AC/ DC and low DC power supply options available for redundant power supply support 1.75 x 1.75 x 14 in. (4.45 x 44.5 x 35.6 cm) 10 lbs. (4.5 kg)
10/100 density 100BASE-FX density PoE: Max. 802.3af Class 3 devices (15.4W) Power Consumption Power Supply
Switching
For more information about Cisco Routing and Switching Services, visit
http://www.cisco.com/go/services/routing-switching.
Chapter 2: Switching
2-53
2-54
Chapter 2: Switching
Chapter 3: Wireless
This chapter provides only a subset of Cisco products and part numbers.
Routing At-a-Glance
Product Cisco Aironet 3600 Series Access Point Features Offers enterprise-class silicon and optimized radios that deliver a robust mobility experience Offers 802.11n with 4 x 4 multiple-input multiple-output (MIMO) technology with three spatial streams, which sustains 450-Mbps rates over a greater range for more capacity and reliability than competing access points Offers Cisco ClientLink 2.0 technology to improve downlink performance to all mobile devices, including one, two, and threespatial stream devices on 802.11n while improving battery life on mobile devices such as smartphones and tablets Offers Cisco CleanAir technology, which provides proactive, high-speed spectrum intelligence to combat performance problems due to wireless interference Provides modular architecture design that enables flexible add-on options in the form of separate Wireless Security and Spectrum Intelligence and IEEE 802.11ac Wave 1 Modules that tightly integrate with the wireless infrastructure and are completely field upgradable. Offers MIMO Equalization optimized uplink performance and reliability by minimizing the impact of signal fade Provides Limited Lifetime Hardware Warranty, including 10-day advance hardware replacement Offers both controller-based and standalone versions All of these features help ensure the best possible end-user experience on the wireless network. Cisco also offers the industrys broadest selection of 802.11n antennas delivering optimal coverage for a variety of deployment scenarios. Page 3-5 Access Points and Client Devices
Wireless
Cisco Aironet 3500p Uses Cisco CleanAir technology Series Access Points Is ideal for high-density stadium and arena deployments Offers greater wireless capacity to deliver a better fan experience and facilitate thirdgeneration (3G) and 4G cellular offload Built with directional, narrow beamwidth external antennas for targeted coverage and minimal interference Provides power with standard IEEE 802.3af Power over Ethernet (PoE) Designed with a rugged metal housing that provides extended operating temperature Also supports: Cisco ClientLink technology, which improves reliability and coverage for established clients Cisco BandSelect technology, which improves 5-GHz client connections in mixed client environments Cisco VideoStream technology, which uses multicast to improve multimedia applications Available in lightweight version only Cisco Aironet 2600 Series Access Point Offers RF excellence Based on 802.11n with 3 x 4 MIMO technology with three spatial streams to sustain 450-Mbps rates over a greater range for more capacity and reliability than competing access points Offers Cisco ClientLink 2.0 technology for better downlink performance and range for all mobile devices and better battery life on mobile devices such as smartphones and tablets Offers Cisco CleanAir technology for proactive, intelligent spectrum intelligence to combat performance problems due to RF interference Provides Limited Lifetime Hardware Warranty, including 10-day advance hardware replacement Offers both controller-based and standalone versions
3-10
3-14
Based on 802.11n with 3 x 3 MIMO technology with two spatial streams to sustain 3003-18 Mbps rates over a greater range for more capacity and reliability than competing access points Offers Cisco ClientLink 2.0 technology for better downlink performance and range for all mobile devices and better battery life on mobile devices such as smartphones and tablets Offers Cisco CleanAir Express technology for proactive, intelligent spectrum intelligence to combat performance problems due to RF interference (planned for support for Q12013) Offers Limited Lifetime Hardware Warranty, including 10-day advance hardware replacement Offers both controller-based and standalone versions Chapter 3: Wireless 3-1
Designed for the teleworking environment Delivers full IEEE 802.11n speed with simultaneous 2.4- and 5-GHz RF-band support Increases productivity, lowers costs, and improves business continuity with smooth, reliable, and highly secure access to networked services from the home or remote office Supports configuring local personal Service Set Identifiers (SSIDs) for concurrent personal access as well Provides 4 local Ethernet ports that provide access for wired clients to securely access the corporate LAN as well as personal use in the home office Outdoor Wireless and Client Devices Cisco Aironet Uses Cisco CleanAir technology 1550Series Offers industrys first enterprise- and carrier-class IEEE 802.11n access point to mitigate Lightweight Outdoor the effect of wireless interference using application-specific integrated circuit (ASIC)Wireless Mesh based intelligence Access Points Supports multiple-device and multiple-network application delivery such as real-time transparent mobility, video surveillance, 3G and 4G data offload, and public and private Wi-Fi access Offers high-performance device access through improved radio sensitivity and range with IEEE 802.11a/ b/ g/ n MIMO technology, with two spatial streams Cisco Aironet Supports Ciscos many options for antennas and accessories Antennas and Offers FCC-approved directional and omnidirectional antennas Accessories Also offers low-loss cable, mounting hardware, and other accessories Supports high-density deployments Wireless Controllers Cisco 8500 Series Ideal for service provider and large campus deployments, delivers unmatched Wireless Controller scalability and resiliency while reducing infrastructure complexity Supports centralized (Cisco Local mode), Cisco FlexConnect mode and mesh deployments in a single controller Offers consolidated configuration, management, and security in 1-rack-unit (1RU) rack space, allowing network managers to configure, manage, and troubleshoot up to 6000 access points and 64,000 clients from a single point of control Offers multiple levels of high availability (HA) with subsecond access-point failover to standby controller, dual redundant power supplies, and redundant high-speed 10 Gigabit Ethernet connectivity Supports 6000 branch-office locations, 2000 Cisco FlexConnect groups, and 100 access points in each Cisco FlexConnect group Supports transparent IP mobility between cellular and Wi-Fi and secure public access with Wi-Fi Certified Passpoint (Hotspot 2.0) Integrates Cisco Unified Communications for real-time voice and video technology (Cisco VideoStream) to optimize the delivery of voice and video applications across the wireless LAN (WLAN) Cisco Flex 7500 Is ideal for data center consolidation; offers a highly scalable branch-office controller for Series Cloud enterprises that require multisite wireless deployments with system-level security and Controller integrated RF management Offers remote configuration of wireless policy, management, and security; it also offers a self-healing self-optimizing wireless network for branch offices through integration with Cisco CleanAir and local RADIUS server authentication for survivability in the rare event of WAN failure; and su-second access-point failover to a standby controller for SSID high availability Uses the Control and Provisioning of Wireless Access Points (CAPWAP) protocol to centrally control Cisco Aironet lightweight access points for WLAN performance optimization and automated network resiliency Supports 6000 branch-office locations and allows IT managers to configure, manage, and troubleshoot up to 6000 access points and 64,000 clients from a single location Supports 2000 Cisco FlexConnect groups and 100 access points in each Cisco FlexConnect group Operates in Cisco FlexConnect mode only Cisco 5500 Series Is ideal for enterprise WLAN deployments that require enhanced scalability, systemWireless LAN level security, integrated RF monitoring and management, and teleworking features Controller Supports Cisco OfficeExtend to provide corporate wireless service for mobile and remote workers with secure wired tunnels to the Cisco Aironet 1130 and Aironet 1140 Series Access Points Uses the CAPWAP protocol to centrally control Cisco Aironet lightweight access points for WLAN performance optimization and automated network resiliency Available with 8 Gigabit Ethernet Small Form-Factor Pluggables (SFPs) and flexible licensing to support up to 500 access points and up to 7000 clients Cisco Virtual Ideal for small footprint, on-premises, and data center deployments Wireless Controller Delivered in a virtual form factor; deployed in any x86 server with VMware Hypervisor ESXi 4.0 or 5.0 Support for advanced mobility technologies including FlexConnect, Cisco ClientLink, and Cisco CleanAir technology Co-resides with other virtualized network services, vCPI, vMSE, and vISE Scales up to 200 access points and 3000 clients, with one access-point adder license enabling granular pay-as-you-grow model Cisco Aironet 600 Series Office Extend 3-2 Chapter 3: Wireless
3-23
3-26
3-30
3-35
3-38
3-40
3-42
Is ideal for enterprise branch-office and small business WLAN deployments that require system-level security, scalability, and RF management Offers enhanced uptime with Cisco CleanAir technology, and quality of service (QoS) for voice and video Uses the Lightweight Access Point (LWAP) protocol or CAPWAP protocol to centrally control Cisco Aironet lightweight access points for WLAN performance optimization and automated network resiliency Supports 5, 15, 25, 50, or 75 lightweight access points and up to 500 clients, making it a cost-effective solution for enterprise branch offices and small businesses
3-44
Provides a cost-effective controller option for converged networks that integrate 3-46 wireless connectivity; ideal for medium-sized to large enterprises and campus environments that require enhanced scalability, system-level security, and RF management to support mission-critical wireless business communications Supports more efficient roaming and a variety of business mobility needs, including the Cisco OfficeExtend solution for secure, mobile teleworking and enterprise wireless mesh Uses the CAPWAP protocol to centrally control Cisco Aironet lightweight access points for WLAN performance optimization and automated network resiliency Offers flexible licensing to support up to 1000 access points, up to 15,000 clients and 20 Gbps of throughput per WiSM blade, and up to 7000 access points and 105,000 clients per chassis Offers sub-second access-point failover to a standby controller for Service Set Identifier (SSID) high-availability Is ideal for enterprise branch-office and small business WLAN deployments that require system-level security, scalability, and RF management and remote provisioning to consolidate branch-office infrastructure and deploy wireless on demand Supports Cisco CleanAir technology, Cisco VideoStream technology, and wireless mesh and the LWAP and CAPWAP protocols to centrally control Cisco Aironet lightweight access points for WLAN performance optimization and automated network resiliency Supports up to 10 lightweight access points for the Cisco Services-Ready Engine 300 Integrated Services Module (Cisco SRE 300 ISM) and up to 50 lightweight access points for the Cisco SRE 700, SRE 710, SRE 900, and SRE 910 Services Modules (Cisco SM 700, SM 710, and SM 900, 910) and up to 500 clients, making it a cost-effective solution for enterprise branch offices and small businesses Provides a single pane of glass solution for managing the complete lifecycle of switches, routers, wireless controllers, and access points Enables rich application visibility, dashboards, and key performance indicators for voice, video, and other real time applications Integrates with Cisco Identity Services Engine (ISE), enabling visibility of user attributes, posture, and profile Supports complete lifecycle management of up to 15,000 Cisco Aironet lightweight access points managed by wireless controllers, 5000 autonmous Cisco Aironet access points, and 18,000 switches or routers Offers third party device management including automatic discovery, basic monitoring, basic lifecycle management, device reachability, traps, and syslog collection Offers wide range of easy-to-use tools, guides, and templates for simplified planning, deployment, monitoring, troubleshooting, and reporting on indoor and outdoor wireless networks, including the next-generation IEEE 802.11n WLAN infrastructure and client devices Provides centralized management of Cisco Mobility Services Engine (MSE), Adaptive Wireless Intrusion Prevention System, Context-Aware Software, and Cisco CleanAir technology Provides a spectrum analyzer tool that offers visibility into the RF layer of wireless networks so that organizations can determine the causes of interference problems and optimize network performance Provides Active Devices view that offers comprehensive lists of all access points, temporary networks, and interferer devices (for example, microwave ovens, cordless phones, wireless security cameras, Bluetooth devices, and RF jammers) Provides Channel Summary, Devices View,and Device Finder features that detail RF activity, effect on the wireless network, and the location of devices causing wireless interference Location Services on Cisco Mobility Services Engine (MSE) that provides advanced spectrum capability and ability to detect presence and track and trace rogue devices, interferers, Wi-Fi clients, and RFID tags; also provides location analytics Advanced Location Services on MSE that provides capability to engage customers through mobile Concierge and advanced location analytics Adaptive Wireless Intrusion Prevention System (WIPS) Service on MSE that provides comprehensive over-the-air threat detection, location, and mitigation Open application programming interface (API) for enterprise and Mobile app developers SDK for Mobile app developers Available as a physical or virtual appliance Chapter 3: Wireless 3-49
Wireless
3-53
3-3
Cisco offers rogue detection and mitigation as part of its base wireless offering, and the Adaptive Wireless Intrusion Prevention System as an extention of this service as a complimentary service. WIPS provides comprehensive ove- the-air threat detection, location, and mitigation. WIPS offers Layer 1 threat protection with CleanAir access points. WIPS employs network analysis and signature-based techniques, combined with tight integration to the Cisco Unified Wireless Network, to deliver protection against rogue access points and clients, network reconnaissance, eavesdropping, authentication and encryption cracking, man-in-the-middle attacks, wireless denial-of-service (DoS) attacks, and zero-day unknown attacks. WIPS provides proactive threat prevention through automated wireless vulnerability and performance monitoring that proactively and persistently scans the wireless network to mitigate problems before they arise. For product information about Cisco Video Surveillance products, refer to Chapter 5, Security.
3-58
See 51 3-59
Manage a complex wireless infrastructure and enable secure mobile access to enterprise and collaboration applications with services from Cisco and our partners. Based on leading practices, these services help you transition to a mobility architecture that optimizes performance and reliability, so you can maintain business innovation while controlling costs. For More Information Product Ordering To place an order, visit http://www.cisco.com/en/US/ordering/index.shtml.
Cisco Services
Cisco Services can be ordered directly or through our global network of certified partners at: http:/ / www.cisco.com/ web/ services/order-services/index.html.
3-4
Chapter 3: Wireless
Wireless
Specifications
Feature Software Supported Wireless LAN Controllers Module Options Cisco Aironet 3600 Series Access Point Cisco Unified Wireless Network Software Release 7.2 or later. 2500 series, WLCM on SRE for ISR G2, WiSM2, 5500 Series, Flex 7500 Series Wireless Security & Spectrum Intelligence Module (Available in Q1 2013) Provides full spectrum, off channel scanning for comprehensive wIPS, CleanAir, Rogue Detection, Context Aware, and Radio Resource Management (RRM) solution Scans 2.4 and 5 GHz channels while serving data clients on the base dual band AP platform 802.11ac Wave 1 Module (Available in Q1 2013) Provides WFA certified 802.11ac Wave 1 functionality with support for 3x3:3SS (Spatial Streams), 80 MHz wide channels, 256 QAM, data rates up to 1.3 Gbps Chapter 3: Wireless 3-5
4x4 multiple-input multiple-output (MIMO) with three spatial streams Maximal ratio combining (MRC) 802.11n and 802.11a/ g beamforming 20- and 40-MHz channels PHY data rates up to 450 Mbps (40-MHz with 5 Ghz) Packet aggregation: A-MPDU (Tx/ Rx), A-MSDU (Tx/ Rx) 802.11 dynamic frequency selection (DFS) Cyclic shift diversity (CSD) support 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps 802.11n data rates (2.4 GHz and 5 GHz): MCS Index1 GI2 = 800ns 20-MHz Rate (Mbps) 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 6.5 13 19.5 26 39 52 58.5 65 13 26 39 52 78 104 117 130 19.5 39 58.5 78 117 156 175.5 195 40-MHz Rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 54 81 108 162 216 243 270 40.5 81 121.5 162 243 324 364.5 405 GI = 400ns 20-MHz Rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 28.9 43.3 57.8 86.7 115.6 130 144.4 21.7 43.3 65 86.7 130 173.3 195 216.7 40-MHz Rate (Mbps) 15 30 45 60 90 120 135 150 30 60 90 120 180 240 270 300 45 90 135 180 270 360 405 450
A (A regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels C (C regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.745 to 5.825 GHz; 5 channels E (E regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) I (I regulatory domain): 2.412 to 2.472 GHz, 13 channels 5.180 to 5.320 GHz; 8 channels K (K regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.620 GHz, 7 channels 5.745 to 5.805 GHz, 4 channels
N (N regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.745 to 5.825 GHz; 5 channels Q (Q regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels R (R regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5,660 to 5,805 GHz, 7 channels S (S regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.745 to 5.825 GHz; 5 channels T (T regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.280 to 5.320 GHz; 3 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels
3-6
Chapter 3: Wireless
Note: Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit: http:/ / www.cisco.com/ go/ aironet/ compliance. Maximum Number of Nonoverlapping Channels 2.4 GHz 802.11b/g: 20 MHz: 3 802.11n: 20 MHz: 3 5 GHz 802.11a: 20 MHz: 21 802.11n: 20 MHz: 21 40 MHz: 9 802.11g (non HT20) -91 dBm @ 6 Mb/ s -91 dBm @ 9 Mb/ s -91 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -87 dBm @ 24 Mb/ s -85 dBm @ 36 Mb/ s -80 dBm @ 48 Mb/ s -79 dBm @ 54 Mb/ s 802.11a (non HT20) -90 dBm @ 6 Mb/ s -90 dBm @ 9 Mb/ s -90 dBm @ 12 Mb/ s -89 dBm @ 18 Mb/ s -86 dBm @ 24 Mb/ s -83 dBm @ 36 Mb/ s -78 dBm @ 48 Mb/ s -77 dBm @ 54 Mb/ s 5-GHz 802.11n (HT20) -91 dBm @ MCS0 -90 dBm @ MCS1 -89 dBm @ MCS2 -86 dBm @ MCS3 -83 dBm @ MCS4 -78 dBm @ MCS5 -77 dBm @ MCS6 -75 dBm @ MCS7 -91 dBm @ MCS8 -89 dBm @ MCS9 -87 dBm @ MCS10 -84 dBm @ MCS11 -80 dBm @ MCS12 -76 dBm @ MCS13 -75 dBm @ MCS14 -73 dBm @ MCS15 -90 dBm @ MCS16 -88 dBm @ MCS17 -85 dBm @ MCS18 -82 dBm @ MCS19 -79 dBm @ MCS20 -74 dBm @ MCS21 -73 dBm @ MCS22 -72 dBm @ MCS23 5 GHz 802.11a 23 dBm - 4 Antennas 802.11n (HT20) 23 dBm - 4 Antennas 802.11n (HT40) 23 dBm - 4 Antennas 5-GHz 802.11n (HT40) -88 dBm @ MCS0 -87 dBm @ MCS1 -86 dBm @ MCS2 -82 dBm @ MCS3 -80 dBm @ MCS4 -75 dBm @ MCS5 -73 dBm @ MCS6 -72 dBm @ MCS7 -88 dBm @ MCS8 -86 dBm @ MCS9 -84 dBm @ MCS10 -80 dBm @ MCS11 -77 dBm @ MCS12 -73 dBm @ MCS13 -71 dBm @ MCS14 -70 dBm @ MCS15 -87 dBm @ MCS16 -84 dBm @ MCS17 -82 dBm @ MCS18 -78 dBm @ MCS19 -75 dBm @ MCS20 -71 dBm @ MCS21 -69 dBm @ MCS22 -68 dBm @ MCS23
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain. Receive Sensitivity 802.11b (CCK) -101 dBm @ 1 Mb/ s -98 dBm @ 2 Mb/ s -92 dBm @ 5.5 Mb/ s -89 dBm @ 11 Mb/ s
Wireless
2.4-GHz 802.11n (HT20) -90 dBm @ MCS0 -90 dBm @ MCS1 -90 dBm @ MCS2 -88 dBm @ MCS3 -85 dBm @ MCS4 -80 dBm @ MCS5 -78 dBm @ MCS6 -77 dBm @ MCS7 -90 dBm @ MCS8 -90 dBm @ MCS9 -89 dBm @ MCS10 -86 dBm @ MCS11 -82 dBm @ MCS12 -78 dBm @ MCS13 -77 dBm @ MCS14 -75 dBm @ MCS15 -90 dBm @ MCS16 -89 dBm @ MCS17 -87 dBm @ MCS18 -84 dBm @ MCS19 -81 dBm @ MCS20 -76 dBm @ MCS21 -75 dBm @ MCS22 -74 dBm @ MCS23 Maximum Transmit Power 2.4 GHz 802.11b 23 dBm - 4 Antennas 802.11g 23 dBm - 4 Antennas 802.11n (HT20) 23 dBm - 4 Antennas
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Available Transmit Power Settings 2.4 GHz 23 dBm (200 mW) 20 dBm (100 mW) 17 dBm (50 mW) 14 dBm (25 mW) 11 dBm (12.5 mW) 8 dBm (6.25 mW) 5 dBm (3.13 mW) 2 dBm (1.56 mW) 5 GHz 23 dBm (200 mW) 20 dBm (100 mW) 17 dBm (50 mW) 14 dBm (25 mW) 11 dBm (12.5 mW) 8 dBm (6.25 mW) 5 dBm (3.13 mW) 2 dBm (1.56 mW)
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details.
Chapter 3: Wireless
3-7
Integrated Antenna External Antenna (SoldSeparately) Interfaces Indicators Dimensions (W x L x H) Weight Environmental
2.4 GHz, Gain 2 dBi, internal Omni, horizontal beamwidth 360 5 GHz, Gain 5 dBi, internal Omni, horizontal beamwidth 360 Certified for use with antenna gains up to 6 dBi (2.4 GHz and 5 GHz). Cisco offers the industrys broadest selection of 802.11n antennas delivering optimal coverage for a variety of deployment scenarios. 10/100/1000BASE-T autosensing (RJ-45) Management console port (RJ-45) Status LED indicates boot loader status, association status, operating status, boot loader warnings, boot loader errors Access point (without mounting bracket): 8.7 x 8.7 x 2.11 in. (22.1 x 22.1 x 5.4 cm) 2.5 lbs (1.13 kg) Cisco Aironet 3600i Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test - 25C, 15,000 ft. Operating temperature: 32 to 104F (0 to 40C) Operating humidity: 10 to 90% percent (noncondensing) Operating Altitude Test - 40C, 9843 ft. Cisco Aironet 3600e Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test - 25C, 15,000 ft. Operating temperature: -4 to 131F (-20 to 55C) Operating humidity: 10 to 90 percent (noncondensing) Operating Altitude Test - 40C, 9843 ft.
256 MB DRAM 32 MB flash AP3600: 44 to 57 VDC Power Supply and Power Injector: 100 to 240 VAC; 50 to 60 Hz AP3600 without a Module 802.3af Ethernet Cisco AP3600 Power Injectors (AIR-PWRINJ4=) Cisco AP3600 Local Power Supply (AIR-PWR-B=) AP3600 with a Module Enhanced PoE, 802.3at PoE+ Cisco AP3600 Power Injectors (AIR-PWRINJ4=) Cisco AP3600 Local Power Supply (AIR-PWR-B=) AP3600: 12.95 W Note: When deployed using a Power over Ethernet (PoE) specification, the power drawn from the power sourcing equipment will be higher by some amount dependent on the length of the interconnecting cable. This additional power may be as high as 2.45W, bringing the total system power draw (access point + cabling) to 15.4W with PoE 802.3af as an example AP3600 with a module: 17 W Limited Lifetime Hardware Warranty UL 60950-1 CAN/ CSA-C22.2 No. 60950-1 UL 2043 IEC 60950-1 EN 60950-1 EN 50155 Radio approvals: FCC Part 15.247, 15.407 RSS-210 (Canada) EN 300.328, EN 301.893 (Europe) ARIB-STD 66 (Japan) ARIB-STD T71 (Japan) EMI and susceptibility (Class B) FCC Part 15.107 and 15.109 ICES-003 (Canada) VCCI (Japan) EN 301.489-1 and -17 (Europe) EN 60601-1-2 EMC requirements for the Medical Directive 93/ 42/ EEC
Power Draw
3-8
Chapter 3: Wireless
IEEE Standard: IEEE 802.11a/ b/ g, IEEE 802.11n, IEEE 802.11h, IEEE 802.11d Security: 802.11i, Wi-Fi Protected Access 2 (WPA2), WPA 802.1X Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TKIP) EAP Type(s): Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) EAP-Tunneled TLS (TTLS) or Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2) Protected EAP (PEAP) v0 or EAP-MSCHAPv2 Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST) PEAPv1 or EAP-Generic Token Card (GTC) EAP-Subscriber Identity Module (SIM) Multimedia: Wi-Fi Multimedia (WMM) Other: FCC Bulletin OET-65C RSS-102
1 2
Wireless
MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, the coding rate, and data rate values. GI: A guard interval (GI) between symbols helps receivers overcome the effects of multipath delays.
The Cisco Aironet 3600e Access Point: Indoor, challenging environments, with external antennas
Cisco SMARTnet Services for the Cisco Aironet 3600i Access Point with internal antennas
SMARTnet Services for the Cisco Aironet 3600e Access Point with external antennas
Regulatory domains: (x = regulatory domain) Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit: http:/ / www.cisco.com/ go/ aironet/compliance. Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price List.
Chapter 3: Wireless
3-9
Specifications
Feature Software Maximum Number of Nonoverlapping Channels Cisco Aironet 3500p Series Access Points Cisco Unified Wireless Network Software Release 7.0 or later 2.4 GHz IEEE 802.11b/g: 20 MHz: 3 IEEE 802.11n: 20 MHz: 3 A (A regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.560 GHz, 4 channels 5.680 to 5.700 GHz, 2 channels 5.745 to 5.825 GHz; 5 channels C (C regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.745 to 5.825 GHz; 5 channels E (E regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) Note: Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, please visit http:/ / www.cisco.com/ go/ aironet/ compliance. Maximum Transmit Power 2.4 GHz IEEE 802.11b: 23 dBm with 2 antennas IEEE 802.11g: 20 dBm with 2 antennas IEEE 802.11n (non-HT duplicate mode): 20 dBm with 2 antennas IEEE 802.11n (HT20): 20 dBm with 2 antennas 5 GHz IEEE 802.11a: 20 dBm with 2 antennas IEEE 802.11n non-HT duplicate mode: 20 dBm with 2 antennas IEEE 802.11n (HT20): 20 dBm with 2 antennas IEEE 802.11n (HT40): 20 dBm with 2 antennas 5 GHz IEEE 802.11a: 20 MHz: 19 IEEE 802.11n: 20 MHz: 19 40 MHz: 9 N (N regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.745 to 5.825 GHz; 5 channels Q (Q regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels
3-10
Chapter 3: Wireless
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Data Rates Supported IEEE 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11n data rates (2.4 GHz and 5 GHz) MCS Index1 GI2=800ns 20-MHz rate (Mbps) 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Available Transmit Power Settings 2.4 GHz 20 dBm (100 mW) 17 dBm (50 mW) 14 dBm (25 mW) 11 dBm (12.5 mW) 8 dBm (6.25 mW) 5 dBm (3.13 mW) 2 dBm (1.56 mW) -1 dBm (0.78 mW) 6.5 13 19.5 26 39 52 58.5 65 13 26 39 52 78 104 117 130 40-MHz rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 54 81 108 162 216 243 270 GI=400ns 20-MHz rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 28.9 43.3 57.8 86.7 115.6 130 144.4 5 GHz 17 dBm (50 mW) 14 dBm (25 mW) 11 dBm (12.5 mW) 8 dBm (6.25 mW) 5 dBm (3.13 mW) 2 dBm (1.56 mW) -1 dBm (0.78 mW) 40-MHz rate (Mbps) 15 30 45
Wireless
Certified for use with antenna gains up to 13 dBi (2.4 GHz) and 7 dBi (5 GHz). Cisco offers the industrys broadest selection of IEEE 802.11n antennas delivering optimal coverage for a variety of deployment scenarios. 10/100/1000BASE-T autosensing (RJ-45) Management console port (RJ-45) IEEE 802.11a (non HT20) -93 dBm @ 6 Mb/ s -93 dBm @ 9 Mb/ s -92 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -87 dBm @ 24 Mb/ s -84 dBm @ 36 Mb/ s -79 dBm @ 48 Mb/ s -79 dBm @ 54 Mb/ s IEEE 802.11b (CCK) -101 dBm @ 1 Mb/ s -98 dBm @ 2 Mb/ s -92 dBm @ 5.5 Mb/ s -89 dBm @ 11 Mb/ s IEEE 802.11g (non HT20) -92 dBm @ 6 Mb/ s -92 dBm @ 9 Mb/ s -92 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -86 dBm @ 24 Mb/ s -84 dBm @ 36 Mb/ s -79 dBm @ 48 Mb/ s -78 dBm @ 54 Mb/ s 2.4-GHz: IEEE 802.11n (HT20) -92 dBm @ MCS0 -90 dBm @ MCS1 -88 dBm @ MCS2 -85 dBm @ MCS3 -82 dBm @ MCS4 -77 dBm @ MCS5 -76 dBm @ MCS6 -74 dBm @ MCS7 -92 dBm @ MCS8 -90 dBm @ MCS9 -87 dBm @ MCS10 -85 dBm @ MCS11 -82 dBm @ MCS12 -77 dBm @ MCS13 -75 dBm @ MCS14 -74 dBm @ MCS15
Chapter 3: Wireless
3-11
2.4-GHz: IEEE 802.11n (HT40) -89 dBm @ MCS0 -87 dBm @ MCS1 -85 dBm @ MCS2 -82 dBm @ MCS3 -79 dBm @ MCS4 -73 dBm @ MCS5 -72 dBm @ MCS6 -70 dBm @ MCS7 -90 dBm @ MCS8 -87 dBm @ MCS9 -85 dBm @ MCS10 -81 dBm @ MCS11 -78 dBm @ MCS12 -74 dBm @ MCS13 -72 dBm @ MCS14 -71 dBm @ MCS15
5-GHz: IEEE 802.11n (HT20) -93 dBm @ MCS0 -91 dBm @ MCS1 -89 dBm @ MCS2 -86 dBm @ MCS3 -83 dBm @ MCS4 -78 dBm @ MCS5 -77 dBm @ MCS6 -75 dBm @ MCS7 -87 dBm @ MCS8 -87 dBm @ MCS9 -85 dBm @ MCS10 -83 dBm @ MCS11 -79 dBm @ MCS12 -75 dBm @ MCS13 -73 dBm @ MCS14 -72 dBm @ MCS15 5-GHz: IEEE 802.11n (HT40) -91 dBm @ MCS0 -89 dBm @ MCS1 -87 dBm @ MCS2 -83 dBm @ MCS3 -80 dBm @ MCS4 -75 dBm @ MCS5 -74 dBm @ MCS6 -72 dBm @ MCS7 -86 dBm @ MCS8 -85 dBm @ MCS9 -84 dBm @ MCS10 -80 dBm @ MCS11 -77 dBm @ MCS12 -72 dBm @ MCS13 -71 dBm @ MCS14 -70 dBm @ MCS15
Status LED indicates boot loader status, association status, operating status, boot loader warnings, boot loader errors. Access point (without mounting bracket): 8.7 x 8.7 x 1.84 in. (22.1 x 22.1 x 4.7 cm) 2.3 lbs (1.04 kg) Nonoperating (storage) temperature: -40 to 185F (-40 to 85C) Operating temperature: -4 to +131F (-20 to +55C) Operating humidity: 10 to 90 percent (noncondensing) 128-MB DRAM 32-MB flash AP3500: 44 to 57 VDC Power Supply and Power Injector: 100 to 240 VAC; 50 to 60 Hz
Powering Options IEEE 802.3af Ethernet Switch Cisco AP3500 Power Injectors (AIR-PWRINJ4=) Cisco AP3500 Local Power Supply (AIR-PWR-B=) Power Draw AP3500: 12.95 W Note: When deployed using Power over Ethernet (PoE), the power drawn from the power sourcing equipment will be higher by some amount dependent on the length of the interconnecting cable. This additional power may be as high as 2.45W, bringing the total system power draw (access point + cabling) to 15.4W. Limited Lifetime Hardware Warranty Safety: UL 60950-1 CAN/ CSA-C22.2 No. 60950-1 UL 2043 IEC 60950-1 EN 60950-1
3-12
Chapter 3: Wireless
Radio approvals: FCC Part 15.247, 15.407 RSS-210 (Canada) EN 300.328, EN 301.893 (Europe) ARIB-STD 33 (Japan) ARIB-STD 66 (Japan) ARIB-STD T71 (Japan) EMI and susceptibility (Class B) FCC Part 15.107 and 15.109 ICES-003 (Canada) VCCI (Japan) EN 301.489-1 and -17 (Europe) EN 60601-1-2 EMC requirements for the Medical Directive 93/ 42/ EEC IEEE Standard: IEEE 802.11a/ b/ g, IEEE 802.11n 2.0, IEEE 802.11h, IEEE 802.11d Security: IEEE 802.11i, Wi-Fi Protected Access 2 (WPA2), WPA IEEE 802.1X Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TKIP) EAP Type(s): Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) EAP-Tunneled TLS (TTLS) or Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2) Protected EAP (PEAP) v0 or EAP-MSCHAPv2 Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST) PEAPv1 or EAP-Generic Token Card (GTC) EAP-Subscriber Identity Module (SIM) Multimedia: Wi-Fi Multimedia (WMM) Other: FCC Bulletin OET-65C RSS-102
1 2
Wireless
MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, the coding rate, and data rate value. GI: A guard interval (GI) between symbols helps receivers overcome the effects of multipath delay.
Cisco SMARTnet Service for the Cisco Aironet 3500p model with external antennas
Regulatory domains: x = regulatory domain. Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit: http:/ / www.cisco.com/ go/ aironet/compliance. Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price list
Chapter 3: Wireless
3-13
Specifications
Feature Software Supported Wireless LAN Controllers 802.11n Version 2.0 (and Related) Capabilities Cisco Aironet 2600 Series Access Point Cisco Unified Wireless Network Software Release 7.3 or later. Cisco 2500 Series, Cisco Wireless LAN Controller Module (WLCM) on Cisco Services Ready Engine (SRE) for Integrated Services Router Generation 2 (ISR G2), Cisco Wireless Services Module 2 (WiSM2), Cisco 5500 Series, Cisco Flex 7500 Series 3x4 multiple-input multiple-output (MIMO) with three spatial streams Maximal ratio combining (MRC) 802.11n and 802.11a/ g beamforming 20- and 40-MHz channels PHY data rates up to 450 Mbps (40-MHz with 5 GHz) Packet aggregation: Aggregated MAC Protocol Data Unit (A-MPDU) (Tx/ Rx), Aggregated MAC Protocol Service Unit (A-MSDU) (Tx/ Rx) 802.11 dynamic frequency selection (DFS) Cyclic shift diversity (CSD) support 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps 802.11bg: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps 802.11n data rates (2.4 GHz1 and 5 GHz): MCS Index2 GI3 = 800ns 20-MHz Rate (Mbps) 0 1 2 3 4 5 6 7 8 6.5 13 19.5 26 39 52 58.5 65 13 40-MHz Rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 GI = 400ns 20-MHz Rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 40-MHz Rate (Mbps) 15 30 45 60 90 120 135 150 30
3-14
Chapter 3: Wireless
54 81 108 162 216 243 270 40.5 81 121.5 162 243 324 364.5 405
28.9 43.3 57.8 86.7 115.6 130 144.4 21.7 43.3 65 86.7 130 173.3 195 216.7
60 90 120 180 240 270 300 45 90 135 180 270 360 405 450
Wireless
A (A regulatory domain - FCC): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels C (C regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.745 to 5.825 GHz; 5 channels E (E regulatory domain - ETSI): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) I (I regulatory domain): 2.412 to 2.472 GHz, 13 channels 5.180 to 5.320 GHz; 8 channels K (K regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.620 GHz, 7 channels 5.745 to 5.805 GHz, 4 channels
N (N regulatory domain - Non FCC): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.745 to 5.825 GHz; 5 channels Q (Q regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels R (R regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5,660 to 5,805 GHz, 7 channels S (S regulatory domain): 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels 5.745 to 5.825 GHz; 5 channels T (T regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.280 to 5.320 GHz; 3 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels Z (Z regulatory domain): 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz, 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels
Note: Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit: http:/ / www.cisco.com/ go/ aironet/ compliance. Maximum Number of Nonoverlapping Channels 2.4 GHz 802.11b/g: 20 MHz: 3 802.11n: 20 MHz: 3 5 GHz 802.11a: 20 MHz: 21 802.11n: 20 MHz: 21 40 MHz: 9 802.11g (non HT20) -91 dBm @ 6 Mb/ s -91 dBm @ 9 Mb/ s -91 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -87 dBm @ 24 Mb/ s -85 dBm @ 36 Mb/ s -80 dBm @ 48 Mb/ s -78 dBm @ 54 Mb/ s 802.11a (non HT20) -92 dBm @ 6 Mb/ s -92 dBm @ 9 Mb/ s -92 dBm @ 12 Mb/ s -92 dBm @ 18 Mb/ s -89 dBm @ 24 Mb/ s -86 dBm @ 36 Mb/ s -81 dBm @ 48 Mb/ s -79 dBm @ 54 Mb/ s Chapter 3: Wireless 3-15
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain. Receive Sensitivity 802.11b (CCK) -100 dBm @ 1 Mb/ s -99 dBm @ 2 Mb/ s -92 dBm @ 5.5 Mb/ s -88 dBm @ 11 Mb/ s
2.4-GHz 802.11n (HT20) -91 dBm @ MCS0 -90 dBm @ MCS1 -90 dBm @ MCS2 -88 dBm @ MCS3 -85 dBm @ MCS4 -80 dBm @ MCS5 -78 dBm @ MCS6 -75 dBm @ MCS7 -90 dBm @ MCS8 -90 dBm @ MCS9 -89 dBm @ MCS10 -86 dBm @ MCS11 -82 dBm @ MCS12 -78 dBm @ MCS13 -77 dBm @ MCS14 -75 dBm @ MCS15 -90 dBm @ MCS16 -89 dBm @ MCS17 -87 dBm @ MCS18 -84 dBm @ MCS19 -81 dBm @ MCS20 -76 dBm @ MCS21 -75 dBm @ MCS22 -74 dBm @ MCS23 Maximum Transmit Power 2.4 GHz 802.11b 22 dBm: 3 Antennas 802.11g 22 dBm: 3 Antennas 802.11n (HT20) 22 dBm: 3 Antennas
5-GHz 802.11n (HT20) -92 dBm @ MCS0 -91 dBm @ MCS1 -90 dBm @ MCS2 -87 dBm @ MCS3 -84 dBm @ MCS4 -80 dBm @ MCS5 -78 dBm @ MCS6 -75 dBm @ MCS7 -92 dBm @ MCS8 -90 dBm @ MCS9 -88 dBm @ MCS10 -85 dBm @ MCS11 -81 dBm @ MCS12 -77 dBm @ MCS13 -76 dBm @ MCS14 -74 dBm @ MCS15 -91 dBm @ MCS16 -89 dBm @ MCS17 -86 dBm @ MCS18 -83 dBm @ MCS19 -80 dBm @ MCS20 -75 dBm @ MCS21 -74 dBm @ MCS22 -73 dBm @ MCS23 5 GHz 802.11a 23 dBm: 4 Antennas 802.11n (HT20) 23 dBm: 4 Antennas 802.11n (HT40) 23 dBm: 4 Antennas
5-GHz 802.11n (HT40) -89 dBm @ MCS0 -88 dBm @ MCS1 -87 dBm @ MCS2 -84 dBm @ MCS3 -81 dBm @ MCS4 -76 dBm @ MCS5 -74 dBm @ MCS6 -73 dBm @ MCS7 -89 dBm @ MCS8 -87 dBm @ MCS9 -85 dBm @ MCS10 -81 dBm @ MCS11 -78 dBm @ MCS12 -74 dBm @ MCS13 -72 dBm @ MCS14 -71 dBm @ MCS15 -88 dBm @ MCS16 -85 dBm @ MCS17 -83 dBm @ MCS18 -79 dBm @ MCS19 -76 dBm @ MCS20 -72 dBm @ MCS21 -70 dBm @ MCS22 -69 dBm @ MCS23
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Available Transmit Power Settings 2.4 GHz 22 dBm (160 mW) 19 dBm (80 mW) 16 dBm (40 mW) 13 dBm (20 mW) 10 dBm (10 mW) 7 dBm (5 mW) 4 dBm (2.5 mW) 5 GHz 23 dBm (200 mW) 20 dBm (100 mW) 17 dBm (50 mW) 14 dBm (25 mW) 11 dBm (12.5 mW) 8 dBm (6.25 mW) 5 dBm (3.13 mW)
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Integrated Antenna External Antenna (SoldSeparately) Interfaces Indicators Dimensions (W x L x H) Weight Environmental 2.4 GHz, Gain 4 dBi, internal omnidirectional, horizontal beamwidth 360 5 GHz, Gain 4 dBi, internal omnidirectional, horizontal beamwidth 360 Certified for use with antenna gains up to 6 dBi (2.4 GHz and 5 GHz) Cisco offers the industrys broadest selection of 802.11n antennas delivering optimal coverage for a variety of deployment scenarios 10/100/1000BASE-T autosensing (RJ-45) Management console port (RJ-45) Status LED indicates boot loader status, association status, operating status, boot loader warnings, boot loader errors Access point (without mounting bracket): 8.652 x 8.652 x 2.1 in. (22.1 x 22.1 x 4.7 cm) 2.3 lbs (1.04 kg) (2.7 lbs for external) Cisco Aironet 2600i Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test -25C, 15,000 ft. Operating temperature: 32 to 104F (0 to 40C) Operating humidity: 10 to 90% percent (noncondensing) Operating Altitude Test: -40C, 9843 ft.
3-16
Chapter 3: Wireless
Cisco Aironet 2600e Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test: -25C, 15,000 ft. Operating temperature: -4 to 131F (-20 to 55C) Operating humidity: 10 to 90 % (noncondensing) Operating Altitude Test: -40C, 9843 ft. System Memory Input Power Requirements Powering Options Power Draw 256 MB DRAM 32 MB flash AP2600: 44 to 57 VDC Power Supply and Power Injector: 100 to 240 VAC; 50 to 60 Hz 802.3af Ethernet Switch Cisco AP2600 Power Injectors (AIR-PWRINJ4=) Cisco AP2600 Local Power Supply (AIR-PWR-B=) AP2600: 12.95 W Note: When deployed using Power over Ethernet (PoE), the power drawn from the power sourcing equipment will be higher by some amount depending on the length of the interconnecting cable. This additional power may be as high as 2.45W, bringing the total system power draw (access point + cabling) to 15.4W. Limited Lifetime Hardware Warranty UL 60950-1 CAN/ CSA-C22.2 No. 60950-1 UL 2043 IEC 60950-1 EN 60950-1 EN 50155 Radio approvals: FCC Part 15.247, 15.407 RSS-210 (Canada) EN 300.328, EN 301.893 (Europe) ARIB-STD 66 (Japan) ARIB-STD T71 (Japan) EMI and susceptibility (Class B) FCC Part 15.107 and 15.109 ICES-003 (Canada) VCCI (Japan) EN 301.489-1 and -17 (Europe) EN 60601-1-2 EMC requirements for the Medical Directive 93/ 42/ EEC IEEE Standard: IEEE 802.11a/ b/ g, IEEE 802.11n, IEEE 802.11h, IEEE 802.11d Security: 802.11i, Wi-Fi Protected Access 2 (WPA2), WPA 802.1X Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TKIP) EAP Type(s): Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) EAP-Tunneled TLS (TTLS) or Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2) Protected EAP (PEAP) v0 or EAP-MSCHAPv2 Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST) PEAPv1 or EAP-Generic Token Card (GTC) EAP-Subscriber Identity Module (SIM) Multimedia: Wi-Fi Multimedia (WMM) Other: FCC Bulletin OET-65C RSS-102
1 2 3
Wireless
4 GHz: 2 GHz does not support 40 MHz. MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, thecoding rate, and data rate values. GI: A guard interval (GI) between symbols helps receivers overcome the effects of multipath delays.
Chapter 3: Wireless
3-17
The Cisco Aironet 2600e Access Point: Indoor, challenging environments with external antennas
Cisco SMARTnet Service for the Cisco Aironet 2600i Access Point with internal and External antennas
Regulatory Domains: (x = regulatory domain) Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit: http:/ / www.cisco.com/ go/ aironet/compliance. Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price List.
Specifications
Feature Software Supported Wireless LAN Controllers 802.11n Cisco Aironet 1600 Series Access Point Cisco Unified Wireless Network Software Cisco IOS Software Release Cisco 2500 Series, Cisco Wireless LAN Controller Module (WLCM) on Cisco Services Ready Engine (SRE) for Integrated Services Router Generation 2 (ISR G2), Cisco Wireless Services Module 2 (WiSM2), Cisco 5500 Series, Cisco Flex 7500 Series 3x3 multiple-input multiple-output (MIMO) with two spatial streams Maximal ratio combining (MRC) 20- and 40-MHz channels PHY data rates up to 300 Mbps Packet aggregation: A-MPDU (Tx/ Rx), A-MSDU (Tx/ Rx) 802.11 dynamic frequency selection (DFS) (Bin 5) Cyclic shift diversity (CSD) support 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps 802.11n data rates (2.4 GHz1 and 5 GHz): MCS Index2 GI3 = 800ns 20-MHz Rate (Mbps) 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Frequency Band and 20-MHz Operating Channels 6.5 13 19.5 26 39 52 58.5 65 13 26 39 52 78 104 117 130 40-MHz Rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 54 81 108 162 216 243 270 GI = 400ns 20-MHz Rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 28.9 43.3 57.8 86.7 115.6 130 144.4 40-MHz Rate (Mbps) 15 30 45 60 90 120 135 150 30 60 90 120 180 240 270 300
Wireless
A Regulator Domain: 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels C Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.745 to 5.825 GHz; 5 channels E Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 8 channels (excludes 5.600 to 5.640 GHz) I Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels K Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.620 GHz; 7 channels 5.745 to 5.805 GHz; 4 channels
N Regulatory Domain: 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.745 to 5.825 GHz; 5 channels Q Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels R Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.660 to 5.700 GHz; 3 channels 5.745 to 5.805 GHz; 4 channels S Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 11 channels 5.745 to 5.825 GHz; 5 channels
Chapter 3: Wireless
3-19
T Regulatory Domain: 2.412 to 2.462 GHz; 11 channels 5.280 to 5.320 GHz; 3 channels 5.500 to 5.700 GHz; 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channels Maximum Number of Nonoverlapping Channels 2.4 GHz 802.11b/g: 20 MHz: 3 802.11n: 20 MHz: 3
Z Regulator Domain: 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 8 channels 5.500 to 5.700 GHz; 8 channels (excludes 5.600 to 5.640 GHz) 5.745 to 5.825 GHz; 5 channel 5 GHz 802.11a: 20 MHz: 24 802.11n: 20 MHz: 24 40 MHz: 11
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain.
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain. Receive Sensitivity 2.4 GHz 802.11b -101 dBm @ 1 Mb/ s -99 dBm @ 2 Mb/ s -92 dBm @ 5.5 Mb/ s -89 dBm @ 11 Mb/ s 2.4 GHz 802.11g -93 dBm @ 6 Mb/ s -93 dBm @ 9 Mb/ s -92 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -87 dBm @ 24 Mb/ s -85 dBm @ 36 Mb/ s -80 dBm @ 48 Mb/ s -79 dBm @ 54 Mb/ s 5 GHz 802.11a -92 dBm @ 6 Mb/ s -91 dBm @ 9 Mb/ s -91 dBm @ 12 Mb/ s -89 dBm @ 18 Mb/ s -86 dBm @ 24 Mb/ s -83 dBm @ 36 Mb/ s -79 dBm @ 48 Mb/ s -78 dBm @ 54 Mb/ s 5 GHz 802.11n (HT20) -92 dBm @ MCS0 -89 dBm @ MCS1 -88 dBm @ MCS2 -85 dBm @ MCS3 -82 dBm @ MCS4 -77 dBm @ MCS5 -76 dBm @ MCS6 -75 dBm @ MCS7 -91 dBm @ MCS8 -88 dBm @ MCS9 -87 dBm @ MCS10 -84 dBm @ MCS11 -81 dBm @ MCS12 -76 dBm @ MCS13 -75 dBm @ MCS14 -73 dBm @ MCS15 5 GHz 802.11n (HT40) -88 dBm @ MCS0 -87 dBm @ MCS1 -85 dBm @ MCS2 -82 dBm @ MCS3 -79 dBm @ MCS4 -74 dBm @ MCS5 -73 dBm @ MCS6 -72 dBm @ MCS7 -88 dBm @ MCS8 -86 dBm @ MCS9 -84 dBm @ MCS10 -81 dBm @ MCS11 -78 dBm @ MCS12 -73 dBm @ MCS13 -72 dBm @ MCS14 -70 dBm @ MCS15
2.4 GHz 802.11n (HT20) -93 dBm @ MCS0 -91 dBm @ MCS1 -89 dBm @ MCS2 -86 dBm @ MCS3 -83 dBm @ MCS4 -78 dBm @ MCS5 -77 dBm @ MCS6 -76 dBm @ MCS7 -93 dBm @ MCS8 -90 dBm @ MCS9 -88 dBm @ MCS10 -85 dBm @ MCS11 -81 dBm @ MCS12 -77 dBm @ MCS13 -76 dBm @ MCS14 -74 dBm @ MCS15 Maximum Total Transmit Power 2.4GHz 802.11b 22 dBm (3 antennas enabled) 802.11g 22 dBm (3 antennas enabled) 802.11n (HT20) 22 dBm (3 antennas enabled)
5GHz 802.11a 22 dBm (3 antennas enabled) 802.11n non-HT duplicate mode 22 dBm (3 antennas enabled) 802.11n (HT20) 22 dBm (3 antennas enabled) 802.11n (HT40) 22 dBm (3 antennas enabled)
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Available Total Transmit Power Settings 2.4 GHz enabled antennas: 1 17 dBm 14 dBm 11 dBm 8 dBm 5 dBm 2 dBm 2 20 dBm 17 dBm 14 dBm 11 dBm 8 dBm 5 dBm 3 22 dBm 19 dBm 16 dBm 13 dBm 10 dBm 7 dBm 5 GHz enabled antennas: 1 17 dBm 14 dBm 11 dBm 8 dBm 5 dBm 2 dBm 2 20 dBm 17 dBm 14 dBm 11 dBm 8 dBm 5 dBm 3 22 dBm 19 dBm 16 dBm 13 dBm 10 dBm 7 dBm
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details.
3-20
Chapter 3: Wireless
Integrated Antenna External Antenna (Sold Separately) Interfaces Indicators Dimensions (W x L x H) Weight Environmental
2.4 GHz, gain 4.0 dBi, horizontal beamwidth 360 5 GHz, gain 4.0 dBi, horizontal beamwidth 360 Certified for use with antenna gains up to 6 dBi (2.4 GHz and 5 GHz) Cisco offers the industrys broadest selection of 802.11n antennas delivering optimal coverage for a variety of deployment scenario 10/100/1000BASE-T autosensing (RJ-45) Management console port (RJ-45) Status LED indicates boot loader status, association status, operating status, boot loader warnings, boot loader errors Access point (without mounting bracket): 8.7 x 8.7 x 1.84 in. (22.1 x 22.1 x 4.7 cm) 2.3 lbs (1.04 kg)
Wireless
Cisco Aironet 1600i Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test -25C, 15,000 ft. Operating temperature: 32 to 104F (0 to 40C) Operating humidity: 10 to 90% percent (noncondensing) Operating Altitude Test -40C, 9843 ft. Cisco Aironet 1600e Nonoperating (storage) temperature: -22 to 158F (-30 to 70C) Nonoperating (storage) Altitude Test - 25C, 15,000 ft. Operating temperature: -4 to 122F (-20 to 50C) Operating humidity: 10 to 90 percent (noncondensing) Operating Altitude Test -40C, 9843 ft
256 MB DRAM 32 MB flash AP1600: 44 to 57 VDC Power Supply and Power Injector: 100 to 240 VAC; 50 to 60 Hz 802.3af Ethernet Switch Cisco AP1600 Power Injectors (AIR-PWRINJ4=, AIR-PWRINJ5=) Cisco AP1600 Local Power Supply (AIR-PWR-B=) AP1600: 12.95 W Note: When deployed using PoE, the power drawn from the power sourcing equipment will be higher by some amount dependent on the length of the interconnecting cable. This additional power may be as high as 2.45W, bringing the total system power draw (access point + cabling) to 15.4W. Limited Lifetime Hardware Warranty Safety: UL 60950-1 CAN/ CSA-C22.2 No. 60950-1 UL 2043 IEC 60950-1 EN 60950-1 Radio approvals: FCC Part 15.247, 15.407 RSS-210 (Canada) EN 300.328, EN 301.893 (Europe) ARIB-STD 33 (Japan) ARIB-STD 66 (Japan) ARIB-STD T71 (Japan) AS/ NZS 4268.2003 (Australia and New Zealand) EMI and susceptibility (Class B) FCC Part 15.107 and 15.109 ICES-003 (Canada) VCCI (Japan) EN 301.489-1 and -17 (Europe) EN 60601-1-2 EMC requirements for the Medical Directive 93/ 42/ EEC IEEE Standard: IEEE 802.11a/ b/ g, IEEE 802.11n, IEEE 802.11h, IEEE 802.11d Security: 802.11i, Wi-Fi Protected Access 2 (WPA2), WPA 802.1X Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TKIP)
Power Draw
Warranty Compliance
Chapter 3: Wireless
3-21
EAP Type(s): Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) EAP-Tunneled TLS (TTLS) or Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2) Protected EAP (PEAP) v0 or EAP-MSCHAPv2 Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST) PEAPv1 or EAP-Generic Token Card (GTC) EAP-Subscriber Identity Module (SIM) Multimedia: Wi-Fi Multimedia (WMM) Other: FCC Bulletin OET-65C RSS-102
1 2 3
2.4 GHz: 2 GHz does not support 40 MHz. MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, the coding rate, and data rate values. GI: A Guard Interval (GI) between symbols helps receivers overcome the effects of multipath delays.
The Cisco Aironet 1600e Access Point: Indoor, challenging environments, with external antennas
Regulatory domains: (x = Cisco SMARTnet Service for the Cisco Aironet 1600 Series Access Point with Internal and External antennas CON-SNT-C1602Ix CON-SNT-C1602Ex CON-SNT-S1602Ix CON-SNT-S1602Ex SMARTnet 8x5xNBD 1600i access point (dual-band 802.11 a/ g/ n, Controller-based), (e.g. CONSNT-C1602IE for AP1600 internal antenna for E Domain, Controller based) SMARTnet 8x5xNBD 1600e access point (dual-band 802.11 a/ g/ n, Controller-based), (e.g. CONSNT-C1602EA for AP1600 external antenna for A Domain, Controller based) SMARTnet 8x5xNBD 1600i access point (dual-band 802.11 a/ g/ n, Stand-alone), (e.g. CON-SNTS1602IE for AP1600 internal antenna for E Domain, stand-alone) SMARTnet 8x5xNBD 1600e access point (dual-band 802.11 a/ g/ n, Stand-alone), (e.g. CON-SNTS1602EA for AP1600 external antenna for A Domain, Stand-alone) Cisco Wireless LAN Network Planning and Design Service Cisco Wireless LAN 802.11n Migration Service Cisco Wireless LAN Performance and Security Assessment Service
Regulatory domain Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, please visit: http:/ / www.cisco.com/ go/aironet/compliance. Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price List.
3-22
Chapter 3: Wireless
Wireless
Specifications
Feature Software Controllers Supported IEEE 802.11n Cisco Aironet 600 Series OfficeExtend Cisco Unified Wireless Network Software Release 7.0 MR1 or later Cisco 2500, 5500, 7500 Series Wireless Controllers and Cisco Wireless Services Module 2 (WiSM2) Multiple-input multiple-output (MIMO) with two spatial streams Maximal ratio combining (MRC) 20- and 40-MHz channels PHY data rates up to 300 Mbps Packet aggregation: A-MPDU (Tx/ Rx) Cyclic shift diversity (CSD) support 2.4 GHz IEEE 802.11b/g: 20 MHz: 3 IEEE 802.11n: 20 MHz: 3 5 GHz IEEE 802.11a: 20 MHz: 9 IEEE 802.11n: 20 MHz: 9 40 MHz: 4
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain. Receive Sensitivity 2.4 GHz IEEE 802.11b: -87dBm Typical @ 11Mbps IEEE 802.11g: -77dBm Typical @ 54Mbps; IEEE 802.11n 20MHz: -71dBm Typical @ MCS15 IEEE 802.11n 40MHz: -68dBm Typical @ MCS15 5 GHz IEEE 802.11a: -74dBm Typical @ 54Mbps; IEEE 802.11n 20MHz: -68dBm Typical @ MCS15 IEEE 802.11n 40MHz: -65dBm Typical @ MCS15 Maximum Transmit Power 2.4 GHz IEEE 802.11b (CCK): 20 dBm with one antenna IEEE 802.11g: 20 dBm with 2 antennas IEEE 802.11n (HT20): 20 dBm with 2 antennas IEEE 802.11n (HT40): 20 dBm with 2 antennas 5 GHz IEEE 802.11a: 20 dBm with 2 antennas IEEE 802.11n (HT20): 20 dBm with 2 antennas IEEE 802.11n (HT40): 20 dBm with 2 antennas
Chapter 3: Wireless
3-23
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Frequency Band and 20-MHz Operating Channels A Regulator Domain: 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 4 channels 5.745 to 5.825 GHz; 5 channels C Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.745 to 5.825 GHz; 5 channels E Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 8 channels I Regulatory Domain: 2.412 to 2.472 GHz, 13 channels 5.180 to 5.320 GHz; 4 channels K Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 4 channels 5.745 to 5.805 GHz; 4 channels N Regulatory Domain: 2.412 to 2.462 GHz; 11 channels 5.180 to 5.320 GHz; 4 channels 5.745 to 5.825 GHz; 5 channels P Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 4 channels R Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 4 channels 5.745 to 5.825 GHz; 4 channels S Regulatory Domain: 2.412 to 2.472 GHz; 13 channels 5.180 to 5.320 GHz; 4 channels 5.745 to 5.825 GHz; 5 channels T Regulatory Domain: 2.412 to 2.462 GHz; 11 channels 5.745 to 5.825 GHz; 5 channels
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain. Data Rates Supported IEEE 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11n data rates (2.4 GHz and 5 GHz): MCS Index1 GI2 = 800ns 20-MHz Rate (Mbps) 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Integrated Antenna Interfaces 6.5 13 19.5 26 39 52 58.5 65 13 26 39 52 78 104 117 130 40-MHz Rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 54 81 108 162 216 243 270 GI = 400ns 20-MHz Rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 28.9 43.3 57.8 86.7 115.6 130 144.4 40-MHz Rate (Mbps) 15 30 45 60 90 120 135 150 30 60 90 120 180 240 270 300
2.4 GHz, gain 3.5 dBi, horizontal beamwidth 360 5 GHz, gain 4.0 dBi, horizontal beamwidth 360 4x 10/ 100/ 1000BASE-T autosensing (RJ-45) 1x 10/ 100/ 1000BASE-T WAN port (RJ-45) USB: Not available (future release) Status LED indicates boot loader status, association status, operating status, boot loader warnings, boot loader errors [USB (future use)] Access point (without cradle): 7.75 x 7 x 1.6 in. (195.3 x 176.3 x 39.65 mm) Access point (with cradle): 8.1 x 7.0 x 2.7 in. (206.15 x 176.3 x 67 mm) 0.99 lbs (0.452 kg)without cradle 1.44 lbs (0.653 kg)with cradle Nonoperating (storage) temperature: -13 to 140F (-25 to 60C) Operating temperature: 32 to104F (0 to 40C) Operating humidity: 10 to 80% percent (noncondensing) 64 MB DRAM 16 MB flash
System Memory
3-24
Chapter 3: Wireless
Powering Options
Cisco AP600 Local Power Supply: 100 to 240 VAC; 50 to 60 Hz (AIR-PWR-ADTR-cc, where cc is country code as follows: AP=Asia Pacific; AR=Argentina/ Uruguay; AU=Australia; BR=Brazil; CE=Central Europe; CH=China; DM=Denmark; IS=Israel; IT=Italy; JP=Japan; NA=North America; SA=South Africa; SW=Switzerland; UK=United Kingdom) Consumption: 12W normal, 15W maximum Limited Lifetime Hardware Warranty
Compliance and Safety: Safety Standards UL 60950-1, 2nd Edition CAN/ CSA-C22.2 No. 60950-1, 2nd Edition; IEC 60950-1, 2nd Edition EN 60950-1, 2nd Edition Radio Approvals: FCC Part 15.247, 15.407; RSS-210 (Canada) EN 300 328, EN 301 893 (Europe) ARIB-STD 33 (Japan) ARIB-STD 66 (Japan) ARIB-STD T71 (Japan); AS/ NZS 4268.2003 (Australia and New Zealand) EMI and susceptibility (Class B) FCC Part 15.107 and 15.109 ICES-003 (Canada) VCCI (Japan) EN 301 489-1 and -17 (Europe) IEEE Standard: IEEE 802.11a/ b/ g, IEEE 802.11n, IEEE 802.11h, IEEE 802.11d Security: IEEE 802.11i, Wi-Fi Protected Access 2 (WPA2), WPA IEEE 802.1X Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TKIP) EAP Type(s): Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) EAP-Tunneled TLS (TTLS) or Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2) Protected EAP (PEAP) v0 or EAP-MSCHAPv2 Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST) PEAPv1 or EAP-Generic Token Card (GTC) EAP-Subscriber Identity Module (SIM) Multimedia: Wi-Fi Multimedia (WMM) Other: FCC Bulletin OET-65C RSS-102
1 2
Wireless
MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, the coding rate, and data rate value. GI: A Guard Interval (GI) between symbols helps receivers overcome the effects of multipath delay.z
Regulatory domains: x = regulatory domain. Customers are responsible for verifying approval for use in their individual countries. To verify approval and to identify the regulatory domain that corresponds to a particular country, visit http:/ / www.cisco.com/ go/ aironet/ compliance. Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price List.
Chapter 3: Wireless
3-25
3-26
Chapter 3: Wireless
Specifications
Feature IEEE 802.11n Version 2.0 (and Related) Capabilities Cisco Aironet 1550 Series Lightweight Outdoor Wireless Mesh Access Points 2x3 multiple-input multiple-output (MIMO) with two spatial streams Legacy beamforming 20- and 40-MHz channels PHY data rates up to 300 Mbps Packet aggregation: A-MPDU (Tx/ Rx), A-MSDU (Tx/ Rx) IEEE 802.11 dynamic frequency selection (DFS) Cyclic shift diversity (CSD) support DOCSIS 3.0 8x4 cable modem provides: Eight (8) bonded channels with total throughput in excess of 300 Mbps Designed to meet DOCSIS 3.0 specifications as well as backward compatibility with existing DOCSIS 2.0, 1.1 and 1.0 networks Enhanced packet processing technology to maximize performance Downstream data rates in excess of 320 Mbps Upstream data rates up to 120 Mbps Channel-bonded cable modems must be used in conjunction with a cable modem termination system (CMTS) that supports channel bonding per the DOCSIS 3.0 specifications. When used with a nonchannel-bonded CMTS, channel- bonded cable modems function as conventional DOCSIS 2.0 cable modems. IEEE 802.11a: 6, 9, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11g: 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps IEEE 802.11n data rates (2.4 GHz and 5 GHz): MCS Index1 GI2 = 800ns 20-MHz Rate (Mbps) 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Frequency Band and 20-MHz Operating Channels 6.5 13 19.5 26 39 52 58.5 65 13 26 39 52 78 104 117 130 40-MHz Rate (Mbps) 13.5 27 40.5 54 81 108 121.5 135 27 54 81 108 162 216 243 270 GI = 400ns 20-MHz Rate (Mbps) 7.2 14.4 21.7 28.9 43.3 57.8 65 72.2 14.4 28.9 43.3 57.8 86.7 115.6 130 144.4 40-MHz Rate (Mbps) 15 30 45 60 90 120 135 150 30 60 90 120 180 240 270 300
Wireless
A Domain: 2.400 to 2.4835 GHz; 11 channels 5.280 to 5.320 GHz; 3 channels 5.500 to 5.560 GHz, 4 channels 5.680 to 5.700 GHz, 2 channels 5.725 to 5.850 GHz; 5 channels C Domain: 2.400 to 2.4835 GHz; 13 channels 5.725 to 5.850 GHz; 5 channels E Domain: 2.401 to 2.4835 GHz; 13 channels 5.470 to 5.725 GHz; 8 channels K Domain: 2.400 to 2.4835 GHz; 11 channels 5.250 to 5.825 GHz; 14 channels
M Domain 2.400 to 2.4835 GHz; 13 channels 5.470 to 5.850 GHz; 12 channels N Domain: 2.400 to 2.4835 GHz; 11 channels 5.725 to 5.850 GHz; 5 channels Q Domain: 2.400 to 2.4835 GHz; 13 channels 5.470 to 5.725 GHz; 11 channels R Domain: 2.400 to 2.4835 GHz; 13 channels 5.250 to 5.725 GHz; 11 channels S Domain: 2.400 to 2.4835 GHz; 13 channels 5.725 to 5.850 GHz; 5 channels T Domain: 2.400 to 2.4835 GHz; 11 channels 5.470 to 5.850 GHz; 16 channels
Note: This varies by regulatory domain. Refer to the product documentation for specific details for each regulatory domain.
Chapter 3: Wireless
3-27
2.4 GHz IEEE 802.11b (CCK) 28 dBm with 2 antennas IEEE 802.11g (non HT duplicate mode) 28 dBm with 2 antennas IEEE 802.11n (HT20) 28 dBm with 2 antennas
5 GHz IEEE 802.11a 28 dBm with 2 antennas IEEE 802.11n non-HT duplicate (IEEE 802.11a duplicate) mode 28 dBm with 2 antennas IEEE 802.11n (HT20) 27 dBm with 2 antennas IEEE 802.11n (HT40) 27 dBm with 2 antennas
Note: The maximum power setting will vary by channel and according to individual country regulations. Refer to the product documentation for specific details. Receive Sensitivity IEEE 802.11b (Complementary Code Keying [CCK]) -101 dBm @ 1 Mb/ s; -98 dBm @ 2 Mb/ s -92 dBm @ 5.5 Mb/ s -89 dBm @ 11 Mb/ s IEEE 802.11g (non HT20): -94 dBm @ 6 Mb/ s -93 dBm @ 9 Mb/ s -92 dBm @ 12 Mb/ s -90 dBm @ 18 Mb/ s -86 dBm @ 24 Mb/ s -84 dBm @ 36 Mb/ s -79 dBm @ 48 Mb/ s -78 dBm @ 54 Mb/ s IEEE 802.11a (non HT20) -92 dBm @ 6 Mb/ s -91 dBm @ 9 Mb/ s; -89 dBm @ 12 Mb/ s; -87 dBm @ 18 Mb/ s -85 dBm @ 24 Mb/ s; -81 dBm @ 36 Mb/ s -77 dBm @ 48 Mb/ s -76 dBm @ 54 Mb/ s 2.4-GHz IEEE 802.11n (HT20) -93 dBm @ MCS0 -91dBm @ MCS1 -89dBm @ MCS2 -86 dBm @ MCS3; -82 dBm @ MCS4 -78 dBm @ MCS5; -77 dBm @ MCS6 -75 dBm @ MCS7 -93 dBm @ MCS8 -91 dBm @ MCS9 -89 dBm @ MCS10; -86 dBm @ MCS11; -82 dBm @ MCS12 -78 dBm @ MCS13 -77 dBm @ MCS14; -75 dBm @ MCS15 5-GHz IEEE 802.11n (HT20): -92 dBm @ MCS0; -89 dBm @ MCS1 -87 dBm @ MCS2; -85 dBm @ MCS3 ;-81 dBm @ MCS4 -77 dBm @ MCS5 -76 dBm @ MCS6; -75 dBm @ MCS7; -90 dBm @ MCS8 -87 dBm @ MCS9 -85 dBm @ MCS10; -82 dBm @ MCS11; -78 dBm @ MCS12 -74 dBm @ MCS13; -73 dBm @ MCS14 -72 dBm @ MCS15 5-GHz: IEEE 802.11n (HT40) -89 dBm @ MCS0 -86 dBm @ MCS1 -84 dBm @ MCS2; -82 dBm @ MCS3 -78 dBm @ MCS4; -74 dBm @ MCS5 -73 dBm @ MCS6 -72 dBm @ MCS7 -87 dBm @ MCS8 -84 dBm @ MCS9 -82 dBm @ MCS10 -79 dBm @ MCS11 -75 dBm @ MCS12 -71 dBm @ MCS13 -70 dBm @ MCS14 -69 dBm @ MCS15
10/ 100/ 1000BASE-T Ethernet, autosensing (RJ-45) Fiber SFP DOCSIS 3.0 (8x4) Cable modem interface (option available) 12.0 in. x 7.8 in. x 6.4 in. (30.48 cm x 19.81 cm x 16.26 cm) (including antenna mount) 1552E/ EU: 17.3 lbs (7.8 kg) 1552C/ CU: 14 lbs (6.4 kg) 1552H: 17.6 lbs (8 kg) 1552I: 14 lbs (6.4 kg) Battery backup: 1.5 lbs (0.7kg) Pole mounting bracket: 6.1 lbs (2.8 kg) Cable strand mounting bracket: 1.3 lbs (0.6 kg)
3-28
Chapter 3: Wireless
Environmental
Operating temperature: -40 to 55C (-40 to 131F) plus Solar Loading Storage temperature: -50 to 85C (-58 to 185F) Wind resistance: Up to 100 MPH sustained winds Up to 165 MPH wind gusts IP67 NEMA Type 4X Integrated Dual Band Omnidirectional Antenna Radome (1552C /1552I) 2 dBi (2.4 GHz), 4 dBi (5 GHz) External Dual-Band Omnidirectional Antennas (1552E /1552H) AIR-ANT2547V-N (4 dBi (2.4 GHz), 7 dBi (5 GHz)) External Single Band Antennas (for 1552EU /1552CU) 2.4 GHz AIR-ANT2420V-N (2 dBi, omni) AIR-ANT2450V-N (5 dBi, omni) AIR-ANT2480V-N (8 dBi, omni) AIR-ANT2413P2M-N= (13 dBi, dual polarized patch) 5 GHz AIR-ANT5140V-N (4 dBi, omni) AIR-ANT5175V-N (7.5 dBi, omni) AIR-ANT5180V-N (8 dBi, omni) AIR-ANT5114P-N= (14 dBi, patch) AIR-ANT5114P2M-N= (14 dBi, dual polarized patch) 90-480 VAC, 47-63 Hz 40 - 90 VAC, 47-63 Hz, quasi-square wave, Power over Cable Power over Ethernet: 56 VDC, +/ -10 percent 12 VDC 1 year Safety UL 60950, 2nd Edition; CAN/ CSA-C22.2 No. 60950, 2nd Edition IEC 60950, 2nd Edition EN 60950, 2nd Edition Immunity <= 5 mJ for 6kV/ 3kA @ 8/ 20 ms waveform ANSI/IEEE C62.41 EN61000-4-5 Level 4 AC Surge Immunity; EN61000-4-4 Level 4 Electrical Fast Transient Burst Immunity EN61000-4-3 Level 4 EMC Field Immunity EN61000-4-2 Level 4 ESD Immunity EN60950 Overvoltage Category IV Radio approvals FCC Part 15.247, 15.407 FCC Bulletin OET-65C; RSS-210 RSS-102 AS/NZS 4268.2003; EN 300 328; EN 301 893 EMI and susceptibility FCC part 15.107, 15.109 ICES-003 EN 301 489-1, -17 Security Wireless bridging/ mesh; X.509 digital certificates MAC address authentication; Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TLIP) Wireless access IEEE 802.11i, Wi-Fi Protected Access (WPA2), WPA; IEEE 802.1X authentication, including Extensible Authentication Protocol and Protected EAP (EAP-PEAP), EAP Transport Lauer Security (EAP-TLS), EAPTunneled TLS (EAP-TTLS), and Cisco LEAP Advanced Encryption Standards (AES), Temporal Key Integrity Protocol (TLIP) VPN pass-through IP Security (IPsec), Layer 2 Tunneling Protocol (L2TP) MAC address filtering Other: ATEX (AIR-CAP1552H-X-K9 only)
Wireless
Powering Options
Warranty Compliance
1 2
MCS Index: The Modulation and Coding Scheme (MCS) index determines the number of spatial streams, the modulation, the coding rate, and data rate values. GI: A Guard Interval (GI) between symbols helps receivers overcome the effects of multipath delays. Chapter 3: Wireless 3-29
Cisco SMARTnet Services for the Cisco Aironet 1550 Series Access Points
Not all regulatory domains have been approved. As they are approved, the part numbers will be available on the Global Price List.
1
For the specific regional part numbers, refer to the 1550 ordering guide: http://www.cisco.com/en/US/docs/wireless/access_point/1550/quick/guide/AP1552_ORDERING_GUIDE.pdf
Operating frequency range VSWR bandwidth Peak gain (dBi) Polarization, 2.4 GHz
2400-2500 MHz 5250-5850 MHz 2:1 2.4-GHz band: 13 5-GHz band: 7 Cable A: Horizontal Cable B: Vertical Cable C: Vertical
3-30
Chapter 3: Wireless
Polarization, 5 GHz E-plane 3-dB beamwidth (degrees) H-plane 3-dB beamwidth Cable length Connectors Length (Radome) Width (Radome) Thickness (Radome) Weight (antenna and bracket) Environmental Ratings
All antennas: Vertical 2.4-GHz: 36 5-GHz: 48 2.4-GHz: 36 5-GHz: 55 36 in. (91 cm) RP-TNC male 18 in. (45.7 cm) 13 in. (33 cm) 2 in. (5 cm) 7.75 lbs. (3.52 kg)
Wireless
Water: IP65, dust and jetting water immunity Ice: Mil-810F, Method 521.2 Wind: 100 mph operational Operating Temperature: -30 to 70 degrees C (-22 to 158 degrees F)
Description Application Gain Frequency Elevation Beam Width Dimensions Weight Operating Temperature
Dual-band dipole, black Indoor omnidirectional coverage 2 dBi (2.4 GHz) 4 dBi (5 GHz) 2.400 2.500 GHz 5.150 - 5.850 GHz 63 (2.4 GHz) 39 (5 GHz) 6.6 x 0.8 in. (168.5 x 21 mm) 1.3 oz (0.04 kg) -20 to +60 C
Dual-band dipole, gray Indoor omnidirectional coverage 2 dBi (2.4 GHz) 4 dBi (5 GHz) 2.400 2.500 GHz 5.150 - 5.850 GHz 63 (2.4 GHz) 39 (5 GHz) 6.6 x 0.8 in. (168.5 x 21 mm) 1.3 oz (0.04 kg) -20 to +60 C
Dual-band dipole, white Indoor omnidirectional coverage 2 dBi (2.4 GHz) 4 dBi (5 GHz) 2.400 2.500 GHz 5.150 - 5.850 GHz 63 (2.4 GHz) 39 (5 GHz) 6.6 x 0.8 in. (168.5 x 21 mm) 1.3 oz (0.04 kg) -20 to +60 C
Description
Dual-band MIMO CeilingMounted Omni Antenna Indoor omnidirectional coverage 2 dBi (2.4 GHZ) 4 dBi (5 GHz)
Dual-band MIMO WallMounted Patch Antenna Indoor/outdoor directional coverage 6 dBi (2.4 GHZ) 6 dBi (5 GHz)
Dual-band MIMO wallmounted omnidirectional antenna Indoor/outdoor omnidirectional coverage 4 dBi (2.4 GHZ) 4 dBi (5 GHz)
Application Gain
Chapter 3: Wireless
3-31
2.400 2.500 GHz 5.150 5.850 GHz 105 (2.4 GHz) 125 (5 GHz) 70 (2.4 GHz) 60 (5 GHz) 3 ft. (91.4 cm), plenum rated 6.3 x 11 x 1.2 in. (16 x 27.9 x 3.05 cm) 1.4 lbs. (0.64 kg) -30 to +70C
2.400 2.500 GHz 5.150 5.850 GHz omnidirectional 60 (2.4 GHz) 33 (5 GHz) 3 ft. (91.4 cm), plenum rated 8.6 x 6.3 (dia.) in. in. 21.8 x 16 dia. cm) 1.48 lbs. (0.67 kg) -30 to +70C
Elevation Plane Beamwidth 69 (2.4 GHz) 60 (5 GHz) Cable Length Dimensions Weight Operating Temperature
1
3 ft. (91.4 cm), plenum rated 7.25 x 7.25 x 1 in. (18.4 x 18.4 x 2.5 cm) 1.3 lbs. (0.59 kg) 0 to +55C
5-GHz antennas are denoted by either a blue dot on the radome or blue marker on the cable near the connector.
Antennas with N-Type Connectors for Cisco Aironet 1500 Series Outdoor Mesh Access Points Dual Band Antennas with N-Type Connectors Cisco Aironet 1550 Series Access Points are available in single-band (2.4 GHz) and dual-band (2.4 GHz and 5 GHz) versions. Check your access point for proper antenna selection before placing an order.
Feature AIR-ANT2547V-N AIR-ANT2588P3M-N=
Description Application Gain Frequency Azimuth Beamwidth Elevation Beamwidth Cable Length Dimensions Weight Operating Temperature
Dual band, direct mount omnidirectional antenna Omnidirectional antenna for outdoor mesh access points with dual band ports. 4 dBi (2.4 GHz) 7 dBi (5 GHz) 2.400 2.500 GHz 5.150 5.875 GHz omnidirectional 30 (2.4 GHz) 14 (5 GHz) None 11.1 in. x 1.25 dia. in. (28.2 x 3.2 dia. cm) 0.38 lbs. (0.17 kg) -40 to +85 C
Dual band 3 port directional antenna Directional antenna for outdoor mesh access points with dual band ports. 8 dBi (2.4 GHz) 8 dBi (5 GHZ) 2.400 2.500 GHz 5.150 5.900 GHz 100 (2.4 GHz) 140 (5 GHz) 40 (2.4 GHz) 30 (5 GHz) None 12 in. x 7 x 1.1 in. (30.5 x 17.8 x 2.8 cm) 1 lbs. (0.45 kg) -40 to 55 C
2.4 GHz and 5 GHz Single Band Antennas with N-Type Connectors Cisco Aironet 1550 Series Access Points are available in single-band (2.4 GHz) and dual-band (2.4 GHz and 5GHz) versions. Check your access point for proper antenna selection before placing an order.
Feature AIR-ANT2450V-N AIR-ANT2455V-N AIR-ANT2480V-N
Description
5 dBi, direct mount omnidirectional antenna for 2.4 GHz Omnidirectional antenna for outdoor mesh access points.
5.5 dBi, direct mount omnidirectional antenna for 2.4 GHz Omnidirectional antenna suitable for use on Cisco Aironet 1500 Series Outdoor Mesh Access Points in all deployments.
8 dBi direct mount omnidirectional antenna for 2.4 GHz Extended range omnidirectional antenna for outdoor mesh access points. Suitable for pole or roof mounting deployments.
Application
3-32
Chapter 3: Wireless
Gain Frequency Beam Width Cable Length Dimensions Weight Operating Temperature
5 dBi 2.4 GHz 30 V None 11 in. x 1 in. (27.94 x 2.54 cm) 0.40 lbs. (0.18 kg) -30 to +70 C
5.5 dBi 2.4 GHz 25 V None 12.5 in. x 1 in. (31.75 x 2.54 cm) 0.31 lbs. (0.14 kg) -30 to 70 C AIR-ANT5114P-N
8 dBi 2.4 GHz 10 V None 19.5 in. x 7/ 8 in. diameter (49.5 cm x 2.22 cm) 0.45 lbs. (0.20 kg) -30 to +70 C AIRANT2413P2M-R= AIRANT5114P2M-R=
AIR-ANT5180V-N
Wireless
Description
8 dBi direct mount omnidirectional antenna for 5 GHz Omnidirectional antenna for Cisco Aironet 1520 series mesh access points. Suitable for all deployments, including cable strand mount applications. 8 dBi 4.9-5.85 GHz omnidirectional 16 None 11 in. x 1 in. (27.94x2.54 cm) 0.4 lbs. (0.18 kg) -30 to +70 C
14 dBi wall/ mast mount 2-port, 13 dBi cross articulating patch polarized antenna antenna for 5 GHz Recommended for medium range point to point deployments Directional antenna for outdoor mesh access points with single band ports.
2-port, 14 dBi cross polarized antenna Directional antenna for outdoor mesh access points with single band ports.
Application
Gain Frequency Azimuth Beamwidth Elevation Beamwidth Cable Length Dimensions Weight Operating Temperature
14 dBi 4.9-5.85 GHz 25 29 1 ft. (0.30 m) 4 1/ 8 in. x 4 1/ 8 in. (10.48 cm x 10.48 cm) 0.70 lbs. (0.32 kg) -30 to +70 C
14 dBi 2.400 2.500 GHz 35 35 2.5 ft. (76.2 cm) 7.8 x 7.8 x 1.2 in. ( 19.8 x 19.8 x 3 cm) 1.0 lbs. (0.45 kg) -40 to 55 C
14 dBi 5150 5900 GHz 26 26 2.5 ft. (76.2 cm) 7.8 x 7.8 x 1.2 in. ( 19.8 x 19.8 x 3 cm) 1.0 lbs. (0.45 kg) -40 to 55 C
Low-Loss and Ultra-Low-Loss Cables Low-loss cables extend the length between any Cisco Aironet 2.4- and 5-GHz radio and the antenna with RPTNC connectors. With a loss of 6.7dB per 100feet (30m) for the low-loss cable and 4.4 dB for the ultra-lowloss cable, these cables provide installation flexibility without a significant sacrifice in range. Cisco Aironet Low-Loss Antenna Cable Features
Part Number AIR-CAB005LL-N Type of Cable Interconnect Description 5-ft low loss cable, one straight N connector, one 90-degree N connector 5-ft low loss cable, one RP-TNC plug, one RP-TNC jack 10-ft low loss cable, one straight N connector, one 90-degree N connector 20-ft low loss cable, one RP-TNC plug, one RP-TNC jack 50-ft low loss cable, one RP-TNC plug, one RP-TNC jack Loss at 2.4 GHz 0.5 dB Loss at 5.8 GHz 0.8 dB
AIR-CAB005LL-R
Interconnect
0.5 dB
0.8 dB
AIR-CAB010LL-N
Interconnect
0.9 dB
1.5 dB
AIR-CAB020LL-R
Interconnect
1.3 dB
2.5 dB
AIR-CAB050LL-R
Interconnect
3.4 dB
5.75 dB
Chapter 3: Wireless
3-33
AIR-CAB100ULL-R
Interconnect
100-ft ultra low loss cable, one RP-TNC plug, one RP-TNC jack 150-ft ultra low loss cable, one RP-TNC plug, one RP-TNC jack 5-ft (60 inches) RG-58 type cable with one RP-TNC plug and one RP-TNC jack
4.4 dB
7.25 dB
AIR-CAB150ULL-R
Interconnect
6.6 dB
11 dB
AIR-ACC2537-060
Bulkhead Extender
2 dB
3 dB
Accessories To complete an installation, Cisco provides accessories that offer increased capabilities, safety, and convenience. Cisco Aironet Antenna Accessories for Use with RP-TNC Connectors
Application
Power Injector Cables for Cisco Aironet 1400 Series Wireless Bridges Typical installations place the outdoor unit on an external mast with the power injector unit placed indoors. These cables come with apair of F-type connectors on each end. To allow flexibility in the distance between the units, a variety of cables are available. Cisco Aironet Power Injector Cables
Cisco Aironet 1500 Series Accessories In addition to the antennas offered by Cisco for the 1500 Series, various accessories are available.
Product Number AIR-ACCPMK1500= AIR-PWR-ST-LT-TAP= AIR-PWRINJ1500= Product Description Pole Mount Kit Streetlight Power Tap, 105-260 VAC Power Injector, In 100-240VAC, Out 48 VDC
3-34
Chapter 3: Wireless
Wireless
Specifications
Feature Wireless Wired/Switching/Routing Cisco 8500 Series Wireless Controller IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n IEEE 802.3 10BASE-T, IEEE 802.3u 100BASE-TX specification, 1000BASE-T. 1000BASESX, 1000-BASE-LH, IEEE 802.1Q VLAN tagging
Chapter 3: Wireless
3-35
RFC 768 UDP RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP RFC 793 TCP RFC 826 ARP RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification Wi-Fi Protected Access (WPA) IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication RFC 2246 TLS Protocol Version 1.0 RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2407 Interpretation for ISAKMP RFC 2408 ISAKMP RFC 2409 IKE RFC 2451 ESP CBC-Mode Cipher Algorithms RFC 3280 Internet X.509 PKI Certificate and CRL Profile RFC 4347 Datagram Transport Layer Security RFC 4346 TLS Protocol Version 1.1 Wired Equivalent Privacy (WEP) and Temporal Key Integrity Protocol-Message Integrity Check (TKIP-MIC): RC440, 104 and 128 bits (both static and shared keys) Advanced Encryption Standard (AES): Cipher Block Chaining (CBC), Counter with CBC-MAC (CCM), Counter with Cipher Block Chaining Message Authentication Code Protocol (CCMP) Data Encryption Standard (DES): DES-CBC, 3DES Secure Sockets Layer (SSL) and Transport Layer Security (TLS): RC4 128-bit and RSA 1024- and 2048-bit Datagram Transport Layer Security (DTLS): AES-CBC IPsec: DES-CBC, 3DES, AES-CBC IEEE 802.1X RFC 2548 Microsoft Vendor-Specific RADIUS Attributes RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP RFC 3580 IEEE 802.1X RADIUS Guidelines RFC 3748 Extensible Authentication Protocol Web-based authentication Terminal Access Controller Access-Control System (TACACS) support for management users SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internets RFC 1156 MIB RFC 1157 SNMP RFC 1213 SNMP MIB II RFC 1350 TFTP RFC 1643 Ethernet MIB RFC 2030 SNTP RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog
Security Standards
Encryption
Management
3-36
Chapter 3: Wireless
RFC 3414 User-Based Security Model (USM) for SNMPv3 RFC 3418 MIB for SNMP RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs Management Interfaces Web-based: HTTP/HTTPS Command-line interface: Telnet, Secure Shell (SSH) Protocol, serial port Cisco Wireless Control System (WCS) 2 x 10 Gigabit Ethernet interfaces Small Form-Factor Pluggable (SFP) options (only Cisco SFPs supported): SFP-10G-SR LED indicators: Network Link, Diagnostics 1x Service Port: 10/ 100/ 1000 Mbps Ethernet (RJ-45) Dimensions (WxDxH): 17.30 x 28.00 x 1.69 in. (440.0 x 711.4 x 43.0 mm) Weight: 35.1 lbs (15.9 kg) with 2 power supplies Air temperature: Appliance On: 10C to 35C (50F to 95F); altitude: 0 to 914.4 m (3000 ft),decrease system temperature by 1.0C for every 1000-foot increase in altitude Appliance Off: 5C to 45C (41F to 113F); maximum altitude: 3048 m (10,000 ft) Storage: -40C to 60C (-40F to 140F); maximum altitude: 3048 m (10,000 ft) Humidity: Appliance On: 20% to 80%; maximum dew point: 21C; maximum rate of change: 5 C/ hr Appliance Off: 8% to 80%; maximum dew point: 27C Electrical input: Sine-wave input (47 - 63 Hz) required Input voltage range (DC) Minimum: -40Vdc Maximum: -75Vdc Input voltage low range: Minimum: 100 V ac Maximum: 127 V ac Input voltage high range: Minimum: 200 V ac Maximum: 240 V ac Input kilovolt-amperes (kVA), approximately: Minimum: 0.090 kVA Maximum: 0.700 kVA Heat output (Maximum) 2302 Btu per hour (675 watts) Acoustical noise emissions: Sound power, idling: 6.1 bels maximum Sound power, operating: 6.1 bels maximum Regulatory Compliance CE Mark Safety: UL 60950-1:2003 EN 60950:2000 EMI and susceptibility (Class A): U.S.: FCC Part 15.107 and 15.109 Canada: ICES-003 Japan: VCCI Europe: EN 55022, EN 55024
Wireless
Specifications
Feature Wireless Wired/Switching/Routing Data Request For Comments (RFC) Cisco Flex 7500 Series Cloud Controller IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n IEEE 802.3 10BASE-T, IEEE 802.3u 100BASE-TX specification, 1000BASE-T. 1000BASESX, 1000-BASE-LH, IEEE 802.1Q VLAN tagging, RFC 768 UDP; RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP; RFC 793 TCP; RFC 826 ARP; RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification WEP and TKIP-MIC: RC4 40, 104 and 128 bits (both static and shared keys); AES: CBC, CCM, CCMP; DES: DES-CBC, 3DES SSL and TLS: RC4 128-bit and RSA 1024- and 2048-bit DTLS: AES-CBC IPSec: DES-CBC, 3DES, AES-CBC
Encryption
3-38
Chapter 3: Wireless
Security Standards
WPA IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication; RFC 2246 TLS Protocol Version 1.0 RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2407 Interpretation for ISAKMP RFC 2408 ISAKMP; RFC 2409 IKE RFC 2451 ESP CBC-Mode Cipher Algorithms; RFC 3280 Internet X.509 PKI Certificate and CRL Profile; RFC 4347 Datagram Transport Layer Security RFC 4346 TLS Protocol Version 1.1 IEEE 802.1X RFC 2548 Microsoft Vendor-Specific RADIUS Attributes RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP RFC 3580 IEEE 802.1X RADIUS Guidelines RFC 3748 Extensible Authentication Protocol Web-based authentication TACACS support for management users SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internet; RFC 1156 MIB RFC 1157 SNMP; RFC 1213 SNMP MIB II RFC 1350 TFTP RFC 1643 Ethernet MIB RFC 2030 SNTP; RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog; RFC 3414 User-Based Security Model (USM) for SNMPv3; RFC 3418 MIB for SNMP RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs Web-based: HTTP/HTTPS Command-line interface: Telnet, Secure Shell (SSH) Protocol, serial port Cisco Wireless Control System (WCS) 2x 10 Gigabit Ethernet interfaces Small Form-Factor Pluggable (SFP) options (only Cisco SFPs supported): SFP-10G-SR LED indicators: Network Link, Diagnostics 1x Service Port: 10/ 100/ 1000 Mbps Ethernet (RJ-45) Dimensions (WxDxH): 17.30 x 28.00 x 1.69 in. (440.0 x 711.4 x 43.0 mm) Weight: 35.1 lbs (15.9 kg) with 2 power supplies Air temperature: Appliance On: 10C to 35C (50F to 95F); altitude: 0 to 914.4 m (3000 ft), decrease system temperature by 1.0C for every 1000-foot increase in altitude Appliance Off: 5C to 45C (41F to 113F); maximum altitude: 3048 m (10,000 ft) Storage: -40C to 60C (-40F to 140F); maximum altitude: 3048 m (10,000 ft) Humidity: Appliance On: 20% to 80%; maximum dew point: 21C; maximum rate of change: 5 C/ hr Appliance Off: 8% to 80%; maximum dew point: 27C
Wireless
Management
Management Interfaces
Chapter 3: Wireless
3-39
Electrical input: Sine-wave input (47 - 63 Hz) required Input voltage low range: Minimum: 100 V ac Maximum: 127 V ac Input voltage high range: Minimum: 200 V ac Maximum: 240 V ac Input kilovolt-amperes (kVA), approximately: Minimum: 0.090 kVA Maximum: 0.700 kVA Heat output (Maximum) 2302 Btu per hour (675 watts) Acoustical noise emissions: Sound power, idling: 6.1 bels maximum Sound power, operating: 6.1 bels maximum Regulatory Compliance CE Mark Safety: UL 60950-1:2003 EN 60950:2000 EMI and susceptibility (Class A): U.S.: FCC Part 15.107 and 15.109 Canada: ICES-003 Japan: VCCI Europe: EN 55022, EN 55024
3-40
Chapter 3: Wireless
Wireless
Specifications
Feature Wireless Data RFCs Cisco 5500 Series Wireless LAN Controller IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n RFC 768 UDP; RFC 791 IP; RFC 2460 IPv6 (pass through Bridging mode only); RFC 792 ICMP; RFC 793 TCP; RFC 826 ARP; RFC 1122 Requirements for Internet Hosts; RFC 1519 CIDR; RFC 1542 BOOTP; RFC 2131 DHCP; CAPWAP RFC WPA; IEEE 802.11i (WPA2, RSN); RFC 1321 MD5 Message-Digest Algorithm; RFC 1851 The ESP Triple DES Transform; RFC 2104 HMAC: Keyed Hashing for Message Authentication; RFC 2246 TLS Protocol Version 1.0; RFC 2401 Security Architecture for the Internet Protocol; RFC 2403 HMAC-MD5-96 within ESP and AH; RFC 2404 HMAC-SHA-1-96 within ESP and AH; RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV; RFC 2406 IPsec; RFC 2407 Interpretation for ISAKMP; RFC 2408 ISAKMP; RFC 2409 IKE; RFC 2451 ESP CBC-Mode Cipher Algorithms; RFC 3280 Internet X.509 PKI Certificate and CRL Profile; RFC 3602 The AES-CBC Cipher Algorithm and Its Use with IPsec; RFC 3686 Using AES Counter Mode with IPsec ESP; RFC 4347 Datagram Transport Layer Security; RFC 4346 TLS Protocol Version 1.1 WEP and TKIP-MIC: RC4 40, 104 and 128 bits (both static and shared keys); SSL and TLS: RC4 128-bit and RSA 1024- and 2048-bit; AES: CCM, CCMP; IPSec: DES-CBC, 3DES, AES-CBC IEEE 802.1X; RFC 2548 Microsoft Vendor-Specific RADIUS Attributes; RFC 2716 PPP EAP-TLS; RFC 2865 RADIUS Authentication; RFC 2866 RADIUS Accounting; RFC 2867 RADIUS Tunnel Accounting; RFC 2869 RADIUS Extensions; RFC 3576 Dynamic Authorization Extensions to RADIUS; RFC 3579 RADIUS Support for EAP; RFC 3580 IEEE 802.1X RADIUS Guidelines; RFC 3748 Extensible Authentication Protocol; Web-based authentication; TACACS support for management users SNMP v1, v2c, v3; RFC 854 Telnet; RFC 1155 Management Information for TCP/ IP-Based Internets; RFC 1156 MIB; RFC 1157 SNMP; RFC 1213 SNMP MIB II; RFC 1350 TFTP; RFC 1643 Ethernet MIB; RFC 2030 SNTP; RFC 2616 HTTP; RFC 2665 Ethernet-Like Interface types MIB; RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering and Virtual Extensions; RFC 2819 RMON MIB; RFC 2863 Interfaces Group MIB; RFC 3164 Syslog; RFC 3414 User-Based Security Model (USM) for SNMPv3; RFC 3418 MIB for SNMP; RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs; Cisco private MIBs Web-based: HTTP/ HTTPS; Command-line interface: Telnet, Secure Shell (SSH) Protocol, serial port; Cisco Wireless Control System (WCS) Uplink: 8 (5508) 1000BaseT, 1000Base-SX and 1000Base-LH transceiver slots; Small Form-Factor Pluggable (SFP) options (only Cisco SFPs supported): GLC-T, GLC-SX-MM,; GLC-LH-SM; LED indicators: link; Service Port: 10/ 100/ 1000 Mbps Ethernet (RJ45); Service Port: 10/ 100/ 1000 Mbps Ethernet (RJ45) For High Availability for future use; LED indicators: link; Utility Port: 10/ 100/ 1000 Mbps Ethernet (RJ45); LED indicators: link; Expansion Slots: 1 (5508); Console Port: RS232 (DB-9 male/ RJ-45 connector included), mini-USB; Other Indicators: Sys, ACT, Power Supply 1, Power Supply 2 CE Mark; Safety: UL 60950-1:2003; EN 60950:2000; EMI and susceptibility (Class A): U.S.: FCC Part 15.107 and 15.109; Canada: ICES-003; Japan: VCCI; Europe: EN 55022, EN 55024
Security Standards
Encryption AAA
Management
Regulatory Compliance
Specifications
Feature Wireless Wired/Switching/ Routing Data Request For Comments (RFC) Cisco Virtual Wireless Controller IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n IEEE 802.3 10BASE-T, IEEE 802.3u 100BASE-TX specification, 1000BASE-T. 1000BASE-SX, 1000-BASE-LH, IEEE 802.1Q VLAN tagging RFC 768 UDP RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP RFC 793 TCP RFC 826 ARP RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification WPA IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication RFC 2246 TLS Protocol Version 1.0
Security Standards
3-42
Chapter 3: Wireless
RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2407 Interpretation for ISAKMP RFC 2408 ISAKMP RFC 2409 IKE RFC 2451 ESP CBC-Mode Cipher Algorithms RFC 3280 Internet X.509 PKI Certificate and CRL Profile RFC 4347 Datagram Transport Layer Security RFC 4346 TLS Protocol Version 1.1 Encryption Wired Equivalent Privacy (WEP) and Temporal Key Integrity Protocol-Message Integrity Check (TKIP-MIC): RC440, 104 and 128 bits (both static and shared keys) Advanced Encryption Standard (AES): Cipher Block Chaining (CBC), Counter with CBC-MAC (CCM), Counter with Cipher Block Chaining Message Authentication Code Protocol (CCMP) Data Encryption Standard (DES): DES-CBC, 3DES Secure Sockets Layer (SSL) and Transport Layer Security (TLS): RC4 128-bit and RSA 1024- and 2048-bit Datagram Transport Layer Security (DTLS): AES-CBC IPsec: DES-CBC, 3DES, AES-CBC IEEE 802.1X RFC 2548 Microsoft Vendor-Specific RADIUS Attributes RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP RFC 3580 IEEE 802.1X RADIUS Guidelines RFC 3748 Extensible Authentication Protocol Web-based authentication Terminal Access Controller Access-Control System (TACACS) support for management users SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internets RFC 1156 MIB RFC 1157 SNMP RFC 1213 SNMP MIB II RFC 1350 TFTP RFC 1643 Ethernet MIB RFC 2030 SNTP RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog RFC 3414 User-Based Security Model (USM) for SNMPv3 RFC 3418 MIB for SNMP RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs Web-based: HTTP/HTTPS Command-line interface: Telnet, Secure Shell (SSH) Protocol, serial port Cisco Wireless Control System (WCS) CE Mark Safety: UL 60950-1:2003 EN 60950:2000 EMI and susceptibility (Class A): U.S.: FCC Part 15.107 and 15.109 Canada: ICES-003 Japan: VCCI Europe: EN 55022, EN 55024
Wireless
Management
Chapter 3: Wireless
3-43
Cisco Virtual Wireless Controller can run on any x86 server that supports VMware ESXi 4.x and 5.x The resource requirements from the virtualized server hardware: CPU: 1 virtual CPU Memory: 2 GB Disk Space: 8 GB Network Interfaces: 2 or more virtual Network Interface cards (vNICs)
3-44
Chapter 3: Wireless
Specifications
Feature Wireless Standards Wired/Switching/Routing Data Request for Comments (RFCs) Cisco 2500 Series Wireless Controller IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n. IEEE 802.3 10BASE-T, IEEE 802.3u 100BASE-TX specification, 1000BASE-T, and IEEE 802.1Q VLAN tagging. RFC 768 UDP RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP RFC 793 TCP RFC 826 ARP RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification WEP and Temporal Key Integrity Protocol-Message Integrity Check (TKIP-MIC): RC4 40, 104 and 128 bits (both static and shared keys) Advanced Encryption Standard (AES): CBC, CCM, Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP) DES: DES-CBC, 3DES Secure Sockets Layer (SSL) and Transport Layer Security (TLS): RC4 128-bit and RSA 1024- and 2048-bit DTLS: AES-CBC Designed for use with Cisco Wireless Control System Web-based: HTTP/ HTTPS individual device manager Command-line interface: Telnet, SSH, serial port Console port: RJ-45 connector Network: Four 1 Gbps Ethernet (RJ-45) Note: Access point directly connected to the controller is not currently supported. LED indicators: Link Activity (each 1G port), Power, Status, Alarm IEEE 802.1X RFC 2548 Microsoft Vendor-Specific RADIUS Attributes; RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP RFC 3580 IEEE 802.1X RADIUS Guidelines; RFC 3748 Extensible Authentication Protocol; Web-based authentication TACACS support for management users WiFi Protected Access (WPA) IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication RFC 2246 TLS Protocol Version 1.0 RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2406 IP Encapsulating Security Payload (ESP) RFC 2407 Interpretation for ISAKMP RFC 2408 ISAKMP RFC 2409 IKE RFC 2451 ESP CBC-Mode Cipher Algorithms RFC 3280 Internet X.509 PKI Certificate and CRL Profile RFC 3602 The AES-CBC Cipher Algorithm and Its Use with IPsec RFC 3686 Using AES Counter Mode with IPsec ESP RFC 4347 Datagram Transport Layer Security; RFC 4346 TLS Protocol Version 1.1 SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internets; RFC 1156 MIB RFC 1157 SNMP RFC 1213 SNMP MIB II
Wireless
Encryption
Management Interfaces
Security Standards
Management
Chapter 3: Wireless
3-45
RFC 1350 TFTP RFC 1643 Ethernet MIB RFC 2030 SNTP RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog RFC 3414 User-Based Security Model (USM) for SNMPv3 RFC 3418 MIB for SNMP; RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs Physical and Environmental Dimensions: 1.73 x 8.00 x 6.75 in. (43.9 x 203.2 x 271.5mm) Weight: 3.5 lbs (with power supply) Temperature: Operating: 32 to 104 F (0 to 40C) Storage: -13 to 158F (-25 to 70C) Humidity: Operating humidity: 10 to 95 percent, noncondensing Storage humidity: Up to 95 percent Power adapter: Input power: 100 to 240 VAC; 50/ 60 Hz Heat dissipation: 72 BTU/ hour Safety: UL 60950-1, 2nd Edition EN 60950:2005 EMI and susceptibility (Class B): U.S.: FCC Part 15.107 and 15.109 Canada: ICES-003 Japan: VCCI Europe: EN 55022, EN 55024
Regulatory Compliance
Cisco Wireless Services Module 2 Controller for CiscoCatalyst 6500 Series Switches
The Cisco Wireless Services Module 2 (WiSM2) Controller for Cisco Catalyst 6500 Series Switches is a highly scalable and flexible platform that enables services with comprehensive wireless functions in medium-sized to large enterprises and campus environments. Designed for IEEE 802.11n performance and high scalability, the Cisco WiSM2 controller supports a higher density of clients and delivers more efficient roaming, simultaneously managing up to 1,000 access points and 15,000 clients. The Cisco WiSM2 in the Cisco Catalyst 6500 Series chassis provides high performance, security, and scalability to support mission-critical wireless business communications. The integrated wireless blade in the Cisco Catalyst chassis offers users a cost-effective wireless controller option, increasing the ROI of the Cisco Catalyst investment while reducing hardware costs.
3-46
Chapter 3: Wireless
Wireless
Specifications
Feature Wireless Wired/Switching/Routing Data Request for Comments (RFC) Cisco Wireless Service Module 2 (WiSM 2) for Catalyst 6500 Series IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n IEEE 802.3 10BASE-T, IEEE 802.3u 100BASE-TX specification, 1000BASE-T. 1000BASE-SX, 1000-BASE-LH, IEEE 802.1Q Vtagging, and IEEE 802.1AX Link Aggregation RFC 768 UDP RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP; RFC 793 TCP; RFC 826 ARP RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification WPA; IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm; RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication RFC 2246 TLS Protocol Version 1.0 RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2407 Interpretation for ISAKMP RFC 2408 ISAKMP; RFC 2409 IKE RFC 2451 ESP CBC-Mode Cipher Algorithms
Security Standards
Chapter 3: Wireless
3-47
RFC 3280 Internet X.509 PKI Certificate and CRL Profile; RFC 3602 The AES-CBC Cipher Algorithm and Its Use with IPsec RFC 3686 Using AES Counter Mode with IPsec ESP; RFC 4347 Datagram Transport Layer Security RFC 4346 TLS Protocol Version 1.1 Encryption WEP and TKIP-MIC: RC4 40, 104 and 128 bits (both static and shared keys) AES: CBC, CCM, CCMP; DES: DES-CBC, 3DES SSL and TLS: RC4 128-bit and RSA 1024- and 2048-bit DTLS: AES-CBC; IPsec: DES-CBC, 3DES, AES-CBC
Authentication, Authorization, IEEE 802.1X; RFC 2548 Microsoft Vendor-Specific RADIUS Attributes and Accounting (AAA) RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP; RFC 3580 IEEE 802.1X RADIUS Guidelines; RFC 3748 Extensible Authentication Protocol Web-based authentication TACACS support for management users Regulatory Compliance CE Mark Safety: UL 60950-1:2003 EN 60950:2000 EMI and susceptibility (Class A); U.S.: FCC Part 15.107 and 15.109 Canada: ICES-003 Japan: VCCI Europe: EN 55022, EN 55024 Dimensions (W x D x H): 1.6 x 15.3 x 16.3 in. (4.0 x 37.9 x 40.3 cm) Weight: 11 lbs (54.99 kg) Temperature: Operating temperature: 32 to 104F (0 to 40C); Storage temperature: -40 to 167F (-40 to 75C) Humidity: Operating humidity: 10 to 95%, noncondensing; Storage humidity: up to 95% Input power: 225W maximum; Test conditions: 104F (40C), Full TrafficMost deployments and environments would use less power Heat Dissipation: 768 Btu/ h Maximum; Test Conditions: 104F (40C), Full Traffic Web-based: HTTP/HTTPS Command-line interface: Telnet, Secure Shell (SSH) Protocol, serial port Cisco Wireless Control System (WCS) Service port: 1000 Mbps Ethernet Internal Redundancy port: 1000 Mbps Ethernet Internal Console port: RS232 (DB-9 male/ RJ-45 connector included), mini-USB Status indicators: Power, System, Alarm, Console, USB SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internet; RFC 1156 MIB RFC 1157 SNMP RFC 1213 SNMP MIB II RFC 1350 TFTP; RFC 1643 Ethernet MIB RFC 2030 SNTP RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog; RFC 3414 User-Based Security Model (USM) for SNMPv3; RFC 3418 MIB for SNMP RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs
Management Interfaces
Management
3-48
Chapter 3: Wireless
Wireless
Specifications
Feature Wireless Standards Wired/Switching/Routing Encryption Cisco Wireless Controller Module on the ISR G2 IEEE 802.11a, 802.11b, 802.11g, 802.11d, WMM/ 802.11e, 802.11h, 802.11n Several Ethernet switching modules and Power-over-Ethernet (PoE) options are supported on Cisco 1941, 2900, 3900 Series ISR G2 routers Wired Equivalent Privacy (WEP) and Temporal Key Integrity Protocol-Message Integrity Check (TKIP-MIC): RC4 40, 104 and 128 bits (both static and shared keys) Advanced Encryption Standard (AES): CBC, CCM, Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP) Data Encryption Standard (DES): DES Cipher Block Chaining (DES-CBC), 3DES Secure Sockets Layer (SSL) and Transport Layer Security (TLS): RC4 128-bit and RSA 1024- and 2048-bit IPsec: DES-CBC, 3DES, AES-CBC Chapter 3: Wireless 3-49
RFC 768 UDP : RFC 791 IP RFC 2460 IPv6 (pass through Bridging mode only) RFC 792 ICMP; RFC 793 TCP RFC 826 ARP RFC 1122 Requirements for Internet Hosts RFC 1519 CIDR RFC 1542 BOOTP RFC 2131 DHCP RFC 5415 CAPWAP Protocol Specification; RFC 5416 CAPWAP Binding for 802.11 Wi-Fi Protected Access (WPA) IEEE 802.11i (WPA2, RSN) RFC 1321 MD5 Message-Digest Algorithm RFC 1851 The ESP Triple DES Transform RFC 2104 HMAC: Keyed Hashing for Message Authentication RFC 2246 TLS Protocol Version 1.0; RFC 2401 Security Architecture for the Internet Protocol RFC 2403 HMAC-MD5-96 within ESP and AH; RFC 2404 HMAC-SHA-1-96 within ESP and AH RFC 2405 ESP DES-CBC Cipher Algorithm with Explicit IV RFC 2406 IP Encapsulating Security Payload (ESP) RFC 2407 Interpretation for ISAKMP; RFC 2408 ISAKMP; RFC 2409 IKE; RFC 2451 ESP CBC-Mode Cipher Algorithms RFC 3280 Internet X.509 PKI Certificate and CRL Profile RFC 3602 The AES-CBC Cipher Algorithm and Its Use with IPsec RFC 3686 Using AES Counter Mode with IPsec ESP ;RFC 4346 TLS Protocol Version 1.1 IEEE 802.1X RFC 2548 Microsoft Vendor-Specific RADIUS Attributes RFC 2716 PPP EAP-TLS RFC 2865 RADIUS Authentication; RFC 2866 RADIUS Accounting RFC 2867 RADIUS Tunnel Accounting RFC 2869 RADIUS Extensions RFC 3576 Dynamic Authorization Extensions to RADIUS RFC 3579 RADIUS Support for EAP RFC 3580 IEEE 802.1X RADIUS Guidelines RFC 3748 Extensible Authentication Protocol (EAP) Web-based authentication; Terminal Access Controller Access-Control System (TACACS) support for management users Designed for use with Cisco Wireless Control System Web-based: HTTP/ HTTPS individual device manager Command-line interface: Telnet, SSH Routers: Cisco IOS Software Release SNMP v1, v2c, v3 RFC 854 Telnet RFC 1155 Management Information for TCP/ IP-Based Internets RFC 1156 MIB RFC 1157 SNMP RFC 1213 SNMP MIB II RFC 1350 TFTP RFC 1643 Ethernet MIB RFC 2030 SNTP RFC 2616 HTTP RFC 2665 Ethernet-Like Interface types MIB RFC 2674 Definitions of Managed Objects for Bridges with Traffic Classes, Multicast Filtering, and Virtual Extensions RFC 2819 RMON MIB RFC 2863 Interfaces Group MIB RFC 3164 Syslog RFC 3414 User-Based Security Model (USM) for SNMPv3 RFC 3418 MIB for SNMP; RFC 3636 Definitions of Managed Objects for IEEE 802.3 MAUs Cisco private MIBs Router: Cisco 1941, 2900 Series, and 3900 Series ISR G2 routers Management: Cisco Wireless Control System Location tracking: Cisco Mobility Service Engine Wireless Controllers: Cisco 2100, 2500, 4400, 5500, Cisco Wireless Services Module (WiSM), WiSM2
Security Standards
Management Interfaces
Product Compatibility
3-50
Chapter 3: Wireless
FL-SRE-WLC-25 25 AP License for Cisco Wireless Controller on SRE (when sold with ISR G2 system) Requires SRE SASU
Network Management
Cisco Prime Infrastructure
Cisco Prime Infrastructure addresses IT challenges by providing a single integrated solution for comprehensive lifecycle management of wired and wireless access, campus, and branch-office networks, and rich visibility into end-user connectivity and application performance assurance problems. Cisco Prime Infrastructure accelerates the rollout of new services and provides secure access and management of mobile devices, making bring-yourown-device (BYOD) workspaces a reality for corporate IT. Tightly coupling client awareness with application performance visibility and network control, Cisco Prime Infrastructure helps ensure uncompromised end-user quality of experience. Deep integration with the Cisco Identity Services Engine (ISE) further extends this visibility across security and policy-related problems, presenting a complete view of client access problesms with a clear path to solving them.
Wireless
Day-1 support of new Cisco devices and software releases helps ensure up-to-date coverage with no
Chapter 3: Wireless
3-51
Feature configuration templates are provided for Dynamic Multipoint VPN (DMVPN), Group Encrypted Transport VPN (GETVPN), access control lists (ACLs), and Cisco ScanSafe. Device-level support is provided for DMVPN, Group Encrypted Transport VPN, ACLs, Enhanced Interior Gateway Routing Protocol (EIGRP), Routing Information Protocol (RIP), Open Shorest Path First (OSPF), static routes, Ethernet interfaces, Network Address Translation (NAT), and Zone-Based Firewall.
Specifications
Feature VMware Virtual appliance resource requirements Cisco Prime Infrastructure VMware ESX/ ESXi Version 4.1 or 5.0 Small virtual appliance RAM minimum: 8 GB Hard disk minimum: 200 GB Processors: 4 virtual CPUs (vCPUs) Medium virtual appliance RAM minimum 12 GB Hard disk minimum: 300 GB Processors: 4 vCPUs Large virtual appliance (VMware ESX/ ESXi 5.0 only) RAM minimum: 16 GB Hard disk minimum: 400 GB Processors: 16 vCPUs Extra large virtual appliance (VMware ESX/ ESXi 5.0 only) RAM minimum: 24 GB Hard disk minimum: 1200 GB Processors: 16 vCPUs Minimum client requirements Management and security Supported device types Client hardware: 1 GB RAM, 2 GHz or better processor Browser: Internet Explorer 8.0 or 9.0 with Chrome plug-in, Mozilla Firefox 7.0-12.0, or Chrome 19.0 SNMPv1, v2c, v3, and Cisco TACACS+, PNG, JPEG, and AutoCAD (DXF and DWG) import file types supported Cisco Integrated Services Routers (ISRs) Cisco Aggregation Services Routers (ASRs) Cisco Catalyst Switches Cisco Network Analysis Modules Cisco Wide Area Application Services (WAAS) Cisco Nexus Switches Cisco MDS 9000 Series Multilayer Switches Cisco Mobility Service Engine (MSE) Cisco Wireless LAN Controllers Cisco Lightweight Access Points Cisco Autonomous Access Points Virtual Appliance Size (Lifecycle | Assurance | Lifecycle & Assurance) Parameter Devices1 Lightweight access points Events per second2 Flows per second Wired clients Wireless clients
1 2
Large/Cisco Prime Appliance 11,000 | 5,000 | 5,000 15,000 | - | 5,000 300 - | 16,000 | 16,000 50,000 | - | 25,000 200,000 | - | 75,000
Extra Large 18,000 | 18,000 | 18,000 15,000 | - | 15,000 1,000 - | 80,000 | 80,000 50,000 | - | 50,000 200,000 | - | 200,000
A device constitutes a supported device type. NAM management requires the Assurance feature set and a maximum of 40 NAMs can be supported. Events are either syslogs or SNMP traps received from managed network devices.
Cisco Prime NCS Software and License for 500 Devices Cisco Prime NCS Software and License for 1,000 Devices Cisco Prime NCS Software and License for 2,500 Devices Cisco Prime NCS Software and License for 5,000 Devices Cisco Prime NCS Software and License for 10,000 Devices
Specifications
Feature Dimensions Cisco Spectrum Expert Wi-Fi Specifications Unit sizes: Cardbus Type II and Express Card 54 mm; Unit weight: 1.65 oz and 1.35 oz; Shipping weight: 1 lb; Operating temperature: 32F to 131F; Storage temperature: -4F to 149F Displayed average noise level: -124 dBm; Reference level: -150 (min) to +10 (max) dBm; 512 MB capture limit; Frequency stability: +/ -20 ppm; Max safe input level: 0 dBm; Amplitude accuracy: =/ - 2.5 dBm; Public safety: 4.9 GHz; Frequency span at 2.4 GHz: 0.03 (min) to 100 (max) MHz; Frequency span at 5 GHz: 0.03 (min) to 975 (max) MHz; Center frequency resolution: 10 kHz; Resolution bandwidth: 0.01 (min) to 5 (max) MHz; Sweep time RTFFT mode: 6.4 us; Sweep time PvT mode: 10 ms (max); Trigger delay (ms): -10 (min) to +10 (max); Power consumption: -3.3V @ 425 mA or 1.4 watts 802.11a/ bg via onboard or external Wi-Fi chipset; Bluetooth SCO, ACL; DECT cordless phones TDD cordless phones; Analog cordless phones; Analog video (NTSC, PAL, SECAM); Microwave ovens; Generic classifiers; Radar Microsoft Vista or Windows XP SP2; Processor: 1 GHz or equivalent; 150 MB hard drive available storage space; 800 x 600 display Cisco WCS 4.2 Later 2.4-2.5 GHz, 4.9-5.9 GHz 5 dBi Linear Chapter 3: Wireless 3-53
Analyzer Specification
Classifier Specification
Application Minimum system requirements Interoperability Cisco Spectrum Expert Antenna Frequency Range Gain Polarization
A Cisco WCS Spectrum Intelligence license is required to operate Cisco Spectrum Expert Wi-Fi with Cisco WCS. The following table provides the part numbers for the Cisco WCS Spectrum Intelligence license for Cisco Spectrum Expert Wi-Fi. WCS-ADV-K9 WCS-ADV-SI-SE-10 WCS-ADV-SI-SE-10=
1
Family SKU for WCS Advance License ProductsTop-level SKU for Cisco WCS advance feature licenses Cisco WCS Spectrum Intelligence License for 10 SensorsLicense option compatible with Cisco WCS 4.2 or later configured with Base and/ or Location license. Cisco WCS Spectrum Intelligence License for 10 Sensors, SpareSpare license compatible with Cisco WCS 4.2 or later configured with Base and/ or Location license.
Includes advanced replacements next business day, 24-hour Cisco Technical Assistance Center (TAC) access, and software download
License Pack Guidelines Customers can purchase the Cisco Spectrum Intelligence license for Cisco Spectrum Expert Wi-Fi in two ways. Customers who want to purchase all Cisco WCS advanced feature licenses, including the Cisco Spectrum Intelligence license, for use on a single Cisco WCS host should purchase the Cisco WCS advanced feature pack (WCS-ADV-K9) and then specify the option for the Cisco Spectrum Intelligence license (WCS-ADV-SI-SE-10). Customers who want to purchase licenses that can be used across multiple Cisco WCS hosts should purchase Cisco Spectrum Intelligence license spares (WCS-ADV-SI-SE-10). WCS-ADV-K9: The Cisco WCS advanced feature license pack includes license keys for advanced features, including Cisco Spectrum Intelligence. The license pack can be used only on a single Cisco WCS host. WCS-ADV-SI-SE-10: This part number represents the option for the Cisco Spectrum Intelligence advanced feature license as part of the Cisco WCS advanced feature license pack (WCS-ADV-K9). Customers must specify this part number when ordering Cisco Spectrum Intelligence as part of the combined Cisco WCS advanced feature license pack. WCS-ADV-SI-SE-10=: Users who want to purchase multiple licenses to be deployed across numerous Coscp WCS hosts should purchase the Cisco Spectrum Intelligence license as a spare unit (WCS-ADVSI-SE-10=). If a customer orders more than one spare, the system will generate a license pack for each spare ordered. In other words, the number of license packs equals the number of spares ordered. Cisco customers can contact their local Cisco representatives for questions related to Cisco WCS licensing. Cisco employees or partners can contact [email protected].
3-54
Chapter 3: Wireless
Mobility Services
Cisco Mobility Services Engine
The Cisco Mobility Services Engine (MSE) delivers centralized and scalable mobility services. A combination of hardware and software, the Cisco MSE is an appliance-based or virtual solution that transforms the wireless LAN (WLAN) into a mobility network by abstracting the application layer from the network layer, effectively allowing the delivery of mobile applications and services across wired and wireless networks.
Wireless
To deliver true business mobility, IT must unify wired and wireless networks, manage mobile devices, and enable mobile application development. The Cisco MSE is at the center of this mobility architecture evolution. It provides an open application programming interface (API) that enables a broad ecosystem of partners to access network intelligence and develop industry-relevant mobility solutions. Cisco MSE is part of the Cisco Unified Wireless Network, delivering a comprehensive approach to business mobility, an approach that extends applications to the right device at the right time, no matter what network is being used.
Specifications
Feature Supported Services Cisco 3355 Mobility Services Engine Cisco Context-Aware Software to track up to 18000 devices Cisco Adaptive Wireless Intrusion Prevention System software to support up to 3000 monitor mode or enhanced local mode (ELM) access points Customers who purchase a mobility service have the option to try other mobility services on their MSE at the following scale: Context-aware client tracking: 100 clients Context-aware tag tracking: 100 tags Adaptive wireless intrusion prevention: 20 monitor mode or enhanced local mode access points
Evaluation Support
Chapter 3: Wireless
3-55
(2) Quad-Core Intel Nehalem Processor 2.0 GHz, 4-MBcache 16-GB DDR3 (2 x 8 GB) Four hot-swappable 146-GB SAS drives with up to 6-Gbps transfer rate DVD-RO drive Four USB ports: two in front, two in back Two VGA ports: one in front and one in back One RJ-45 management port for out-of-band management RJ-45: Two rear RJ-45 connectors for connection to two Gigabit Network Adapters Network: Two embedded Multifunction Gigabit Network Adapters with TCP/ IP offload engine SNMP v1, v2c, and v3 Cisco WCS Mobility Services Version 7.1 or later running Internet Explorer 6.0/ Service Pack 1 or later Cisco 2500 and 5500 Series Wireless LAN Controllers Cisco Catalyst 6500 Series Wireless Services Module 2 Cisco Wireless Controller on Cisco Services-Ready Engine (SRE) Cisco Flex 7500 Series Cloud Controller Cisco Aironet Lightweight Access Points Number of MSEs per NCS: 10 Number of Endpoints per Wireless LAN Controller: WLC 2500: 500 WLC on SRE for ISR G2: 500 WLC 5500: 5,000 WiSM2: 5,000 Flex7500: 5,000 SOAP/XML APIs 1RU Height: 1.69 (43mm) Width: 17.3 (440mm) Depth: 28.0 (711.4mm) Weight: 28 (minimum) - 35.1 lb (maximum) (12.7-15.9 kg) AC power supply wattage: 625W AC power supply voltage: 100-120V at 50-60 Hz; 200-240V at 50-60 Hz 92% efficient Auto switching, hot-swappable Redundant power supplies Total of six fans, 3+3 redundant configuration Operating temperature: 50 to 95F (10 to 35C) up to 3000 ft/ 914.4m 50 to 90F (10 to 32C) 3000 ft to 7000 ft/ 914.4m to 2133m Nonoperating temperature: -40 to 140F (-40 to 60C) Maximum rate of change is 20C/ hr (36F/ hr) v Air temperature - Server on: 10C to 35C (50F to 95F) Altitude: 0 to 914.4 m (3000 ft), Decrease system temperature by 1.0C for every 1000-foot increase in altitude v Air temperature - Server off: 5C to 45C (41F to 113F) Maximum altitude: 3048m (10000 ft) Shipment: -40C to 60C (-40F to 140F) Maximum altitude: 3048m (10000 ft) v Humidity - Server on: 20% to 80% Maximum dew point: 21C Maximum rate of change: 5C/ hr v Humidity - Server off: 8% to 80% Maximum dew point: 27C
System Specifications
Power
3-56
Chapter 3: Wireless
Safety UL 60950 CAN/ CSA -C22.2 No. 60950 EN60950 IEC 60950: EMC FCC Part 15 (CFR 47) Class A ICES-003 Class A EN 55022 Class A CISPR22 Class A AS/ NZS 3548 Class A VCCI Class A EN 55024 EN 50082-1 Energy Star compliant Available with Cisco Mobility Services Engine (MSE) Software Release 6.0 or later Requires Cisco Wireless LAN Controller (WLC) Software Version 4.2.130 or later and Cisco Wireless Control System (WCS) Version 6.0 or later Multiple mobility services can run con-currently on the same MSE using WLC and MSE Software Release 6.0 or later Supported services may have different software requirements
Software Compatibility
Wireless
Cisco MSE High-End Virtual Appliance 50,000 Context-Aware License 10,000 aWIPS License Minimum RAM: 20GB Minimum Hard disk space allocation: 500GB Disk System Throughput: Minimum of 1600 IOPS with a bandwidth of 6000 Kbytes/ sec Physical cores: 16 at 2.13GHz or better (2x Intel Xeon E7-L8867) Cisco MSE Standard Virtual Appliance 18,000 Context-Aware License 5,000 aWIPS License Minimum RAM: 11GB Minimum Hard disk space allocation: 500GB Disk System Throughput: Minimum of 1000 IOPS with a bandwidth of 3500 Kbytes/ sec Physical cores: 8 at 2.93GHz or better (2x Intel Xeon X5570) Cisco MSE Low-End Virtual Appliance 2,000 Context-Aware License 2,000 aWIPS License Minimum RAM: 6GB Minimum Hard disk space allocation: 500GB Disk System Throughput: Minimum of 900 IOPS with a bandwidth of 3000 Kbytes/ sec Physical cores: 2 at 2.93GHz or better (2x Intel Xeon X5570)
Specifications
Feature Hardware requirements Number of Supported Monitor Mode APs and Enhanced Local Mode Aps Management Interface Cisco Adaptive Wireless IPS Software Cisco Mobility Services Engine 3355 Support for up to 3000 monitor mode APs on MSE 3355 Cisco Wireless Control System version 5.2 or later
Ordering Multiple Services on the Mobility Services Engine The following are possible combinations when ordering multiple services (Cisco Context-Aware Software licensees and Adaptive Wireless Intrusion Prevention licensees for Monitor Mode Access Points).
ContextAware WIPs (Monitor Mode or ELM Mode ContextAware WIPs (Monitor Mode or ELM Mode 18,000 0 17,000 165 16,000 330 15,000 500 14,000 665 13,000 830 12,000 1,000 11,000 1,165 10,000 1,330 9,000 1,500
8,000 1,665
7,000 1,830
6,000 2,000
5,000 2,165
4,000 2,330
3,000 2,500
2,000 2,665
1,000 2,830
0 3,000
Wireless
Chapter 3: Wireless
3-59
3-60
Chapter 4: Collaboration
Chapter 4: Collaboration
This chapter provides only a subset of Cisco products and part numbers.
Collaboration At-a-Glance
Product Cloud Collaboration Cisco Hosted Collaboration Solution (HCS) The Cisco Hosted Collaboration Solution (HCS) enables Cisco partners to host 4-9 Cisco applications and services and deliver a unified collaboration experience with all the advantages of a cloud-based model, workload by workload. Cisco HCS delivers Cisco Powered Collaboration as a Service (CaaS), founded on the Cisco Collaboration Architecture. It is a whole offer, a productized architectural solution with a commercial model and joint go-to-market partnership approach for Cisco HCS partners. Cisco HCS includes all the workloads within the Cisco Collaboration portfolio, including Cisco Unified Communications, Cisco Mobility, Cisco TelePresence conferencing, and Cisco Customer Collaboration, through partners and in a cloud deployment model. Overall the applications and services offered by Cisco HCS partners are as described within the Unified Communications section of this document. These services cover the entire Cisco Unified Communications and Mobility portfolio, and Cisco HCS enables Cisco partners to extend these services through a cloud deployment model for our customers. Cisco HCS for Contact Center allows you to run your contact center completely in the cloud, and take advantage of the derived advantages. Cisco HCS for Contact Center is designed for companies with up to 1,000 knowledge workers or agents Cisco HCS for TelePresence enables TelePresence as a Service (TPaaS). Cisco HCS partners are able to offer Cisco TelePresence conferencing in a hosted environment through Cisco TelePresence Exchange. This is a highly secure, fully virtualized, private cloud (on-premises) conferencing solution that combines audio, video, and web conferencing in a single solution It provides the same great WebEx user experience found in the hosted version of WebEx, including WebEx clients for PC, Mac, iPhone, and iPad; high quality video; sharing, annotation, and collaboration tools; recording and playback etc It integrates with the Cisco UC suite, extending Cisco Unified Communications Manager to conferencing This on-premises virtual meeting solution within Cisco Unified Communications delivers integrated voice, video, and web conferencing and interfaces that make it simple to set up, attend, and manage meetings. It extends the value of Cisco WebEx meeting applications with on-premises voice and video, and is integrated with hosted WebEx web conferencing. This solution provides video telephony functions to Cisco Unified IP Phones (including select models from the Cisco Unified IP Phone 6900 and 7900 Series models and the Cisco IP Communicator softphone application). It is compatible with Cisco VT Camera III or other third-party USB cameras. Optional Cisco SMARTnet Services are available. This solution provides a people-centric meeting platform for collaborating anytime, anywhere, even over mobile devices. It offers cloud-based web conferencing with audio, high-definition video, and realtime content sharing. Additionally, it offers centralized meeting spaces for sharing meeting-related information to help teams easily organize, prepare, and follow-up for every meeting. This solution allows business professionals to easily and reliably meet online anywhere, anytime, on any device to present information, share applications, and collaborate on projects with customers and co-workers worldwide. It offers cloud-based web conferencing with audio, high-definition video, and realtime content sharing. This online classroom solution delivers engaging, effective, and interactive instructor-led training to employees, customers, and partners. This solution allows you to stage large-scale online events and web seminars to generate leads and train employees, customers, and partners. This solution enables organizations to provide instant, personalized customer or IT support worldwide by allowing support staff to diagnose and fix problems remotely in real time online. 4-10 Features Page
Collaboration
Cisco Hosted Collaboration Solution (HCS) for Unified Communications and Mobility Cisco Hosted Collaboration Solution (HCS) for Contact Center Cisco Hosted Collaboration Solution (HCS) for TelePresence Conferencing Cisco WebEx Meetings Server
4-11
4-11
4-11
4-12
4-13
4-13
4-14
Cisco WebEx Training Center Cisco WebEx Event Center Cisco WebEx Support Center
Chapter 4: Collaboration
4-1
This solution reduces the audio conferencing costs associated with WebEx web conferencing for enterprise customers It eliminates transport and termination costs for all on-net audio conferencing via a direct IP link from the customers data center to one of the Cisco WebEx Cloud data centers. It is a hybrid solution that integrates with Cisco Unified Communications Manager and WebEx web conferencing applications. This solution helps customers reach and exceed their collaboration goals with a wide range of services that can be tailored to their organization. Online collaboration experts assess organizational requirements and develop a plan to reach important goals. The main service portfolio offers are Event Collaboration Services; Planning, Design, and Implementation Services; and Learning Services. This solution delivers multisite, intelligent contact routing, network-to-desktop computer telephony integration (CTI), and multichannel contact management to contact center agents over an all-IP infrastructure or mixed IP and time-division multiplexing (TDM) infrastructure. The solution can also be deployed with third-party automatic call distributors (ACDs). It supports a variety of deployment models from premises-based to hosted installations. Essential Operate Service (ESW) is required for most features. This software-based automatic-call-distributor (ACD), interactive-voice-response (IVR), and computer-telephony-integration (CTI) application is designed for small and medium-sized companies, enterprise branch offices, or corporate departments with Cisco IP Telephony networks. It supports up to 300 agents and is available in three versions: Standard, Enhanced, and Premium, to better match product functions with your customer contact interaction management requirements. Essential Operate Service (ESW) is required for agents only. This solution offers customers a powerful web-based reporting platform that is as flexible as it is intuitive. Customers can report on the details of every contact across all channels from a single interface, regardless of the resources involved. Essential Operate Service (ESW) is required for most features. This multichannel contact center solution allows customers to use the salesforce. com Service Cloud as their primary agent desktop while having full Cisco Unified Contact Center capabilities and salesfore.com customer-relationship-management (CRM) capabilities to operate a customer care or support center in any industry from North America. Designed specifically for small and medium-sized businesses, it supports 30 to 300 agents or knowledge workers; this joint solution follows a cloud-computing or software-as-a-service (SaaS) model, resulting in faster deployment times, no capital investments, and higher agent productivity. This award-winning product provides IP-based self-service and call routing. It combines open-standards support for speech with intelligent application development and industry-best call control to deliver personalized self-service to callers, either as a standalone interactive-voice-response (IVR) system or transparently integrated with a contact center. The solution offers a prompt collect, queuing, and call-control service using standard IP technologies, and provides sophisticated speech-enabled voice self-service with the ability to quickly and easily escalate to agent-assisted service if necessary. Essential Operate Service (ESW) is strongly recommended. These services, delivered by Cisco and our partners, help contact centers maximize customer relationships, enable richer collaboration, and accelerate technology innovations to gain and sustain competitive advantage. This social media customer care solution enables your company to proactively respond to customers and prospects communicating through public social media networks such as Twitter and Facebook or other public forum or blogging sites. It provides social-media monitoring, queuing, and workflow to organize customer posts on social-media networks and deliver them to your customer care team; your company can respond to customers in real time through the same social network they use to communicate. This next-generation agent and supervisor desktop for Cisco Unified Contact Center Enterprise provides benefits across a variety of communities that interact with your customer service organization. It is designed to provide a collaborative experience that improves the customer experience by enhancing the customer service representative experience.
4-18
4-18
4-20
4-21
4-22
4-22
Cisco SocialMiner social media customer care solution Cisco Finesse agent desktop software
4-22
4-23
4-24
4-2
Chapter 4: Collaboration
Enterprise Social Software Cisco WebEx Social This social collaboration solution (formerly known as Cisco Quad social software) combines the power of social networking, content creation, and real-time communications. It enables employees to securely share content, collaborate on projects, and connect with the people and resources they need to get work done. This solution is available as both an on-premises and cloud solution. This solution delivers consistent communication services to all employee workspaces, including voice, video, mobility, and presence services. It is now available on virtualized Cisco UCS servers, select third-party servers, as well as Cisco Media Convergence Servers. Essential Operate Service (ESW) is required, based on server platform. A component of the Cisco Unified Communications Manager, this PC and phone application provides productivity tools that enhance communications between manager and administrative assistant. No separate services are required. Cisco IOS Software-based call control is supported on Cisco Integrated Services Routers; it converges voice, video, and data with full-featured call processing and is ideal for branch-office applications with up to 450 users. It is included in the Cisco SMARTnet Services when the router is originally purchased. This solution is designed for midsize businesses, supporting 1000 users, 1200 devices, and 50 sites. This single-server solution is based on VMware server virtualization technology and contains voice, video, mobility, conferencing, messaging, instant messaging and presence, and contact center (up to 100 agents) capabilities. This solution is also compatible with the full portfolio of Cisco Unified IP Phones and Cisco TelePresence endpoints (selected models). 4-25
Cisco Unified Communications Manager Assistant Cisco Unified Communications Manager Express
4-27
4-28
Collaboration
4-28
This solution is designed for small and medium-sized businesses with the capacity 4-30 to support up to 300 employees, 400 devices, and 10 sites. This single-server solution includes call processing, messaging, point-to-point video, and Auto-Attendant capabilities. Additionally, it uses cloud-based services for conferencing with WebEx meeting applications, and instant messaging and presence with Jabber messaging. This solution supports PC soft-phone client applications and a wide range of Cisco Unified IP Phones. Session management is a service embedded in Cisco Unified Communications Manager. It unifies multivendor environments by centralizing network control. It unifies dial plans and routing, aggregates multivendor private branch exchange (PBX) environments, and centralizes and extends applications to users across the network. Cisco Unified Communications Manager Session Management cuts administrative overhead, and supports easier migration to a full IP telephony environment. This software application acts as an IP endpoint to deliver voice and video calling through a Windows PC, enabling remote users to take their office extension with them. Essential Operate Service (ESW) is required for the User license. This affordable portfolio of endpoints supports business-grade voice and adjunct video communications to branch-office, midmarket, and enterprise customers in a user- and eco-friendly design. It includes a range of offerings spanning occasional-use settings, such as lobbies, to highly active communications environments, such as for managers and administrative staff. Cisco SMARTnet Services are available. This diverse endpoint portfolio for advanced business communications supports high-quality voice adjunct video and data communications. It supports extensible markup language (XML). Selected models support both XML and MIDlet -based services to let users access a variety of information, such as stock quotes, employee directories, and web content. It offers a choice of wired and wireless LAN and specialty endpoint solutions, addressing both horizontal and industry market-specific needs. Cisco SMARTnet Services are available. This portfolio of advanced professional multimedia endpoints delivers a robust suite of unified communications and multimedia applications in a design that is elegant, easy-to-use, and ecofriendly. Selected models support both XML and MIDlet applications that improve business processes and transform user experiences. Cisco SMARTnet Services are available. 4-31
Cisco IP Communicator
4-32
4-33
4-35
4-36
Chapter 4: Collaboration
4-3
This portfolio of advanced collaborative multimedia endpoints delivers interactive, high-performance voice, video, and data communications. It supports the breadth of Cisco Unified Communications Services and multimedia applications, including video communications as simple as a telephone call and XML or MIDlet-based data application services directly from the IP phone, in a design that is intuitive, clutter-free, and earth-friendly. Cisco SMARTnet Services are available. This solution offers small businesses robust features that support the Cisco Unified Communications 500 Series, Cisco SPA9000 Voice System, and hosted IP telephony. This portfolio offers zero clients, thin clients, and software appliances that combine virtual desktops with voice and video capabilities. Cisco VXC is part of the Cisco VXI Smart Solution, which delivers an uncompromised desktop and application virtualization experience that is collaborative, mobile, and secure. This solution comprises four full-featured software-based attendant-console solutions designed specifically for use with Cisco Unified Communications Manager. There are four offerings to support customer needs: Cisco Unified Enterprise Attendant Console Department Edition for departmental use Cisco Unified Enterprise Attendant Console Business Edition for large enterprises (NEW) - The Cisco Unified Attendant Console Premium Edition for customers seeking server redundancy in addition to Enterprise Edition features Essential Operate Service (ESW) is required for software. This solution works with Cisco Unified Communications Manager to automatically provide E9-1-1 features in North America; intra-enterprise features are also compatible with any internal or external emergency number. It now works with Cisco EnergyWise technology. Essential Operate Service (ESW) is required for the software license and per seat. This solution enables true boundary-less communications among organizations, including business partners and customers. It makes communications among separate companies and organizations as effortless and transparent as it is within an individual company. It is included with Cisco Unified Communications Manager 8.0 and later, as well as Cisco Unified Communications Manager Session Management Edition 8.0 and later.
4-38
Cisco SPA500 Series IP Phones Cisco Virtualization Experience Client (VXC) *NEW PRODUCT* Cisco Unified Attendant Console Portfolio
4-40
4-41
4-41
4-43
4-44
Cisco Unified Survivable Remote Site Telephony (SRST) and Cisco Unified Enhanced SRST (E-SRST)
These Cisco IOS software-based feature sets automatically provide critical backup 4-45 telephony functions for centralized Cisco call-processing deployments during WAN link failures. During a WAN outage, the Cisco Unified SRST-enabled router provides robust telephony services (including off-net calls to 911). E-SRST provides all functions of Cisco Unified SRST and: Enhanced user experience in failover mode by maintaining phone displays and providing full call control GUI interface to provision, monitor, report on, and troubleshoot remote sites Automatic sync-up with Cisco call control for additions, deletions, and modifications of users and phones including transparent dial-plan synchronization Centralized management and control for all sites Calling rule restrictions continued in failover mode Cisco Unified SRST works with Cisco Unified Communications Manager, Cisco Business Edition 6000, and the Cisco Hosted Collaboration Solution. Cisco Unified E-SRST works with Cisco Unified Communications Manager and Cisco Business Edition 6000. These services, delivered by Cisco and our partners, help organizations deploy a secure, resilient Cisco Unified Communications Solution, enabling powerful ways to collaborate with co-workers, partners, and customers across any workspace. This solution provides a unified communications client for Mac OS X. It delivers presence, instant messaging (IM), voice, desktop sharing, and conferencing capabilities through a single client on your desktop. It can be deployed as an on-premises or on-demand solution. This enterprise-class, on-demand unified communications client delivers instant messaging (IM), rich presence, audio, video, and integrated web conferencing and soft-phone capabilities to streamline communications and enhance productivity. This solution integrates frequently used communications applications and services into a single, unified client. From an easy-to-use interface on a PC or Mac, it provides quick and easy access to powerful communications toolssoft phone, presence, instant messaging (IM), visual voicemail, click to call, employee directory, communication history, video and audio conferencing, and web conferencingto help you communicate effectively and work more productively. 4-46
Cisco Unified Communications Services Messaging Cisco Jabber for Mac *NEW PRODUCT*
4-46
4-47
4-47
4-4
Chapter 4: Collaboration
This standards-based platform collects information from multiple sources about user availability and communications capabilities to provide rich presence status and facilitate presence-enabled communications with Cisco Unified Communications and other critical business applications. Cisco Unified Presence is tightly integrated with Cisco and a range of third-party compatible desktop and mobile presence and instant messaging (IM) clients and applications and facilitates the ability to expose presence in corporate web directories, point-of-sale applications, or customer-relationship-management (CRM) systems through standards-based application programming interfaces (APIs). Essential Operate Service (ESW) is required for most features. This enterprise-class voice and unified messaging solution delivers speech recognition and call-routing rules on a Linux appliance. Essential Operate Service (ESW) is required for Voice Mail Boxes. Internal or external callers can say the name of an employee into the phone and instantly be connected. This new feature is included with Cisco Unity Connection. This solution converts voice messages to text and delivers them to you by email, allowing you to read your voice messages and take immediate action. Cisco SpeechView is a feature of Cisco Unity Connection. Integrated voicemail, Automated-Attendant, and interactive-voice-response (IVR) are delivered locally for small businesses or branch offices. This solution takes advantage of the data infrastructure; it is supported on a broad range of Cisco Integrated Services Routers (ISRs). Cisco SMARTnet services are available. This cost-effective solution supports survivable voicemail service for your organizations remote sites, such as branch offices or small sites. It provides centralized configuration and management for Cisco Unified Communications Manager and Cisco Unity Connection-based deployments.
4-48
4-49
4-49
4-49
Collaboration
4-50
Cisco Unified Survivable Remote Site Telephony Voicemail Cisco Unified Messaging Gateway
4-50
This gateway offers an open and secure method of intelligently routing messages 4-51 and exchanging subscriber and directory information within a unified messaging network. It acts as the central hub in a network of voice and unified messaging solutions. It includes Software Application Support (SAS) and Software Applications Support with Upgrades (SASU). In a centralized call-control network with Cisco Unified Communications Manager, it automatically provisions remote-site telephony (Cisco Unified E-SRST) on branchoffice Cisco Integrated Services Routers (ISRs). This unified messaging system delivers voice, email, and fax messages into a single inbox for access through phone, email, and many other clients and devices. Essential Operate Service (ESW) is required for Voice Mail Boxes. Internal or external callers can say the name of an employee into the phone and instantly be connected. The solution is for use with Cisco Unity unified messaging systems. You can place, receive, and manage calls over a Wi-Fi network. The application delivers IP telephony features to your Apple or Android mobile device. Cisco Jabber IM for smartphones lets you stay connected when mobile with enterprise-class IM and presence. This solution is a free Cisco WebEx Meeting Center application for Apple, Android, and BlackBerry mobile devices. You can join WebEx meetings from your mobile device to view shared presentations, applications, and desktops; view attendee list; and chat with attendees. You can participate in a two-way, multiparty videoconference on the Apple iPad and iPhone as well as certain Android tablets. This free application is available from the Apple App Store. It provides an extension to the Cisco Supervisor Desktop on a mobile device. It provides an extension to your Cisco Unified Contact Center Express (Unified CCX) product; contact center supervisors can receive real-time performance metrics on their iPhone third-generation (3G) and iPod touch devices. 4-51
Cisco Unity Unified Messaging Speech Connect for Cisco Unity Mobile Applications Cisco Jabber messaging integration platform
4-52
4-52
4-53
4-53
Cisco TelePresence Conferencing Endpoints Immersive Endpoints Cisco TelePresence System 3010 To deliver an immersive collaborative environment with an in-person experience, the 4-55 Cisco TelePresence System 3010 allows 6 people to connect with up to 48 locations. Ii is ideal for customer engagements with small or large groups, supply-chain optimizations, press and media briefings, or regular team meetings. Chapter 4: Collaboration 4-5
Cisco TelePresence System TX1300 Series *NEW PRODUCT* Multipurpose Endpoints Cisco TelePresence Profile Series
This system provides the flexibility that you need to deploy Cisco TelePresence systems throughout your organization. You can use almost any conference room and its existing table. Optimally designed for various environments and room sizes, this series delivers a high-quality experience for remote or branch offices with limited space or bandwidth.
4-55
The Cisco TelePresence Profile Series offers a lifelike high-definition (HD) video 4-56 collaboration experience for teams of all sizes. This integrated telepresence solution brings you an easy-to-use and consistent video experience. The Cisco TelePresence Profile Series has several options powered by the C Series Codec, depending on the size of your meeting room and your requirements for collaboration and content sharing: Cisco TelePresence Profile 42-inch Cisco TelePresence Profile 52-inch and 52-inch Dual Cisco TelePresence Profile 65-inch and 65-inch Dual In approximately 15 minutes, you can turn a conference room into a telepresence room and call team members to a meeting on a brilliant 42-inch screen. The Cisco TelePresence MX200 brings colleagues from around the world face-to-face as if they were in the same roomin a simple, cost-effective way. This family of personal telepresence for the desktop lets you and your colleagues instantly collaborate face-to-face, whether you are separated by a hallway, a street, or several time zones. Access the features you need right from your desktop, with the touch of a finger. The EX Series includes the Cisco TelePresence touch-screen interface, so you can make and manage telepresence calls with a simple glide of the finger. New enhancements bring even greater usability and simplicity to connecting and sharing content over telepresence. Cisco TelePresence Movi software extends the benefits of face-to-face video collaboration to remote workers. Using an existing PC or Mac and a USB camera, team members at every level of an organization can stay visually connected in a highly secure and reliable, enterprise-wide telepresence solution. At a moments notice, workers can connect from home or on the road, whenever they need to collaborate. Cisco TelePresence System 500 Series offers the same experience of three-screen meeting room solutions, but with a smaller footprint, giving individuals the flexibility to join large, multilocation group meetings or host intimate, remote one-on-one meetings from the personal office. Designed for integrators who specialize in telepresence installations, the Cisco TelePresence System Integrator C Series delivers a total telepresence engine. With an excellent level of video and audio across the product range, these codecs offer advanced application programming interfaces (APIs) and industry-standard connectors for exceptional integration flexibility. Products include: Cisco TelePresence Codec C40 Cisco TelePresence Codec C60 Cisco TelePresence Codec C90 4-56
Cisco TelePresence MX Series *NEW PRODUCT* Personal Endpoints Cisco TelePresence System EX Series *NEW PRODUCT*
4-57
4-58
Cisco TelePresence System 500 Series *NEW PRODUCT* Solutions Platform Cisco TelePresence System Integrator C Series
4-58
4-59
Infrastructure Call Control Cisco TelePresence Video Communication Server (VCS) The Cisco TelePresence Video Communication Server (VCS) extends the benefits of face-to-face video collaboration across networks and organizations by supporting any-to-any video and telepresence communications. The solution includes tools for large-scale installations and video network management, making deployment and management easier and cost-efficient. As organizations adopt telepresence for desktops and enable mobile workers with video, the Cisco TelePresence Video Communication Server supports highly scalable deployments. Meet the mission-critical collaboration needs of large enterprises with the Cisco TelePresence MSE 8000 Series, an all-in-one multipoint control unit, ISDN and IP gateway, and recording solution. This highly scalable chassis-based platform is well suited for service providers seeking to offer their clients high-definition (HD) videoconferencing services. The Cisco MSE 8000 Series is a high-density, highcapacity video bridge that supports large videoconferences. 4-60
Cisco TelePresence Server Bring together participants with high-definition (HD), standard-definition (SD), and 7010 telepresence endpoints with the Cisco TelePresence Server 7010. To facilitate the best possible user experience, the server intelligently recognizes system types. You can connect to up to 9 screens or upgrade the system to support 16 screens. Increase the large-scale telepresence experience with a full-screen, immersive view of the primary speakers and an overlay of the other participants. Cisco TelePresence MCU 4500 Series The Cisco TelePresence MCU 4500 Series is the industrys leading full highdefinition (HD) multimedia conferencing bridge. It delivers superior video and voice with an easy-to-use, versatile management interface. Compatible with all major vendors endpoints, each model maintains its capacity and performance in every configuration, providing an optimal experience for each participant, every time.
4-61
4-61
4-6
Chapter 4: Collaboration
This network appliance enables organizations to record and stream meetings and multimedia presentations. Organizations can share knowledge and enhance communication through highquality, user-generated video content. Organizations that use ISDN can now enjoy the benefits of high-definition video with the Cisco TelePresence ISDN Gateway. This high-capacity and scalable gateway grows with your business demands and provides transparent communication between all features of IP and ISDN video networks and devices. This gateway also offers transparent communication with the Cisco TelePresence Video Communication Server for call control and firewall traversal. The Cisco TelePresence Advanced Media Gateway Series are unified communications products that help increase the value of your existing video and collaboration infrastructure. They connect to all standards-based video devices, including endpoints, multipoint control units, recording and streaming servers, and telepresence servers. Combined with the Cisco TelePresence Video Communication Server, this series provides an innovative unified communications solution. This combination is the first network-centric solution to facilitate true highdefinition communication between Microsoft Office Communications Server 2007 R2 users and standards-based telepresence and videoconferencing devices. Cisco TelePresence Management Suite (TMS) is a scalable, easy-to-use, and reliable system that provides complete visibility and control for administrators while providing a simplified telepresence experience for end users. The Cisco TelePresence Management Suite provides one management platform for all your visual communication needs. Cisco TelePresence Manager software makes it easy to schedule, initiate, and manage Cisco TelePresence experiences. As an integral part of the Cisco TelePresence solution, this software facilitates call scheduling and setup from common enterprise groupware such as Microsoft Exchange and Lotus Notes so that starting meetings is as simple as pushing a single button. The Cisco TelePresence Exchange System is a flexible telepresence and business video services-creation platform that enables service providers to develop and deliver a broad portfolio of cloud-based managed and hosted telepresence services for next-generation cloud-based business telepresence solutions. Using the Cisco TelePresence Exchange architecture, service providers can expand their revenue streams by extending their network and conferencing services portfolio with a range of advanced media services such as multimedia conferencing, interoperability services, recording and streaming, and new high-touch services such as personalized concierge and white-label wholesale services. Cisco WebEx Telepresence is a powerful cloud service that that helps small and medium-sized businesses get started with telepresence so they can get closer to customers, colleagues, and partners without having to make extensive IT resource investments. Experience the innovative unified user interface that enables you to access Cisco TelePresence solutions intuitively. Make and manage video calls, share content, and access advanced featuresall with the simple touch of a finger. The interface comes in three models, optimally designed for Cisco endpoints. The models come in 8-, 12-, or 23-inch sizes.
See 7-19
4-62
Collaboration
4-64
Exchange System Cloud Services Cisco TelePresence Exchange System *NEW PRODUCT* 4-65
Cloud Services Cisco WebEx TelePresence *NEW PRODUCT* Peripherals Cisco TelePresence Touch *NEW PRODUCT* 4-67 4-67
Cisco TelePresence Industry Solutions Healthcare Cisco TelePresence System Clinical Presence Designed by medical professionals, the Cisco TelePresence System Clinical 4-68 Presence is a telemedicine solution that is ideal for a variety of clinical video applications. Clinical Presence connects clinicians with patients, staff, and each other using powerful telepresence technology integrated with features and functions optimized for a healthcare setting. Clinical Presence helps maximize quality, mobility, and ease of use for a telemedicine environment. It can be customized to your requirements with a wide variety of options. The Cisco TelePresence System Intern MXP provides interactive video 4-68 communication that you can move to wherever it is needed. It is ideal for applications such as healthcare, emergency response, homeland security, and manufacturing. The compact IV-stand unit includes a shelf and a basket that make it easy to connect a laptop, medical imaging equipment, and other peripherals. This revolutionary technology transparently integrates supported interactive whiteboards with speakers and Cisco TelePresence C Series or MXP endpoints. Synch effectively converts a standard interactive whiteboard into a powerful multifunction collaboration tool that brings together live remote experts and classrooms. Chapter 4: Collaboration 4-69
4-7
If your room includes monitors, carts, and peripherals, the Cisco TelePresence System Educator MXP is an ideal solution that can integrate with your existing configuration. Instructors can use the intuitive 12-inch color video touch panel to control video calls and multiple peripherals such as cameras, PCs, and DVDs. Realize the full business value of your Cisco TelePresence investments faster with smart, personalized services from Cisco and our partners: http:/ / www.cisco.com/ go/services/telepresence. This solution offers a rich portfolio of applications and development tools that extend the Cisco Unified Communications platform. Broad support for development tools, including Eclipse and Microsoft Visual Studio, allows unified communications and network services to be quickly and easily integrated into business applications or to be used to develop entirely new applications.
4-69
Infrastructure and Other Products Cisco Unified Application Environment *NEW PRODUCT* 4-70
Cisco UC Integration for Microsoft Lync is a desktop integration that provides 4-71 access to Cisco Unified Communications from Microsoft Lync and Microsoft Office Communicator. The solution extends the presence and instant messaging (IM) capabilities of Microsoft Lync and Microsoft Office Communicator (MOC) by providing access to a broad set of Cisco Unified Communications capabilities, including soft-phone standards-based video; unified messaging; audio, video, and web conferencing; desk-phone control; and phone presence. You can instantly access enhanced Cisco Unified Communications directly from Microsoft Lync or Microsoft Office Communicator on a PC client. With easy-to-deploy desktop integration, you can extend proven Cisco Unified Communications Services to your workspace and benefit from the investment protection and reduced complexity delivered by a single call-control solution. This affordable unified communications appliance for small businesses provides voice, data, voicemail, Automated-Attendant, video, security, and wireless capabilities while integrating with existing desktop applications such as calendar, email, and customer-relationship-management (CRM) programs. Cisco SMARTnet Services are available. This solution is composed of Cisco Unified Communications applications running in a virtualized environment consisting of VMware software, Cisco Unified Computing System servers, and Fibre Channel storage area network (SAN) storage. The Cisco Unified Border Element (Cisco UBE) is Ciscos enterprise-focused session border controller (SBC), providing voice and video connectivity from the enterprise IP network to service provider Session Initiation Protocol (SIP) trunks. Cisco UBE performs the four critical functions of an SBC: session control, security, interworking, and demarcation. Using Cisco UBE with SIP trunking, enterprises can lower costs, simplify their voice network, and extend rich collaboration services. Cisco SMARTnet Services are available. Cisco TDM Gateways comprise a variety of different voice network modules to enable any-to-any collaboration. Cisco TDM Gateways allow IP voice networks to connect with the public switched telephone network (PSTN) or a private branch exchange (PBX) or to provide toll-bypass services within the enterprise network and even connect analog devices. Cisco TDM Gateway modules are deployed on the Cisco 2900 and 3900 Integrated Services Routers (ISRs).The Cisco TDM Gateway Family includes: Analog and digital voice and fax interface cards and modules T1, E1, and G.703 Multiflex trunk voice and WAN interface cards Digital signal processors for voice and video Cisco Unified Communications gateway services application programming interface (API) The Cisco Unified SIP Proxy (USP) is a high-performance, highly available Session Initiation Protocol (SIP) server for centralized routing and SIP signaling normalization. By forwarding requests between call-control domains, Cisco USP provides the means for routing sessions within enterprise and service provider networks. Cisco Unified SIP Proxy is deployed on Cisco Integrated Services Routers (ISRs). Dedicated Cisco VG202, VG204, VG224, and VG350 gateways provide low, medium, or high-density connectivity between IP networks and traditional analog devices such as phones and faxes. Cisco SMARTnet Services are available. This high-performance, universal 2-rack-unit (2RU) gateway is ideal for deployments requiring Signaling System 7 (SS7) interconnection or for those deployments requiring a T3 interface. Cisco SMARTnet Services are available. This adaptor turns any analog telephone into an IP telephone. Each of the two voice ports supports independent telephone numbers, providing two separate lines. Cisco SMARTnet Services are available. 4-71
Cisco Unified Communications on the Cisco Unified Computing System Cisco Unified Border Element (Cisco UBE)
4-73
4-73
4-74
4-74
4-75
4-75
4-77
Chapter 4: Collaboration
For product information, please refer to Chapter 7: Video and Broadband Cable.
See 7-17
This licensing allows organizations to cost-effectively access a wide range of Cisco 4-78 Collaboration applications and services in a cost-effective, simple package. It includes client and server software, licensing, service and support, and software subscription on a per-user basis. This subscription increases business value by providing an economical and timely approach to upgrading to new Cisco technology. It offers major software releases at no additional charge for the duration of the activated subscription term, which can be for 1, 2, 3, or 5 years. 4-80
Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. End-of-Life and End-of-Sale Products Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, what replacement products are available, and information about product support: http://www.cisco.com/en/US/products/prod_end_of_life.html. Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com or the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or reference the URL listed in the For More Information section of each product.
Collaboration
Cloud Collaboration
Cisco Hosted Collaboration Solution
Cisco Hosted Collaboration Solution (HCS) enables partners to host Cisco applications and services and deliver a unified collaboration experience with all the advantages of a cloud-based model, workload by workload. HCS delivers Cisco Powered Collaboration as a Service (CaaS), founded on the Cisco Collaboration Architecture. It is a whole offer, a productized architectural solution with a commercial model and joint go-to-market partnership approach. Cisco HCS enables partners to offer Cisco Collaboration applications and services within a cloud-ready virtualization platform, on a scalable, resilient network supported by a comprehensive management suite. Cisco HCS includes all the workload within the Cisco Collaboration portfolio, but through partners and in a cloud deployment model.
Optimize resources and capital (predictability- and annuity-based) Enable IT agility (standardized and consolidated services and management) Deliver evergreen applications and services (features and functions) Ramp service up or down (flexibility)
In summary, following are the advantages that Cisco Cloud Collaboration solutions offer an organization: Create a unified experience: Deliver people-centric collaboration applications and services Satisfy user and business demands by offering a broad service catalogue Enable a consistent user experience across all deployment models and devices Optimize resources: Improve total cost of ownership (TCO) (OpEx) and preserve capital and core resources Consolidate, unify, and automate IT infrastructure and operations Manage investment protection and extension while maintaining interoperability Enable IT and business agility: Take advantage of the latest technology and remain evergreen Experience a flexible IT model and integrate with business applications Align IT resources to business needs and gain rapid and full user adoption Maintain control and management: Improve pace and consistency of application deployments and upgrades Reduce risk of technology obsolescence Maintain full visibility and control Gain peace of mind and retain telephony reliability in the cloud through Cisco Unified Survivable Remote Site Telephony (SRST)
Collaboration
Conferencing
Cisco WebEx Meetings Server
Now you can bring Cisco WebEx conferencing into your companys private cloud, for a cost-effective, secure, and flexible collaboration and communications solution. Meet your organizations requirements for highly secure on-premises conferencing, and deliver the same user experience that has made Cisco WebEx the market-leading, software-as-a-service (SaaS) conferencing solution. Cisco WebEx Meetings Server is a highly secure, fully virtualized, behind-the-firewall conferencing solution that combines audio, video, and web conferencing in a single solution. With Cisco WebEx Meetings Server, you can respond to organizational requirements for higher productivity and employee-led innovation, as well as support more dynamic collaboration and flexible work styles. Cisco WebEx Meetings Server also helps you comply with strict security or data privacy requirements, and support locations where Internet access is regulated or restricted. It also allows you to manage your conferencing solution as a capital expenditure instead of an operational expenditure.
Cisco WebEx Meetings Server lets you align your conferencing capabilities with business and user expectations It Delivers the same productive, fulfilling user experience as the SaaS-based version of WebEx conferencing, including: Document, applications, and desktop sharing Annotation and collaboration tools Integrated, high-quality audio, including a unified participant list, active talker, call-in, call-me, or voice over IP (VoIP; web-based audio), hybrid audio (VoIP and PSTN in the same meeting), mute, unmute, eject, and restrict access High-quality video with 360p screen resolution; full-screen video; up to seven simultaneous webcam video feeds and voice-activated video switching Recording and playback of your meetings A Consistent cross-platform experience on Windows, Mac, smartphones, and tablets Calendaring integrations that give Hosts the ability to schedule meetings directly from their Microsoft Outlook 2007 or 2010 calendars Cisco WebEx Meetings Server allows team members on the move to collaborate easily using their mobile devices. In addition to PC and Mac clients, this solution also supports Meeting clients for mobile devices, including iPhone and iPad. These mobile clients let you: Start, join, schedule, and attend online meetings from mobile devices View meeting content, chat, calendar, and pass presenter control Connect audio via call in, call me, or, on the iPad, even voice over Wi-Fi Use two-way video on iPad 2.0 and beyond In addition, Cisco WebEx Meetings Server is optimized for bring your own device (BYOD) enterprises, designed so that users can securely sign in, host, and join meetings from mobile devices or Internetconnected PCs without requiring VPN access to the corporate network Cisco WebEx Meetings Server lets you easily manage your entire conferencing environment from a webbased administrative dashboard This dashboard allows you to manage user accounts, get real time information on system processes, and run management reports on usage and more.
Desktop video calling High-quality video with rich telephony features on their Windows PCs Transparent integration with desktop IP phone or Cisco IP Communicator for familiar phone interface
Collaboration
Mobile meetings: Attend meetings on an iPhone, Android, iPad, and other wireless or third- and fourthgeneration (3G and 4G, respectively) mobile phone and tablet devices. Cross-platform support for Windows, Macintosh, and Linux Network-based recording: Record meetings with session content and audio. Map to Everyday Processes and Protect Investments Desktop integration: Initiate meetings instantly from Microsoft Office, Microsoft Outlook, and a variety of integrated instant messaging solutions. Ease of administration and maintenance: Manage users and enforce corporate policy controls with a single identity across services for each user. Application-programming-interface (API) integrations: Easily integrate existing applications with WebEx Meetings using open APIs. Highly Secure, Reliable Access Anywhere, Anytime Data privacy and security safeguards: WebEx Meetings offers a variety of security optionsfrom meeting password protection through single-sign on (SSO), end-to-end data encryption, and strict network and data center securityto ensure the highest levels of privacy and data integrity. Reliability and performance: Cisco WebEx cloud uses highly secure data centers located strategically near major Internet access points worldwide, routing data, audio, and video on dedicated, highbandwidth fiber to eliminate lag time and interruptions.
4-14
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-15
4-16
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-17
Comprehensive online event management with registrations, promotions, and follow-ups Robust online event session features for high-quality, professional event production
Customer Care
Cisco Unified Contact Center Enterprise
Cisco Unified Contact Center Enterprise segments customers, monitors resource availability, and delivers each contact to the most appropriate resource in the enterprise. The software profiles each customer contact using related data such as dialed number and calling line ID, caller-entered digits, data submitted on a web form, and information obtained from a customer database lookup. Simultaneously, the system monitors the resources available in the contact center to meet customer needs, including agent skills and availability, interactive-voice-response (IVR) status, and queue lengths. This combination of customer and contact center data is processed through user-defined routing scripts that graphically reflect your companys business rules, enabling Cisco Unified Contact Center Enterprise to route each contact to the right place. Wherever an agent is based, the system delivers a rich set of call-event and customer-provided data as a contact arrives, personalizing service and increasing efficiency. Throughout the process, distributed fault tolerance helps ensure uninterrupted operation, and rich reporting provides the business intelligence necessary to effectively run your contact center.
Collaboration
IPCE-SVR CCE-PAC-BUNDLE
Cisco Unified Contact Center Express is a virtual contact center that is easy to deploy, configure, and manage. It is available in three different packages (Standard, Enhanced, and Premium) to help ensure the right match with your business requirements. This interactive-voice-response [IVR] self-service solution is fully integrated with contact center operations, including the ability to deploy advanced self-service technologies such as Automatic Speech Recognition (ASR) and Text to Speech (TTS).
Cisco Unified Contact Center Express fully supports agent-supervisor interaction through chat and predefined messages. The solution offers full IP call queue points and prompts; it collects voice interaction capabilities. Optional Automatic Speech Recognition (ASR) and Text-to-Speech (TTS) capabilities are available. The solution supports custom call treatment such as music for calls in queue. The Cisco Mobile Supervisor feature enables mobile supervisors to receive real-time reports on their Apple iPhone or iPod Touch.
Collaboration
Chapter 4: Collaboration
4-21
to managing a complaint or product problem that could potentially damage your brand. In addition, the social media web is full of potential customers asking for advice about a product or service. With Cisco SocialMiner software, your company can offer advice and product information to aid in decision making, create brand recognition, and possibly gain a new customer. The Cisco SocialMiner solution can help your company enhance customer service, improve customer loyalty, add new customers, and protect your brand.
Collaboration
Chapter 4: Collaboration
4-23
Fast, efficient, accurate service results in happy, satisfied, and loyal customers who will return to do business with you againand it saves operational costs for your business.
Cisco MediaSense
Contact centers handle thousands of customer conversations a day, but unfortunately much of the enterprise intelligence that could be gleaned from those conversations is never usedbecause it is either too expensive to capture or too difficult to mine for useful information. Cisco MediaSense solves these challenges by recording conversations on the network, rather than a device, simplifying the architecture, lowering costs, and providing optimum scalability. Just as important, the MediaSense network-based recording approach allows the captured media to be quickly available to different applications, regardless of location, through simple application programming interfaces (APIs). These interfaces implement open web standards, enabling a new ecosystem of applications from Cisco technology partners that can gather useful information from conversations, either in real time or afterward. Such information can provide insights into caller concerns, guiding customer service agents toward speedy first-call resolution, thereby improving agent productivity while increasing customer satisfaction.
APIs are at a high or conceptual level, in effect hiding the complexity of the underlying architecture and functions and minimizing the need for detailed telephony or recording expertise, thereby allowing Cisco partners to take advantage of pervasive web developer talent to create speech and video search, playback, analytics, and live monitoring applications.
Collaboration
Chapter 4: Collaboration
4-25
IP Communications
Cisco Unified Communications Manager
Cisco Unified Communications Manager is the powerful call-processing component of the Cisco Unified Communications Solution. It is a scalable, distributable, and highly available enterprise IP telephony callprocessing solution that focuses on lowering the total cost of ownership (TCO) for customers and improving the user experience of end users and system administrators. Major highlights include: Improves mobility, through extension mobility cross-cluster, plus Secure HTTP (HTTPS) for encrypted username and personal-identification-number (PIN) transmission Reduces deployment time, realizes quicker return on investment (ROI), lowers ongoing operational costs, and improves business continuity Provides a dynamic, flexible, network-based Call Admission Control (CAC) engine for voice and video Improves cost savings and collaboration by extending unified communications capabilities outside the organization
Specifications
Feature Pre-installed Software Cisco Unified Communications Manager1 Cisco Unified Communications Manager, configuration database, administrative software, CDR Analysis and Reporting Tool, Bulk Administration Tool (BAT), Real-Time Monitoring Tool (RTMT), Cisco Conference Bridge, Locale Installer, JTAPI, Telephony Service Provider, C`isco Unified Communications Manager Assistant, Cisco Unified Mobility, Cisco Unified IP Phone Address Book Synchronizer, Cisco Dialed Number Analyzer Cisco Unified Computing System, Cisco Media Convergence Server (MCS); Selected thirdparty servers
Platforms
4-26
Chapter 4: Collaboration
VideoContinuing the theme of doing for video what Ciscos done for voice, Cisco Unified communications Manager (Unified CM) 8.6 adds native support within Unified CM for many additional video endpoints, including the EX60 and EX90 as well as C20, C40, C60, and C90). Unified CM 8.6 also builds in better interoperability with TelePresence systems (CTS). Native Interoperability among UC, TP and 3rd Party video EP and additional native TAA EP are key advancements here. Also, greater flexibility in wideband audio codecs (G.722.1), SIP based encryption and presentation sharing (BFCP). MobilityGreatly simplifying access and administrative overhead, Unified CM 8.6 now has a single client for VoIP and cellular, so theres now a consistent user experience across different networks. Deployment FlexibilityUnified CM 8.6 includes a couple of key improvements that expand deployment flexibility; one relates to the Cisco Hosted Collaboration Solution (HCS) and the other relates to additional UC server options. Within HCS, Unified CM 8.6 improves upon the integration with the Service Providers IMS, which is framework for better service delivery on cellular networks. By having this integration on Unified CM 8.6, it allows for better feature interaction between the mobile network and the enterprise voice network (fixed mobile convergence). With regard to UC server options, Ciscos first entry into supporting virtualized UC server implementations within a data center environment was Ciscos Unified Computing System. Cisco UCS is the industrys only fully unified and virtualization-aware computing platform, and is ideal for deployments of applications such as Cisco Unified Communications. Cisco also understands the importance of customer choice in the modern, heterogeneous data center. Now, with UC system release 8.6, Ciscos strategy for Cisco Unified Communications deployments on virtualized server platforms includes support for additional Cisco UCS server options as well as support for alternate vendors systems. These new options come via a new spec-based VMware support policy, where tested reference configurations are published and may be used for hardware design guidance. This opens up more Cisco UCS servers that meet UC specifications as well as certain third-party servers, provided they can meet the support policy requirements. Cisco Unified Communications Manager Session Management EditionCisco Unified Communications Manager added Session Management support in Version 7.1(3). Cisco Unified Communications Session Management Edition support is continued and enhanced in Version 8.0 with features such as Cisco Intercompany Media Engine and Resource Reservation Protocol (RSVP). Cisco Unified Communications Manager Session Management Edition allows for centralized SIP trunking and routing to help simplify complex networks and reduce costs by consolidating trunking. Cisco Unified Communications Manager Session Management Edition can also aggregate voice applications and policy control.
Collaboration
Additional RAM may be required in Media Convergence Servers to support existing and enhanced services in Cisco Unified Communications Manager.
For administrative assistants: An efficient way to monitor and manage calls for multiple managers For managers: Efficient system for assistants who regularly answer their calls
Chapter 4: Collaboration
4-27
Specifications
Feature Platform Maximum total users Phones Supported IOS Images Cisco Unified Communications Manager Express Cisco 1861E, 2900, 3900, and 3900E Integrated Services Routers. 450 All Cisco Unified IP Phones 6900 Series, 7900 Series, Cisco Unified SIP Phones 3900 Series, and Cisco Unified IP Phone 8900 and 9900 Series http://www.cisco.com/en/US/partner/docs/voice_ip_comm/cucme/requirements/guide/ 33matrix.htm CME and IOS version compatibility matrix. IOS 15.1(4)M CME version 8.6 is the recommended release.
4-28
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-29
Increases company productivity: Full-featured, enterprise-class collaboration helps your users more securely collaborate anytime, anywhere, and on any device. Offers immediate investment protection: Flexible architecture helps you deploy collaborative services at your own pace.
Specifications
Feature Platform Maximum total users Mailboxes and voicemail ports Number of remote sites Telephony and voicemail feature limitations User and Administrator Features Cisco Manager Business Edition Cisco UCS C220 M3 Rack-mount Server 1000 1000 mailboxes and 24 voicemail ports 50 with SRST or high-availability for all collaboration applications with second Business Edition 6000 server) Business Edition 6000 supports all telephony features of Cisco Unified Communications Manager and voice-messaging features of Cisco Unity Connection. For a summary of user and administrator features, please refer to the Cisco Business Edition 6000 9.0 and Cisco Unity Connection 9.0 data sheets. Supports 14 core languages for user locales, the voicemail telephone user interface, and the GUI. In addition to the core languages, supports an additional 13 user localizations.
4-30
Chapter 4: Collaboration
Cisco Business Edition 3000 call-processing software: The call-processing software is included and preinstalled on the appliance to provide the core call-processing capabilities and other unified communications applications. Simple intuitive administration interface for provisioning and management: The application is managed by a web-based, easy-to-navigate administration interface that simplifies initial setup, ongoing operation, and maintenance of the system. The first-time-setup wizard helps to perform initial setup of the system in a matter of minutes. The moves, adds, and changes administration interface allows administrators to provision and manage the system in simple flow. Messaging is powered by the Cisco Unity Connection application with select feature sets. Cisco Unity Connection is also preinstalled to serve as the voice messaging application for foundational unified communications features such as voicemail and AutoAttendant. Video capability: The application provides point-to-point video call capability with Cisco video-enabled endpoints. The combination of the Business Edition 3000 and the video endpoints makes it as easy to make video calls as it is to make phone calls. Application for unified communications and collaboration: Multiple applications are supported to deliver unified communications and collaboration experiences. Various desktop applications are supported, such as Cisco Jabber IM Client (cloud-based with Cisco WebEx Connect service) Cisco Jabber for Windows, Mac, iPhone, and Android; and Cisco Unified Integration for Tencent Real-Time eXchange (CUCI-RTX) (China only). It also integrates with Cisco WebEx Meeting Center. Mobility: The application includes features for single-business voice mailbox and reach-me-anywhere (also refer to single-number-reach), which intelligently manages, filters, routes, and connects calls between an employees IP desk phone and mobile cellular or home phone. Extension mobility is supported to allow users to log into phones in an office other than a home office, and enjoy a consistent user experience with a desk phone. Trunking: The application supports multiple types of trunks to meet different requirements for PSTN accessibility, including Primary Rate Interface (PRI), R2 signaling (E1 R2), Session Initiation Protocol (SIP) trunking, and analog trunks. Trunks can be deployed on a central site as well as on remote sites using gateways at remote sites. The built-in E1 gateway on Cisco Business Edition 3000 provides dual E1 R2 interfaces for PSTN access.
Collaboration
Specifications
Feature Platform Maximum number of users and devices Voicemail ports Total number of sites IP endpoints Cisco Business Edition 3000 Cisco Business Edition 3000 300 users and 400 devices 12 10 Cisco Unified IP Phone models 3905, 6901, 6911, 6921, 6941, 6945, 6961, 7925G, 7942G, 7945G, 7962G, 7965G, 7975G, 8941, 8945, and 8961 (with KEM) models Cisco Unified IP Conference Station 7937 Cisco Jabber for Windows and Mac (cloud-based with WebEx Connect service) Cisco Jabber for iPhone and Android Unified communications integration for RTX (China) Cisco IP Communicator WebEx Connect with unified communications integration (CUCI-Connect)
Chapter 4: Collaboration
4-31
Save: Lower costs and improve efficiency by using Session Initiation Protocol (SIP) trunking to interconnect networks using Cisco Unified Border Element (Cisco UBE). Simplify: Reduce complexity by aggregating third-party PBXs, and easing migration to an all-IP environment. By providing interconnection among PBXs, enterprises can reduce system administrative overhead and ease migration to an all-IP environment. Session management greatly simplifies dial-plan management. Instead of developing complex routing within and among each individual PBX, the PBXs can now point to the central Cisco Unified Communications Manager core with session management capabilities, enabling all routing to be managed at the session management layer. Also, SIP headers within various PBXs are normalized and become transparent to the other PBXs, enabling interoperability. This interoperability provides an elegant path to evolve the architecture without need to replace or upgrade older PBX or IP-based systems. Extend: Deploy collaboration applications at the network core and extend them to users, even those on third-party PBXs. These applications include rich collaborative applications such as unified messaging, mobility, telepresence. social networking, and web applications (using Web 2.0 interfaces). Other benefits include: Easier deployment without forced architectural change Investment protection, making it easy to repurpose Cisco clusters as needs change; add phones to a session management cluster or add session management to a Cisco Unified Communications Manager cluster Flexibility to evolve your network at your pace through industry-leading interoperability Architectural choice and migration control for an intelligent path to SIP trunking Extension of collaboration to any phone, including your home phone, using Cisco Extend and Connect and Cisco Jabber
Cisco IP Communicator
Cisco IP Communicatora software-based application that delivers enhanced telephony support through the PCis designed to meet diverse customer needs by serving as a supplemental telephone when traveling, a telecommuting device, or a primary desktop telephone. With Cisco IP Communicator, remote users do not just take their office extension with them; they also enjoy access to the same familiar phone services that they have in the office. This advantage boosts business collaboration and responsiveness and helps organizations keep pace with todays mobile business environment.
4-32
Chapter 4: Collaboration
Collaboration
Specifications
Feature Integral Switch Display Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Unified Video Advantage Wideband audio iLBC support 2-way Rocker with Select Key Cisco 6901 Not applicable Not applicable 1 Not applicable Full-duplex No No No Yes (9.1(1) IP Phone firmware required) No Cisco 6911 10/100 Not applicable 1 Not applicable Full-duplex No Yes No Yes (9.1(1) IP Phone firmware required) No Cisco 6921 10/100 396 x 81 pixel backlit antiglare monochrome 2 4 Full-duplex Yes Yes No Yes (9.1(1) IP Phone firmware required) Yes Chapter 4: Collaboration 4-33
XML application MIDlet-enabled applications Extension mobility Signaling protocol Feature Integral Switch Display
No No Yes SCCP /SIP Cisco 6941 10/100 396 x 162 pixel backlit antiglare monochrome 4 4 Full-duplex Yes No Yes Yes (9.1(1) firmware required Yes Yes - limited No Yes SCCP /SIP
Yes - limited No Yes SCCP/ SIP Cisco 694569456945 10/100/1000 396 x 162162162 pixel backlit anti-glare monochrome 444 4 Full-duplex Yes No Yes Yes (9.1(1) firmware required Yes Yes- limited No Yes SCCP/SIP
Yes - limited No Yes SCCP /SIP Cisco 6961 10/100 396 x 81 pixel backlit antiglare monochrome 12 4 Full-duplex Yes No Yes Yes (9.1(1) firmware required Yes Yes - limited No Yes SCCP / SIP
Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Wideband audio Unified Video Advantage iLBC support 2-way Rocker with Select Key XML application MIDlet-enabled applications Extension mobility Signaling protocol
4-34
Chapter 4: Collaboration
Collaboration
Specifications
Feature Integral Switch Display Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Wideband audio iLBC support 5-way navigation cluster XML applications MIDlet applications Extension mobility Unified Video Advantage Signaling protocol Cisco 7911G 10/100 192x64 monochrome 0 4 Yes (listen only) No Limited Yes No Yes No Yes Yes SCCP/SIP Cisco 7931G 10/100 192x64 graphical, monochrome, backlit 24 4 Yes Yes Limited Yes No Yes No Yes Yes SCCP/SIP Cisco Conf. Station 7937G No Pixel-based 0 4 Yes No Yes No No Yes No Yes No SCCP
Chapter 4: Collaboration
4-35
Feature Integral Switch Display Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Wideband audio iLBC support 5-way navigation cluster XML applications MIDlet applications Extension mobility Unified Video Advantage Signaling protocol Feature Integral Switch Display
Cisco 7942G 10/100 4-bit grayscale, 5 2-lighted 4 Yes Yes, wideband support Yes Yes No Yes Yes Yes Yes SCCP/SIP Cisco 7965G 10/100/1000 Digital, 16-bit graphical backlit TFT Color, 5 6-lighted 4 Yes Yes, wideband support Yes Yes Yes Yes Yes Yes Yes SCCP/SIP
Cisco 7945G 10/100/1000 Digital, 16-bit graphical backlit TFT Color, 5 2-lighted 4 Yes Yes, wideband support Yes Yes Yes Yes Yes Yes Yes SCCP/SIP Cisco 7975G 10/100/1000 Digital, 16-bit graphical backlit TFT Color, 5.6 8-lighted 5 Yes Yes, wideband support Yes Yes Yes Yes Yes Yes Yes SCCP/SIP
Cisco 7962G 10/100 4-bit grayscale, 5 6-lighted 4 Yes Yes, wideband support Yes Yes No Yes Yes Yes Yes SCCP/SIP Cisco 7925G/7925G-EX/ 7926G N/A Digital, 16-bit graphical backlit TFT Color, 2 N/A 2 Yes Yes Yes Yes Yes Yes YesYesYes Yes No SCCP
Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Wideband audio iLBC support 5-way navigation cluster XML applications MIDlet applications Extension mobility Unified Video Advantage Signaling protocol
4-36
Chapter 4: Collaboration
Collaboration
Specifications
Feature Integral Switch Display Cisco 8941 10/100 VGA video calling, and applications, 5-inch graphical TFT color display, 24-bit color depth, 640 x 480 pixel resolution 4 4 Yes Yes Yes Yes No Yes No Yes No SCCP/SIP Cisco 8945 10/100/1000 VGA video calling, and applications, 5-inch graphical TFT color display, 24-bit color depth, 640 x 480 pixel resolution 4 4 Yes Yes Yes Yes No Yes No Yes No SCCP/SIP Cisco 8961 10/100/1000 VGA video calling, and applications, 5-inch graphical TFT color display, 24-bit color depth, 640 x 480 pixel resolution 5 4 Yes Yes Yes Yes No Yes Yes Yes Yes SIP
Programmable (line) keys Programmable (soft) keys Speakerphone Headset port Wideband audio iLBC support 5-way navigation cluster XML applications MIDlet applications Extension mobility Unified Video Advantage Signaling protocol
Chapter 4: Collaboration
4-37
Energy cost savings: In off-hours, a deep-sleep power option reduces power consumption compared to the endpoint in active state during the work day. Reduced infrastructure costs: Integrated switch ports support a IEEE 10/ 100/ 1000 high-speed network connection and co-location of a multimedia PC, so PC traffic can run through the switch port of the phone and only one cable drop is required back to the wiring closet. Rounded keys deliver an enhanced tactile feel that improves accuracy in interaction. Streamlined user experience: The phone has fixed keys for commonly used telephony functions such as conference, transfer, and hold.
Specifications
Feature Integral Switch Display Cisco 9971 10/100/1000 5.6 diagonal, 640 x 480, VGA, graphical, anti-glare, backlit, high-resolution touchscreen color display 6 6 4 (touchscreen based) Yes with Cisco Unified Video Camera (H.264 standard, 24fps VGA, 30fps CIF, SIF formats) Yes (full duplex) 2 (supports wired and wireless headsets, Unified Video Camera) Yes (standard headset profiles) Yes Yes (Speaker, handset and headset) Yes Yes Yes Yes Yes Yes SIP Cisco 9951 10/100/1000 5 diagonal, 640 x 480, VGA, graphical, anti-glare, backlit, high-resolution color display 5 5
Programmable (line) keys Session keys Programmable (soft) keys Video Communications
Collaboration
4 Yes with Cisco Unified Video Camera (H.264 standard, 24fps VGA, 30fps CIF, SIF formats) Yes (full duplex) 2 (supports wired and wireless headsets, Unified Video Camera) Yes (standard headset profiles) Yes Yes (Speaker, handset and headset) No Yes Yes Yes Yes Yes SIP
Speakerphone USB 2.0 ports Bluetooth 2.0 Headset port High-definition audio 802.11a/b/g radio iLBC support 5-way navigation cluster XML applications MIDlet applications Extension mobility Signaling protocol
Chapter 4: Collaboration
4-39
Specifications
Feature Cisco SPA501G 8-line 8 8 Yes Cisco SPA502G 1-line 1 0 Yes Cisco SPA504G 4-line 4 4 Yes Cisco SPA508G 8-line 8 8 Yes Cisco SPA509G 12-line 12 12 Yes Cisco SPA525G2 5 5 Yes
Lines Programmable Buttons Connection for Computer on IP Phone PoE Display Bluetooth Capable
4-40
Chapter 4: Collaboration
Collaboration
Cisco offers a new class of desktop virtualization endpoints, the Cisco Virtualization Experience Client (VXC), that combine virtual desktops with voice and video capabilities. Cisco VXC is part of the Cisco VXI Smart Solution that delivers an uncompromised desktop and application virtualization experience that is collaborative, mobile, and secure. The Cisco VXC portfolio includes: CiscoVXC2111andVXC2112, zero-client devices that integrate with select Cisco Unified IP Phones CiscoVXC2211andVXC2212, standalone zero-client devices CiscoVXC4000, a software appliance that supports high-quality, real-time interactive voice on virtualized Windows PCs Cisco VXC 6215, a thin client that unifies voice, video, and virtual desktop in one device that supports high-quality and highly scalable voice and video Cisco VXC Manager, desktop management software for the Cisco VXC 2000 Series and the Cisco VXC 6215 All VXC endpoints support VMware and Citrix.
Chapter 4: Collaboration
4-41
Support for Music in Queue (that is, ability to play music to callers before they are greeted by the attendant) Support for Cisco Unified IP Phone 6900 (multiline mode only), 8900, and 9900 Series as operator endpoints Support for Cisco Unified Attendant Console Department Edition server running in a VMware server environment Windows 7 support for Cisco Unified Attendant Console Department Edition client Support for integration with Cisco Unified Presence Server to provide rules-based presence in support of multiple devices and weighting per device (that is, desk-based workers can weight their desk phone high and their mobile phone low) Microsoft OCS 2007 presence status support from the Cisco Unified Attendant Console Department Edition client Accessibility support with third-party applications JAWS and ZoomText Wait-time overflow: Boosts service levels with calls being directed to a defined number after the call has been in queue for a specified period of time For the operator who needs in-depth presence information, support for Cisco Unified Presence integration with the Cisco Unified Attendant Console Department Edition Emergency mode that enables redirection of calls if an emergency occurs Cisco Unified Attendant Console Business Edition Support for maximum of 500 directory entries and up to 12 operator clients per attendant console system Four directory search options that allow the operator to quickly find call destinations and quickly dispatch calls Four directory search fields that allow the operator to quickly find call destinations and quickly dispatch calls Support for Music in Queue (that is, ability to play music to callers before they are greeted by the attendant) Support for Cisco Unified IP Phone 6900 (multiline mode), 8900, and 9900 Series as operator endpoints Support for Cisco Unified Attendant Console Business Edition server running in a VMware environment Support for integration with Cisco Unified Presence Server to provide rules-based presence in support of multiple devices and weighting per device (that is, desk-based workers can weight their desk phone high and their mobile phone low) Microsoft OCS 2007 and Microsoft Lync presence status support from the Cisco Unified Attendant Console Business Edition client Windows 7 support for Cisco Unified Attendant Console Business Edition client Accessibility support with third-party applications JAWS and ZoomText Emergency mode that enables redirection of calls if an emergency occurs Wait-time overflow: Boosts service levels with calls being directed to a defined number after the call has been in queue for a specified period of time For the operator who needs in-depth presence information, support for Cisco Unified Presence integration with the Cisco Unified Attendant Console Business Edition Cisco Unified Attendant Console Enterprise Edition Support for the full Cisco Unified Communications directory and up to 40 operator clients per attendant console system Six directory search fields that allow the operator to quickly find call destinations and quickly dispatch calls Utilities for installing, configuring, and synchronizing the directory database to simplify administration Support for Music in Queue (that is, ability to play music to callers before they are greeted by the attendant) Support for Cisco Unified IP Phone 6900 (multiline mode), 8900, and 9900 Series as operator endpoints Support for Cisco Unified Attendant Console Enterprise Edition server running in a VMware environment Microsoft OCS 2007 and Microsoft Lync presence status support from the Cisco Unified Attendant Console Enterprise Edition client Windows 7 support for Cisco Unified Attendant Console Enterprise Edition client Accessibility support with third-party applications JAWS and ZoomText Emergency mode that enables redirection of calls if an emergency occurs Wait-time overflow: Boosts service levels with calls being directed to a defined number after the call has been in queue for a specified period of time Support for integration with Cisco Unified Presence Server to provide rules-based presence in support of multiple devices and weighting per device (that is, desk-based workers can weight their desk phone high and their mobile phone low) Emergency mode switch that enables redirection of calls in an emergency Night mode service based on time and day Support for both zoom text and JAWS screen reader for enhanced accessibility
4-42
Chapter 4: Collaboration
CUACP9X-ATT-CON (9.0 paper), To order, access the Cisco Dynamic Configuration Tool via Cisco.com and input the L-CUACP9X-ATT-CON (9.0 top-level product number to begin the configuration and the follow the remaining electronic) instructions.
Collaboration
Specifications
Feature Supported Platform Software Compatibility Cisco Emergency Responder Cisco 7800 Series Media Convergence Servers Cisco Unified Communications Manager Cisco Unified Operations Manager More information about specific models and releases supported is available at: http://www.cisco.com/en/US/products/sw/voicesw/ps842/prod_release_notes_list.html.
Chapter 4: Collaboration
4-43
Product Compatibility
Cisco Unified IP Phones 7902G, 7905G, 7910G, 7910G+SW, 7911G, 7912G, 7940G, 7941G, 7941G-GE, 7942G, 7945G, 7960G, 7961G, 7961G-GE, 7962G, 7965G, 7970G, 7971G-GE, 7975G, 7985G; Cisco Unified Wireless IP Phones 7920, 7921 (IP-subnet-based tracking only); Cisco Unified IP Conference Stations 7935, 7936; Cisco Unified SIP Phone 3911, Cisco Unified Personal Communicator; Cisco IP Communicator; Cisco IP Softphone (IP-subnet-based tracking only); Cisco ATA 180 Series analog telephone adaptors (manual configuration only); Cisco VG 200 Series analog phone gateways (manual configuration only); Cisco Catalyst Express 500, Express 520, 2900 XL, 2940, 2950, 2960, 2970, 3500XL, 3550, 3560, 3560-E, 4000, 4500, 4500-E, 4900, 5000, 5500, 6000, 6500 and 6500-E Series LAN switches; Cisco Ethernet Switching Network Modules in Cisco 3700 Series Multiservice Access Routers, 2800 and 3800 Series Integrated Services Routers. More information about specific models and releases supported is available at: http://www.cisco.com/en/US/products/sw/voicesw/ps842/prod_release_notes_list.html. Cisco MCS 7816 6000 1000 600 Cisco MCS 7825 12,000 2500 1200 Cisco MCS 7835 20,000 5000 2000 Cisco MCS 7845 30,000 10,000 3000
System Capacity Automatically Tracked Phones Manually Configured Phones Roaming Phones (per Cisco Emergency Responder Cluster) Switches Switch Ports
200 12,000
500 30,000
1000 60,000
2000 120,000
4-44
Chapter 4: Collaboration
Collaboration
Cisco Unified Survivable Remote Site Telephony and Cisco Unified Enhanced SRST
Providing reliable communications to branch offices and teleworkers is important to help ensure business continuity and customer satisfaction. Cisco Unified Survivable Remote Site Telephony (SRST) and its enhanced version, Cisco Unified Enhanced Survivable Remote Site Telephony (E-SRST), are designed to meet this need. Both products take advantage of the existing network at the remote office to provide multi-feature redundancy for centralized Cisco call-processing deployments during WAN link failures. Cisco Unified Survivable Remote Site Telephony works in conjunction with Cisco Unified Communications Manager, Cisco Business Edition 6000, and Cisco Hosted Collaboration Solution. The enhanced version works with Cisco Unified Communications Manager and Cisco Business Edition 6000. Both are available on Cisco Integrated Services Routers (ISRs). Cisco Unified SRST provides: Business resiliency through redundant, localized call processing Intelligent and automatic failover configuration without manual IT or telecom intervention Cost-effective operations through a converged voice and data network Centralized IP telephony configuration and management Investment protection and ease of migration The enhanced version provides all the functions of Cisco Unified SRST and also delivers: Enhanced user experience in failover mode by maintaining phone displays and providing full call control GUI interface to provision, monitor, report on, and troubleshoot remote sites Automatic sync-up with Cisco call control for additions, deletions, and modifications of users and phones including transparent dial-plan synchronization Centralized management and control for all sites Calling rule restrictions continued in failover mode The enhanced version is enabled through Cisco Unified SRST and the Cisco Unified Messaging SRST Manager.
Up to 50 phones
Up to 50 phones
Chapter 4: Collaboration
4-45
Cisco 2921 Integrated Services Router Cisco 2951 Integrated Services Router Cisco 3925 Integrated Services Router Cisco 3945 Integrated Services Router Cisco 3925E Integrated Services Router Cisco 3945E Integrated Services Router
1
Up to 100 phones
Up to 100 phones
FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100= FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100= FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100= FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100= FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100= FL-CME-SRST-5=, FL-CMESRST-25=, FL-CMESRST-100=
Up to 250 phones
Up to 150 phones
Up to 730 phones
Up to 250 phones
Up to 1200 phones
Up to 350 phones
Up to 1350 phones
Up to 400 phones
Up to 1500 phones
Up to 450 phones
The numbers of phones supported by SRST have been changed to multiples of 5 starting with Cisco IOS Software Release 12.4(15)T
Messaging
Cisco Jabber for Mac
Collaborate more securely and effectively from anywhere with colleagues, business partners, and customers using Cisco Jabber for Mac. Empower employees to work together efficiently from anywhere by bringing together presence, instant messaging (IM), audio and web conferencing, enterprise voice, and visual voicemail into one client on your desktop.
4-46
Chapter 4: Collaboration
Choose the best provisioning model for your business by deploying Cisco Jabber for Mac either onpremises or on demand as a cloud-based service
Collaboration
Microsoft Office application and browser integration: See user availability and click to initiate voice and video calls and chat sessions, or launch web collaboration sessions directly from Microsoft Office applications. Contact list: Search your corporate directory from one easy-to-use interface to locate contacts quickly and simply click to call. Add your most frequently contacted personal contacts, co-workers, and federated business contacts. Integrated voice and video telephony: Exchange ideas face-to-face with a coordinated video display on the PC screen and voice conversation with a soft phone or Cisco Unified IP Phone desk phone. Businessquality communication is supported in a variety of video resolutions up to and including high-definition (720p) and high-fidelity wideband audio. Instant messaging: Chat in real time to save time and reduce phone tag. It also supports group chat and persistent chat rooms. Conferencing: Create voice or videoconferencing sessions by simply merging conversation sessions. There is no need to call into a separate conference bridge. Web conferencing: Launch a Cisco Unified MeetingPlace or WebEx web conferencing session at a moments notice to share content, such as a presentation, with others. Voice messages: Access secure Cisco Unity or Cisco Unity Connection encrypted voicemail messagesview, play back, sort, and delete messagesall from within the application.
4-48
Chapter 4: Collaboration
Collaboration
Specifications
Feature Unity Voice Mail (VM) and Unified Messaging (UM) possible configurations Options Cisco Unity Connection 8.0 20,000 users and 250 ports maximum, 100,000 VPIM networked users with 20 nodes Configured for Cisco Unified Communications Manager or configured for legacy PBX/ dual integration Voicemail, IMAP client messaging, single inbox unified messaging, text-to-speech, Cisco Unity Connection Web Inbox, voice commands, speech-to-text
Cisco SpeechView
Cisco SpeechView converts voice messages to text and delivers them to you by email, allowing you to read your voice messages and take immediate action. Cisco SpeechView is a feature of the Cisco Unity Connection voice and unified messaging solution, so the original audio version of each voice message remains available to you anywhere, anytime with Cisco Unity Connection.
Specifications
Feature Hardware Cisco Unity Express NME-CUE, AIM-CUE, AIM2-CUE-K9, ISM-SRE-300-K9, or SM-SRE-700-K9, fully self-contained modules with onboard storage, memory, and processing supporting a variety of mailbox densities, storage capacities, and concurrent sessions to meet the needs of every small-tomedium office or branch Cisco 1861, 2900 Series, 3900 Series, and 3900E Series Integrated Services Routers
Platform Supported
Specifications
Hardware Software Platform Supported NME-CUE or AIM2-CUE-K9 for Cisco Unity Express; NME-UMG or NMG-UMG-EC for Cisco Unified Messaging Gateway Cisco Unity Express version 8.0 or higher, Cisco Unity Connection version 8.0 or higher, Cisco Unified Communications Manager version 8.0 or higher Cisco 2800 Series, 2900 Series, 3800 Series, 3900 Series, and 3900E Series Integrated Services Routers
4-50
Chapter 4: Collaboration
Collaboration
Specifications
Feature Hardware Platform Supported Cisco Unified Messaging Gateway NME-UMG or NME-UMG-EC Cisco 2900, 3900, and 3900E Series Integrated Services Routers (with NM-SM-ADPTR)
Specifications
Feature Unity Voice Mail (VM) and Unified Messaging (UM) Possible Configurations Options Cisco Unity Unified Messaging 15,000 users and 200 ports maximum, 250,000 networked users Configured for Cisco Unified Communications Manager or configured for legacy PBX/dual integration Voice Mail; Unified Messaging; Microsoft Exchange or Lotus Domino message store; Failover for Exchange; Cisco Unity Bridge for Exchange
Chapter 4: Collaboration
4-51
Mobile Applications
Cisco Jabber Messaging Integration Platform
Cisco Jabber for iPad is a complete unified communications application that lets you access presence, instant messaging (IM), voice, video, voice messaging, and conferencing. Find the right people, see if and how they are available, and collaborate using your preferred method. The Cisco Jabber Family of smartphone applications lets you place, receive, and manage calls over a Wi-Fi network. Sometimes referred to as dual-mode, the Cisco Jabber messaging integration platform turns your smartphone into an IPphone, while also providing corporate directory lookup and enterprise telephony calling features. The Cisco Jabber IM application, available on Apple iPhone and BlackBerry smartphones, lets you stay connected when mobile. A single click lets you send an instant message, call, email, or text any of your contacts. You can also join an instant WebEx meeting. The app securely connects your mobile device to Cisco Unified Presence, Cisco WebEx Connect, or Cisco WebEx Messenger service.
Move calls to your Cisco Unified IP Phone and back, so you can roam while continuing calls. Receive alerts for, view, and listen to your office voice messages with a single tap. Cisco Jabber IM for iPhone and Cisco Jabber IM for BlackBerry Take immediate action from your contact list with features such as click to IM, click to call, click to email, and click to text. Start or join an instantWebEx meetingfrom an IM chat to share documents and meet with additional participants. Search for colleagues in your corporate directory. Strengthen the security of your chats using Secure Sockets Layer (SSL) or Advanced Encryption Standard (AES) encryption, and by connecting your smartphone directly to the Cisco IM infrastructureCisco Unified Presence,Cisco WebEx Connect, or Cisco WebEx Messenger.
Cisco WebEx Meetings on Mobile Devices is a free downloadable application available for Cisco WebEx Meeting Center on Android, Apple iPhone and iPad, and RIM BlackBerry mobile devices.
4-54
Chapter 4: Collaboration
Endpoints
Immersive Endpoints
Collaboration
Specifications
Specification Video standards Audio standards Protocols Description H.264 G711 and AAC-LD (22kHz) Cisco Discovery Protocol, SIP, IP, Dynamic Host Configuration Protocol (DHCP), Secure Shell (SSH) Protocol, 802.1p/ q, and Real-Time Transport Protocol (RTP)
Chapter 4: Collaboration
4-55
Specifications
Specification Video standards Audio standards Protocols Description H.264, Telepresence Interoperability Protocol (TIP) G.711, G.722, and AAC-LD (22 kHz) Cisco Discovery Protocol, Session Initiation Protocol (SIP), IP, Dynamic Host Configuration Protocol (DHCP), Secure Shell (SSH) Protocol, 802.1p/ q, and Real-Time Transport Protocol (RTP)
Multipurpose Endpoints
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, H.264 G.711, G.722, G.722.1, 64 bit & 128 bit MPEG4 AAC-LD, AAC-LD Stereo H.323 SIP
4-56
Chapter 4: Collaboration
Auto-provisioning and the intelligent self-configuration of the system help your IT department set up the MX200 on the network. It is as easy to install as a TV set: place it where you want it, plug it in, type in user credentials, and make your video call. An intuitive interface simplifies the user experience, and users can initiate calls with the push of a single button. Cisco manages service globally to provide a reliable experience and consistent support in more than 120 countriesand to make large-scale global deployment of the MX200 a practical reality. The MX200 puts meetings in a high-quality environment, offering: Support for up to vivid 1080p30 and 720p60 video resolution and high-definition (HD) content sharing Clear 1920 x 1080 resolution in a high-quality 42-inch display Integrated design that provides a consistent high-quality video experience, regardless of room environment Optimal preset framing and video clarity from a Cisco TelePresence PrecisionHD USB camera HD sound system with two front speakers to deliver superior audio performance
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, H.264 G.711, G.722, G.722.1, 64/ 128 kbps MPEG4 AAC-LD, AAC-LD stereo H.323 SIP
Collaboration
Personal Endpoints
Chapter 4: Collaboration
4-57
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, H.264 G.711, G.722, G.722.1, 64/ 128 kbps MPEG4 AAC-LD, AAC-LD stereo H.323 SIP
Specifications
Specification Video standards Audio standards Protocols Description H.263, H.263+, H.264 G.711 A-law, G.711 -lawG, 722.1 24 kbps, G.722.1 32 kbps, MPEG4 AAC-LD 48 kHz SIP H.323 (via VCS interworking) TCP/IP TLS RTP/RTCP DTMF (in-band and out-of-band) BFCP H.239 (VCS H.323 Interworking) H.281 (FECC) ICE Support
4-58
Chapter 4: Collaboration
Specific features of Cisco TelePresence 500 Series systems include: Streamlined design that fits private offices for easy installation, requiring little-to-no room remediation and construction cost 1080p and 720p resolution on a premium 32- or 37-inch display with camera, microphone, speakers, and lighting fully integrated in an elegant design Capability of one or two users to join meetings, appearing life-size on Cisco TelePresence 3000, Cisco TelePresence T3, and other immersive endpoints, with full Cisco TelePresence audio and video quality Multipoint meetings with up to 48 screens supported in any combination of Cisco TelePresence endpoints Simple one-button-to-push calling that integrates with common enterprise calendaring programs With the Cisco TelePresence System 500 Series, sharing content such as data or graphics is easy with presentation-in-picture. Add a second monitor that can be dedicated to viewing content. The system also offers any-to-any interoperability with standard- and high-definition videoconferencing endpoints and collaboration with desktop video applications, including Cisco WebEx meeting applications and the Cisco Digital Media System. Off-call functions give you the flexibility to use it as secondary computer monitor, or to show video for digital signage. Integration with the network helps ensure reliability with high availability, comprehensive security, and quality of service (QoS) for an optimal experience.
Collaboration
Specifications
Specification Video standards Audio standards Protocols Description H.264, TelePresence Interoperability Protocol (TIP) G.711 and AAC-LD (22 kHz) Cisco Discovery Protocol Session Initiation Protocol (SIP) IP Dynamic Host Configuration Protocol (DHCP), Secure Shell (SSH) Protocol IEEE 802.1p/q Real-Time Transport Protocol (RTP)
Solutions Platform
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, H.264 G.711, G.722, G.722.1, 64 kbps & 128 kbps MPEG4 AAC-LD, AAC-LD Stereo H.323 SIP
Infrastructure
Call Control
Conferencing
4-60
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-61
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, H.263++, and H.264 G.711, G.722, G.722.1, G.723.1, G.728, G.729, MPEG-4 AAC-LC, MPEG-4 AAC-LD, and Polycom Siren14/ G.722.1 Annex C H.323, SIP, H.235 (Advanced Encryption Standard [AES]), Secure Real-Time Transport Protocol (SRTP), Transport Layer Security (TLS), H.239 (dual video), VNC, Binary Floor Control Protocol (BFCP), H.243 (chair control), FTP, Real-Time Transport Protocol (RTP), (Real-Time Streaming Protocol (RTSP), HTTP, Secure HTTP (HTTPS), Dynamic Host Configuration Protocol (DHCP), Simple Network Management Protocol (SNMP), Network Time Protocol (NTP), NT LAN Manager (NTLM) (authentication), IPv4, and IPv6
Media Services
Specifications
Specification Video standards Audio standards Protocols Description H.261, H.263, H.263+, and H.264 G.722.1 Annex C G.711, G.722, G.728, Polycom Siren14/ H.323, H.320, H.233, H.234, H.235 (AES), H.239 (dual video), H.221, FTP, RTP, HTTP, HTTPS, DHCP, SNMP, NTP
Combined with the Cisco TelePresence Video Communication Server, this series provides an innovative unified communications solution. This combination is the first network-centric solution to facilitate true highdefinition communication between Microsoft Office Communications Server 2007 R2 users and standardsbased telepresence and videoconferencing devices.
Specifications
Specification Video standards Audio standards Protocols Description RT Video, H.261, H.263, H.263+, and H.264 G.711, G.722, G.723.1, G.728, G.729, MPEG-4 AAC-LC, MPEG-4 AAC-LD, Polycom Siren7/ G722.1, Polycom Siren14, and G.722.1 Annex C SIP, FTP, Real-Time Transport Protocol (RTP), HTTP, Dynamic Host Configuration Protocol (DHCP), Simple Network Management Protocol (SNMP), and Network Time Protocol (NTP)
Collaboration
Management
Chapter 4: Collaboration
4-63
Specifications
Specification Protocols Description HTTP and Secure HTTP (HTTPS) for administrative, XML (AXL), or Simple Object Access Protocol (SOAP), Simple Network Management Protocol (SNMP), WebDev, Enterprise Web Services (EWS), and a scheduling and reporting API
4-64
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-65
VoiceXML engine of the system to create a pool of interactive-voice-response (IVR) instances in the scenarios where it is necessary to interact with the end user for authentication and user notification. Business-to-business communication: The system is designed to securely support multipoint and point-to-point calls across enterprise and service provider boundaries. It can route scheduled and impromptu point-to-point calls between different organizations through the service provider cloud using an internal number routing database. Interoperability services: The system supports network-based Cisco TelePresence interoperability with traditional video systems or other telepresence solutions using the Cisco TelePresence MSE 8000 Series in a multitenant architecture for optimum service scalability and reach. Interprovider communication: The system conforms to a policy and resource-management framework for interprovider connectivity. It facilitates the process by which service providers can peer with other service provider partners networks with the intent of increasing the service reach for their business customers while maintaining a consistent user experience across enterprise and service provider boundaries.
Specifications
Specifications System management Performance and scalability Description Cisco TelePresence Exchange Administrator user interface Secure Shell (SSH) Protocol command-line interface (CLI) Up to 2400 concurrent telepresence sessions Up to 40 telepresence sessions per second in sustained mode Up to 10 scheduling or billing API requests per second in sustained mode Fully redundant multitiered system with every tier in either an active-active or activestandby configuration Resource MIBs support to enable easy monitoring of solution components Platform MIBs support to enable hardware-level monitoring Event reporting on the Cisco TelePresence Exchange user interface to enable easy troubleshooting Cisco TelePresence System 3010, System 3200, System 1100, System 1300, and System 500; Cisco TelePresence System Profile 42-inch and System Profile 52-inch; Cisco TelePresence System EX90 and System EX60; Cisco TelePresence System Codec C20, System Codec C40, and System Codec C60; and Cisco IP Video Phone E20 Standards-based SIP, H.323 telepresence standard, and standard- and high-definition (SD and HD, respectively) video endpoints Support for SIP RFCs 2543 and 3261 Support for SOAP- and HTTP-based Web Services API for integration with scheduling and billing systems H.323 support, achieved using Cisco Unified Border Element (SP Edition) (CUBE-SP) for interop dialout SNMPv2c, SNMPv3, and SNMP Traps Full support, including neighbor discovery (and SNMP support) and Cisco Discovery Protocol advertisement CISCO-CDP-MIB; CISCO-SYSLOG-MIB; IF-MIB; IP-MIB(v2); RFC1213-MIB; SNMPv2-MIB; TCP-MIB; UDP-MIB; SNMP-FRAMEWORK-MIB; SNMP-MPD-MIB; SNMP-VACM-MIB (SNMP-VIEW-BASED-ACM-MIB); SNMP-NOTIFICATION-MIB; SNMP-TARGET-MIB; SNMP-USER-BASED-SM-MIB; HOST-RESOURCE-MIB; IBM-SYSTEM-AGENT-MIB; IBM-SYSTEM-ASSETID-MIB; IBM-SYSTEM-HEALTH-MIB; IBM-SYSTEM-LMSENSORMIB; IBM-SYSTEM-MEMORY-MIB; IBM-SYSTEM-MIB; IBM-SYSTEM-NETWORK-MIB; IBM-SYSTEM-POWER-MIB; IBM-SYSTEM-PROCESSOR-MIB; IBM-SYSTEM-RAID-MIB; IBM-SYSTEM-TRAP-MIB Six Cisco TelePresence Exchange System servers (based on IBM x3650m2 architecture) Two Gigabit Ethernet RJ-45 ports 8 GB on each server Six servers, each 2 rack units (2RU): 1.7 x 17.3 x 28.0 in. (711.4 x 43 x 440 mm) Rated six servers, each 675W Total rated: 4050W 50 to 95F (10 to 35C) U.S.: Safety: UL60950-1 2nd edition 21CFR1040 EMC: FCC Part 15/ CISPR22 Class A
Protocol Family SIP Simple Object Access Protocol (SOAP) and HTTP H.323 SNMP Cisco Discovery Protocol MIBs
Cisco TelePresence Exchange System Hardware and Environmental Specifications Components Connectivity Memory Physical dimensions (H x W x D) Power Temperature range Approvals and compliance
Collaboration
Peripherals
Chapter 4: Collaboration
4-67
Standards-based embedded encryption to meet Health Insurance Portability and Accountability Act of 1996 (HIPAA) compliance for patient confidentiality regardless of network type Tested and listed to UL 2601-1 and CSA 601.1 regulatory standards for approval in patient contact environments PC card slot for wireless LAN connection
Collaboration
This revolutionary technology transparently integrates supported interactive whiteboards with speakers and Cisco TelePresence C Series or MXP endpoints. Synch effectively converts a standard interactive whiteboard into a powerful multifunction collaboration tool that brings together live and remote experts and classrooms. Interactive whiteboards increase learner participation and allow students to interact with dynamic content. But in the past, adding a video call was difficult and cumbersome. Now with Cisco TelePresence Synch, you can add a video call with no loss of functions on the whiteboard. And you can easily bring in an expert, a remote location, or even another class to the learning experience through telepresence. Educators and presenters can integrate live telepresence sessions with any collaboration application such as WebEx meeting applications, running on the presenters or teachers computer. With a touch of a finger, Cisco TelePresence Synch automatically calibrates changes in the application windows running on a computer with the whiteboard and the telepresence content. As a result, the entire whiteboard can be used as an integrated display as well as a new way to collaborate.
Chapter 4: Collaboration
4-69
Specifications
Components Cisco Unified Application Designer Cisco Unified Application Environment The Cisco Unified Application Designer is a visual integrated development environment (IDE). Without learning the complex details of telephony protocols, developers with little or no Unified Communications development expertise can use the Cisco Unified Application Designer to easily and rapidly develop rich applications that converge voice and video with enterprise applications and data. The Cisco Unified Application Server is an application server for converged voice, video and data applications. It abstracts the complexity of telephony protocols, protects the reliability of the IP call processing system from the applications, and provides a standard way to manage applications. The Cisco Unified Media Engine is a software-only media server. It provides ready-to-use and sophisticated media processing capabilities for all applications built using the Cisco Unified Application Designer.
4-70
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-71
Specifications
Cisco Unified Communications 520 Part Number UC520-8U-4FXO-K9 UC520W-8U-4FXO-K9 UC520-8U-2BRI-K9 UC520W-8U-2BRI-K9 UC520-16U-4FXO-K9 UC520W-16U-4FXO-K9 UC520-16U-2BRI-K9 UC520W-16U-2BRI-K9 UC520-24U-8FXO-K9 UC520-24U-4BRI-K9 UC520-32U-8FXO-K9 UC520-32U-4BRI-K9 UC520-48U-8FXO-K9 UC520-48U-6BRI-K9 UC520-48U-T/E/F-K9 UC520-48U-T/E/B-K9 UC560-FXO-K9 UC560-BRI-K9 UC560-T1E1-K9 UC540W-FXO-K9 UC540W-BRI-K9 IP Phones 8 8 8 8 16 16 16 16 24 24 32 32 48 48 48 48 16 16 16 8 8 IP Phones FXO/FXS Upgradable to 16 16 16 16 24 24 24 24 32/48 32/48 48 48 64 64 64 64 104 104 104 32 32 4/4 4/4 0/4 0/4 4/4 4/4 0/4 0/4 8/4 0/4 8/4 0/4 12/4 0/4 4/4 0/4 4/4 0/4 4/4 4/4 0/4 T1/E1 Support No No No No No No No No No No No No No No 1 1 No No 1 No No BRI Support No No 2 2 No No 2 2 No 4 No 4 No 6 No 2 No 2 No No 2 Integrated Wireless No Yes No Yes No Yes No Yes No No No No No No No No No No No Yes Yes
4-72
Chapter 4: Collaboration
Collaboration
Chapter 4: Collaboration
4-73
4-74
Chapter 4: Collaboration
Collaboration
Specifications
Feature Processor Calls Supported SDRAM Boot Flash System Flash Feature Card Slots Trunk Feature Cards DSP Feature Cards Cisco AS5400XM 750 MHz RISC processor Voice, fax, and remote access services to 648 concurrent calls (to 1CT3/ 16E1s) 512 MB (default), 1 GB (maximum) N/A 128 MB (default), 1 GB (maximum) 7 4 T1/ E1/ PRI, 8 T1/ E1/ PRI, 1 CT3 60 Universal port card, 108 Universal port card 384 low complexity, 192 medium complexity or 144 high complexity port voice/ fax card 2 10/ 100/ 1000 autosensing Gigabit Ethernet LAN ports 2 8-Mbps serial ports; T1/ E1 DS1 and CT3 trunk feature cards IP, IPX, AppleTalk, DECnet, ARA, NetBEUI, bridging, HSRP, 802.1Q Frame Relay, PPP, HDLC (leased line) Routing Information Protocol (RIP), RIPv2, OSPF, IGRP, EIGRP, BGPv4, IS-IS, AY-EIGRP, IPX-EIGRP, Next Hop Resolution Protocol (NHRP), AppleTalk Update-based Routing Protocol (AURP) IP Precedence, Resource Reservation Protocol (RSVP), Weighted Fair Queuing (WFQ), Weighted Random Early Detection (WRED), Multichassis Multilink PPP (MMP), fragmentation and interleaving, 802.1P PPP, Serial Line Internet Protocol (SLIP), TCP Clear, IPXCP, ATCP, ARA, NBFCP, NetBIOS over TCP/ IP, NetBEUI over PPP, protocol translation (PPP, SLIP, ARA, X.25, TCP, local-area transport [LAT], Telnet), and Xremote Multilink PPP (MLPPP), TCP/ IP header compression, Bandwidth Allocation Control Protocol (BACP) G.711, G.723.1 (5.3K and 6.3K), G.726, G.729ab, G. Clear, GSM-FR, AMR-NB, iLBC Echo cancellation, programmable up to 128 MB; Voice activity detection, silence suppression, comfort noise generation; Fixed and adaptive jitter buffering; Call progress tone detection and generationDial tone, busy, ring-back, congestion, and re-order tones with local country variants; DTMF, Multifrequency (MF); Continuity Testing (COT) IP Security (IPSec) and policy enforcement (RADIUS or TACACS+) L2TP, Layer 2 Forwarding (L2F), and generic routing encapsulation (GRE) tunnels Firewall security and intrusion detection QoS features (committed access rate [CIR], Random Early Detection [RED], IP Precedence, policy-based routing) H.323 to H.323 (including Cisco Unified Communications Manager); H.323 to SIP (including Cisco Unified Communications Manager); SIP to SIP (including Cisco Unified Communications Manager) 1000 concurrent calls with 2000 sessions in flow-through mode
QoS Protocols
Access Protocols
4-76
Chapter 4: Collaboration
H.323v2, H.323v3, H.323v4, SIP, MGCP 1.0, TGCP 1.0, Voice XML, Real-Time Streaming Protocol (RTSP), Extended Simple Mail Transfer Protocol (ESMTP); T.38 real-time fax relay; T.37 fax store and forward; Fax out (transmission) Group 3, standards EIA 2388 Class 2 and EIA 592 Class 2.0 at modulations V.33, V.17, V.29, V.27ter, V.21; ITU-T T.30, T4; Fax detection; Fax and modem passthrough; Open Settlements Protocol (OSP), Media Recording Control Protocol (MRCP); TTS Servers; ASR Servers Robbed-bit signaling; Loop Start; Immediate Start, and Wink Start Protocols CAS, PR1, E1 R2, leased line, Frame Relay, G.703, G.704 Sync mode PPP, V.110 at rates up to 38400 bps; Network- and user-side ISDN; NFAS with backup D-channel; QSIG, Feature Group B, Feature Group D; DoVBS V.90 or V.92 standard supporting rates of 56000 to 28000 in 1333-bps increments; V.92 Modem on Hold and Quick Connect; V.44 Compression supporting increased throughput by more than 100 percent for Internet browsing; K56Flex at 56000 to 32000 in 2000-bps increments; ITU-T V34 Annex 12 at 33600 and 31200 bps; ITU-T V.34 at 28800, 26400, 24000, 21600, 19200, 16800, 14400, 12000, 9600, 7200, 4800, or 2400 bps; V.32bis 14400, 12000, 9600, 7200, 4800; V.32 9600, 4800; V.22bis 2400, 1200; V.21 300; Bell 103, 300; V.22 1200; V.23 1200/ 75; ITU-T V.42 (including Microcom Networking Protocol [MNP] 2-4 and Link Access Procedure for Modems [LAPM] error correction; ITU-T V.42bis (1000 nodes) and MNP 5 data compression; Async-mode PPP IP Plus and Enterprise Plus feature sets including 3DES and Lawful Intercept images Asynchronous serial (RJ-45) Dimensions (H x W x D): 3.5 x 17.5 x 18.25 in.; Weight (fully loaded): 35 lbs. maximum (15.8 kg) Main SDRAM2 slots, 512 MB default memory, 1 GB max memory System Flash1 slot, 128 MB default memory, 1 GB max memory
Collaboration
Full Cisco IOS Software Support Console and Auxiliary Ports Chassis Memory Information
Session Initiation Protocol (SIP) line side for interoperability with Cisco Unified Communications Manager SIP-based systems (7.10 and later) T.38 Fax support Secure Real-Time Transport Protocol/ Transport Layer Security (SRTP/ TLS) over SIP for secure media and signaling paths
Specifications
Feature Telephone and network interfaces Dimensions (H x W x D) Weights VoIP Protocols Cisco ATA 187 Analog Terminal Adapter 2 RJ-11 FXS ports 1 Fast Ethernet (FE) LAN port 1.5 x 6.5 x 5.75 in. (3.8 x 16.5 x 14.6 cm) 15 oz. (425 gm) Session Initiation Protocol (SIP) line side based on Unified Communications Manager 7.1x. Cisco Skinny Protocol (SCCP) is not supported.
A power supply cable for the ATA 187 Analog Terminal Adaptor is required and is regionally dependent.
4-78
Chapter 4: Collaboration
Table of Specifications:
Function Video conferencing Web conferencing Audio conferencing Mobile phone client Contact Center Presence Mobility (with Sim ring services) Soft client Included in Cisco Unified Workspace Licensing Cisco Unified MeetingPlace conferencing Cisco WebEx Meeting Center or Cisco Unified MeetingPlace Cisco Unified MeetingPlace conferencing Cisco Unified Mobile Communicator Client Cisco Unified Contact Center Express (25 Cisco CUWL = 1 Standard Agent) Cisco Unified Presence Profile Cisco Unified Mobility Profile Business Edition1 No No No No No Entry Edition No No No No No Standard Edition No No No No No Professional Edition Yes Yes Yes Yes Yes
Yes Yes
No Yes
Yes Yes
Yes Yes
Collaboration
Cisco Unified Personal Communicator, Cisco Unified IP Communicator, or Cisco Unified Communications Integration for Cisco WebEx Connect or Microsoft Office Communicator or CUCILYNC Cisco Unity or Cisco Unity Connection
Yes
Yes
Yes
Messaging
No
Yes
Yes
Phone and call Cisco Unified Communications control Manager Licensing Endpoints Licenses for IP endpoints per user (hard or soft phone) Cisco Unified Communications Manager Session Management Edition Supported user counts
50+
50+
50+
BE 5000/ BE 600
CUWL-STD-K9
UCSS-UWL-STD
Chapter 4: Collaboration
4-79
4-80
Chapter 4: Collaboration
Chapter 5: Security
This chapter provides only a subset of Cisco products and part numbers.
Security At-a-Glance
Product Secure Network Cisco IOS Security Delivers firewall, intrusion prevention, VPN, and content filtering Promotes integrating new network security features on existing routers Maximizes network security without adding hardware Decreases ongoing support and manageability costs Combines firewall, VPN, and optional content security and intrusion prevention Provides threat defense and secure communications services to stop attacks Reduces deployment and operational costs Supports small businesses to large enterprises Identifies and stops malicious traffic, worms, viruses, and application abuse Delivers intelligent threat detection and protection Identifies and blocks Internet-based attackers using SES reputation filtering and global correlation inspection Promotes business continuity and helps meet compliance needs 5-4 Features Page
Cisco ASA 5500 Series Adaptive Security Appliances Cisco Intrusion Prevention Systems (IPSs)
5-5
5-12
Provides high-speed, integrated firewall module for Cisco Catalyst 6500 Switches 5-14 Supports 20 Gbps of maximum firewall throughput Supports 16 Gbps of maximum firewall throughput (multiprotocol) Supports 300,000 connections per second Supports 10 million concurrent connections Supports 250 security contexts Supports 1,000 VLANs Secures your networks and services with context-based access control for users and devices; provides organizations with the ability to enforce compliance, strengthen security, increase operational efficiency, and establish a consistent global access policy while embracing the changing business environment Enforces network security policies by allowing access only to trusted devices Blocks access by noncompliant devices and limits damage from emerging threats and risks Protects existing investments through third-party management application compatibility Reduces virus, worm, and unwanted access threats by integrating with other Cisco products Applies policy-based access control Supports greater flexibility to use devices and applications of choice Provides a single IT interface for policy creation and enforcement Allows you to deploy in active standby mode to help ensure high availability Controls network access based on dynamic conditions and attributes Meets evolving access requirements with rule-based policies Increases compliance with integrated monitoring, reporting, and troubleshooting capabilities Takes advantage of built-in integration capabilities and distributed deployment Fights spam, viruses, and blended threats for organizations of all sizes Enforces compliance and protects reputation and brand assets Reduces downtime and simplifies administration of corporate mail systems Deployed by more than 50 percent of the Fortune 1000 and 8 of the 10 largest Internet service providers (ISPs) Integrates web-usage controls, data security, reputation, and malware filtering Applies Cisco Security Intelligence Operations and global threat technology Combats sophisticated web-based threats with layered security technology Supports built-in management for visibility of threat-related activity Complements all of the Cisco Email and Web Security appliances Provides one location for you to monitor all corporate policy settings and audit information 5-15
Security
5-16
Cisco Identity Services Engine (ISE) *NEW PRODUCT* Cisco Secure Access Control System (ACS)
5-18
5-19
Secure Email and Web Cisco email security products: Cloud and appliance (formerly technology) Cisco Web Security Appliances 5-22
5-23
5-26
Chapter 5: Security
5-1
Analyzes web requests for malicious, inappropriate, or acceptable content Offers granular control over open and encrypted web content Extends real-time protection and policy enforcement to remote employees Blocks unwanted and malicious email messages, while protecting confidential data Offers granular control over all web content, including Secure Sockets Layer (SSL)-encrypted communications, using multiple techniques including real-time dynamic web content classification, an industry-leading URL filtering database, file-type filters, and early warning filtering and real-time scanning of search results with SearchAhead Provides an intelligent, quick, optimal user experience and reliable connectivity experience Gives users a choice of how, when, and where they access their information Provides remote-access connectivity that is comprehensive and preemptive Enforces context-aware policy, and protection from malware Provides secure access to enterprise resources from a Windows, Mac, Linux, iPhone or iPad, or Android device to address bring-your-own-device (BYOD) needs Provides automated wireless vulnerability and performance monitoring Maintains a constant awareness of the RF environment Automatically monitors and identifies unauthorized access and RF attacks Collaborates with Cisco network security products to create a layered security approach Provides remote access for up to 10,000 Secure Sockets Layer (SSL) (both Transport Layer Security [TLS] and Datagram TLS [DTLS]) or IP Security (IPsec) connections Supports functions unavailable to a clientless, browser-based VPN connection Connects users to IPv6 resources over IPv4 network tunnels Facilitates creating user profiles and defining names and addresses of host Delivers mobility services for wireless networks Scalable and centralized Offers open application programming interface (API) for easy integration with enterprise and mobile applications Supports context-aware security and wireless intrusion prevention system (IPS) Extends highly secure and manageable network services to remote employees Cost-effectively scales through standard or express versions Includes Cisco and approved partner services, remote site aggregation, and headend systems Delivers full IP phone, wireless, data, and video services With integrated end-to-end tools, enables consistent policy enforcement, allows rapid troubleshooting of security events, and provides summarized reports for Cisco ASA 5500 Series Adaptive Security Appliances, Cisco IPS 4200 Series Sensor Appliances, Cisco Secure Routers, and the Cisco AnyConnect Secure Mobility Client Allows deployment of centralized and automatic software image updates for all ASAs throughout the network, helping ensure consistency and greatly reducing the time and administrative overhead required for deployment upgrades Supports access control and approval framework for proposing and integrating changes Through policy and object management, enables reuse of security rules and objects, and enhances the ability to monitor security threats from throughout the deployment, minimizing the potential for errors and maximizing efficiency Through troubleshooting and health and performance monitoring, allows configuration of alerts to predefined thresholds, allows event management, and enables administrators to proactively monitor the security environment, leading to operational efficiency, visibility, and lower time to resolution Supports the transmission, monitoring, recording, and management of surveillance video Enables network and security teams to collaborate effectively in a highly scalable environment; this secure, policy-based system helps ensure teams maximize their productivity across thousands of cameras Offers Cisco Video Surveillance Manager, Cisco IP Interoperability and Collaboration System (IPICS), Cisco Physical Security Operations Manager, and Cisco Physical Access Manager for deployment with the industry award-winning Cisco Unified Computing System platforms Application consolidation allows for solution components to be gathered into shared compute and storage
5-28
5-28
5-30
5-30
5-31
5-32
5-34
5-2
Chapter 5: Security
Provides primary means for the Cisco Physical Access Control solution to connect door hardware, such as locks and readers, to your IP network Provides one gateway to control up to two doors and can scale to thousands of doors at a fixed cost per door Provides management application for the Cisco Physical Access Control solution With its easy-to-use interface, lets you configure Cisco Physical Access Gateways and modules, monitor activity, enroll users, and integrate with IT applications and data stores Provides feature-rich, professional digital cameras designed for superior performance in a wide variety of environments Employs powerful digital imaging technology, allowing it to capture high-quality images in a wide variety of lighting conditions Reduces network traffic and storage requirements with H.264 compression while providing superior image quality Provides true high-definition (HD) video surveillance IP digital cameras designed for superior performance in a wide variety of video surveillance applications Provides efficient network usage with the highest-quality video Supports medianet and video analytics With open, standards-based design, provides an ideal platform for integration and operation as independent devices or as part of a Cisco Video Surveillance Network Offers 2.1-megapixel indoor fixed-dome cameras designed with industry-leading image quality and high processing power Designed to install quickly and easily; all of the post-back-box installation and setup can be done with one hand Supports MJPEG and H.264 compression Offers high-definition 2.1-megapixel cameras that produce video streams in full 1080p resolution Provides simplified installation and maintenance through medianet Supports MJPEG and H.264 compression Offers easy-to-deploy, multifeature IP standard-definition pan-tilt-zoom (PTZ) cameras Includes indoor and outdoor models, both supporting day and night operation Supports two simultaneous video streams, which can be compressed in MJPEG, MPEG-4, and H.264 formats across several resolution configurations Offers 4- and 8-port standalone encoders that you can use to convert analog video sources into digit formats Supports H.264, MPEG-4, and MJPEG compression options
5-35
5-35
5-36
5-36
5-37
5-38
Security
5-38
Cisco Video Surveillance Encoders *NEW PRODUCT* Cisco Physical Security Operations Manager
5-39
Unifies video surveillance, access control, and incident response with a 5-39 command-and-control console Provides complete view of facilities, sensors, and alarms in a map-enabled GUI Offers comprehensive management system with powerful workflow and business logic engine Offers innovative choices for deploying and managing physical security services, including video surveillance, access control, and flexible incident response communications Offers compact, 1-rack-unit (1RU) or 2RU server that includes a wide array of features in a single, easy-to-use, and easy-to-deploy component Serves as the conductor of the Cisco Interoperability and Collaboration Systems (IPICS) Creates virtual talk groups (VTGs) to facilitate push-to-talk (PTT) communications among users of multiple types and technologies of Land Mobile Radios (LMRs) with users of PCs, landline phones, cellular, smartphones, and Cisco Unified IP Phones Delivers critical communications interoperability between the boundaries of traditional systems Offers end-to-end radio dispatching solution designed for mission-critical radio communications; it is the vital link between dispatchers and field personnel, helping to coordinate field response and ensure personnel safety Designed and built to take advantage of the newest IP communications technologies, making it easier to dispatch responders and provide them with information that improves their situational awareness Running on a standard PC platform, extends existing PTT radio channels so that users with a variety of communication devices can participate Allows responders to interact with other incident participants (smartphone application) In conjunction with the Cisco IPICS Dispatch Console, provides an on-demand solution for physical security and emergency first responders who are mobile, enabling them to begin reviewing incident information and addressing an incident even while on the way to the scene Chapter 5: Security 5-40
5-41
5-41
5-42
5-3
Provides a comprehensive suite of services designed specifically for Physical Safety and Security (PSS) products based on the Cisco Services Lifecycle framework to help ensure customer success with the Cisco Physical Safety and Security products and solutions Offers services either directly from Cisco or through Authorized Cisco Advanced Technology Program (ATP) Partners Offers new services across the Services lifecycle phases of plan, build, and manage
5-42
Services Cisco Security Services: These services help you plan, build, and manage secure networks and context-aware solutions that enable consistent security enforcement across the extended organization and greater alignment of security policies with business needs. Using leading practices, services delivered by Cisco and our partners can help you more quickly and cost-effectively deploy an effective yet flexible security solution. Operational and remote management services help maintain network security, and optimization services help you identify and address evolving needs. For More Information Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. Cisco Services Please visit www.cisco.com/ go/ services/ security for further information. End-of-Life and End-of-Sale Information Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, what replacement products are available, and information about product support. http://www.cisco.com/en/US/products/prod_end_of_life.html Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com, refer to the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or reference the URL listed in the For More Information section of each product. 5-44
Secure Network
Cisco IOS Security
Cisco IOS Software routers ship with the industrys most comprehensive security services, intelligently embedding data, security, voice, and wireless in the platform portfolio for fast, scalable delivery of missioncritical business applications. The Cisco 800 Series Routers and Cisco 1900, 2900, and 3900 Series Integrated Services Routers are ideal for small businesses and enterprise branch offices, delivering a rich, integrated solution for connecting remote offices, mobile users, and partner extranets or service provider managed customer premises equipment (CPE). The Cisco 7200 Series and 7301 Routers and the Cisco ASR 1000 Series Aggregation Services Routers are ideal for aggregation of WAN security services in campus and enterprise environments. Cisco IOS Software routers include security services that address customer concerns regarding threat management, VPN and secure communications, integrated network solutions, and security management. With the convergence of features such as advanced firewall, VPN services, intrusion prevention system (IPS), Cisco Network Admission Control (NAC), and content filtering, the Cisco IOS Security routers give customers flexibility to choose a solution that meets their bandwidth, LAN and WAN density, and multiservice requirements while benefiting from advanced security.
5-4
Chapter 5: Security
Security
Cisco 7600 Series security bundles are based on the Cisco 7600 Series E chassis and the IP Security (IPsec) VPN shared port adapter (SPA). Cisco ASR 1000 Series Aggregation Services Router security bundles are available for the Cisco ASR 1002, ASR 1004, and ASR 1006 chassis and include the respective Cisco IOS XE feature licenses without the need for additional hardware support in the form of security blades or modules.
Adaptable architecture for rapid and customized security services deployment Versatile, always-on remote access integrated with IPS and web security for highly secure mobility and enhanced productivity
Specifications
Cisco ASA 5500 Cisco ASA Series Model/ 5580-20 License Network Location Firewall Throughput1 Maximum Firewall Connections Maximum Firewall Connections/ Second Packets per second (64 byte) Maximum 3DES/AES VPN Throughput2 Maximum Site-to-Site and IPsec IKEv1 Client VPN User Sessions Maximum AnyConnect or Clientless VPN User Sessions Bundled SSL VPN User Sessions Memory Data Center, Campus 5 Gbps (realworld HTTP), 10 Gbps (max) 2,000,000 Cisco ASA 5580-40 Data Center, Campus 10 Gbps (realworld HTTP), 20 Gbps (max) 4,000,000 Cisco ASA 5585-X with SSP-10 Internet Edge, Campus 3 Gbps (multiprotocol), 4 Gbps (max) 1,000,000 Cisco ASA 5585-X with SSP-20 Data Center, Campus 7 Gbps (multiprotocol), 10 Gbps (max) 2,000,000 Cisco ASA 5585-X with SSP-40 Data Center, Campus 12 Gbps (multiprotocol), 20 Gbps (max) 4,000,000 Cisco ASA 5585-X with SSP-60 Data Center, Campus 20 Gbps (multiprotocol), 40 Gbps (max) 10,000,000
Performance Summary
90,000
150,000
65,000
140,000
240,000
350,000
2,500,000
4,000,000
1,500,000
3,200,000
6,000,000
10,500,000
1 Gbps
1 Gbps
1 Gbps
2 Gbps
3 Gbps
5 Gbps
10,000
10,000
5,000
10,000
10,000
10,000
10,000
10,000
5,000
10,000
10,000
10,000
Technical Summary 8 GB 12 GB 6 GB (SSP-10) 12 GB (SSP-10 and IPS SSP10) 2 GB 12 GB (SSP-20) 24 GB (SSP-20 and IPS SSP20) 2 GB 12 GB (SSP-40) 36 GB (SSP-40 and IPS SSP40) 2 GB 24 GB (SSP-60) 72 GB (SSP-60 and IPS SSP60) 2 GB
1 GB
1 GB
5-6
Chapter 5: Security
Integrated Ports
2-10/100/1000 management +4-10/100/ 1000 (with ASA5580-4 GE-CU) +4 GE SR (with ASA5580-4 GE-FI) +2 10 GE SR (with ASA55802X10 GE-SR)
2-10/100/1000 management +4-10/100/ 1000 (with ASA5580-4 GE-CU) +4 GE SR (with ASA5580-4 GE-FI) +2 10 GE SR (with ASA55802X10 GE-SR) 1024
8-10/100/1000, 2-10 GE SFP+ (with ASA5585Sec-Pl license), 2-10/100/1000 management + 8-10/100/ 1000, 2-10 GE SFP+, 2-10/ 100/1000 management (with IPS SSP-10) 1024
8-10/100/1000, 2-10 GE SFP+ (with ASA5585Sec-Pl license), 2-10/100/1000 management + 8-10/100/ 1000, 2-10 GE SFP+, 2-10/ 100/1000 management (with IPS SSP-20) 1024
6-10/100/1000, 4-10 GE SFP+, 2-10/100/1000 management + 6-10/100/ 1000, 4-10 GE SFP+, 2-10/ 100/1000 management (with IPS SSP-40)
6-10/100/1000, 4-10 GE SFP+, 2-10/100/1000 management + 6-10/100/ 1000, 4-10 GE SFP+, 2-10/ 100/1000 management (with IPS SSP-60)
Maximum Virtual Interfaces (VLANs) SSP Expansion SSP Supported Intrusion Prevention Concurrent Threat Mitigation Throughput (Mbps) (Firewall + IPS Services) Features Cisco Adaptive Security Appliance Software Version (latest) ApplicationLayer Firewall Services Layer 2 Transparent Firewalling Security Contexts (included/ maximum3 ) GTP/GPRS Inspection3 HighAvailability Support4 SSL and IPsec VPN Services VPN Clustering and Load Balancing Advanced Endpoint Assessment3
1 2 3 4
1024
1024
1024
Expansion Capabilities Not available Not available Not available Not available Not available Not available Not available Not available 1- IPS SSP IPS SSP-10 Yes (with IPS SSP) 2 Gbps 1- IPS SSP IPS SSP-20 Yes (with IPS SSP) 3 Gbps 1-IPS SSP IPS SSP-40 Yes (with IPS SSP) 5 Gbps 1-IPS SSP IPS SSP-60 Yes (with IPS SSP) 10 Gbps
Security
8.4
8.4
8.4
8.4
8.4
8.4
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
2/250
2/250
2/100
2/250
2/250
2/250
Yes Yes
Yes Yes
Yes Yes
Yes Yes
Yes Yes
Yes Yes
Yes
Yes
Yes
Yes
Yes
Yes
Maximum throughput measured under ideal test condition VPN throughput and sessions count depend on the ASA device configuration and VPN traffic patterns. These elements should be taken in to consideration as part of your capacity planning Licensed feature A/ S = Active/ Standby; A/ A = Active/ Active
Chapter 5: Security
5-7
SpecificationsMid-Range
Cisco ASA 5500 Series Model/ License Network Location Cisco ASA 5505 Base / Security Plus Small Business, Branch Office, Enterprise Teleworker 150 Mbps 10,000 / 25,000 4000 Cisco ASA 5510 Base / Security Plus Internet Edge Cisco ASA 5520 Cisco ASA 5540 Cisco ASA 5550
Internet Edge
Internet Edge
Performance Summary Maximum Firewall throughput Maximum Firewall Connections Maximum Firewall Connections/ Second Packets Per Second (64 byte) Maximum 3DES/AES VPN Throughput Maximum Siteto-Site and IPsec IKEv1 Client VPN User Sessions Maximum AnyConnect or Clientless VPN User Sessions Bundled SSL VPN User Session Technical Summary Memory Minimum System Flash Integrated Ports 512 MB 128 MB 8 port 10/ 100 switch with 2 Power over Ethernet (PoE) ports 3 (trunking disabled) / 20 (trunking enabled) 1-SSC AIP, SSC 1 GB 256 MB 5-10/100 / 2-10/100/1000, 3-10/100 +4-10/100/1000, 4 SFP (with 4GE SSM) 50 /100 2 GB 256 MB 4-10/100/1000, 1-10/100 +4-10/100/1000, 4 SFP (with 4GE SSM) 150 2 GB 256 MB 4-10/100/1000, 1-10/100 +4-10/100/1000, 4 SFP (with 4GE SSM) 200 4 GB 256 MB 8-10/100/1000, 4-SFP, 1-10/100 300 Mbps 50,000 / 130,000 9000 450 Mbps 280,000 12,000 650 Mbps 400,000 25,000 1.2 Gbps 650,000 36,000
10 /25
250
750
5000
5000
25
250
750
2500
5000
400
Expansion Capabilities SSC/SSM/ICs Expansion SSC/SSM/ICs Supported Intrusion Prevention Concurrent Threat Mitigation Throughput (Mbps) (Firewall + IPS Services) Content Security (Anti-virus, AntiSpyware, File Blocking) 1-SSM CSC SSM, AIP SSM, 4GE SSM 1-SSM CSC SSM, AIP SSM, 4GE SSM Yes (with AIP SSM) 225 (with AIP SSM-10) 375 (with AIP SSM-20) 450 (with AIP SSM-40) Yes (with CSC SSM) 1-SSM CSC SSM, AIP SSM, 4GE SSM Yes (with AIP SSM) 500 (with AIP SSM-20) 650 (with AIP SSM-40) Not available Not available Not available Not available
Yes (with AIP SSC) Yes (with AIP SSM) 75 (with AIP SSC-5) 150 (with AIP SSM-10) 300 (with AIP SSM-20)
Not available
Not available
Maximum Number Not available of Users for Anti-virus, Antispyware, File Blocking (CSC SSM only)
Not available
5-8
Chapter 5: Security
Content Security Plus License features Features Cisco Adaptive Security Appliance Software Version (latest) Application-layer Firewall Services Layer 2 Transparent Firewalling Security Contexts (included/ maximum) GTP/GPRS Inspection High-availability Support SSL and IPsec VPN Services VPN Clustering and Load Balancing Advanced Endpoint Assessment
Not available
Not available
8.4
8.4
Yes Yes
Yes Yes
Yes Yes
Yes Yes
Yes Yes
0/0
0/0 / 2/5 Not available Not supported A/A and A/S Yes Not available / Yes Yes
2/20
2/50
2/100
Not available Not supported Stateless A/S Yes Not available Yes
Security
ASA5520-BUN-K9
ASA5520-K8
Chapter 5: Security
5-9
ASA5580-20-BUN-K9 ASA5580-20-4GE-K9
Cisco ASA 5580-20 Firewall Edition includes 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license Cisco ASA 5580-20 Firewall Edition 4 Gigabit Ethernet Bundle includes 4 Gigabit Ethernet interfaces, 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, Dual AC power, 3DES/AES license Cisco ASA 5580-20 Firewall Edition 8 Gigabit Ethernet Bundle includes 8 Gigabit Ethernet interfaces, 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, Dual AC power, 3DES/AES license Cisco ASA 5580-40 Firewall Edition includes 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, DES license Cisco ASA 5580-40 Firewall Edition includes 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license Cisco ASA 5580-40 Firewall Edition 8 Gigabit Ethernet Bundle includes 8 Gigabit Ethernet interfaces, 2 management interfaces, 5000 IPsec VPN peers, 2 SSL VPN peers, Dual AC power, 3DES/AES license Cisco ASA 5580-40 Firewall Edition 4 10Gigabit Ethernet Bundle includes 4 10Gigabit Ethernet interfaces; 2 management interfaces; 5000 IPsec VPN peers; 2 SSL VPN peers, Dual AC power, 3DES/AES license Cisco ASA 5505 50-User IPS Edition includes AIP-SSC-5, 8-port Fast Ethernet switch, 10 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license Cisco ASA 5505 Unlimited-User IPS Edition includes AIP-SSC-5, DMZ support, high availability, 8-port Fast Ethernet switch, 10 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license Cisco ASA 5510 IPS Edition includes AIP-SSM-10, firewall services, 250 IPsec VPN peers, 2 SSL VPN peers, 5 Fast Ethernet interfaces Cisco ASA 5510 IPS Edition includes AIP-SSM-10, firewall services, 250 IPsec VPN peers, 2 SSL VPN peers, 2 Gigabit Ethernet interfaces, 3 Fast Ethernet interfaces, and high availability Cisco ASA 5510 IPS Edition includes AIP-SSM-20, firewall services, 250 IPsec VPN peers, 2 SSL VPN peers, 2 Gigabit Ethernet interfaces, 3 Fast Ethernet interfaces, and high availability Cisco ASA 5520 IPS Edition includes AIP-SSM-10, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5520 IPS Edition includes AIP-SSM-20, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5520 IPS Edition includes AIP-SSM-40, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5540 IPS Edition includes AIP-SSM-20, firewall services, 5000 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5540 IPS Edition includes AIP-SSM-40, firewall services, 5000 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5510 Content Security Edition includes CSC-SSM-10, 50-user antivirus/ anti-spyware with 1-year subscription, firewall services, 250 IPsec VPN peers, 2 SSL VPN peers, 3 Fast Ethernet interfaces Cisco ASA 5510 Content Security Edition includes CSC-SSM-20, 500-user antivirus/ antispyware with 1-year subscription, firewall services, 250 IPsec VPN peers, 2 SSL VPN peers, 3 Fast Ethernet interfaces Cisco ASA 5520 Content Security Edition includes CSC-SSM-10, 50-user antivirus/ anti-spyware with 1-year subscription, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5520 Content Security Edition includes CSC-SSM-20, 500-user antivirus/ antispyware with 1-year subscription, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5505 SSL/ IPsec VPN Edition includes 10 IPsec VPN peers, 10 SSL VPN peers, 50 firewall users, 8-port Fast Ethernet switch Cisco ASA 5505 SSL/ IPsec VPN Edition includes 25 IPsec VPN peers, 25 SSL VPN peers, 50 firewall users, 8-port Fast Ethernet switch Cisco ASA 5510 SSL/ IPsec VPN Edition includes 250 IPsec VPN peers, 50 SSL VPN peers, firewall services, 3 Fast Ethernet interfaces Cisco ASA 5510 SSL/ IPsec VPN Edition includes 250 IPsec VPN peers, 100 SSL VPN 100 peers, firewall services, 3 Fast Ethernet interfaces Cisco ASA 5510 SSL/ IPsec VPN Edition includes 250 IPsec VPN peers, 250 SSL VPN peers, firewall services, 3 Fast Ethernet interfaces Cisco ASA 5520 SSL/ IPsec VPN Edition includes 750 IPsec VPN peers, 500 SSL VPN peers, firewall services, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface
ASA5580-20-8GE-K9
ASA5580-40-10GE-K9
Cisco ASA 5500 Series IPS Edition Bundles ASA5505-50-AIP5-K9 ASA5505-U-AIP5P-K9 ASA5510-AIP10-K9 ASA5510-AIP10SP-K9 ASA5510-AIP20SP-K9 ASA5520-AIP10-K9 ASA5520-AIP20-K9 ASA5520-AIP40-K9 ASA5540-AIP20-K9 ASA5540-AIP40-K9
ASA5510-CSC20-K9
ASA5520-CSC10-K9
ASA5520-CSC20-K9
Cisco ASA 5500 Series SSL/ IPsec VPN Edition Bundles ASA5505-SSL10-K9 ASA5505-SSL25-K9 ASA5510-SSL50-K9 ASA5510-SSL100-K9 ASA5510-SSL250-K9 ASA5520-SSL500-K9
5-10
Chapter 5: Security
Cisco ASA 5540 SSL/ IPsec VPN Edition includes 5000 IPsec VPN peers, 1000 SSL VPN peers, firewall services, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5540 SSL/ IPsec VPN Edition includes 5000 IPsec VPN peers, 2500 SSL VPN peers, firewall services, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5550 SSL/ IPsec VPN Edition includes 5000 IPsec VPN peers, 2500 SSL VPN peers, firewall services, 8 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5550 SSL/ IPsec VPN Edition includes 5000 IPsec VPN peers, 5000 SSL VPN peers, firewall services, 8 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5580 SSL/ IPsec VPN Edition includes 10,000 IPsec VPN peers, 10,000 SSL VPN peers, firewall services, 4 Gigabit Ethernet interfaces, 2 management interfaces, Dual AC power, 3DES/AES license Cisco ASA Advanced Inspection and Prevention Security Services Module 5 Cisco ASA Advanced Inspection and Prevention Security Services Module 10 Cisco ASA Advanced Inspection and Prevention Security Services Module 20 Cisco ASA Advanced Inspection and Prevention Security Services Module 40 Cisco ASA Content Security and Control Security Services Module 10 with 50-user antivirus/ anti-spyware, 1-year subscription Cisco ASA Content Security and Control Security Services Module 20 with 500-user antivirus/ anti-spyware, 1-year subscription Cisco ASA 4-Port Gigabit Ethernet Security Services Module Cisco ASA 5520 Adaptive Security Appliance UC Security Edition; includes 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface, 1000 UC proxy sessions, 750 IPsec VPN peers, 2 SSL VPN peers, Active/ Active and Active/ Standby high availability, Triple Data Encryption Standard/ Advanced Encryption Standard (3DES/ AES) license Cisco ASA 5520 Adaptive Security Appliance UC Security Edition; includes 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface, 1000 UC proxy license, 750 IPsec VPN peers, 2 SSL VPN peers, Active/ Active and Active/ Standby high availability, DES license Cisco ASA 5540 Adaptive Security Appliance UC Security Edition; includes 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface, 2000 UC proxy sessions, 5000 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license Cisco ASA 5540 Adaptive Security Appliance UC Security Edition includes 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface, 2000 UC proxy sessions, 5000 IPsec VPN peers, 2 SSL VPN peers, DES license Cisco ASA 5580 Adaptive Security Appliance UC Security Edition; includes 4 Gigabit Ethernet interfaces, 5000 UC proxy sessions, 10,000 IPsec VPN peers, 2 SSL VPN peers, 3DES/ AES license, Cisco ASA 5580 Adaptive Security Appliance UC Security Edition; includes 4 Gigabit Ethernet interfaces, 5000 UC proxy sessions, 10,000 IPsec VPN peers, 2 SSL VPN peers, DES license Cisco ASA 5580 4-port 10/ 100/ 1000 Ethernet interface card, RJ45 Cisco ASA 5580 4-port Gigabit Ethernet fiber interface card, SR, LC Cisco ASA 5580 2-port 10 Gigabit Ethernet fiber interface card, SR, LC Cisco ASA Software one-time upgrade for nonsupport customers
Security Services Modules ASA-SSM-AIP-5-K9= ASA-SSM-AIP-10-K9= ASA-SSM-AIP-20-K9= ASA-AIP-40-INC-K9= ASA-SSM-CSC-10-K9= ASA-SSM-CSC-20-K9= SSM-4GE= ASA5520-UC-BUN-K9
Cisco ASA 5520 Adaptive Security Appliance for Unified Communications Security
Security
ASA5520-UC-BUN-K8
Cisco ASA 5540 Adaptive Security Appliance for Unified Communications Security ASA5540-UC-BUN-K9
ASA5540-UC-BUN-K8
Cisco ASA 5550 Adaptive Security Appliance for Unified Communications Security ASA5580-20-UC-K9
ASA5580-20-UC-K8
Cisco ASA 5580 Series Interface Expansion Cards ASA5580-4GE-CU= ASA5580-4GE-FI= ASA5580-2X10GE-SR= ASA-SW-UPGRADE=
Chapter 5: Security
5-11
Cisco Advanced IPS security module or card for the Cisco ASA 5500 Series for companies that want to Inspection and Prevention manage IPS with their firewall in one appliance Security Services Module (AIP-SSM) CiscoIPSAdvanced Integration Module (AIM) Cisco IDS Services Module (NME) Cisco IDS Services Module 2 (ISDM-2) Cisco IOS IPS IPS AIM for the Cisco 1841, 2800, and 3800 Series Integrated Services Routers with performance level of up to 45 Mbps IPS NME for the Cisco 2800 and 3800 Series Integrated Services Routers with performance level of up to 75 Mbps IPS security module for Cisco Catalyst 6500 Series Switches with up to 500-Mbps performance Focused set of IPS capabilities using Cisco IOS Software on the router with varying performance levels
Specifications
Feature Cisco IPS4240 Cisco IPS4255 Cisco IPS4260 Cisco IPS4270 Cisco IPS Module (IDSM-2) 500 Mbps PCI Cisco IPS Network Module (AIM) 45 Mbps Internal 10/ 100 Mbps Ethernet Cisco IPS Network Module (NM-CIDS) 45 Mbps Internal 10100-Mbps Ethernet and external 10100-Mbps Ethernet 10/1010/100 Base-TX
2 Gbps Four 10/100/ 1000 BaseTX or Four 10-00BaseSX Two onboard 10/100/1000 Base-TX Four 10/100/ 1000 BaseTX Two 1000BaseSX (fiber) (up to 16 total monitoring interfaces)
10/100 Base-TX
10/100 Base-TX
PCI
Security
IPS-4260-2SX-K9 IPS4270-20-K9 IPS4270-20-4GE-K9 IPS4270-20-4SX-K9 IPS-4GE-BP-INT= IPS-2SX-INT= IPS Modules on ISR AIM-IPS-K9 NME-IPS-K9 ASA-SSC-AIP-5-K9= ASA-SSM-AIP-10-K9= ASA-SSM-AIP-20-K9= ASA-AIP-40-INC-K9= Select Bundles ASA5510-AIP10-K9 ASA5520-AIP10-K9
Chapter 5: Security
5-13
Cisco ASA 5520 IPS Edition includes AIP-SSM-20, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5520 IPS Edition includes AIP-SSM-40, firewall services, 750 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5540 IPS Edition includes AIP-SSM-20, firewall services, 5000 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco ASA 5540 IPS Edition includes AIP-SSM-40, firewall services, 5000 IPsec VPN peers, 2 SSL VPN peers, 4 Gigabit Ethernet interfaces, 1 Fast Ethernet interface Cisco Catalyst 6506-E Switch, Supervisor Engine 32 with 8 x 1 Gigabit Ethernet Small FormFactor Pluggable (SFP) plus 1 x 10/ 100/ 1000 uplink port, 8 copper SFP interfaces, 4 IDSM-2s, and 1 Power-Supply 3000W Cisco Catalyst 6506-E Switch, Supervisor Engine 32 with 8 x 1 Gigabit Ethernet SFP plus 1 x 10/ 100/ 1000 uplink port, 8 multimode fiber SFP interfaces, 4 IDSM-2s, and 1 Power-Supply 3000W Cisco Catalyst 6506-E Switch, Supervisor Engine 32 with 2 x 10 Gigabit Ethernet XENPAK plus 1 x 10/ 100/ 1000 uplink port, 2 short-range 10 Gigabit XENPAK interfaces, 4 IDSM-2s, and 1 Power-Supply 3000W
WS-C6506E-IPSF-K9 WS-C6506E-IPS10GK9
Its advanced features can help your organization reduce costs and operational complexity, while allowing you to manage multiple firewalls from the same platform. In addition, you can install up to four Cisco Catalyst 6500 Series ASA Services Module blades in a Cisco Catalyst 6500 Series Switch, providing scalability to 64 Gbps. The Cisco Catalyst 6500 Series ASA Services Module delivers industry-leading innovations, including the following customer benefits: Advanced scalability and performance Exceptional security protection at Layer 2 through Layer 7 Ability to work with other modules in the chassis for comprehensive security delivery It also delivers superior return on investment (ROI) by taking advantage of the existing infrastructure to deliver new services. You can add full firewall capabilities by sliding a blade into an empty slot in the existing Cisco Catalyst 6500 Series Switch. No additional rack space, cabling, power, or physical interface is required.
5-14
Chapter 5: Security
WS-SVC-ASA-SM1-K8= WS-SVC-ASA-SM1-K7 WS-SVC-ASA-SM1-K7= Security Bundles WS-C6506-E-FWM-K9 WS-C6509-E-FWM-K9 WS-C6513-FWM-K9 WS-6509EXL-2FWM-K9 WS-6513XL-2FWM-K9 WS-6506-EXL-FWM-K9 WS-6509-EXL-FWM-K9 WS-C6513-XL-FWM-K9
ASA Services Module for Catalyst 6500-E, DES (Spare) ASA Services Module for Catalyst 6500-E, NPE ASA Services Module for Catalyst 6500-E, NPE (Spare) Cisco Catalyst 6506 Firewall Security System with Enhanced Chassis and Supervisor 720 3B Cisco Catalyst 6509 Firewall Security System with Enhanced Chassis and Supervisor 720 3B Cisco Catalyst 6513 Firewall Security System with Supervisor 720 3B Cisco Catalyst 6509 Firewall Security System with Enhanced Chassis, Supervisor 720 3BXL and two Firewall Service Modules Cisco Catalyst 6513 Firewall Security System with Supervisor 720 3BXL and two Firewall Service Modules Cisco Catalyst 6506 Firewall Security System with Enhanced Chassis, Supervisor 720 3BXL and one Firewall Service Module Cisco Catalyst 6506 Firewall Security System with Enhanced Chassis, Supervisor 720 3BXL and one Firewall Service Module Cisco Catalyst 6513 Firewall Security System with Enhanced Chassis, Supervisor 720 3BXL and one Firewall Service Module
Secure Access
Cisco TrustSec Technology
Secure your networks and services with Cisco TrustSec context-based access control for users and devices. Cisco TrustSec technology allows organizations to enforce compliance, strengthen security, increase operational efficiency, and establish a consistent global access policy while embracing the changing business environment: Growth in user demand for mobility and device choices Use and deployment of IP-enabled devices A complex workforce of employees, partners, and guests Convergence of wired and wireless environments Increased use of virtual network devices, services, and cloud-based access Cisco TrustSec software can be deployed as an appliance-based overlay mode where a set of appliances provides the access control on top of an existing network infrastructure, or as a network-integrated 802.1X mode where authentication, authorization, and enforcement occur on the network. The Cisco TrustSec architecture includes three pillars: Identity context: You can identify who and what is in your network based on a variety of attributes such as user, posture, location, access type, device type, and more. This rich set of attributes provides the true role of a user or device in the network. Context awareness is derived from the networking infrastructure in the case of the 802.1X network-integrated solution, with consistent identity features supported across all Cisco switch platforms. In the overlay mode, context awareness is provided through the Cisco Network Admission Control (NAC) agent intelligence. Authorization and enforcement: The next step after organizations have visibility into who and what is in the network is the ability to allow them into appropriate parts of the network. Cisco offers the traditional authorization options at ingress using VLANs and downloadable access control lists (ACLs). Cisco also offers Security Group Access, the ability to authorize users with security group tags that define their role in the organization. When user traffic has these tags, any device in the network can enforce policies based on the tags at egress. It is operationally more scalable than the traditional authorization options. Data integrity: The third component of the Cisco TrustSec architecture is data integrity and confidentiality through MAC Security (MACsec) or 802.1AE, including the ability to tie your policy to encryption; for example, allowing users access to the network based on the ability to encrypt from endpoint to switch. In addition, switch-to-switch encryption from access to data center switches and between data centers protects data throughout the entire network. Cisco TrustSec software integrates with the Cisco SecureX Architecture to allow the Cisco security portfolio to take advantage of network-based identity context for full context-aware firewalling and policy enforcement.
Security
Chapter 5: Security
5-15
5-16
Chapter 5: Security
Specifications
Feature Products Cisco NAC Appliance 3315 Cisco NAC Appliance 3355 Cisco NAC Appliance 3395 Cisco NAC Server for 100, 250, and 500 users Cisco NAC Lite Manager Quad-core Intel Xeon (Core 2 Quad) 4 GB 250-GB SATA drive CD/DVD-ROM drive Cisco NAC Server for 1500, 2500, 3500, and 5000 users Cisco NAC Standard Manager Quad-core Intel Xeon (Nehalem) 6 GB 2 x 300-GB SAS RAID drives CD/DVD-ROM drive 2 x Integrated NICs 2 x Gigabit NICs (PCI-X) Cat 3, 4, or 5 UTP up to 328 ft (100 m) Cisco NAC Super Manager
2 x Quad-core Intel Xeon (Nehalem) 8 GB 4 x 300-GB SFF SAS RAID drives CD/DVD-ROM drive 2 x Integrated NICs 2 x Gigabit NICs (PCI-X) Cat 3, 4, or 5 UTP up to 328 ft (100 m)
Ethernet network interface 2 x Integrated NICs cards (NICs) 2 x Gigabit NICs (PCI-X) 10BASE-T cable support Category (Cat) 3, 4, or 5 unshielded twisted pair (UTP) up to 328 ft (100 m)
10/100/1000BASE-TX cable support Secure Sockets Layer (SSL) accelerator card Interfaces Serial ports USB 2.0 ports Keyboard ports Video ports Mouse ports External SCSI ports System Unit Form factor Weight Dimensions Power supply Cooling fans BTU rating Industry certifications
Cat 5 UTP up to 328 ft (100 m) Cat 5 UTP up to 328 ft (100 m) Cat 5 UTP up to 328 ft (100 m) None Cavium CN1120-NHB-E Cavium CN1120-NHB-E
1 4 (two front, two rear) 1 1 1 None Rack-mount 1 RU 35 lb (15.87 kg) fully configured 1.70 x 16.78 x 27.75 in. (4.32 x 42.62 x 70.49 cm) 350W 6; non-hot plug, nonredundant 2661 BTU/ Hr (at 120V) FIPS 140-2 Level 2 Common Criteria EAL2
1 4 (one front, one internal, two rear) 1 1 1 None Rack-mount 1 RU 35 lb (15.87 kg) fully configured 1.70 x 16.78 x 27.75 in. (4.32 x 42.62 x 70.49 cm) Dual 675W (redundant) 9; redundant 2661 BTU/ Hr (at 120V) FIPS 140-2 Level 2 Common Criteria EAL2
1 4 (one front, one internal, two rear) 1 1 1 None Rack-mount 1 RU 35 lb (15.87 kg) fully configured 1.70 x 16.78 x 27.75 in. (4.32 x 42.62 x 70.49 cm) Dual 675W (redundant) 9; redundant 2661 BTU/ Hr (at 120V) FIPS 140-2 Level 2 Common Criteria EAL2
Security
Chapter 5: Security
5-17
Specifications
Feature Cisco Identity Services Engine Appliance 3315 (Small) 1 x QuadCore Intel Core 2 CPU Q9400 @ 2.66 GHz 4 GB 2 x 250-GB SATA HDD No CD/DVD-ROM drive x Integrated Gigabit NICs Cat 3, 4, or 5 unshielded twisted pair (UTP) up to 328 ft (100 m) Cisco Identity Services Engine Appliance 3355 (Medium) Cisco Identity Services Engine Appliance 3395 (Large)
Processor Memory Hard disk RAID Removable media Network Connectivity Ethernet NICs 10BASE-T cable support
1 x QuadCore Intel Xeon CPU 2 x QuadCore Intel Xeon CPU E5504 @ 2.00 GHz E5504 @ 2.00 GHz 4 GB 2 x 300-GB SAS drives Yes (RAID 0) CD/DVD-ROM drive 4 x Integrated Gigabit NICs Cat 3, 4, or 5 UTP up to 328 ft (100m) 4 GB 4 x 300-GB SFF SAS drives Yes (RAID 0+1) CD/DVD-ROM drive 4 x Integrated Gigabit NICs Cat 3, 4, or 5 UTP up to 328 ft (100m)
10/100/1000BASE-TX cable support Secure Sockets Layer (SSL) accelerator card Interfaces Serial ports USB 2.0 ports Video ports External SCSI ports
Cat 5 UTP up to 328 ft (100 m) Cat 5 UTP up to 328 ft (100 m) Cat 5 UTP up to 328 ft (100 m) None Cavium CN1620-400-NHB-G Cavium CN1620-400-NHB-G
5-18
Chapter 5: Security
System Unit Form factor Weight Dimensions Power supply Cooling fans BTU rating Industry certifications Rack-mount 1 RU Rack-mount 1 RU Rack-mount 1 RU 35 lb (15.87 kg) fully configured 1.69 x 17.32 x 27.99 in. (43 x 42.62 x 711 mm) Dual 675W (redundant) 9; redundant 2661 BTU/ hr (at 120V) Criteria EAL2 28 lb (12.7 kg) fully configured 35 lb (15.87 kg) fully configured 1.69 x 17.32 x 22 in. (43 x 440 x 55.9 mm) 350W 6; non-hot plug, nonredundant 1024 BTU/ hr (at 300W) Criteria EAL2 1.69 x 17.32 x 27.99 in. (43 x 42.62 x 711 mm) Dual 675W (redundant) 9; redundant 2661 BTU/ hr (at 120V) Criteria EAL2
Security
http://www.cisco.com/en/US/products/ps11640/index.html
Database options: Cisco Secure ACS 5.1 supports an integrated user repository in addition to supporting integration with existing external identity repositories such as Windows Active Directory and Lightweight Directory Access Protocol (LDAP). Multiple databases can be used concurrently for maximum flexibility in enforcing access policy. Authentication protocols: Cisco Secure ACS 5.1 supports a wide range of authentication protocols including Password Authentication Protocol (PAP), Microsoft Challenge Handshake Authentication Protocol (MS-CHAP), Extensible Authentication Protocol (EAP)-Message Digest Algorithm 5 (MD5), Protected EAP (PEAP), EAP-Flexible Authentication via Secure Tunneling (FAST), and EAP-Transport Layer Security (TLS) to support your authentication requirements. Access policies: Cisco Secure ACS 5.1 supports a rules-based, attribute-led policy model that provides greatly increased power and flexibility for access control policies that may include authentication protocol requirements, device restrictions, time-of-day restrictions, posture validation, and other access requirements. Cisco Secure ACS may apply downloadable access control lists (dACLs), VLAN assignments, and other authorization parameters. Centralized management: Cisco Secure ACS 5.1 supports a completely redesigned lightweight, webbased GUI that is easy to use. An efficient, incremental replication scheme quickly propagates changes from primary to secondary systems providing centralized control over distributed deployments. Software upgrades are also managed through the GUI and can be distributed by the primary system to secondary instances. Monitoring and troubleshooting: Cisco Secure ACS 5.1 includes an integrated monitoring, reporting, and troubleshooting component that is accessible through the web-based GUI. This tool provides maximum visibility into configured policies and authentication and authorization activities across the network. Logs are viewable and exportable for use in other systems as well. Platform options: Cisco Secure ACS 5.1 is available as a closed and hardened Linux-based appliance or as a software operating system image for VMware ESX. Cisco Secure Access Control Server Express Cisco Secure Access Control Server (ACS) Express is an entry-level RADIUS and TACACS+ authentication, authorization, and accounting (AAA) server for retail branch-office locations, enterprise branch offices, and small and medium-sized businesses (SMBs) that have fewer than 350 users and 50 devices. Cisco Secure ACS Express provides a centralized identity networking solution that: Offers a simple user and access policy management interface Gives administrators greater access to and control of users and machines in various networks including wireless, wired, and virtual private networks Controls administrative access to network devices using RADIUS and TACACS+ This product is intended to serve small to medium-sized businesses, retail sites, and enterprise branch offices where customers need an easy-to-use GUI yet require a comprehensive but simple feature set and a lower price point to address their specific deployment needs. Cisco Policy Administration Point Cisco Policy Administration Point (PAP) provides centralized administration, management, and monitoring of entitlement policies, and delegation and integration with enterprise information repositories such as Active Directory and Lightweight Directory Access Protocol (LDAP). Cisco Secure Access Control Server Solution Engine The Cisco Secure Access Control Server (ACS) Solution Engine is a dedicated, rack-mountable appliance for network access policy control. It helps companies comply with growing regulatory and corporate requirements, improve productivity, and contain costs. It supports multiple scenarios simultaneously, including: Device administration: Authenticates administrators, authorizes commands, and provides an audit trail Remote access: Works with VPN and other remote network access devices to enforce access policies Wireless: Authenticates and authorizes wireless users and hosts and enforces wireless-specific policies Network admission control: Communicates with posture and audit servers to enforce admission control policies Cisco Secure Access Control System View Cisco Secure Access Control System (ACS) View provides the highest level of reporting, alerting, and troubleshooting functions for Cisco Secure ACS deployments. Providing maximum visibility into configured policies and authentication and authorization activities across the network, Cisco Secure ACS View is the ideal solution for organizations that require the greatest levels of reporting and control.
5-20
Chapter 5: Security
Specifications
Component Specifications CPU System memory Hard disk drive Optical storage Network connectivity I/O ports Rack-mounting Physical dimensions (1RU) Weight Power Specifications Number of Power Supplies Power Supply Size Environmental Specifications Operating temperature range Heat emitted Maximum altitude Component Specifications VMware Version CPU System memory Hard disk requirement Processor Memory Hard drive Optical Drive Interfaces Hardware Requirements ESX 3.5 or ESX 4.0 Intel Core 2 (2.13 GHz) 4 GB Minimum 512 GB Intel 352 Celeron D 1 GB RAM 250 GB DVD-ROM Two onboard 10/ 100/ 1000 Ethernet NIC ports IBM PC compatible with Pentium IV processor, 1.8 GHz or faster 1GB RAM minimum Color monitor with minimum graphics resolution of 256 colors at 800 x 600 resolution CD-ROM drive 100BaseT or faster network connection Windows Server 2003, R2, Service Pack 2 Pentium IV, 3.4 GHz 1 GB RAM 120 GB SATA CD/DVD combo Two integrated 10/ 100/ 1000 Ethernet ports 50 to 95F; 10 to 35C (up to 3000 ft /914.4m) 341 (minimum) to 1024 (maximum) BTUs; 100-300W 7000 ft; 2133 m 1 351W universal, autoswitching Cisco ACS 5.1 Intel Xeon 2.66-GHz Q9400 (Quad Core) 4 GB DDR II ECC 2 x 250 GB 7.2K RPM 3.5 SATA DVD-ROM 4 10/ 100/ 1000, RJ-45 interfaces 1 serial port, 4 USB 2.0 (2 front, 2 rear), SVGA Video 4-post (kit included) 17.3 (W) x 22.0 (D) x 1.75 (H) in.; 44.0 (W) x 55.9 (D) x 4.45 (H) cm 24.25 (minimum) to 28.0 lb (maximum); 11.0-12.7 kg
Security
OS Requirements Cisco ACS Secure Solution Engine Processor Memory Hard drive Optical Drive Interfaces
Chapter 5: Security
5-21
Security
identify and track factors such as policy and security violations as they occur. Historical reports allow administrators to identify trends and report on efficacy and return on investment (ROI). Enterprise-scale performance: Cisco Web Security Appliances scale to meet the unique scanning needs of web traffic, thereby helping ensure that the employees experience is maintained. Cisco offers industryleading performance through its proprietary Cisco AsyncOS platform, an enterprise-grade web proxy and cache file system as well as an intelligent, multicore engine for rapid content scanning. Consequently, the Cisco S-Series platform can address the capacity requirements of even the largest of enterprises. Low TCO: Traditional solutions typically require multiple appliances or servers to protect against security, resource, and compliance risks. Unlike other solutions, the Cisco S-Series provides a single platform that contains a complete, in-depth defensealong with all the necessary management toolssignificantly reducing initial and ongoing TCO. Reduced administrative overhead: Designed to minimize administrative overhead, Cisco Web Security Appliances offer easy setup and management with an intuitive GUI, support for automated updates, and comprehensive monitoring and alerting. The solution is also easy to deploy and configure to match corporate-specific policies.
Specifications
Feature User Targets Chassis Form Factor Dimensions Power Supply Redundant Power Supply CPUs Memory Disk Space Hot Swappable Hard Drives RAID Interfaces Ethernet Serial Fiber Web Interface Command Line Interface Logging Centralized Reporting File Transfer Configuration Files Centralized Configuration Monitoring 6xGigabit NICs, RJ-45 1xRS-232 (DB-9) Serial Optional GUI-based (HTTP or HTTPS) SSH or Telnet (Configuration Wizard or command-based) Squid, Apache, syslog Supported SCP, FTP XML-based Supported SNMPv1-3, e-mail alerts 6xGigabit NICs, RJ-45 1xRS-232 (DB-9) Serial No GUI-based (HTTP or HTTPS) SSH or Telnet (Configuration Wizard or command-based) Squid, Apache, syslog Supported SCP, FTP XML-based Supported SNMPv1-3, e-mail alerts 2xGigabit NICs, RJ-45 1xRS-232 (DB-9) Serial No GUI-based (HTTP or HTTPS) SSH or Telnet (Configuration Wizard or command-based) Squid, Apache, syslog Supported SCP, FTP XML-based Supported SNMPv1-3, e-mail alerts 2RU 3.5 (h) x 17.5 (w) x 29.5 (d) 750 watts, 100/ 240 volts Yes 2x4 (2 Quad Cores) XEONs 8 GB 1.6 TB Yes RAID 10, battery-backed 256MB cache 2RU 3.5 (h) x 17.5 (w) x 29.5 (d) 750 watts, 100/ 240 volts Yes 1x4 (1 Quad Core) XEONs 4 GB 1.2 TB Yes RAID 10, battery-backed 256MB cache 1RU 1.75 (h) x 17.5 (w) x 21.5 (d) 345 watts, 100/ 240 volts No 2x2 (1 Dual Core) Pentium 4 GB 500 GB No RAID 1, battery-backed 256MB cache S660 10000+ S360 1000-10000 S160 < 1000
5-24
Chapter 5: Security
Security
Chapter 5: Security
5-25
Specifications
Chassis Form Factor Dimensions Power Supply CPUs Disk Space RAID Interfaces Ethernet Fiber Web Interface 5-26 3xGigabit NICs, RJ-45 Yes GUI-based (HTTP or HTTPS) 3xGigabit NICs, RJ-45 No GUI-based (HTTP or HTTPS) 2xGigabit NICs, RJ-45 No GUI-based (HTTP or HTTPS) Cisco M1060 19 rack-mountable 2RU rack height 3.5 (h) x 17.5 (w) x 29.5 (d) 750 watts, 100/ 240 volts 2x4 (Quad Cores) Intel XEON 3 TB RAID 10, battery-backed 256MB cache Cisco M660 19 rack-mountable 2RU rack height 3.5 (h) x 17.5 (w) x 29.5 (d) 750 watts, 100/ 240 volts 2x4 (Quad Core) Intel XEON 1.8 TB RAID 10, battery-backed 256MB cache Cisco M160 19 rack-mountable 2RU rack height 1.75 (h) x 17.5 (w) x 21.5 (d) 345 watts, 100/ 240 volts 1x2 (Dual Core) Intel XEON 500 GB RAID 1, battery-backed 256MB cache
Chapter 5: Security
Security
Chapter 5: Security
5-27
Secure Mobility
Cisco AnyConnect Secure Mobility Solution
With the Cisco AnyConnect Secure Mobility solution, you can access the network with your mobile device of choice, including laptops, tablets, and smartphones. At the same time, this solution can help your organization easily manage the security risks of borderless networks, while supporting the bring-your-own-device (BYOD) trend and IT consumerization. This mobile security solution provides: Security policy enforcement that is context-aware, comprehensive, and preemptive Connectivity that is intelligent, quick, and always on; the interface is user-optimized Highly secure mobility across the rapidly increasing number of managed and unmanaged mobile devices The Cisco AnyConnect Secure Mobility solution consists of the following components: Cisco AnyConnect Secure Mobility Client for highly secure connectivity (including support for the National Security Agencys (NSAs) Suite B Cryptography (part of Next-Generation Encryption) Cisco ASA 5500 Series Adaptive Security Appliance, a proven firewall leader that provides users with more secure access to dataanytime, anywhere, using any device Cisco Web Security Appliance for security policy enforcement Cisco AnyConnect Secure Mobility solution, which enables your connection to simply work and be persistently connected, without your needing to juggle where and how to best connect and persist, even when roaming between networks Cisco ASA Series as the firewall and secure mobility, which works with Cisco AnyConnect Version 3.1 and provides the secure remote-access connectivity portion of Cisco AnyConnect Secure Mobility The Cisco S-Series Web Security Appliance applies context-aware policy, including enforcing acceptable use and protection from malware for all users. The Cisco Web Security Appliance also accepts user authentication information from the AnyConnect client, providing an automatic authentication step for you to access your web content.
Security
Specifications
Advanced IP Network Connectivity Access to internal IPv4 and IPv6 network resources Centralized split tunneling control for optimized network access IP address assignment mechanisms: Static Internal pool Dynamic Host Configuration Protocol (DHCP) RADIUS/LDAP Added protection for Split Tunneling configurations. Used in conjunction with Cisco Secure Mobility to allow for local access exceptions (i.e. printing, tethered device support, etc.). Supports port-based rules for IPv4 and network/ IP Access Control Lists (ACLs) for IPv6. Available for Windows XP SP2, Vista, Windows 7 & Mac OS X AnyConnect policies may be customized directly from Cisco ASDM (Adaptive Security Device Manager). Chapter 5: Security 5-29
In conjunction with Cisco Secure Desktop, Host Scan verification checking seeks to detect the presence of antivirus software, personal firewall software, and Windows service packs on the endpoint system prior to granting network access. Administrators also have the option of defining custom posture checks based on the presence of running processes. Cisco Secure Desktop can detect the presence of a watermark on a remote system. The watermark can be used to identify assets that are corporate-owned and provide differentiated access as a result. The watermark checking capability includes system registry values, file existence matching a required CRC32 checksum, IP address range matching, and certificate issued by/ to matching. An advanced endpoint assessment option is available to automate the process of repairing out-ofcompliance Applications.
5-30
Chapter 5: Security
The Cisco 3350 Mobility Services Engine transforms existing wireless LANs (WLANs) into comprehensive mobility networks through a uniform method of mobility services delivery. The Cisco 3350 Mobility Services Engine software suite includes: Cisco Context-Aware Software to track up to 18,000 devices Cisco Mobile Intelligent Roaming for up to 2000 simultaneous devices Cisco Adaptive Wireless Intrusion Prevention System (IPS) Software
Security
Specifications
Feature Supported Services Cisco 3310 Context-aware software to track up to 2000 devices Adaptive Wireless Intrusion Prevention System software to support up to 2000 monitor mode access points Cisco 3350 Context-aware software to track up to 18,000 devices Adaptive Wireless Intrusion Prevention System software to support up to 3000 monitor mode access points.
Evaluation Support
Customers who purchase a mobility service have the option to trial other mobility services on their MSE at the following scale: Context-aware client tracking: 100 Clients Context-aware tag tracking: 100 Tags Adaptive Wireless Intrusion Prevention: 20 monitor mode access points (1) Dual-Core Intel Processor 1.8 GHz 4-GB PC2-5300 (4 x 1 GB) (2) Fixed 247-GB Serial ATA-150 /SATA-300 MBps (2) Quad-Core Intel Xeon Processors 2.33 GHz 8-GB PC2-5300 (4 x 2 GB) (2) Hot-swappable 137-GB SAS-300 MBps drives
Network: Two embedded Multifunction Gigabit Network: Two embedded Multifunction Gigabit Network Adapters Network Adapters with TCP/ IP Offload Engine SNMP v1, v2c, and v3 Cisco WCS Mobility Services v.5.2 or greater running Internet Explorer 6.0/ Service Pack 1 or later Cisco 2100, 4400 & 5500 Series Wireless LAN Controllers; Cisco Catalyst 6500 Series Wireless Services Module, Cisco Catalyst 3750G Integrated Wireless LAN Controller, Cisco Wireless LAN Controller Module (WLCM and WLCM-E) for Integrated Services Routers; Cisco Aironet lightweight access points SOAP/XML APIs SNMP v1, v2c, and v3 Cisco WCS Mobility Services v.5.2 or greater running Internet Explorer 6.0/ Service Pack 1 or later Cisco 2100, 4400 & 5500 Series Wireless LAN Controllers; Cisco Catalyst 6500 Series Wireless Services Module, Cisco Catalyst 3750G Integrated Wireless LAN Controller, Cisco Wireless LAN Controller Module (WLCM and WLCM-E) for Integrated Services Routers; Cisco Aironet lightweight access points SOAP/XML APIs
Network Devices
Programming Interfaces
Chapter 5: Security
5-31
Form Factor
1.70 in. x 16.78 in. x 20 in. (4.32 cm x 42.62 cm x 50.8 cm) 15 lbs (6.8 kg) maximum AC power supply wattage: 540W AC power supply voltage: 100-120V at 50-60 Hz; 200-240V at 50-60 Hz Available with Cisco Mobility Services Engine (MSE) Software Release 5.2 or later Requires WLC software version 4.2.130 or later and Wireless Control System (WCS) Version 5.2 or later Multiple mobility services can run concurrently on the same MSE using WLC and MSE Software Release 6.0 or later Supported services may have different software requirements
1.70 in. x 16.78 in. x 27.25 in. (4.32 cm x 42.62 cm x 69.22 cm) 39.5 lbs (17.92 kg) maximum AC power supply wattage: 852W AC power supply voltage: 100-120V at 50-60 Hz; 200-240V at 50-60 Hz Redundant Power Supplies Available with Cisco Mobility Services Engine (MSE) Software Release 5.1 or later Requires WLC software Version 4.2.130 or later and WCS Version 5.1 or later Multiple mobility services can run concurrently on the same MSE using WLC and MSE Software Release 6.0 or later Supported services may have different software requirements
Power
Software Compatibility
well as investment protection in the form of the scalability and modularity of the routers as business needs expand. With only one management solution to learn, training needs are minimized and ongoing operations are simplified. For businesses and organizations: This solution improves productivity of the workforce while saving costs associated with energy, facilities, and real estate. It also enables better business resiliency, allowing the workforce to stay secure and connected if employees cannot get to the office or are traveling. A Differentiated Solution Teleworkers and technology that enables teleworking has existed for many years, but the solutions in the past have typically lacked a critical component, creating a barrier to adoption. Perhaps the solution is not robust enough to handle communication and collaboration applications. Perhaps it lacks the proper security controls to comply with corporate standards. Or perhaps it does not use unified communications or wireless technologies, making it less convenient. Cisco Virtual Office delivers a truly comprehensive solution that addresses each of these concerns, providing mutual benefits to the end user, the IT departmentand ultimatelythe business.
Security Management
Cisco Security Manager
Cisco Security Manager is an enterprise-class management application that provides insight into and control of Cisco security and network devices. Cisco Security Manager offers comprehensive security management (configuration and event management) across a wide range of Cisco security appliances, including Cisco ASA Adaptive Security Appliances, Intrusion Prevention System (IPS) Sensor Appliances, Integrated Services Routers, Firewall Services Modules, and Cisco Catalyst 6000 Series Switches. Cisco Security Manager allows you to efficiently manage networks of all sizesfrom small networks to large networks consisting of hundreds of devices. Cisco Threat Defense Cisco threat defense helps organizations secure and manage their Borderless Networks environment. Organizations are protected from todays dynamic threat environment using proactive intelligence from Cisco Security Intelligence Operations (SIO), market-leading network security devices, and a single, integrated management platform. Simplified Security Management Next-generation Cisco Security Manager enables organizations to gain insight and control of the entire security topology through a single, integrated user interface, including: Global policies for Cisco Adaptive Security Appliances (ASA) and Intrusion Prevention System (IPS) Appliances Single console for configuration and device changes Next-generation Cisco Security Manager increases visibility into your security environment so that you can better understand and respond to threat patterns and risk. Features include: Single view of Cisco IPS with Cisco Global Threat Correlation Engine and ASA-thwarted events Single view of traffic statistics Comprehensive navigation capabilities Integration of reputation data into IPS events Dynamic policy tuning based on actionable events Cisco IPS with the Cisco Global Threat Correlation Engine reduces the time needed to manage IPS by providing more accurate detection and automated rule sets. Policy and object management enables reuse of security rules and objects, and enhances the ability to monitor security threats from throughout the deployment, minimizing the potential for errors and maximizing efficiency Troubleshooting and Health and Performance Monitoring allows configuration of alerts to predefined thresholds; it allows for event management; and it enables administrators to proactively monitor the security environment, leading to operational efficiency, visibility, and lower time to resolution. It also supports tools such as Cisco Packet Tracer and the traceroute command. Detection of out-of-band changes and selective ASA policy management for heterogeneous operational IT environments are supported. The application supports simplified policy definition paradigms for ASA appliances (providing Network Address Translation [NAT] services) and Global Access Rules for improved management efficiency. You can deploy centralized and automatic software image updates for all ASAs throughout the network, helping ensure consistency and greatly reducing the time and administrative overhead required for deployment upgrades.
Chapter 5: Security 5-33
Security
Northbound application programming interfaces (APIs) enable representational state transfers for the secure sharing of essential data with third-party network services such as compliance and advanced security analysis systems to help streamline security operations and adhere to compliance requirements. The application provides enhanced support for Ciscos latest IPS and firewall features, such as Botnet Traffic Filter and the Global Threat Correlation Engine, for an improved threat response experience. The application supports role-based access control (RBAC) and an approval framework for proposing and integrating changes.
Physical Security
Cisco Video Surveillance Manager
Cisco Video Surveillance Manager (VSM) provides a comprehensive system for your video surveillance needs. This system enables your network and security teams to collaborate effectively in a highly scalable environment, combining both video and network techniques to optimize the experience. Enable your team with this secure, policy-based system to ensure they maximize their productivity across thousands of cameras. Features and Capabilities Cisco Video Surveillance Manager: Provides a web-based toolkit for configuration, management, display, and control of video from a wide variety of both Cisco and third-party surveillance endpoints Uses IP technology to provide outstanding scalability in terms of sites, cameras, viewers, and storage Delivers low-latency, high-quality, event-tagged video Supports a broad range of network topologies and platforms ranging from virtual to nonvirtual, centralized to decentralized, and everything in between Enables simple, effective management through comprehensive temple capability Cisco Virtualized Video Surveillance solutions: Offer a complete virtualized solution for Cisco Video Surveillance Media Server software on Cisco Unified Computing Systems (UCS) platforms Provide a hyperscalable solution with modular Cisco UCS platform building blocks Provide centralized management with improved situational awareness and real-time response Can support hundreds of thousands of video surveillance cameras with core routing and Cisco UCS
Security
Cisco Physical Access Manager Enterprise Data Integration License Cisco Physical Access Manager Web Services API License
The Cisco Physical Access Manager is available through Cisco Authorized Technology Provider (ATP) Partners.
Chapter 5: Security
5-35
Specifications
To choose the best digital IP camera for your needs, refer to the model comparison chart at: http://www.cisco. com/en/US/products/ps11251/prod_models_comparison.html#~standard_cameras.
5-36
Chapter 5: Security
Security
Specifications
To choose the best digital IP camera for your needs, refer to the model comparison table: http://www.cisco.com/en/US/products/ps9716/prod_models_comparison.html#~hd_cameras
1.
The Cisco 4000 Series Video Surveillance IP Camera is available through Cisco Authorized Technology Provider (ATP) Partners.
Video setup jack and focus button accessible with dome closed Up to two simultaneous video streams Motion detection
Specifications
To choose the best digital IP camera for your needs, refer to the model comparison table at: http://www.cisco.com/en/US/products/ps11027/prod_models_comparison.html#~hd_cameras.
35X zoom Clear dome Separate PAL and NTSC models Cisco Video Surveillance 2900 Series IP PTZ Cameras offer a variety of benefits, including: Simultaneous IP and analog video H.264, MPEG-4, and MJPEG compression Integrated camera and optics packages with autofocus Window blanking 256 Pan/ Tilt/ Zoom (PTZ) presets and 8 user-defined patterns 360 continuous pan rotation Motion detection Electronic image stabilization (35X models only) Onscreen compass and tilt display Wide dynamic range Day and night operation
Specifications
To choose the best digital IP camera for your needs, refer to the model comparison table: http://www.cisco.com/en/US/products/ps11027/prod_models_comparison.html#~hd_cameras.
Security
Chapter 5: Security
5-39
Security
Chapter 5: Security
5-41
Disaster recovery mobility, because this PC-based application moves with the user anywhere there is an IP network, unlike a traditional dispatch console that stays where it is installed Radio interoperability and beyond, because it supports multiagency talkgroups; talkgroups between disparate radios; and talkgroups that include radios, PCs, phones, cell phones, and IP phones Rich-media incident management, because it moves beyond audio to support rich-media talkgroups and a new generation of mobile endpoints Integrated policy engine, giving dispatchers a new set of tools that simplify notification and improve response time Smooth evolution to P25, Tetra, and other radio protocols
Solution Architecture
Project Assurance Technology Architecture Planning VSM Network Readiness Assessment VSM 7 Plan and Design System Management Plan & Instrumentation VSM 7 Migration Services
Video Surveillance
Incident Response
IPICS P25 System Testing IPICS Mentored Install IPICS Plan and Design RMS for IPICS
Access Control
Cisco Confidential
19
2) Cisco Technology Architecture Planning for Physical Safety and Security The Cisco Technology Architecture Planning service includes the functional description of the solution, the high level design, a proposed bill of materials, a recommended operating model, solution roadmap and high level schedule, a gap analysis between solution requirements and current state, and a business case that the customer can use for internal budget justification. The service then provides the detailed designs and test plans needed by the delivery teams to deploy the solution and its supporting management systems, as well as the detailed operational plans the customer will use to operate the solution. New Fixed Price Mentored Install Services for VSM and IPICS: The new Fixed Price Mentored Install service is targeted to partners and customers who are looking at Cisco to help and assist with a deployment of the VSM and IPICS technology. The service is fixed in scope and hence can be ordered off the Cisco Ordering tools. Service includes a workshop to understand project requirements and desired outcome. Cisco will provide a Runbook documenting the customer requirements, system parameters, implementation plan and basic test cases. A Cisco SME will validate the system installation against the project requirements. The SME will provide configuration assistance to the Customer and guidance on any installation issues. The service has different SKUs and price points to accommodate a range of project sizes and scope.
VSM Services
Security
Contact Cisco Services Sales Representative for Scoping and Pricing ASF-ESG-G-PSS-VSMS* ASF-ESG-G-PSS-VSMM* ASF-ESG-G-PSS-VSML* CON-ROSF-VSMSW7X CON-ROSF-VSOMSW7X CON-ROSF-VSM7MS= CON-ROSF-VM7CM50 CON-ROSF-VM7CM100 CON-ROSF-VM7CM200 CON-ROSF-VM7CM500 CON-ROSF-VSM7BVM= CON-ROSF-VSM7CVM= CON-ROSF-7OMBVM= CON-ROSF-7OMCVM= Incident Response Services ASF-ESG-G-PSS-IPS* ASF-ESG-G-PSS-IPM* ASF-ESG-G-PSS-IPL* Contact Cisco Services Sales Representative for Scoping and Pricing CON-ROSF-IPX4BDL1 CON-ROSF-IPX4BDL2 CON-ROSF-IPX4BDL3 CON-ROSF-IPXUPG1D CON-ROSF-IPXUPG1V CON-ROSF-IPXUPG1M CON-ROSF-IPXMEDHA CON-ROSF-IPXLRGHA CON-ROSF-IPXADDHA CON-ROSF-IPIC S-RMS CON-ROSF-IPIC S-LMR CON-ROSF-IPXSLMR2 CON-ROSF-IPX3945 CON-ROSF-IPXS2P25 CON-ROSF-IPXS2UMS
VSM 7 Network Readiness Assessment VSM 7 Migration Service VSM 7 Plan and Design Services (for custom and complex situations) VSM Mentored Install Services (Fixed Price SKUs- NEW)* RMS for VSM
IPICS Mentored Install Services (Fixed Price SKUs - New)* IPICS Plan and Design Services IPICS P 25 Testing and Support RMS for IPICS
Chapter 5: Security
5-43
Access Control Devices Contact Cisco Services Sales Representative for Scoping and Pricing CON-ROSF-CPAG CON-ROSF-CPAM Plan and Design for CPAM Mentored Install for CPAM RMS for Access Control
5-44
Chapter 5: Security
6-11
Cisco Nexus 4000 Series Switches Cisco Nexus 3000 Series Switches Cisco Nexus 2000 Series Fabric Extenders
6-12
6-13
6-15
Data Center
6-14
See 2-14
Fabric Extender Technology: A Portfolio of Fabric Extenders Cisco Nexus 2000 Series Fabric Extenders 6-15
Cisco Adapter Fabric Single point of management Extender (Adapter FEX) Increased 10 Gigabit Ethernet bandwidth usage Less power and fewer cabling adapters with Cisco Adapter FEX Based on the standard IEEE 802.1BR Cisco Data Center Virtual Machine Fabric Extender (VM-FEX) Collapse virtual and physical networking into a single infrastructure Provision, configure, manage, monitor, and diagnose virtual machine network traffic and bare-metal network traffic within one unified infrastructure Based on the standard IEEE 802.1BR
6-17
6-17
6-1
Storage Networking: SAN Switching Cisco MDS 9500 Series Multilayer Directors Share a common architecture, the Cisco MDS 9000 NX-OS operating system, and switching and services modules that are backward- and forward-compatible throughout all Cisco MDS 9500 Series Multilayer Directors The portfolio includes: Cisco MDS 9513 Multilayer Director Cisco MDS 9509 Multilayer Director Cisco MDS 9506 Multilayer Director Delivers state-of-the-art multiprotocol and distributed multiservice convergence, offering high-performance SAN extension and disaster-recovery solutions, intelligent fabric services, and cost-effective multiprotocol connectivity including Fibre Channel, Small Computer System Interface over IP (iSCSI), Fibre Channel over IP (FCIP), and IBM Fiber Connection (FICON) The portfolio includes: Cisco MDS 9222i Multiservice Modular Switch Cost-effective, scalable, easy-to-install, and highly configurable fixed-port Fibre Channel fabric switches are excellent for small to medium-sized businesses. The switches are available as blade-switch form factors for market-leading original storage manufacturers (OSMs). The portfolio includes: Cisco MDS 9148 Multilayer Fabric Switch Cisco MDS 9124 Multilayer Fabric Switch Applications such as continuous data replication, Cisco Storage Media Encryption (SME disk and tape), and Cisco MDS Data Mobility Manager (DMM) address customer concerns related to storage provisioning, security (security for data at rest), data migration and replication, backup and recovery, storage use, and increasing storage costs. The portfolio includes: Cisco FCIP for Remote SAN Extension Cisco MDS 9000 Storage Media Encryption (SME) Cisco MDS 9000 Family I/ O Accelerator (IOA) Cisco MDS 9000 XRC Acceleration Cisco MDS Data Mobility Manager (DMM) 6-18
6-20
6-21
6-22
Unified Computing Cisco Unified Computing System (Cisco UCS) Next-generation data center platform that unites computing, networking, storage access, and virtualization resources into a cohesive system designed to reduce total cost of ownership (TCO) and increase business agility Built from the following components: Cisco UCS 6100 Series Fabric Interconnects Cisco UCS 5100 Series Blade Server Chassis Cisco UCS 2100 Series Fabric Extenders Cisco UCS network adapters Cisco UCS Manager Management software Cisco UCS C-Series Rack Servers and B-Series Blade Servers Based on the Intel Xeon processor E5-2400, E5-2600, E5-4600, E7-2800, and E7-4800 product families, Cisco UCS B-Series Blade Servers offer outstanding performance and availability while intelligently scaling energy use. Outstanding half-width bandwidth up to 80 Gbps]] and full-width bandwidth up to 160 Gbps, Used in combination with the Cisco UCS Virtual Interface Card 1240 (VIC 1240), or Cisco VIC 1280 port I/ O expander in a half-width blade or two I/ O expanders in a full-width blade form factors The servers offer exceptional embedded integration with Cisco UCS Manager for all infrastructure policies. The servers incorporate standards-based unified network fabric and Cisco Data Center Virtual Machine Fabric Extender (VM-FEX) and Adapter Fabric Extender (Adapter FEX) support. The servers enable the stateless movement of service profiles (server personalities) from blade to blade or blade to rack. Programmable infrastructure transforms the physical infrastructure into a pool of resources that can be provisioned to support any workload in minutes. Unified, model-based management configures servers quickly and accurately, improving business agility and eliminating a major source of errors. Cisco Extended Memory Technology also offers a more cost-effective memory footprint for less-demanding workloads. 6-24
6-26
6-2
The servers scale horizontally with one instance of Cisco UCS Manager and one set of Cisco UCS 6100 or 6200 Series Fabric Interconnects. The blade-server offerings include: Cisco UCS B440 M2 High-Performance Blade Server Cisco UCS B420 M3 Blade Server Cisco UCS B250 M2 Extended-Memory Blade Server Cisco UCS B230 M2 Blade Server Cisco UCS B200 M3 Blade Server Cisco UCS B22 M3 Blade Servers Cisco UCS C-Series Rack Servers *NEW PRODUCT* Extends unified computing innovations to an industry-standard form factor 6-27 Designed to operate both in standalone environments and as part of the Cisco Unified Computing System Based on the Intel Xeon processor E5-2400, E5-2600, E5-4600, E7-2800, and E74800 product families, server offers outstanding performance and availability while intelligently scaling energy use Supports an incremental deployment model and an entry point into unified computing Incorporates standards-based unified network fabric and Cisco Data Center VM FEX and Adapter FEX support with the addition of Cisco UCS P81 or 1225 VIC cards Offers ability to connect to a Cisco Nexus 2232PP Series Fabric Extender that with a Cisco Nexus parent switch delivers a cost-effective and highly scalable 1 Gigabit Ethernet and 10 Gigabit Ethernet environments while facilitating migration to 10 Gigabit Ethernet, virtual machineaware, and unified fabric environments Enables the stateless movement of service profiles (server personalities) from rack to rack, blade to blade, or blade to rack Offers programmable infrastructure that transforms the physical infrastructure into a pool of resources that can be provisioned to support any workload in minutes Provides unified, model-based management that lets you configure servers quickly and accurately, improving business agility and eliminating a major source of errors Offers cost-effective Cisco Extended Memory Technology for memory-intensive workloads Extends unified computing innovations to an industry-standard rack-mount form factor Scales horizontally with one instance of Cisco UCS Manager and one set of Cisco UCS 6100 or 6200 Series Fabric Interconnects Offers embedded integration with Cisco UCS Manager for all infrastructure policies The portfolio includes: Cisco UCS C460 M2 High-Performance Rack Server Cisco UCS C260 M2 Rack Server Cisco UCS C2400 M3 Rack Server Cisco UCS C220 M3 Rack Server Cisco UCS C24 M3 Rack Server Cisco UCS C22 M3 Rack Server
Data Center
Application Networking Services Cisco Application Control Engine (ACE) Family Simplifies the way applications and business services are deployed, secured, and managed across the enterprise Provides greater control over the application infrastructure, allowing organizations to quickly deploy and migrate applications to deliver more responsive services to the end user while simplifying the overall management of the data center Application delivery products in the Cisco ACE Family include: Cisco ACE Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers Cisco ACE 4710 Appliance Cisco ACE Global Site Selector (GSS) 4400 Series Delivers a comprehensive, cost-effective, cloud-ready WAN optimization solution that accelerates applications over the WAN, provides local hosting of branch-office IT services, and can accelerate video delivery to the branch office WAN optimization products in the Cisco WAAS Family include: Cisco Wide Area Application Services Software Cisco Virtual WAAS (vWAAS) Cisco WAAS Mobile Cisco Wide Area Virtualization Engine (WAVE) Appliances Cisco WAAS Express Integrated Services Router Generation 2 (ISR G2) products Cisco WAAS Software for Services-Ready Engine (SRE) Service Modules (SM) for ISR G2 products. Cisco Enterprise Content Delivery System (ECDS) Virtual Blades Windows Server on WAAS 6-28
6-29
6-3
Empowers network administrators with actionable visibility to optimize network resources, troubleshoot performance problems, and help ensure consistent user experience. Network analysis products in the Cisco NAM portfolio include: Cisco Catalyst 6500 Series Network Analysis Module (NAM-3) Cisco NAM 2200 Series Appliances Cisco Prime NAM for ISR G2 SRE Cisco Prime NAM for Nexus 1010 Cisco Prime NAM for WAAS Virtual Blade (VB) Meets the needs of mission-critical data centers by delivering eight times the performance density of competitive products and spanning multiple platforms, technologies, and deployment scenarios Supports the highest VPN session counts and twice as many connections per second as competitive firewalls to meet the growing needs of todays most dynamic organizations, in a compact 2-rack-unit (2RU) form factor Combines the worlds most proven firewall with the industrys most comprehensive, effective intrusion prevention system (IPS) for a powerful, effective security solution Transparently integrates with Cisco Catalyst 6500 Series Switches to provide exceptional security, reliability, and performance Employs the same architecture as the Cisco ASA 5585-X Adaptive Security Appliance, but in a blade form factor Supports the highest throughput, five times the concurrent connections, and twice as many connections per second as competitive network security modules, in a single blade architecture Easily integrates into an existing Cisco Catalyst 6500 Series Switch to add security at the central point of the data center, with no need to worry about how many interfaces are needed, no recabling, and no need for any additional rack space Controls network access based on dynamic conditions and attributes Provides a next-generation platform for centralized network identity and access control Provides a simple yet powerful, rule-based policy model and a new, intuitive management interface designed for optimum control and visibility Enhance regulatory compliance and simplify virtual-environment audit processes with the Cisco Virtual Security Gateway (VSG): Provides trusted multitenant access with detailed, zone-based, and context-aware security policies Supports dynamic provisioning of security policies and trust zones during virtual machine instantiation and movement Helps reduce errors, promote collaboration across server and security teams, and separate administrative responsibilities Adaptive security deployments: A 1000V secures the tenant edge in multitenant private and public cloud. The Cisco ASA 1000V integrates with the Cisco Nexus 1000V for hooks into the hypervisor, and for enhanced architectural scalability and flexibilityVirtual Network Management Center (VNMC) provides centralized, multitenant, multidevice policy manager for both the Cisco ASA 1000V and VSG. The Cisco ASA 1000V and VNMC are both software products, run as virtual machines, and are licensed based on the number of CPU sockets protected. The Cisco IPS 4500 Series protects critical information found in data center applications (accounting systems, manufacturing, sales, human resources, Active Directory, Exchange) from targeted attacks and sophisticated malware. Cisco offers the broadest visibility of attacker, victim, and attack information of any inline IPS in the market. Signature-only detection products from other vendors can provide only a one-dimensionaland sometimes incorrect response. The Cisco IPS 4500 Series offers the highest degree of attack protection and confidence that legitimate business functions and business productivity will not be affected. Ease of use: Wizard-led setup steps include data centerfocused templates as a valuable starting point for deployments. Integrated end-to-end tools enable consistent policy enforcement, allow rapid troubleshooting of security events, and provide summarized reports for Cisco ASA 5500 Series Adaptive Security Appliances, Cisco IPS 4200 Series Sensor Appliances, Cisco Secure Routers, and the Cisco AnyConnect Secure Mobility Client. Centralized and automatic software image updates can be deployed for all ASAs throughout the network, helping ensure consistency and greatly reducing the time and administrative overhead required for deployment upgrades. Troubleshooting and Health and Performance Monitoring allows configuration of alerts to predefined thresholds, allows event management, and enables administrators to proactively monitor the security environment, leading to operational efficiency, visibility, and lower time to resolution. Northbound application programming interfaces (APIs) enable representational state transfers, for the secure sharing of essential data with third-party network services such as compliance and advanced security analysis systems to help streamline security operations and adhere to compliance requirements.
6-32
Data Center Security Cisco ASA 5585-X Adaptive Security Appliance 6-33
6-33
5-19
6-34
6-35
6-36
6-36
6-4
Policy and object management enables reuse of security rules and objects, and enhances the ability to monitor security threats from throughout the deployment, minimizing the potential for errors and maximizing efficiency The application provides centralized monitoring, event correlation, and an attackmitigation system, offering a comprehensive management solution for Cisco ASA 5500 Series Adaptive Security Appliances, Cisco IPS 4200 Series Sensor Appliances, Cisco Secure Routers, and the Cisco AnyConnect Secure Mobility Client. The application supports role-based access control (RBAC) and an approval framework for proposing and integrating changes. It provides improved visibility into security devices, including custom reports that can be created using advanced filters, and reports that can be viewed on demand and scheduled for email delivery. Data Center and Cloud Management Cisco Tidal Enterprise Scheduler (TES) Cisco TES 6.1 is an advanced workload automation engine that coordinatesin real time or scheduled batch modea wide variety of workload types with complex dependencies across a broad spectrum of operating systems and application platforms. It connects and manages data flows and application functions across Oracle, Microsoft, IBM, and SAP as well as service-oriented architectures (SOA); integration capabilities for web services and Java EE-based applications; Cisco Tidal Enterprise Orchestratora service-level orientation for managing workloads and a critical path analysis and reporting capabilities. This N-tier architecture decouples core functions for scaling up and out allowing organizations to support a large number of concurrent and distributed users and jobs. It provides a single view and point of control over business processes and the jobs that comprise thementerprisewidewithout the need to learn new scripting languages or run multiple tools. Deep integration for Business Intelligence, data integration, database and data warehouse activities as well as new Big Data applications, providing a low-risk path for transitioning Big Data science projects from test to production environments. For more information, visit: http://www.cisco.com/go/workloadautomation. Lowers total cost of ownership (TCO) and increases the value of your infrastructure investments Increases business agility by standardizing the delivery of IT services across virtual and physical infrastructure Shortens your time to cloud with a set of best-practice automation packs Simplifies the delivery of data center resources while enforcing policy-based controls Designed for heterogeneous environments and optimized for Cisco Unified computing System (Cisco UCS)more information: http://www.cisco.com/go/iacloud Reduces the number of switches, network interface cards, and power requirements Is purpose-built with unified switch ASIC Is a line-rate, extremely low-latency 10 Gigabit Ethernet switch http://www.cisco.com/go/cloudportal Processes trades more quickly because of ultralow latency with high density Increases application performance through wire-rate Layer 3 switching Is well suited for high-frequency trading (HFT) market For more information: http://www.cisco.com/go/workplaceportal 6-37
6-38
Data Center
6-38
Cisco Workplace Portal *NEW PRODUCT* SAP IT Process Automation *NEW PRODUCT*
6-39
Unified incident response: Automate and integrate the whole incident response 6-39 process. Predefined corrective actions: Model resolution schemes or resolve problems using predefined methods of support for operational processes. Advanced reporting: Enforce compliance with such regulations as the Health Insurance Portability and Accountability Act and the Sarbanes-Oxley Act. Visual configuration environment: Create reusable flows and build in human input points using drag-and-drop techniques. For more information: http://www.cisco.com/web/go/automatesap Organizes network resources with multiservice data center infrastructure Integrates with existing IT operational tools and processes Uses sophisticated network containers to reduce network operational costs Optimizes capacity use and accelerates service delivery Deploys flexible, policy-directed management For more information: http://www.cisco.com/web/go/nsm Provides centralized multidevice and policy management for Cisco network virtual services Offers rapid and scalable deployment based on security profiles Provides easy operational management through XML APIs to help third-party integration Provides a nondisruptive administration model across security and server teams Supports Cisco edgefirewalls For more information: http://www.cisco.com/go/vnmc Chapter 6: Data Center 6-39
6-40
6-5
Advanced management software that provides comprehensive lifecycle management of data center LAN and SAN; Cisco DCNM enables holistic management of the data center infrastructure and optimizes overall uptime and reliability. Automatically builds an accurate representation of your data center topologies and traffic flows Real-time proactive operational monitoring of the data center network Monitors high-level performance and capacity trends in the data center network Quickly diagnoses end-to-end path for latency and congestion Provides powerful, industry-standard Simple Object Access Protocol (SOAP)/ XML API for integration into operations and business support systems (OSS and BSS, respectively) VCE, formed by Cisco and EMC with investment from VMware and Intel, delivers the industrys only fully integrated and fully virtualized cloud infrastructure system. From purchase and deployment to operations and support, Vblock Systems off-load IT staff of time consuming tasks, enabling IT to focus on business innovation instead of integrating, validating, and managing IT infrastructure. FlexPod is a predesigned, base configuration built on leading computing, networking, storage, and infrastructure software components from Cisco, NetApp, and VMware. It offers a prevalidated data center solution built on a flexible, shared infrastructure that can be optimized for a variety of mixed application workloads, or can be configured for virtual desktop or server infrastructure, secure multitenancy, or cloud environments. The Hitachi Unified Computing Platform includes infrastructure components from Cisco, Hitachi, and VMware and is a flexible framework for creating cloud network-ready, virtualized infrastructure solutions. It consists of storage components from Hitachi Data Systems, computing and networking components from Cisco, and virtualization components from VMware. These industry leaders have combined their expertise to create a comprehensive virtualization solution that can be deployed quickly and effectively. Accelerate deployment of Cisco Wide Area Application Services (WAAS) and Cisco Application Control Engine (ACE) solutions and help secure and increase the availability of business-critical applications. These services include: Cisco WAAS Planning and Design Service Cisco ACE Planning and Design Service Cisco Data Center Optimization Services to support application delivery, distribution, and network performance For more information, go to: www.cisco.com/en/US/products/ps6894/serv_group_ home.html. Accelerate deployment of Cisco Nexus switches and migrate to unified fabric. These services help IT departments build, operate, and maintain an agile, high-performance infrastructure. These services include: Cisco Nexus Planning and Design Service Cisco Data Center Optimization Services to support unified fabric For more information, go to www.cisco.com/en/US/products/ps9443/serv_group_ home.html. Accelerate the transition to a unified computing architecture and optimize ongoing operations. These services include: Cisco Unified Computing Architecture Assessment Service Cisco Unified Computing Planning, Design, and Implementation Services: Accelerated deployment Database accelerator Preproduction pilot Management systems integration Migration and transition Virtualization Cisco Unified Computing Remote Management Services Cisco SMARTnet Service for Unified Computing Services Cisco Data Center Optimization Services to support unified computing systems For more information, go to www.cisco.com/en/US/products/ps10312/serv_group_ home.html. Plan and deploy, increase operation efficiency, and optimize Cisco MDS SAN architectures. These services include: Cisco Director Class SAN Planning and Design Service Cisco SAN Health Check Service Cisco Data Mobility Manager (DMM) Planning and Design Service Cisco Data Center Optimization Service for SAN For more information, go to www.cisco.com/en/US/products/svcs/ps2961/ps3010/ serv_group_home.html.
6-41
FlexPod
6-43
6-44
6-45
6-45
6-45
6-6
Build a data center architecture that quickly and securely adapts to virtual and cloud environments, supports business growth, and delivers operational excellence. The following supporting service packages are available as part of Cisco Data Center Optimization Services: Strategy and Architecture Cloud Optimization Desktop Virtualization Optimization Unified Network Services Optimization Unified Computing Optimization Unified Fabric Optimization Storage Area Network (SAN) Optimization For more information, visit: http://www.cisco.com/web/services/portfolio/optimization/data-center-optimization/ index.html.
6-45
Cisco Data Center Accelerate your virtualization initiative with a cohesive, business-influenced strategy and Virtualization /Desktop design. Services include: Virtualization Services Cisco Virtualization Assessment Service Cisco Virtualization Strategy Services: Application Dependency Mapping Service Data Center Architecture Value Analysis Service Data Center Virtualization Assessment Service Virtualization Operations Management Assessment Cisco Data Center Virtualization Planning and Design Service Cisco Services for Virtual Desktop Infrastructure (VDI) and Virtualization Experience Infrastructure (VXI) Cisco Unified Computing Virtualization Services Cisco Solution Support Services For more information, go to: http://www.cisco.com/en/US/netsol/ns340/ns394/ns224/services.html. Cisco Data Center Operations Enhancement Services Get the most out of a virtualized IT environment and improve operational efficiency. These services include: Operations Support Planning Management Solution Architecture Management Product Design and Implementation Management Solution Integration Operations Support Build Management Optimization Operations Audit Resiliency Analysis For more information, go to: http://www.cisco.com/en/US/services/collateral/ps2961/ ps10364/ps10366/dc-ops-enhancement-aag.pdf. Accelerate deployment of cloud solutions and applications. These services help shorten time to market, reduce costs, and quickly realize a return on investment. These services include: Cisco Cloud Enablement Services for Building IaaS Clouds Cisco Cloud Enablement Services for Adopting Clouds For more information, go to: http://www.cisco.com/web/services/enterprise-it-services/cloud-enablement-services/ index.html#~one.
6-45
6-45
Data Center
6-45
For More Information Product Ordering To place an order, visit http://www.cisco.com/en/US/ordering/index.shtml. Cisco Services Cisco Services can be ordered directly or through our global network of certified partners, visit: http://www.cisco.com/web/services/order-services/index.html End of Life and End of Sale Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, the replacement products that are available, and information about product support: http://www.cisco.com/en/US/products/prod_end_of_life.html. Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com, the Cisco ordering website at http:/ /w ww.cisco.com/ en/ US/ ordering/ index.shtml, or the URLs listed in the For More Information section for each product.
6-7
Segmented and redundant out-of-band provisioning and management paths Virtualization of the management plane Integrated diagnostics and protocol decoding with an embedded control-plane packet analyzer Upgradable architecture Fully decoupled control plane and data plane with no software forwarding through the supervisor Distributed forwarding architecture, allowing independent upgrades of the supervisor and fabric Superior operating efficiency with dedicated out-of-band management processor for lights-out management Supervisor 2E Module With two quad-core processors, the Supervisor 2E Module delivers higher feature scalability and faster control-plane processing, making it ideal for medium to large data center deployments. Highlights include: Four times the CPU performance of the Supervisor 1 Module Increased scalability for features such as Virtual Device Context (VDC), Fabric Extender (FEX), and Virtual Route Forwarding (VRF) FCoE support for F2-Series modules Supervisor 2 Module With a quad-core processor, the Supervisor 2 Module delivers faster control-plane processing, making it ideal for small- to medium-sized data center deployments. Highlights include: Twice the CPU performance of the Supervisor 1 Fibre Channel over Ethernet (FCoE) support for Cisco Nexus 7000 F2-Series modules Supervisor 1 Module With a dual-core processor, the Supervisor 1 Module delivers faster control-plane processing, making it ideal for small-size data center deployments. Cisco Nexus 7000 I/ O Modules Cisco Nexus 7000 M2-Series 100 Gigabit Ethernet Module with XL Option The second-generation M2-Series module delivers high-performance full-feature Layer 2 and Layer 3 functions: Two 100 Gigabit Ethernet line-rate ports with 120 Mpps and 200 Gbps of throughput Up to 32 wire-speed 100 Gigabit Ethernet ports per 7018 chassis Comprehensive Layer 2 and Layer 3 forwarding and Multiprotocol Label Switching (MPLS) and IPv4 and IPv6 support Large Forwarding Information Base (FIB) table size supporting up to 1 million IPv4 routes Cisco Nexus 7000 M2-Series 40 Gigabit Ethernet Module with XL Option The second-generation M2-Series module delivers high-performance full-feature Layer 2 and Layer 3 functions: Six 40 Gigabit Ethernet line-rate ports with 120 Mpps and 240 Gbps of throughput Up to 96 wire-speed 40 Gigabit Ethernet ports per chassis Comprehensive Layer 2 and Layer 3 forwarding and MPLS and IPv4 and IPv6 support Large FIB table size supporting up to 1 million IPv4 routes Cisco Nexus 7000 M2-Series 24-Port 10 Gigabit Ethernet with XL Option Module The second-generation M2-Series module delivers high-performance full-feature Layer 2 and Layer 3 functions: Twenty-four 10 Gigabit Ethernet ports (Small Form-Factor Pluggable Plus [SFP+] optics) line-rate ports with 120 Mpps for IPv4 and 60 Mpps for IPv6 and 240 Gbps of throughput Up to 384 nonblocking 10 Gigabit Ethernet ports per chassis Comprehensive Layer 2 and Layer 3 forwarding functions; full-featured module with MPLS, IPv4 and IPv6, and Cisco Overlay Transport Virtualization (OTV) support Support for Cisco Nexus 2000 Fabric Extenders for high-density 1 and 10 Gigabit Ethernet deployment and simplified point of management Cisco Nexus 7000 M1-Series 8-Port 10 Gigabit Ethernet Module with XL Option Full support for Layer 2 and Layer 3 IPv4 and IPv6 protocols, NetFlow, and MPLS XL mode, which enables larger forwarding table (up to 1 million routes) for increased scalability Wire speed on all ports, with 120 million packets per second (mpps) on Layer 2 and 80 Gbps on Layer 3 Flexibility to run in non-XL or XL mode without requiring a hardware change or upgrade Powerful security capabilities through hardware-integrated support for Cisco TrustSec security Cisco Nexus 7000 M1-Series 32-Port 10 Gigabit Ethernet Module with XL Options Full support for Layer 2 and Layer 3 IPv4 and IPv6 protocols, NetFlow, and MPLS XL mode, which enables larger forwarding table (up to 1 million routes) for increased scalability
Chapter 6: Data Center 6-9
Data Center
Flexibility to run in non-XL or XL mode without requiring a hardware change or upgrade Downstream connection to Cisco Nexus 2224TP, 2248TP, or 2232PP 10 Gigabit Ethernet Fabric Extender, offering a cost-effective, scalable server connectivity solution Powerful security capabilities through hardware-integrated support for Cisco TrustSec security Cisco Nexus 7000 M1-Series 48-Port Gigabit Ethernet Modules Full support for Layer 2 and Layer 3 IPv4 and IPv6 protocols, NetFlow, and MPLS Excellent for access-layer connectivity, delivering a solution with high density, high performance, and continuous operation Interface flexibility through support for 10/ 100/ 1000 RJ-45 connectivity or fiber (SFP) connectivity Highly scalable solution with up to 768 ports of Gigabit Ethernet on the Cisco Nexus 7000 18-Slot Switch 60 mpps of Layer 2 and Layer 3 IPv4 unicast forwarding Cisco Nexus 7000 Series F2-Series 48-Port 1 and 10 Gigabit Ethernet Module (SFP+) Layer 2 and Layer 3 forwarding with 720 mpps and up to 480 Gbps of data throughput, respectively Interface flexibility through support for 1 and 10 Gigabit Ethernet on a per-port basis in both SFP and SFP+ media options Support for Cisco Nexus 2000 Fabric Extender, offering a cost-effective, scalable server connectivity solution LAN and SAN convergence through support for FCoE and IEEE Data Center Bridging (DCB) technologies Highly scalable Layer 2 networks with Cisco FabricPath Cisco Nexus 7000 Series Enhanced F2-Series 48-Port 1 and 10 Gigabit Ethernet Module (SFP+) Layer 2 and Layer 3 forwarding with 720 mpps and up to 480 Gbps of data throughput, respectively Interface flexibility through support for 1 and 10 Gigabit Ethernet on a per-port basis in both SFP and SFP+ media options Support for Cisco Nexus 2000 Fabric Extender, offering a cost-effective, scalable server connectivity solution LAN and SAN convergence through support for FCoE and IEEE DCB technologies Highly scalable Layer 2 networks with Cisco FabricPath Support for IEEE 802.1az linksec encryption at line rate on a subset of port Same virtual device context (VDC) interoperability support with M-Series I/ O modules Cisco Nexus 7000 Series Enhanced F2-Series 48-Port 1 and 10 GBASE-T Ethernet Module (RJ-45) Layer 2 and Layer 3 forwarding with 720 mpps and up to 480 Gbps of data throughput, respectively Dual speed for gradual migration to 10 Gigabit Ethernet server access through support for 1 and 10 Gigabit Ethernet on a per-port basis Low power consumption with approximately 8.5W per port in a typical configuration Support for IEEE 802.3az Energy Efficient Ethernet, which reduces power consumption in response to changes in network demand Support for IEEE 802.1az Linksec encryption at line rate on a subset of port Highly scalable Layer 2 networks with Cisco FabricPath Same VDC interoperability support with M-Series I/ O modules
Specifications
Feature Slots 1 Gigabit Ethernet Density 10 GbE Density 40/ 100 GbE Port Density N7K-C7004 4 96 96 12/4 N7K-C7009 9 336 336 42/14 N7K-C7010 10 384 384 48/16 N7K-C7018 18 768 768 96/32
Cisco Nexus 7000 Series Supervisor 2E, Includes External 32GB Flash (and Spare)
6-10
N7K-SUP2 N7K-SUP1 N7K-F248XP-25E N7K-F248XT-25E N7K-F248XP-25 N7K-F132XP-15 N7K-M108X2-12L N7K-M108X2-12L N7K-M148GT-11 N7K-M148GS-11 N7K-M148GS-11L N7K-M148GT-11L N7K-M132XP-12L N7K-M224XP-23L N7K-M206FQ-23L N7K-M202CF-22L
Cisco Nexus 7000 Series Supervisor 2, Includes External 12GB Flash (and Spare)
Cisco Nexus 7000 Series Supervisor Module, Includes External 8 GB flash Enhanced F2-Series 48-Port 1 and 10 Gigabit Ethernet Module (SFP+) Enhanced F2-Series 48-Port 1 and 10GBASE-T Ethernet Module (RJ45) F2-Series 48 Port 1G/ 10G Ethernet Module, SFP/ SFP+ F2-Series 32 Port 1G/ 10G Ethernet Module, SFP/ SFP+ (and Spare) M1-Series 8-Port 10 Gigabit Ethernet Module with XL Option (requires X2) M1-Series 32-Port 10 GB Ethernet Module with 80 Gbps Fabric (Requires SFP+ Optic Module) M1-Series 48-Port 10/ 100/ 1000 Ethernet Module M1-Series 48-Port Gigabit Ethernet Module (SFP) M1-Series 48-port Gigabit Ethernet Module with XL Option (SFP Optics) M1-Series 48-port 10/ 100/ 1000 Ethernet Module with XL Option (RJ45) M1-Series 32 Port 10GBE with XL Option, 80 G Fabric (requires SFP+ Optics Module) M2-Series 24 Port 10GE SFP+ Module with XL Option M2-Series 6 Port 40GE QSFP Module with XL Option M2-Series 2 Port 100GE CFP Module with XL Option
Data Center
6-11
Specifications
Feature Switching Fabric (Gbps) Packets per Second (Mpps) Expansion Slots Nexus 2000 Fabric Extender System (FEX) Fiber Channel Ports Fiber Channel over Ethernet ports N5KC5548P-FA 960 714.2 1 Up to 24 FEX N5KC5548UP-FA 960 714.2 1 Up to 24 FEX N5KC5596UP-FA 1.92Tbps 1428Mpps 3 Up to 24 FEX N5KC5596T-FA 1.92Tbps 1428Mpps 3 Up to 24 FEX N5KC5010P-BF 520 Gbps 386.9 mpps 1 Up to 12 FEX N5KC5020P-BF 1.04 Tbps 773.8 2 Up to 12 FEX
16 48
48 48
96 96
64 64
8 26
16 52
6-12
Data Center
6-13
Cisco Nexus 1000V Series Switches and Nexus 1100 Virtual Services Appliance
Cisco Nexus 1000V Series Switches are virtual software switches that help ensure secure network connectivity for all the virtual machines in the data center. The solution is based on the IEEE 802.1Q standard and is integrated with VMware vSphere. Cisco Nexus 1000V Series Switches deliver highly scalable and secure multitenant services by adding virtualization intelligence to the data center network. Cisco Nexus 1000V Series Switches consist of two components: Virtual Ethernet module (VEM), a software-based switch embedded in the VMware hypervisor Virtual supervisor module (VSM), which manages networking policies and quality of service (QoS) for virtual machines in concert with the VEM The Cisco Nexus 1000V Series can optimize the use of Layer 4 through 7 services in a virtual machine environment through Cisco vPath architecture services. The Cisco Nexus 1100 Series Virtual Service Appliances (VSA) are dedicated appliances for running the VSM, offloading application servers and providing a management appliance for virtual network policies to the network administration team. The Cisco Nexus 1100 also runs virtual services, such as the Virtual Security Gateway (VSG), virtual Prime Network Analysis Module (NAM), and DCNM.
Main Benefits
Simplified Operations Implements a single point of management from the access layer parent switches, Cisco Nexus 5000 and Cisco Nexus 7000 Series Switches Consolidates multiple 1 Gigabit Ethernet adapters with a 10 Gigabit Ethernet adapter Reduces cabling, network interface cards (NICs), power consumption, and operating expenses Enables partitioning of the 10 Gigabit Ethernet server adapter or switch into multiple connections (virtual network interface cards [vNICs] or virtual line cards) Provides dedicated network bandwidth to individual applications or virtual machines Architectural Flexibility Offers common, scalable, and adaptive architecture across data center racks and points of delivery (PoD) Supports various server options, connectivity options, physical topologies, and evolving needs Offers choice of parent switches and adapter vendors, to work across Cisco platforms and third-party architectures Scalability Homogeneous, consistent policies across large number of ports More than 1500 1 Gigabit Ethernet ports, more than 1000 10 Gigabit Ethernet physical ports, and more virtual ports managed from a single access parent switch Scalable Gigabit and 10 Gigabit Ethernet server access, with no reliance on Spanning Tree Protocol Low predictable latency at scale
Data Center
Specifications
Feature Fabric extender host interfaces Fabric extender host interfaces type Fabric extender fabric interfaces Fabric speed Cisco Nexus 2224TP 24 Cisco Nexus 2248TP 48 Cisco Nexus 2248TP-E 48 Cisco Nexus 2232PP 32 Cisco Nexus 2232TM 32 1/10GBASE-T ports: RJ-45 connectors Uplink module: 8 SFP+ (N2KM2800P) 80 Gbps in each direction (160 Gbps full duplex) 4:1 Hardware forwarding at 560 Gbps or 595 mpps Cisco Nexus 5000 Series
100BASE-T/ 100BASE-T/ 100BASE-T/ 1/10 Gigabit 1000BASE-T ports: 1000BASE-T ports: 1000BASE-T ports: Ethernet ports RJ-45 connectors RJ-45 connectors RJ-45 connectors SFP/SFP 2 4 4 8
20 Gbps in each direction (40 Gbps full duplex) Hardware forwarding at 88 Gbps or 65 mpps Cisco Nexus 5000 Series Cisco Nexus 7000 Series
40 Gbps in each direction (80 Gbps full duplex) 1.2:1 Hardware forwarding at 176 Gbps or 131 mpps Cisco Nexus 5000 Series Cisco Nexus 7000 Series No
40 Gbps in each direction (80 Gbps full duplex) 1.2:1 Hardware forwarding at 176 Gbps or 131 mpps Cisco Nexus 5000 Series
80 Gbps in each direction (160 Gbps full duplex) 4:1 Hardware forwarding at 560 Gbps or 595 mpps Cisco Nexus 5000 Series Cisco Nexus 7000 Series
FCoE support
No
No
Yes
No
Nexus 2000 Series Chassis with FET N2K-C2224TF N2K-C2248TF N2K-C2248TF-E N2K-C2232PF N2K-C2232TF N2K-C2232TF-E
6-16
Cisco Nexus 2000 Series 1GE Fabric Extender, 2 AC PS, 1 Fan Module (Standard Airflow), 24x100/ 1000Base-T + 2x10GE (includes 4Fabric Extender Transceivers) Cisco Nexus 2000 Series 1GE Fabric Extender, 2 AC PS, 1 Fan Module (Standard Airflow), 48x100/ 1000Base-T + 4x10GE (includes 8Fabric Extender Transceivers) Cisco Nexus 2000 Series 10GE Fabric Extender, 2 AC PS, 1 Fan Module, 32x1/ 10GE (req SFP/ SFP+) + 8x10GE (includes 16 Fabric Extender Transceivers) Cisco Nexus 2000 Series 10GBASE-T Fabric Extender, 2 AC PS, 1 Fan Module (Standard Airflow), 32x1/ 10GBase-T + 8x10GE Module (includes 16 Fabric Extender Transceivers)
Data Center
Improves network security by containing VLAN proliferation Optimizes network use by reducing the number of broadcast domains Boosts application performance by offloading virtual machine switching from the host CPU to the parent switch application-specific integrated circuits (ASICs) Cisco Data Center VM-FEX is supported on Red Hat Kernel-Based Virtual Machine (KVM) and VMware ESX hypervisors. Cisco Data Center VM-FEX supports live migration and VMware vMotion.
Cisco MDS 9513 Multilayer Director The Cisco MDS 9513 Multilayer Director addresses the stringent requirements of large data center storage environments: uncompromising high availability, security, scalability, ease of management, and transparent integration of new technologies for extremely flexible data center SAN solutions. Compatible with first-, second-, and third-generation Cisco MDS 9000 Family switching modules, the Cisco MDS 9513 provides advanced functions and outstanding investment protection, allowing the use of any Cisco MDS 9000 Family switching module in this highly scalable system. The Cisco MDS 9513 supports modular, multilayer, multiprotocol, highly available, dual Cisco MDS 9513 Supervisor 2 modules and 11 module slots (14 rack units [14RU]): Maximum of 528 1-, 2-, 4-, or 8-Gbps Fibre Channel ports per chassis Maximum of 44 10-Gbps Fibre Channel ports per chassis Maximum of 60 Small Computer System Interface over IP (iSCSI) and Fibre Channel over IP (FCIP) ports per chassis Thirteen available slots Support for 8-Gbps Fibre Channel: 24-, 48-, and four 44-port 8-Gbps Fibre Channel switching modules Support for 4-Gbps Fibre Channel: 12-, 24-, and 48-port 4-Gbps Fibre Channel switching modules Support for IP and storage services: 18 ports of 4 Gbps FibreChannel (18/ 4) with 4 1-Gbps Ethernet IP storage-port multiservice modules and 16-port storage services node Support for 10-Gbps Fibre Channel: 4-port 10-Gbps Fibre Channel switching module Support for Fibre Channel over Ethernet (FCoE): 10-Gbps 8-Port FCoE module Cisco MDS 9509 Multilayer Director The Cisco MDS 9509 supports up to 336 ports of 1-, 2-, 4-, 8-, and 10-Gbps Fibre Channel connectivity and is a powerful director-class SAN switch offering industry-leading availability, scalability, and security. The Cisco MDS 9509 Multilayer Director comes with two redundant Cisco MDS 9500 Supervisor 2 modules preinstalled, and it layers a comprehensive set of intelligent features onto a high-performance, protocolindependent switch fabric to meet the needs of large data center storage environments: Maximum of 336 1-, 2-, 4-, or 8-Gbps Fibre Channel ports per chassis Maximum of 28 10-Gbps Fibre Channel ports per chassis Maximum of 48 iSCSI and FCIP ports per chassis Nine available slots 1-, 2-, and 4-, and 10-Gbps Fibre Channel switching modules Advanced management tools for overall low TCO Backward-compatible for investment protection Support for FCoE: 10-Gbps 8-port FCoE module Unified SAN management Cisco MDS 9506 Multilayer Director The Cisco MDS 9509 Multilayer Director supports up to 336 ports of 1-, 2-, 4-, 8-, and 10-Gbps Fibre Channel connectivity and is a powerful director-class SAN switch offering industry-leading availability, scalability, and security. The Cisco MDS 9509 Multilayer Director comes with two redundant Cisco MDS 9500 Supervisor 2 modules preinstalled, and it layers a comprehensive set of intelligent features onto a high-performance, protocol-independent switch fabric to meet the needs of large data center storage environments: Maximum of 192 1-, 2-, 4- or 8-Gbps Fibre Channel ports per chassis Maximum of 16 10-Gbps Fibre Channel ports per chassis Maximum of 24 iSCSI and FCIP ports per chassis Six available slots 1-, 2-, 4-, 8- and 10-Gbps Fibre Channel switching Advanced management tools for overall low TCO Backward-compatible for investment protection Support for FCoE: 10-Gbps 8-port FCoE module Unified SAN management
Data Center
DS-X9112 DS-X9124 DS-X9148 DS-X9248-48K9 DS-X9248-96K9 DS-X9224-96K9 DS-X9304-18K9 DS-X9304-18FK9 DS-X9308-SMIP DS-SFP-FC-2G-SW DS-SFP-FC-2G-LW DS-SFP-FC4G-SW DS-SFP-FC4G-MR DS-SFP-FC4G-LW DS-SFP-FCGE-SW DS-SFP-FCGE-LW DS-X2-FC10G-SR DS-X2-FC10G-LW DS-SFP-GE-T MEM-MDS-FLD512M=
Cisco MDS 9000 12-port 1/ 2/ 4-Gbps FC Module Cisco MDS 9000 24-port 1/ 2/ 4-Gbps FC Module Cisco MDS 9000 48-port 1/ 2/ 4-Gbps FC Module 4/ 44-Port Host-Optimized 8-Gbps FC Module 48-Port 8-Gbps Fibre Channel Switching Module 24-Port 8-Gbps Fibre Channel Switching Module Cisco MDS 9000 4-port GE and 18-port FC Module Cisco MDS 9000 4-port GE and 18-port FC FIPS Module Cisco MDS 9000 8-port 1 GE IP Storage Services Module 1/ 2-Gbps Fibre Channel-SW SFP, LC 1/ 2-Gbps Fibre Channel-LW SFP, LC 1/ 2/ 4-Gbps Fibre Channel-Shortwave SFP, LC 1/ 2/ 4-Gbps Fibre Channel-Longwave SFP, LC (4km reach) 1/ 2/ 4-Gbps Fibre Channel-Longwave SFP, LC (10km reach) 1-Gbps Ethernet and 2-Gbps Fibre Channel-SW, SFP, LC 1-Gbps Ethernet and 2-Gbps Fibre Channel-LW, SFP, LC 10-Gbps Fibre Channel-Shortwave, SC 10-Gbps Fibre Channel-Longwave, SC Gigabit Ethernet Copper, SFP, RJ-45 Cisco MDS 9500 Sup Compact Flash Disk, 512 MB, Spare
6-20
Data Center
Data Center
6-23
Unified Computing
Cisco Unified Computing System
The Cisco Unified Computing System (Cisco UCS) is a next-generation data center platform that unites computing, networking, storage access, and virtualization resources into a cohesive system designed to reduce total cost of ownership (TCO) and increase business agility. The system integrates a low-latency, lossless 10 Gigabit Ethernet unified network fabric with enterprise-class, x86-architecture servers. The system is an integrated, scalable, multichassis platform in which all resources participate in a unified management domain. Cisco UCS is managed as a single system whether it has 1 server or 160 servers with up to thousands of virtual machines; this approach decouples scale from complexity. Cisco UCS rack and blade servers accelerate the delivery of new services simply, reliably, and securely through end-to-end provisioning and migration support for both virtualized and nonvirtualized systems. Cisco UCS is designed to deliver: Programmable infrastructure that transforms the physical infrastructure into a pool of resources that can be provisioned to support any workload in minutes Unified, model-based management that configures and provisions servers quickly and accurately, improving business agility and eliminating a major source of errors Cisco Fabric Extender technology, which extends fabric interconnect ports directly to blades and rack servers and individual virtual machines, eliminating unnecessary switches and management points Cisco Unified Fabric, which integrates the computing resources of the system into a single network that supports all I/ O in the system, eliminating switches, ports, host bus adapters (HBAs), and network interface cards (NICs) and their purchase, power, cooling, and management costs Reduced TCO at the platform, site and at organizational levels Increased IT staff productivity and business agility through just-in-time provisioning and mobility support for both virtualized and nonvirtualized environments A transparent integrated system that is managed, serviced, and tested as a whole Scalability through a design for up to 160 discrete servers and thousands of virtual machines, and the capability to scale I/ O bandwidth to match demand Industry standards supported by a partner ecosystem of industry leaders Cisco UCS Product Family of Products Cisco UCS is built from the following components: Cisco 1RU, 20-port Cisco UCS 6100, and 2RU, 40-port Cisco UCS 6200 Series Fabric Interconnects offer line-rate, low-latency, lossless 10 Gigabit Ethernet and Fibre Channel over Ethernet (FCoE) that: Reduce barriers to deploying a fully virtualized environment for data center implementations
6-24 Chapter 6: Data Center
Provide both the LAN and storage area network (SAN) connectivity for all blades and racks within their domain Virtual machineoptimized services with support for VM-FEX technologies Centralize unified management with Cisco UCS Manager software Cisco 1RU, 48-port, UCS 6148, and 2RU, 96-port UCS 6296 Series Fabric Interconnects offer line-rate, low-latency, lossless 10 Gigabit Ethernet and Fibre Channel over Ethernet (FCoE) ports: Reduce barriers to deploying a fully virtualized environment for data center implementations Provide both the LAN and SAN connectivity for all blades and racks within their domain Centralize unified management with Cisco UCS Manager software Virtual-machine-optimized services with support for Cisco Virtual Machine Fabric Extender (VM-FEX) technologies Efficient cooling and serviceability with front-to-back cooling, redundant front-plug fans and power supplies, and rear cabling Expansion module options that provide Fibre Channel and 10 Gigabit Ethernet uplink connectivity Cisco UCS 5100 Series Blade Server Chassis support up to eight half-width blade servers or four fullwidth blade servers and up to two fabric extenders in a 6-rack-unit (6RU) enclosure without the need for additional management, SAN switching, or LAN switching modules. Cisco UCS 2100, Cisco UCS 2204XP, and Cisco UCS 2208XP Series Fabric Extenders bring unified fabric into the blade-server chassis, providing up to four or eight 10-Gbps connections each between blade servers and the fabric interconnect and simplifying diagnostics, cabling, and management. Cisco UCS B-Series Blade Servers offer a variety of computing and memory choices to populate the Cisco UCS 5100 Series Blade Server chassis. The Cisco UCS B-Series Blade Servers span both 2- and 4-socket servers based on Intel Xeon processor E5 and E7 product families. Nearly all workloads are accommodated with a full range of hardware choice, including the half-width Cisco UCS B200 M3 Blade Server with up to 768 GB of memory and up to 80 Gbs I/ O bandwidth, the large memory footprint of the half-width Cisco UCS B230 M2 Blade Server with up to 512 GB of memory, and the 4-socket Cisco UCS B440 M2 High-Performance Blade Server supporting up to 40 processing cores or the 4-socket Cisco UCS B420 M3 Blade Server with up to 1.5 TB of memory and up to 160 Gbs I/ O bandwidth. Cisco UCS C-Series Rack Servers offer another entry point to Cisco UCS. In addition, Cisco UCS C-Series rack servers can be deployed as standalone computing devices in traditional environments while providing many innovative features such as enterprise-class reliability, availability, and serviceability (RAS), Cisco Extended Memory technology, and Cisco Adapter Fabric Extender (Adapter FEX) and Data Center Virtual Machine Fabric Extender (VM-FEX) technologies. The Cisco UCS C-Series accommodates nearly all workloads, ranging from small infrastructure applications to large memory- and CPU-intensive databases and application servers. Cisco UCS Network Adapters are offered in a mezzanine-card and PCIe form factors. Three types of adapters offer a range of options to meet application requirements, including adapters optimized for virtualization, compatibility with existing driver stacks, or efficient, high-performance Ethernet.
Data Center
6-26
N20-B6625-2 N20-B6625-1
Cisco UCS B250 M2 Blade Server Cisco UCS B200 M2 Blade Server w/ o CPU, memory, HDD, mezzanine
Data Center
Specifications
Feature Ports DNS requests per second Network Management Cisco ACE GSS (Global Site Selector) 4400 Series Two 10/ 100/ 1000 Fast Ethernet autosensing, one console port Up to 30,000, depending on configuration Console port-CLI; Access to system through Telnet; Secure copy (SCP) or FTP; GUI-Secure HTTP (HTTPS) for Internet Explorer and Netscape Navigator; Network management MIBs; Read-only monitoring of network and device status, including RFC 1213; (MIB-II) and RFC 1514 (HOST-RESOURCES-MIB) One 80-GB hard drive; Software image SF-GSS-V1.3-K9; 2 GB RAM; Pentium CPU One-rack unit size chassis; 1 GB RAM; Prescott 3.2-GHz CPU Integrated AC power (autosensing 110V/ 60Hz)
Data Center
6-29
6-30
WAAS-CM-VIRT-K9
Data Center
6-31
6-32
Data Center
ASA5585-S60P60-K9
ASA5585S60-10K-K9
Virtual Security Gateway & Network Mgmt Center on a CD (no licenses): Initial Order of Base Image and Licenses (Paper Delivery of Licenses) Incremental Order of Licenses
6-34
Data Center
6-35
L-ASA1000V-16-PR= (eDelivery) or ASA1000V-16-PR= (Paper delivery) L-ASA1000V-32-PR= (eDelivery) or ASA1000V-32-PR= (Paper delivery) ASA1000V-K9-CD=
6-36
Troubleshooting and Health and Performance Monitoring allows configuration of alerts to predefined thresholds and event management and enables administrators to proactively monitor the security environment, leading to operational efficiency, visibility, and lower time to resolution. Northbound application programming interfaces (APIs) enable representational state transfers for the secure sharing of essential data with third-party network services such as compliance and advanced security analysis systems to help streamline security operations and adhere to compliance requirements. Policy and object management enables reuse of security rules and objects, and enhances the ability to monitor security threats from throughout the deployment, minimizing the potential for errors and maximizing efficiency. These appliances support role-based access control (RBAC) and an approval framework for proposing and integrating changes. The appliances provide improved visibility into security devices, including custom reports that can be created using advanced filters and reports that can be viewed on demand and scheduled for email delivery.
Data Center
Data Center
Much more easily and quickly than with template- and script-based systems These containers: Dramatically reduce network operational costs and potential misconfiguration Optimize capacity use and accelerate service delivery Cisco Network Services Manager offers a flexible, policy-directed approach to managing and controlling cloud computing network services. Through a configuration user interface, Cisco Network Services Manager helps administrators dynamically define and control an array of behaviors in their cloud computing environment, including: Creating different levels of service capability or service tiers for tenant use Defining the capabilities and resources available in each tier Structuring a system of containment tailored to tenant application and deployment model needs
L-NSM-5.0-ADD-RTU
Network Administrator The network administrator can author and manage port profiles and Cisco Nexus 1000V virtual switches through the programmatic interface with VMware Virtual Center. Server Administrator The server administrator can select the appropriate port profile in VMware Virtual Center to instantiate virtual machine XML API support, facilitating coordination with third-party tools to provision and manage Cisco VSG.
Data Center
6-41
Offering an exceptional level of visibility and control through a single pane for Cisco Nexus switches, the Cisco MDS 9000 Family, and Cisco UCS products, Cisco DCNM is the solution Cisco recommends for operating mission-critical data centers.
6-42
Data Center
FlexPod
FlexPod is a prevalidated data center solution built on a flexible, shared infrastructure that can scale easily; be optimized for a variety of mixed application workloads; or be configured for virtual desktop or server infrastructure, secure multitenancy, or cloud environments. FlexPod is a predesigned, base configuration built on leading computing, networking, storage, and infrastructure software components from Cisco, NetApp and VMware. It provides an excellent virtualized data center solution through: Validated technologies from three industry leaders in computing, storage, networking, and server virtualization A single platform, built from unified computing, fabric, and storage technologies, plus the most popular and trusted software virtualization platform Integrated components that enable you to centrally manage all your infrastructure pools An open design management framework that integrates with your existing third-party infrastructure management solutions
6-43
FlexPod can scale up for greater performance and capacity or scale out for environments that need consistent, multiple deployments. Customers can size and optimize FlexPod to accommodate different use cases, including application workloads such as: Microsoft SQL Server Microsoft Exchange 2010 Microsoft SharePoint Virtual desktop infrastructure (VDI; VMware View) Secure multitenancy (SMT) environments
6-44
Data Center
6-45
6-46
7-4
7-5
7-6
Cisco Digital Media Players Cisco LCD Professional Series Displays Cisco Show and Share video sharing application
7-7
7-10
Video
7-11
Cisco Enterprise Content Delivery System (EDCS) Cisco Media Delivery Engine
7-13
7-17
Cisco Unified Communications Cisco TelePresence conferencing Cisco WebEx meeting applications Cisco Physical Security
7-1
This advanced media-processing appliance enables media sharing from any source to any type of endpoint. It offers postproduction capabilities that enable in-house video teams to perform many of the expensive processing tasks that are normally outsourced to video professionals. It includes an option for Cisco Pulse Video Analytics, which makes video more navigable and searchable with speaker identification and keyword tagging.
7-21
This modular, highly scalable media processing platform combines advanced media- 7-23 processing features with high performance and scalability to extend the reach of collaboration. It enables integration of collaboration tools, such as the WebEx application, and recording and streaming into meetings between diverse video endpoints. This low-cost entry and midlevel Cable Modem Termination System (CMTS) offers cable operators, multiunit businesses, and Internet service providers (ISPs) an excellent and cost-effective platform for the delivery of high-speed data, voice, and video services. This modular, standards-based communications-grade CMTS integrated router is ideal for high-growth broadband cable deployments. This router delivers the services, performance, scale, and carrier-class reliability that large cable operators and ISPs demand. This router delivers the services, performance, scale, and carrier-class reliability that large cable operators and ISPs demand. 7-24
Broadband Cable Cisco uBR7225 Series Universal Broadband Router Cisco uBR7246VXR Universal Broadband Router Cisco uBR10012 Universal Broadband Router Cisco uBR3x10 RF Switch Services Realize the full business value of your video technology investments faster with smart, personalized services from Cisco and our partners. For More Information Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. End-of-Life and End-of-Sale Information Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, what replacement products are available, and information about product support: http://www.cisco.com/en/US/products/prod_end_of_life.html. Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com, the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or reference the URL listed in the For More Information section of each product. 7-31
7-26
7-26
7-30
Video
Cisco Videoscape Portfolio
The Cisco Videoscape Media Suite lets service providers bring together content from pay TV, online, and on-demand sources. They can then combine content with social media, communications, and mobility to create a better than being there video experience for consumers. The Cisco Videoscape Suite consists of the following products: Origination Suite: This suite includes video receivers, encoders for ingestion and distribution ofvideo on demand (VoD) and live content (TV and Internet), conditional access systems PowerVu and ROSA, and the Cisco DCM Digital Content Manager Gateway Series. The ROSA Network Management System offers a comprehensive management solution capable of monitoring and controlling nearly all aspects of service management, network management, and element management of broadband networks. The Cisco DCM Series D9901 IP Video Gateway provides simultaneous transport of uncompressed standard-definition (SD), high-definition (HD), and third-generation high-definition (3G-HD) Serial Data Input (SDI) video, as well as compressed video using JPEG2000. At the transmitter site, the DCM IP video gateway enables SDI video to be carried over 1 or 10 Gigabit Ethernet. At the receiving site, the DCM IP video gateway converts the IP-encapsulated stream back to a baseband SDI video signal. Acquisition Suite: This suite includes Cisco Multiformat processor cards, a media processor, encapsulator, and transcode manager. The Cisco DCM Series Multiformat Processor Card (MFP card) adds highdensity, high-quality advanced processing of MPEG-2 and H.264 (AVC), HD and SD video, and audio to the DCM Series platform. The Cisco Media Processor Family provides best-in-class quality for live and real-time media such as live sports, 24-hour programming, web streaming, broadband TV, and IPTV. This affordable and ready-to-use solution offers the best possible streaming, award-winning quality, and professional, reliable results. The Cisco Media Encapsulator offers a remote management user interface
7-2 Chapter 7: Video and Broadband Cable
to allow the selection and processing of live multicast transport streams from the encoder to construct a live Adaptive Bit Rate (ABR) channel. The Cisco Transcode Manager is the automated way to expand the revenue potential of content delivered to any device. It is a high volume files based transcoding system that is scalable and automated and supports all popular streaming formats. Media Suite: This suite includes unified content management, catalog management, and offer and business management systems. It is a single unified content management system for all digital media types; it can be integrated with linear and on-demand third-party electronic-program-guide (EPG) catalogs, and it offers enhanced metadata presentation. The Offer and Business Management system enables packaging, monetizing, and publishing content through services and offers such as linear TV, VoD, catch-up TV, DVR, etc., and implements different business models such as subscription, pay-per-view, or ad support. It also includes support for discovery and recommendations that enable unified search across linear, on-demand, and DVR content from any screen, and integration with multiple third-party recommendation engines. Advertising Suite: This suite includes advertising-related management tools such as Profile Manager, Audience Measurement, Playlist Manager, and Ad Decision Manager, which allow addressable advertising down to device level; second-by-second measurement of viewing; creation of playlists for dynamic advertising insertion and replacement in linear and on-demand content; and management of the execution of addressable ads across screens and media formats, including preparation, trafficking, delivery, and decision request from multiple ad decision servers. Security Suite: This suite includes the worlds leading conditional access solution such as VideoGuard from NDS, now part of Cisco. In addition, Cisco PowerKEY and support for certain third-party conditional access and digital-rights-management (DRM) solutions are available. Also included is Security Shield, a consistent set of front-end interfaces that various Videoscape services can use when communicating between clients and server, optimized for the protection capabilities of the endpoint. Security Shield provides various authentication and encryption methods that allow usage of any communication protocols that use transitional or persistent connections. Video Distribution Suite (VDS): VDS consists of several server components related to distributing content such as the Origin Server (VDS-OS), Video Recorder (VDS-VR), Optimization Engine (VDS-OE), Service Manager and Service Broker (VDS-SM and VDS-SB), content-delivery-network (CDN) federation, VDS Internet and TV streaming servers (VDS-IS and VDS-TV), and Transparent Caching (VDS-TC), with tighter integration with the Cisco hardware such as the Cisco UCS data center solution and Cisco routers and switches. VDS-OS converts all incoming content into a common file that simplifies HTTP ABR and MPEG formatted distribution. VDS-VR recorder enables cloud-directed recording of live and time-shifted content. VDS-OE offloads Radio Access Network (RAN) and packet core traffic. VDS-SM provides realtime analytics, service provisioning, and diagnostics, whereas VDS-SB consists of a service selector per caching node and CDN interconnect capabilities required for CDN federation. VDS-TC optimizes unmanaged over-the-top (OTT) content from the network core to the edge. VDS-IS and VDS-TV delivers live and time-shifted content to managed devices such as set-top boxes or multiscreen gateways, from the Internet originated for CDN and Live TV sources, respectively. Videoscape Clients: Cisco provides a broad range of residential and multiscreen and media gateways, set-top boxes, and soft clients. The Cisco Videoscape 9800 Series Multiscreen Gateway expands the entertainment experience by transcoding and distributing IP video or QAM-based live, on-demand, online, and DVR video services to other devices within the home. The Cisco TES301 IP Managed Services Gateway is ideal for cable, telco, and wireless service providers seeking to expand the value of existing Internet services through new revenue-generating offerings. This application-centric gateway integrates voice, linear, and online video, High-Speed Data (HSD), mobility, and routing. The Cisco DRG 7000 Series IP Video Gateway is video-centric and enhances on-network IP video capabilities with services such as built-in, intelligent content caching to the edge. It is designed for cable service providers, incorporating DOCSIS 3.0 channel bonding, Multimedia over Coax Alliance (MoCA), and Digital Living Network Alliance (DLNA) standards. The next-generation IP set-top box solutions range from sophisticated HD IP set-top boxes that can distribute content more securely to next-generation HD models with digital video recording (DVR) options and whole home video capabilities, with optional digital video broadcasting (DVB) tuners for specific geographies. In addition, the Videoscape portfolio includes several NDS products that are now part of Cisco, such as the popular client middleware MediaHighway that brings broadcast, broadband, DVR, on-demand, and interactive services for enhanced user experience on low-end set-top boxes or high-end unified gateways; award-winning user interface Snowflake; and OpenRG, a residential gateway software. The Videoscape client software platform supports HTML5 engine, the application programming interface (API)/ Software Development Kit (SDK) for third-party applications and soft clients.
Video
In addition, Cisco Videoscape Clients include the following: Cisco Videoscape Multiscreen Gateways Cisco Videoscape Media Gateways Cisco Videoscape Set-Top Boxes Cisco Videoscape Soft Clients The future of TV and media entertainment is here, powered by the cloud. With the Cisco Videoscape solution, you can reinvent the TV experience for your customers and position your network as the essential provider of tomorrows immersive, ubiquitous media experiences.
Specifications
Feature Supported live streaming formats Cisco Digital Media Encoder 1100 Microsoft Windows Media 9 MPEG-4/H.264 Cisco Digital Media Encoder 2200 Microsoft Windows Media 9 MPEG-4/H.264 Product parameterSupported live-streaming formats for the DMM Live Event Manager (PC only) SpecificationMicrosoft Windows Media Adobe Flash (.flv) Microsoft Windows Media MPEG-4/H.264 2 composite; 2 S-Video; 2 SDI (SMPTE - 259M) Video with embedded audio inputs (AES/ EBU) 2 balanced stereo (XLR); 2 Unbalanced stereo (RCA); 2 digital audio (AES/ EBU) inputs through SDI inputs 2 10/100/1000 Mbps 100 GB 4 GB Dual AMD Opteron Quad Core, 2.2 GHz 2 USB 2.0 and VGA monitor 3.5 x 19 x 23 in. (8.89 x 48.26 x 58.42 cm) 48.62 lb. (19.05 kg) 110-220V; 50-60 Hz
Supported ondemand formats Video inputs Audio inputs Ethernet ports Hard disk space RAM Processor Additional ports Dimensions (H x W x D) Weight Power
Adobe Flash (.flv) Microsoft Windows Media MPEG-4/H.264 Composite; S-Video 1 balanced stereo (XLR3) Unbalanced stereo (RCA) 1 GB; 10/ 100 Mb 100 GB 1 GB Single 21.19-Ghz Intel Core 2 Duo CPU 2 USB 2.0 and VGA monitor 4.5 x 7.75 x 12 in. (11.43 x 19.67 x 30.48 cm) 7.5 lb. (3.41 kg) 110-220V; 50-60 Hz
Video
Specifications
Features Product compatibility Cisco Digital Media Manager Compatible with Cisco Application and Content Networking System (ACNS), the Cisco Wide Area Application Services (WAAS) Network Module, Cisco Show and Share and the Cisco Show and Share Reports tool, Cisco Digital Media Players, and Cisco Digital Media Encoders Web-based management Cisco Digital Media Manager Client Microsoft Windows Internet Explorer 7.0 or 8.0 recommended, or Firefox 3.6x required; Apple MacintoshSafari 2.0 minimum; Safari 2.0 or Firefox 1.5 through 3.x recommended
Software Upgrades and Add-Ons DMM Show and Share Module V5.2 Perpetual Software License, Spare DMM Digital Signs Module V5.2 Perpetual Software License, Spare DMM Show and Share Module Live Event Module Perpetual Software License Digital Media Manager Ver. 5.2 SNMP Module Perpetual Software License Cisco Digital Media Manager V5.2. Upgrade from V5.1 Digital Media Player V5-V5.2 Perpetual Software Upgrade Show and Share Module 5.2. Upgrade from V5.1 - Workgroup Show and Share Module 5.2. Upgrade from V5.1 - Enterprise Cisco Digital Media Manager, Feature License for Up To 10 DMPs
7-6
Cisco Digital Media Manager, Feature License for Up To 50 DMPs Cisco Digital Media Manager, Feature License for Up To 500 DMPs Cisco Digital Media Manager, Feature License for Up To 1000 DMPs
Video
7-7
Specifications
Feature Supported protocols Cisco Digital Media Player 4305G FTP and secure FTP (SFTP) HTTP and HTTPS User Datagram Protocol (UDP); Real-Time Transport Protocol (RTP) over Real-Time Streaming Transport Protocol (RTSP) MPEG Transport Stream (TS, TP, TRP, M2T, M2TS, and MTS) Cisco Digital Media Player 4310 FTP and Secure FTP (SFTP) HTTPS (for management interface) User Datagram Protocol (UDP) Real-Time Transport Protocol (RTP) over Real Time Streaming Protocol (RTSP) MPEG Transport Stream (TS, TP, TRP, M2T, M2TS, and MTS) ASF : WMV Video MPEG1 Video MPEG2: Main Profile at High Level Video MPEG4 Part 10 Baseline and Main profiles Video Windows Media 9 and VC-1 - VoD only Aspect ratio: 4:3 and 16:9 HD (up to 1080p at 16:9) progressive and interlace video resolution Video data rate up to 28 Mbps Internal Hardware Decoder delay configurable to < 1 sec Cisco Digital Media Player 4400G FTP and secure FTP (SFTP) HTTP and HTTPS User Datagram Protocol (UDP); Real-Time Transport Protocol (RTP) over Real-Time Streaming Transport Protocol (RTSP) MPEG Transport Stream (TS, TP, TRP, M2T, M2TS, and MTS); ASF; WMV Video MPEG 1 Video MPEG 2: Main Profile at High Level Video MPEG 4 part 10 Baseline and Main profiles; Video Windows Media 9 and VC-1 VoD only Aspect ratio: 4:3 and 16:9 HD (up to 1080P at 16:9) progressive and interlace video resolution Video data rate up to 28 Mbps Overall delay 13 sec Note: Please consult other Cisco documentation or your Cisco representative for exact audio codec, video codec, resolution, bit rate, and encapsulation combinations. Audio MPEG 1 Layers 1 and 2 mp3; MPEG 4 AAC Low Complexity AC-3 Audio data rate: 64320 kbps Note: Please consult other Cisco documentation or your Cisco representative for exact audio codec, video codec, resolution, bit rate, and encapsulation combinations. Transmitter Type and Maximum Supported Distance Infrared (IR), 15 ft. 4GB CF-card with endurance of 1,000,000 Write/ Erase Cycles for OS and application storage Ethernet copper 10/ 100 BASE-T, RCA Video, S-Video, Mini 3.5 mm Stereo Audio Jack, HDMI, and RS-232 and USB Cable Type* and Maximum Supported Length Composite/ RCA cable, 10 ft. HDMI 1.1**, 16 ft. S-Video, 10ft. USB 2.0 (2), 15 ft. SPDIF, 10 ft. * Cable quality can be a factor **An HDMI extender product can be used to extend the cable to 150 ft. Wireless Radio: 802.11 B/ G; Security protocols: WPA, WPA2, EAP+FST, and WEP
Video containers
Video codecs
Video MPEG 1 Video MPEG 2: Main Profile at High Level Video MPEG 4 part 2: Advanced Simple Profile at Level 5 Aspect ratio: 4:3 and 16:9 HD (up to 1080 at 16:9) progressive and interlace video resolution Video data rate up to 82 Mbps Overall delay 13 sec Note: Please consult other Cisco documentation or your Cisco representative for exact audio codec, video codec, resolution, bit rate, and encapsulation combinations. Audio MPEG 1 Layers 1 and 2 mp3; MPEG 4 AAC Low Complexity AC-3 Audio data rate: 64320 kbps Note: Please consult other Cisco documentation or your Cisco representative for exact audio codec, video codec, resolution, bit rate, and encapsulation combinations. Transmitter Type and Maximum Supported Distance Infrared (IR), 15 ft. 32 MB for OS 2 GB for internal storage Ethernet copper 10/ 100 BASE-T, RCA Video, S-Video, RCA Audio Left, RCA Audio Right, HDMI, and RS-232 and USB Cable Type* and Maximum Supported Length Composite/ RCA cable, 10 ft. HDMI 1.1**, 16 ft. S-Video, 10ft. * Cable quality can be a factor **An HDMI extender product can be used to extend the cable to 150 ft.
Audio codecs
Audio MPEG1 Layers 1 and 2 MP3 MPEG4 AAC Low Complexity AC-3 Audio data rate: 64-320 kbps
Remote control
Transmitter Type and Maximum Supported Distance Infrared (IR), 15 ft. 32 GB for local storage
Flash memory
Physical connectors
Ethernet copper 10/ 100 BASE-T, RCA Video, S-Video, Mini 3.5 mm Stereo Audio Jack, HDMI, and RS-232 Mini 3.5mm and USB Cable Type* and Maximum Supported Length HDMI 1.3, 16 ft. S-Video, 10ft. USB 2.0, 15 ft.
Wireless connectivity
7-8
Touchscreen support
Vendor: 3M Supported Systems: Touchscreen Sensor and Systems: 3M Micro Touch ClearTek II touch sensor 3M MicroTouch System SCT3250CX 3M Micro Touch Sensor SCT7650 3M MicroTouch System SCT3250SX 3M Micro Touch Capacitive TouchSense System 3M MicroTouch DST touch system Display Systems: 3M Micro Touch Display M1500SS (15 in.) 3M MicroTouch Display M1700SS (17 in.) 3M MicroTouch CT150 15-in. LCD Touch Monitor 3M MicroTouch ChassisTouch 17 in. LCD Touch Monitor Vendor: ELO Supported Systems: All Acoustic Pulse Recognition systems Vendor: Zytronics Supported Systems: Zybrid Screen systems Vendor: General Touch Supported Systems: All systems supported by the ST6001S controller Input voltage5V Input current3 ADC Power consumptionPeak: 12W; average: 5W Operating temperature41oF to 122oF (5 to 50C; Passed 500hour test of the uninterrupted video playback in 125.6oF (52oC) dry-heat environment Humidity20 to 80% noncondensing Video inMPEG 1, MPEG 2, and MPEG 4 part 2 Audio in: Transport stream: Up to 6 audio packet IDs (part numbers) in transport stream Video out: Analog video (composite, S-Video) Digital video (HDMI) Audio out: Analog unbalanced audio (mono and stereo) MPEG 1 Layer 2: Selected; packet IDs in transport stream (1 of 6) MPEG 4 AAC and AC-3 Selected elementary audio (1 of 6) Power consumption: 12W Input voltage:12V Input current3 ADC Power consumptionPeak: 30W; average: 15W Operating temperature41oF to 104oF (5 to 50oC) Passed 500-hour test of the uninterrupted video playback in 125.6oF (52oC) dry-heat environment Humidity20 to 80% noncondensing Video in: MPEG 1, MPEG 2, and MPEG 4 part 10, Windows Media 9, and VC-1 Audio in: Transport stream: Up to 6 audio packet IDs (part numbers) in transport stream mp3 Video out: Analog video (composite, S-Video) Digital video (HDMI 1:1) Audio out: Analog unbalanced audio (mono and stereo); MPEG 1 Layer 2: Selected; packet IDs in transport stream (1 of 6) MPEG 4 AAC and AC-3 Selected elementary audio (1 of 6)
Power
Video
Environmental
Functional
7-9
DMP-RM-K9=
Specifications
Feature Diagonal Size Native Resolution Resolutions Supported Brightness Contrast Ratio Viewing Angle (H/ V) Response Time (G-to-G) Video Inputs Cisco LCD 100L Pro 32N 32 inches 1366 x 768 (WXGA) 1920 x 1080 (HDMI) 180p, 1080i, 720p 500 cd/m2 3000:1 (Dynamic Contrast Ratio) 178/178 degrees 8 ms HDMI, VGA, and DVI (composite, component, and S-video also exist) AC 100 - 240 V, 50/ 60 Hz 200 x 200 mm 31.7/39.2 Kg Cisco LCD 110L PRO 42 42 inches 1080p (1920*1080) 1080p, 1080i, 720p 700 cd/m2 1200:1 178/178 degrees 10 ms HDMI, RGB, Composite, and Component 100~240V, 50/ 60 Hz 600 x 400 mm 18.64kg/21.87kg Cisco LCD 110L PRO 47 47 inches 1080p (1920*1080) 1080p, 1080i, 720p 700 cd/m2 1300:1 178/178 degrees 10 ms HDMI/DVI, RGB, Composite, and Component 100~240V, 50/ 60 Hz 800 x 400 mm 22.2kg/29.6kg Cisco LCD 110Q PRO 55 55 inches 1080p (1920*1080) 1080p, 1080i, 720p 700 cd/m2 1300:1 178/178 degrees 10 ms HDMI, DVI, RGB, Composite, S-Video, and Component 100~240V, 50/60Hz 400 x 400mm 37.6kg/47.0kg
Video
Creating: Capture of video directly with Cisco Show and Share application: You do not need to install any special software on your PC or Macintosh. The Cisco Show and Share application works with Adobe Flash player to support a wide variety of built-in and USB-based cameras and microphones that you can use to capture video. Assigned authors: Cisco Show and Share systems administrators can define by username those who can capture and upload content. Organizations can provide initial access to a small set of content authors and add additional authors as needed. Publishing: Content viewing security: Publishers can define who can watch what for each video for secure content viewing needs. Optional viewer collaborationcommenting, rating, and tagging: Publishers can choose per title what type of collaboration functions are available, such as commenting, rating, and tagging. Browsing and search: Public and private categories: Viewers can browse both private and public categories based on their login credentials. Keyword tags: Viewers can use popular keyword tags that are displayed to help them find content. Viewing and sharing: Video playback controls: Viewers have complete playback controls for on-demand content, including start and stop controls. Commenting options: Authors can optionally provide the ability for viewers to leave multiparty comments and collaborate with other viewers with two levels of commentary; page comments can be created for general commentary, and timeline comments can be placed at any point in the video timeline for topical discussions. Viewers can report abusive comment language, and systems administrators can search for and delete offensive comments.
Chapter 7: Video and Broadband Cable 7-11
Live webcasting: Managed webcast: Live webcast authors can set up and produce real-time streaming webcasts for events such as executive presentations, conferences, teacher lectures, and so on. View questions: Viewers can optionally post text-based questions to the live webcast authors at any time during an event. Reporting: Systemwide reporting: Systems administrators have access to a wide variety of activity and content usage reports across the entire Cisco Show and Share content catalog, including sitewide traffic, page views, unique visitors, and video content viewing activity. Report options include date ranges, viewers, authors, and content titles. For a full listing of product features, refer to the Cisco Show and Share data sheet at: http://www.cisco.com/en/US/prod/collateral/video/ps9339/ps6681/data_sheet_c78-565776.html. Cisco Show and Share Reports is an integrated function within the Cisco Show and Share application that allows you to track the access and use of video content by end users. With this tool you can: Specify time periods: Run reports based on specific dates. Analyze content use: Access unique traffic metrics and repeat traffic metrics for each available video or as an aggregated total. Monitor referrals: Track top referring pages and links with the corresponding views they generate. Understand visitors: Acquire vital statistics about visitors, including operating system, browser, and media plug-in used. Receive viewer usage details: Identify what videos have been played by individual users and videos. With the Cisco Show and Share Reports tool, Cisco Digital Media Suite (DMS) administrators and Cisco Show and Share authors can access a variety of usage information that can facilitate tracking content effectiveness and required user access as part of a larger training compliancy effort, and help shape future content development based on content trends. Support and Compatibility The Cisco Show and Share video sharing application is shipped with the software preloaded on select Cisco server appliances and models. Upgrade and server support information is available at http:/ / www.cisco.com in the Cisco Show and Share Upgrade Guides. Licensing The Cisco Show and Share application is purchased as a perpetual license with no restrictions on the number of potential viewers. The application introduces new authoring capabilities that require enabling licenses for each system user defined as an author. The base Cisco Show and Share system has five preinstalled Author licenses. You can purchase additional licenses with various options, including: Cisco Show and Share Feature License for up to 10 Authors Cisco Show and Share Feature License for up to 50 Authors Cisco Show and Share Feature License for up to 500 Authors Cisco Show and Share Feature License for up to 1000 Authors Cisco Show and Share Feature License for up to 25,000 Authors You can purchase additional licenses and install them after the initial implementation.
Specifications
Cisco Show and Share Viewer Requirements Browser software Windows Internet Explorer 7.0 or 8.0 Mozilla 3.6.3 Apple Macintosh (support only for Flash and MPEG4/ Part 10 VOD files only. Windows Media format not currently supported with the Apple Macintosh). Safari 3.1.2 minimum Safari 3.1.2 or Firefox 3.5.3 or later recommended Adobe Flash v.9, upgrade 3 plug-in or later recommended, v. 10 recommended v. J1.6.0_13 or later 1024 x 768
Adobe Flash plug-in Java Client Minimum supported resolution Windows Media
Windows Media plug-in Windows Media 9 or later (required if Windows Media content is offered)
Cisco Show and Share Content Format Support Content encoded in the Windows Media format through the Cisco Live Event Module or other third-party applications can be uploaded and viewed with Cisco Show and Share. This content is decoded and played by the Windows Media plug-in. Third-party applications are required to edit content encoded with the Windows Media format. Windows Media content is not currently supported with the Apple Macintosh.
7-12
Content encoded in the Adobe Flash (.flv) format can be uploaded and viewed with Cisco Show and Share. This content is decoded and played by the Adobe Flash plug-in. The integrated Cisco Show and Share Video Editor can be used to edit uploaded Adobe Flash (.flv) content. Content created with the Cisco Show and Share Record a Video function is encoded in the Adobe Flash (.flv) format and is also editable with the Cisco Show and Share Video Editor. Content encoded in the MPEG4/ Part 10 format can be uploaded and viewed with Cisco Show and Share. This content is decoded and played by the Adobe Flash plug-in. Additional MPEG4 file support playable by the Adobe Flash player can be obtained at http:/ / www.adobe.com. Third-party applications are required to edit content encoded with the MPEG4/ Part 10.File types supported include .mp4, .m4v, and .mp4v. The Cisco Show and Share Workgroup server appliance supports up to 50 simultaneous authors and is ideal for a variety of use cases that feature smaller workgroups within an organization. The Cisco Show and Share Enterprise server appliance supports organizations that want to enable large numbers of authors to create and publish a variety of content that will be accessed organization-wide.
Video
Cisco Enterprise Content Delivery System Applications The Cisco ECDS consists of three main applications: Service Engine: The Service Engine provides edge content streaming, caching, and download to various endpoint devices such as PCs, Macs, and digital signs, among others. Content streaming support includes live and VoD for Adobe Flash, Windows Media, Apple QuickTime, and H.264 formats. The Service Engine also provides the point of entry into ECDS for ingesting live streams. Through the optional content acquisition subsystem, the platform dynamically fetches content on demand using prefetch and prepositioning options. Service Router: The Service Router mediates requests from the endpoint clients. It is responsible for choosing the most appropriate service engine based on location and load conditions of individual service engines. Content Delivery System Manager: This graphical, browser-based application is designed to manage the elements of a Cisco ECDS network. It offers a workflow-based approach, automating and centralizing the major system management functions, including configuration, monitoring, troubleshooting, system reporting, andmaintenance.
Specifications
Feature Protocols Specification Content acquisition: HTTP/HTTPS FTP CIFS RTSP/RTP Content delivery: Web content via HTTP Adobe Flash streaming via RTMP (E) Windows Media VC-1 via RTP/ RTSP, via MMS over HTTP, or via HTTP Progressive Download Streaming MP3, MP4 (H.264), MOV and M4V, content via RTP/ RTSP Cisco ECDS components involved in a minimal setup: CDSM Service Router Service Engine with or without Content Acquirer Optional components include: Standby CDSM Additional Cisco Service Routers for load balancing and failover Additional Cisco Content Acquirer or Service Engines for load balancing and failover Supports SNMP v1, v2, v3 Supports ENTITY-MIB, CISCO-ENTITY-ASSET-MIB, CISCO-CONFIG-MAN-MIB, EVENT-MIB, HOSTRESOURCES-MIB, CISCO-SMI & v2-SMI, SNMP-FRAMEWORK-MIB, MIB-II, sr-tc, v2-TC, SR-COMM, v2-ADM, v2-MIB, v2-ARCH, v2-tm, Coex, v3-ACM, V3-MPD, V3-proxy Chapter 7: Video and Broadband Cable
Components
MIBS
7-14
Network management
Cisco CDS Manager, which supports: Secure GUI over HTTPS Configuration of ECDS component applications and devices Provisioning of delivery services Provisioning of managed live programs Traffic statistics and system health monitoring Authentication, authorization, and accounting (AAA) and role-based management Management failover using a warm standby Device group for easy management of thousands of Cisco Service Engines Centralized system upgrade manager for easy upgrading of thousands of Service Engines Out of band platform access and integrated remote system recovery Supports integration using XML-based Manifest files that describe content ingest tasks APIs are provided to: Check the content replication and listing status Provision the delivery system Obtain statistics Protocol: HTTPS Input: URL and XML body Output: XML response Service Router supports the following routing methods: Load-based routing (least loaded) Service-aware routing Content-aware routing Last resort (when all eligible streamers are overloaded or for requests from outside the defined coverage zone) Service Router avoids routing to Service Engines with: Disk failure Application failure CPU, memory, and disk overload Service Router supports multiple redirection methods based on the protocol and the user-agent of the client: HTTP ASX Redirection HTTP 302 Redirection RTSP 302 Redirection RTSP REDIRECT Redirection RTMP Redirection Progressive rendering of MPEG, Advanced Systems Format (ASF), and QuickTime movie format files Wi-Fi streaming via HTTP Progress Download Option to support pre-ingested content delivery and dynamic caching Flexible rules template for cache policies and rules Service rules Option to support hierarchical caching Adobe Flash streaming Precreated application for VoD Multiple bit-rate streaming over RTMP for live streaming and VoD H.264 VoD and live streaming Content authorization using URL Signing HTTP-based hierarchical caching Support for RTMP, RTPME, Formats: Sorenson Spark, On2 VP, Nellymoser, MP3, AMF0, AMF3 Client-side playlist Support for content delivery using RTP/ RTSP Clients: QuickTime, 3GPP-compatible, VLC Codecs: MPEG1/ 2, H.264, H.263, AMR, AAC, MP3 Container files: MOV, MP4, 3GPP Support for live streaming application Managed live events and rebroadcast of scheduled events Encoder failover SMIL-based client-side playlists Live-stream splitting, including: Multicast in and multicast out Multicast in and unicast out Unicast in and multicast out Unicast in and unicast out Hierarchical caching proxy
Integration
Service routing
Web engine
Video
Flash streaming
7-15
Acquisition modes supported: Pre-ingest of content ahead of the delivery time Dynamic ingest of content the end-user requests Pre-ingest via HTTP, HTTPS, FTP, CIFS Dynamic ingest via HTTP and RTSP Centralized content removal Distribution modes supported: Hierarchical live streaming routing within Cisco ECDS Option for caching proxy from the origin server Option of hierarchical caching within Cisco ECDS Windows Media Technology (WMT) server and proxy: Codec WM 7, WM 8, WM 9, VC-1 Protocols: RTP/RTSP UDP RTP/RTSP TCP MMS over HTTP, or HTTP progressive download Container files: ASF, WMV, WMA Client-side playlist Fast start and fast cache Managed live events Live channel priming Live channel fast start Live-stream splitting, including: Multicast in and unicast out Unicast in and multicast out Unicast in and unicast out Option to support hierarchical caching Encoder failover Pass-through authentication Wi-Fi streaming of VC-1
Windows Media
The ECDS solution is currently available in an appliance form factor called the Cisco Media Delivery Engine (MDE) in the following models: Cisco Media Delivery Engine 50 WVB Cisco Media Delivery Engine 1100 Cisco Media Delivery Engine 3100 Solution Requirements At a minimum, a Cisco ECDS deployment requires the following: Service Engine Content Delivery System Manager Service Router The MDEs may be used to run any of the three main applications listed previously. Please note that Content Acquisition is an additional license that is required for using a Service Engine as a Content Acquirer.
7-16
Content prepositioning
Uses off-hours bandwidth and delivers consistent experience for video and other applications
Content ingest
Dynamic caching
Dedicated Cisco Integrated Management Controller (IMC) port for device management Built-in storage for hosting recovery software
Video
Footprint
Uses existing investment in Cisco WAAS technology at remote sites for comprehensive WAN optimization solution
Specifications
Feature Size Weight (set) Dimensions (H x W x D) CPU Hard drive Cisco MDE 3100 2RU (fits standard Telco racks with additional kit) ~35 lbs 3.45 x 17.2 x 28.4 in. (8.76 x 43.69 x 72.14 cm) 2.40GHz Xeon E5620 x2 Eight 500-GB Serial Advanced Technology Attachment (SATA), 7200 rpm 16 16-GB DDR3 Cisco MDE 1100 1RU (fits standard Telco racks with additional kit) 14.6 Kg 1.7 x 16.9 x 27.8 in. (4.3 X 42.9 X 70.6 cm) Intel 2.13GHz Xeon E5506 80W Two 500-GB SATA 7.2K RPM Cisco MDE 50WVB n/a n/a n/a n/a 100 GB on Cisco WAVE 574 200 GB on Cisco WAE-674 n/a Maximum memory on Cisco Wave 574 and Cisco WAE674 required no Virtual (two Gigabit Ethernet) 7-17
Other interfaces
One serial console; Cisco Integrated Management Console 650W PSU Yes (optional) 100 to 240 VAC, 10 to 5A, 50 or 60 Hz Yes 4 GB 50 to 95F (10 to 35C) -40 to 149F (-40 to 65C) 0 to 10,000 ft (0 to 3000m); maximum ambient temperature. Decreases by 1C per 300m) (984 ft) 40.000 ft (12,000m) 5 to 93% noncondensing 5 to 93% noncondensing
One serial console; Cisco Integrated Management Console 650W PSU Yes (optional) 100 to 240 VAC, 10A to 5A, 50/60 Hz Yes 4 GB 50 to 95F (10 to 35C) -40 to 149F (-40 to 65C) 0 to 10,000 ft (0 to 3000m); maximum ambient temperature Decreases by 1C per 300m) (984 ft) 40.000 ft (12,000m) 5 to 93% noncondensing 5 to 93% noncondensing
None
Power Backup power supply Power rating CD-ROM or DVD drive Internal USB drive Operating temperature Nonoperating temperature Operating altitude
7-18
Video
Specifications
Storage Language support Power Approvals and compliance Large-capacity internal storage (500-GB hard disk) Support for external network storage using network-attached storage (NAS) English, French, Chinese, and Japanese 100-240 VAC, 50-60 Hz, 350W maximum CE Declaration to EU Low Voltage Directive 2006/ 95/ EC (Europe - EN60950-1) Directive 89/ 336/ EEC (EMC Directive) Standard EN 55022, Class A Standard EN 55024 Standard EN 61000-3-2/ -3-3 Approved according to UL 60950-1 and CAN/ CSA C22.2 No. 60950-1-03 Compliance with FCC15B Class A 50 to 86F (10 to 30C) Storage and transport temperature: -4 to 140F (20 to 80C) (noncondensing) 10 to 90% relative humidity (RH) 10,000 ft (3000m); this value may be limited by the type and number of options installed; maximum allowable altitude change rate is 1500 ft/ min (457m/ min) 2 Gs Random vibration at 0.000075 G/ Hz, 10 to 300 Hz, (0.15 Gs nominal) 40 dBA
Environmental Operating Ranges Temperature Relative humidity Altitude Shock Vibration Acoustic noise
7-19
Video and Audio Specifications Bandwidth Video standards H.323 and SIP up to 4 Mbps H.261 H.263 H.263+ H.264 QCIF (176 x 144 pixels) CIF (352 x 288 pixels) VGA (640 x 480) 4CIF (704 x 576) SVGA (800 x 600) XGA (1024 x 768) 448p (576 x 448) w288p (512 x 288) w448p (768 x 448) w576p (1024 x 576) 720p (1280 x 720): Supported for H.264 only G.711 G.722 G.722.1 AAC-LD Up to 60 frames per second (requires premium resolution option) Allows for easy configuration using serial port management console Allows for total management through embedded web server Provides application programming interface (API) for customized integration Allows for one click to record scheduled conferences with Cisco TelePresence Management Suite Allows for simple addition of audio-only outputs for recording of scheduled conferences with Microsoft Outlook or IBM Lotus Notes Uses Cisco TelePresence Management Suite to monitor Content Server status, such as free disk space Allows administrators to set maximum streaming bandwidth limits to fit their network rules Two Ethernet (10/ 100/ 1000 Mbps) (one for future use) Cisco TelePresence Expressway technology Auto Network Address Translation (NAT) H.460.18 H.460.19 Firewall Traversal Dynamic jitter buffering Packet-loss concealment Secure management through Secure HTTP (HTTPS) Integration with Active Directory through LDAP for access Password-protected conferences Full access control lists (ACLs) on all content library items 1 rack unit (1RU) - Rack-mount 1.7 x 16.9 x 20 in. (44 x 430 x 508 mm) 13.89 lbs (6.30 kg); packaging and accessories weight 6.39 lbs (2.9 kg); total shipping weight 20.28 lbs (9.2 kg)
Audio standards
7-20
Specifications
Supported input formats Editing systems Avid Final Cut Pro Adobe Premiere AVI DVD VoB (Video over Broadband) files QuickTime: All supported formats MPEG-1: Elementary Stream, System Stream, and Layer II Audio MPEG-2: Elementary, Program, and Transport Stream; PCM Audio; Layer II Audio; and AC3 Audio MPEG-4: 3GPP and 3GPP2 AVI: Limited supported formats DirectShow: All supported formats, WAV, Windows Media, VC-1, and H.264 Live input formats: MPEG2ts Speech-to-text audio formats: wav, mp3, mp4, H264, and QuickTime Windows Media: V7, V8, V9, MPEG-4V3, and ISO-MPEG4-V1 Windows Media Audio: V2/ V7/ V8, ACELP.net, RealVideo10, RealVideo 9, RealVideo 8, and RealAudio 10 RealAudio 8 QuickTime: All supported codecs, MPEG-4, On2 Flash 8, MP3, and WAV Live output formats: WMV, FLV, and Real Media Speech-to-text output formats: Text-only transcripts, text with time stamps transcripts, and XML Video: Blur, bumpers, and trailers; color space conversion; contrast enhancement; cropping; de-interlacing and interlacing; fade-in; and fade-out In/ out trimming: Field frame control, gamma correction, hue rotation, inverse telecine, noise reduction, saturation, support for 16 x 9 and other aspect ratios, add and remove letter boxing and curtaining, temporal smoothing, video frame-rate conversion and resizing with anti-alias filtering watermarking, automated thumbnail extraction, and speech-to-text captioning
Video
7-21
Workflow automation
Job submission: Profile building: An automated system that allows you to quickly apply customized processing settings to new jobs Monitoring: A summary screen that provides insight into the status of queued jobs Automated Folder Attendant: A program that facilitates integration between external systems and the Cisco MXE 3500 platform (1 rack unit [1RU]) 1.7 x 16.9 x 27.8 in. (4.3 X 42.9 X 70.6)cm 50 to 95F (10 to 35C) -40 to 149F (-40 to 65C) 5 to 93% noncondensing 5 to 93% noncondensing 0 to 10,000 ft (0 to 3,000m); maximum ambient temperature decreases by 1C per 300m) (984 ft) 40.000 ft (12,000m) UL 60950-1 No. 21CFR1040 CAN/ CSA-C22.2 No. 60950-1 NOM-NYCE NOM-10-SCFI-10993 IRAM IEC60950-1 CB IEC60950-1 EN 60950-1 IEC 60950-1 GOST IEC60950-1 SASO SABS/CB IEC6095-1 CCC*/CB GB4943-1995 CNS14336 CB IEC60950-1 AS/NZS 60950-1 GB4943 47CFR Part 15 (CFR 47) Class A AS/ NZS CISPR22 Class A CISPR2 2 Class A EN55022 Class A ICES003 Class A VCCI Class A EN61000-3-2 EN61000-3-3 KN22 Class A CNS13438 Class A EN50082-1 EN61000-6-1 EN55024 CISPR24 EN300386 KN 61000-4 Series
Dimensions and Environmental Operating Ranges Physical dimensions (H x W x D) Operating temperature Nonoperating temperature Operating humidity Nonoperating humidity Operating altitude Nonoperating altitude Safety
EMC: Emissions
EMC: Immunity
7-22
The Cisco MXE 3500 has limited availability and a New Product Hold (NPH) process has been implemented. The details of the NPH process are as follows: MPBU and Worldwide Channels have implemented a New Product Hold on MXE products. NPH is an instrument for MPBU to understand orders and focus resources appropriately on target markets. NPH was chosen over ATP or Restricted Specialization programs to reduce sales cycles while ensuring successful deployments. NPH does not signal quality or supply chain problems. NPH will be released when orderability assurance and supportability requirements are met.
Video
Specifications
Note: Product features and specifications are subject to change.
Supported Standards Media Codecs H.264 base profile H.264 enhanced Advanced Audio Codec (AAC) LD G.711 (a- and mu-law) G.722 Industry-standard video codec, high quality at low bit rates, commonly used in video conferencing As implemented by Cisco TelePresence conferencing application Industry-standard low-bit rate audio codec; very low delay Telephony-standard audio codec Low-bit rate, high-quality audio codec Description
7-23
Transport Protocols RTP (RFC 3550) HTTP/HTTPS (RFCs 2616 and 2818) TLS (RFC 5246) Signaling and Control Protocols SIP (RFC 3261) RTCP (RFC 3550) Call-control signaling protocol for control of rich-media sessions Real-Time Control Protocol for media control Transport Layer Security Real-Time Transport Protocol: Standard video transport protocol Hypertext Transport Protocol (Secure)
Broadband Cable
Cisco uBR7225VXR Universal Broadband Router
The Cisco uBR7225VXR Universal Broadband Router is a low-cost entry to a midlevel Cable Modem Termination System (CMTS) in a 2-rack-unit (2RU) modular chassis, offering cable operators, multiunit businesses, and Internet service providers (ISPs) an excellent and cost-effective platform for the delivery of high-speed data, voice, and video services. This CMTS platform requires exceptionally low capital investment and minimal setup time, and it supports up to 5000 subscribers. The Cisco uBR7225VXR is a service-enabling, communications-grade CMTS that offers high reliability, modular scalability, and significant investment protection. It can easily be upgraded to DOCSIS 3.0 with the latest Cisco uBR-MC88V line card.
Specifications
Compact Design suitable for rack-mount (2-RU) pr desktop installation Modulation Downstream frequency range Dimensions: H x W x D 3.5 x 17.32 x 21.8 in. (8.89 x 44.9 x 55.37 cm); 45 lb (20.4 kg) Front, mid, and rear mountable in a 19 in. EIA standard rack Depth fully loaded from the tip of cable management bracket to the tip of the UBR-NPE-G1 handle is 26.1 in. (66.29 cm) Downstream64-QAM, 256-QAM UpstreamQPSK 8-, 16-, 32-, 64-QAM uBR-MC88V (uBR7200 Series MC88V Broadband Processing Engines): DOCSIS6 MHz Annex B, 701G Hz; Euro-DOCSIS8 MHz Annex A, 701G Hz uBR-MC28U (uBR7200 Series MC28U Broadband Processing Engines): DOCSIS6 MHz Annex B, 88860 MHz; Euro-DOCSIS8 MHz Annex A, 85860 MHz; J-DOCSIS6 MHz Annex B extension, 70860 MHz
7-24
UBR-MC88V: DOCSIS6 MHz Annex B, 542 MHz; Euro-DOCSIS8 MHz Annex A, 565 MHz UBR-MC28U: DOCSIS6 MHz Annex B, 542 MHz; Euro-DOCSIS8 MHz Annex A, 565 MHz; J-DOCSIS6MHz Annex B extension, 555 MHz Single or dual redundant power supplies 100 to 240 VAC input, 50/ 60 Hz frequency 5.5 A maximum AC input current 300W (maximum) output DC or 25 @ 11.28V; AC-input cable: 18-QEG4 3-wire cable with 3-lead IEC-320 receptacle on power supply end and country-dependent plug on power source end The Cisco uBR7225VXR is supported in Cisco IOS Software Release 12.2SB, which includes PacketCable Multimedia Specification (PCMM), admission control, advancedmode DOCSIS Set-Top Gateway (DSG), and Cisco Service Independent Intercept (SII) features. The Cisco uBR7225VXR must contain one uBR7200-NPE-G2 processor that must have at least 1 GB of DRAM; there is an upgrade option of a 2GB memory module that can be configured to be shipped with uBR7200-NPE-G2 to ensure best performance. FE/ GE ports availability3 GE ports (UBR-NPE-G2). Cisco UBR-MC88V is only supported by UBRNPE-G2. Line cards supported: UBR-MC88V Physical: Occupies a single slot in the Cisco uBR7225VXR chassis Maximum 2 line cards per uBR7225VXR chassis Hot-swappable; no slot dependency Dimensions (H x W x D): 1.4 x 15.154 x 11.531 in. (3.55 x 38.49 x 29.29 cm) Weight: 6.06lbs (2.749 kg) Power consumption: 90 watts (307 BTUs per hour) at 25C Integrated upconverter specifications High-level output+62 dBmV Optimized for 64 and 256 quadrature amplitude modulation (QAM) Software configurable from 52 to 62 dBmV output power in units of dBmV uBR-MC28U Physical: Occupies a single slot in the Cisco uBR7225VXR chassis Maximum 2 line cards per uBR7225VXR chassis Hot-swappable; no slot dependency Dimensions (H x W x D): 1.4 x 15.154 x 11.531 in. (3.55 x 38.49 x 29.29 cm) Weight: 6lbs (2.72 kg) Power consumption: 80 watts (273 BTUs per hour) at 25C Integrated upconverter specifications High-level output+61 dBmV Optimized for 64 and 256 quadrature amplitude modulation (QAM)
Software Compatibility
Video
7-25
Specifications
Number of Cable Line Card Slots Supported Cable Line Cards (Cable Plant Interfaces) Port Adapter Slots (LAN/ WAN Interfaces) Supported PA categories Power Supply Slots Input/Output (I/O) controller I/ O flash options for PCMCIA slots Network Processing Engines (NPE) Add-on processor memory options Router Bandwidth 4 uBR7200 Series MC28U Broadband Processing Engines uBR7200 Series MC88V Broadband Processing Engines 2 Ethernet Serial, HSSI, ATM, POS, DPT 2 uBR7200-I/ O-2FE/ E, not required if uBR7200-NPE-G1 or uBR-NPE-G2 are installed in the system Flash disk (48 MB); Flash disk (128 MB) uBR7200-NPE-G2 1 GB or 2 GB for uBR7200-NPE-G2 3.2 Gbps
generating subscribers and counting. The combination of the 20 downstream cards, 20 upstream RF cards, the 24 downstream channel bonding cards (wideband shared port adapter [SPA]), and the DOCSIS Timing Interface (DTI) card on the Cisco uBR10012 allows the deployment of DOCSIS 1.1 and 2.0 modems along with the new DOCSIS 3.0 modems for downstream channel bonding over low-cost video-on-demand (VoD) edge quadrature-amplitude-modulation (QAM) ports. The new Cisco uBR-MC3GX60V Broadband Processing Engine (BPE) is a high-capacity, DOCSIS 3.0-capable line card for the Cisco uBR10012 Universal Broadband Router. With 72 DOCSIS downstream and 60 upstream channels per card, the Cisco uBR-MC3GX60V BPE sets new expectations for scalable, faster, and cost-effective DOCSIS 3.0 CMTS solutions. With the addition of the Cisco uBR-MC3GX60V BPE, the Cisco uBR10012 platform scales to an unprecedented 576 modular DOCSIS downstream channels and 480 upstream channels, or approximately 24 Gbps of downstream throughput and 14.4 Gbps of upstream throughput in a single, carrier- class chassis. The Cisco uBR10012 CMTS with the Cisco uBR-MC3GX60V BPE delivers 10 times the capacity and 20 times the speed of DOCSIS 2.0 solutions at only a fraction of the cost. Because it bonds 24 DOCSIS channels (or 18 Euro-DOCSIS channels) per bonding group, the solution allows cable operators to deliver ultra-broadband services with maximum downstream speeds approaching 1.0 Gbps per subscriber. A fully loaded Cisco uBR10012 CMTS with the Cisco uBR-MC3GX60V BPE can deliver 500 high-definition television (HDTV) channels, video on demand (VoD), and ultra-broadband services to 20,000 homes. With new hardware support of the Cisco 10000 Performance Routing Engine 4 (PRE4) processor, the 10Gigabit Ethernet WAN card, and the 6-wideband SPA carrier starting in January 2009, the Cisco uBR10012 Universal Broadband Router provides a maximum of 304 downstream ports per chassis to meet everincreasing IP data, voice, and video bandwidth needs.
Video
Specifications
Modular Slots Supported Cards Flash48 MB; System128 MB Cisco MC5X20H Broadband Processing Engine (BPE), Cisco MC20X20H Broadband Processing Engine (BPE); Cisco 24-port Wideband Downstream Shared Port Adapter; Cisco 5-Port Gigabit Ethernet Shared Port Adapter; Cisco 1-Port 10GE LAN-PHY Shared Port Adapter, and Gigabit Ethernet Half-Height (HH-1GE) network uplink card Parallel Express Forwarding (PXF) 64 MB (default); 128 MB (maximum) 1 GB DRAM minimum Cisco IOS Software Release 12.2(33)SCD recommended; Cisco IOS Software Release 12.2(33) SCC; Cisco IOS Software Release 12.3(9)BC minimum to support the Cisco PRE-2, Cisco IOS Software Release 12.3(13)BC minimum to support the Cisco Gigabit Ethernet HalfHeight Line Card, Cisco IOS Software Release 12.3(17)BC2 minimum to support the Cisco MC5X20H BPE; Cisco IOS Software Release 12.2(33)SCB minimum to support the Cisco Performance Routing Engine 4, Cisco 10000 Series SPA Interface Processor-600, Cisco 5-Port Gigabit Ethernet Shared Port Adapter, and Cisco 1-Port 10GE LAN-PHY Shared Port Adapter. DC, AC
Power Supply
7-27
Yes 51.2 Gbps 31.25 x 17.2 x 22.75 in. (79.4 x 43.7 x 57.8 cm)18 rack units (RU) Mounting: 19 in. rack mountable (front or rear), 2 units per 7 ft. rack Note: Mounting in 23 in. racks is possible with optional third-party hardware 235 lb. (106.6 kg) fully-configured chassis
Weight
With the uBR-MC3GX60V line card, Cisco provides true cost flexibility for operators with licensing options that offer a pay-as-you-grow model. The software licensing capability combined with the adaptability of the modular CMTS architecture allows a customer to turn up and move ports and bandwidth to different service groups as needed, without fear of stranding downstream or upstream ports. The base hardware and 16 upstream and 16 downstream channel licenses constitute the minimum configuration supported. Additional optional licenses are available for purchase up to the full capacity of 72 DOCSIS downstream (or 54 Euro DOCSIS downstream) and 60 upstream channels
Specifications
Physical Occupies a single slot in the Cisco uBR10012 chassis Interface: line card single mode with intermediate reach connector Hot-swappable; no slot dependency Weight: 11.6 lb (5.26 kg) Dimensions (H X W X D): 21.5 x 1.38 x 17 in. (54.61x 3.51 x 43.18 cm) Operating altitude: -197 to 13,123 ft (-60 to 4000m) Storage temperature: -4 to 149F (-20 to 65C) Operating temperature, nominal: 41 to 104F (5 to 4 0C) Storage relative humidity: 5 to 95% Operating relative humidity: 10 to 90% Max heat dissipation: 190W, or 648 BTU/ hr Designed for five 9s of availability Unit Power: 246W Cisco IOS Software Release 12.2(33)SCE or later One power LED (green) One status LED (green/ yellow): solid green indicates the processor has booted and passed its diagnostics; LED blinks green on a protect card, yellow when in one of the booting states Maintenance (yellow): indicates the line card can be removed One upstream-enabled LED on each upstream port (green): upstream path is configured and able to pass traffic One downstream-enabled LED on GE0 through GE5 (green): DEPI port is configured and able to pass traffic LK/ ACT0-LK/ ACT5 LED (blinking green) indicates port enabled with DEPI traffic and LED (Solid Green) indicates port enabled with no DEPI traffic Front panel display for licenses: First two digits signify downstream licenses and next two digits signify upstream licenses installed Dual AC or DC PEMs must be installed at all times SFP-GE-T (1000BASE-T) GLC-SX-MM (1000BASE-SX) GLC-LH-SM (1000BASE-LX/LH) GLC-ZX-SM (1000BASE-ZX) Dual Cisco UBR10-DTCC are required At least 1 GB of Flash memory is required for Cisco IOS Software
Environmental
7-28
UBR10-P2DT5G-HA UBR10-P4DT5G UBR10-P4DT5G-HA UBR10-P4DT10G UBR10-P4DT10G-HA UBR-5G-SIP-D3SPA UBR-10G-SIP-D3SPA UBR-4MC20X20V-5D UBR-4MC20X20V-20D SPA-24XDS-SFP= UBR10-2XDS-SIP UBR10-2XDS-SIP= SPA-24XDS-SFP UBR10-MC5X20H-D UBR10-MC5X20H-D= UBR10-4MC5X20H-D UBR-MC20X20V-20D UBR-MC20X20V-5D UBR-MC20X20V-0D L-UBR-SWLIC-5DS L-UBR-SWLIC-15DS L-UBR-SWLIC-20DS L-UBR-SWLIC-5DS 10000-SIP-600 10000-SIP-600= SPA-5X1GE-V2 SPA-5X1GE-V2= SPA-1X10GE-L-V2 SPA-1X10GE-L-V2= ESR-PRE2/R ESR-PRE2= ESR-PRE4 ESR-PRE4= CAB-RFSW520QTIMF2 CAB-RFSW520QTIMF2= CAB-RFSW520QTPMF2 CAB-RFSW520QTPMF2= CAB-RFSW520QTIMM2 CAB-RFSW520QTIMM2= UBR-MC3GX60V(=) SWLIC-MC3GX60V-DS SWLIC-MC3GX60V-US CABRFSW3G60QTIMF2 CABRFSW3G60QTIMF2= CABRFSW3G60QTPMF2 CABRFSW3G60QTPMF2= CABRFSW3G60QTIMM2 CABRFSW3G60QTIMM2=
Bundle incl. 2 PRE2, 2 DTCC, 2 4-SPA SIP, 2 5x1 GE WAN SPA Bundle incl. 1 PRE4, 1 DTCC+, 1 4-SPA SIP, 1 5x1 GE WAN SPA Bundle incl. 2 PRE4, 2 DTCC, 2 4-SPA SIP, 2 5x1 GE WAN SPA Bundle incl. 1 PRE4, 1 DTCC+, 1 4-SPA SIP, 1 1x10 GE WAN SPA Bundle incl. 2 PRE4, 2 DTCC, 2 4-SPA SIP, 2 1x10 GE WAN SPA UBR10K bundle, includes 1 5 GE SPA, 1 DS SPA, 1 SPA carrier UBR10K bundle, includes 1 10 GE SPA, 1 DS SPA, 1 SPA carrier 4 for 3 Bundle for 5x20V. Must order with 10K chassis 4 for 3 Bundle for 20x20V. Must order with 10K chassis 24-port uBR10012 Wideband Downstream Shared Port Adapter Cisco uBR10012 Wideband Downstream-only SPA Carrier Card Cisco uBR10012 Wideband Downstream-only SPA Carrier Card 24-port uBR10012 Wideband Downstream Shared Port Adapter uBR10K High-Performance Card, 5DS w/ upx, 20US, Spec An uBR10K High-Performance Card, 5DS w/ upx, 20US, Spec An 4 UBR10-MC5X20H-D Line cards Cisco 20x20V DOCSIS 3.0 Broadband Processing EngineBase hardware + 20 downstream and 20 upstream license Cisco 20x20V DOCSIS 3.0 Broadband Processing EngineBase hardware + 5 downstream and 20 upstream license Cisco 20x20V DOCSIS 3.0 Broadband Processing EngineBase hardware + 0 downstream and 20 upstream license +5 downstream upgrade license +15 downstream upgrade license +20 downstream upgrade license +5 downstream upgrade license Cisco 10000 Series SPA Interface Processor-600 Cisco 10000 Series SPA Interface Processor-600 Cisco 5-Port Gigabit Ethernet Shared Port Adapter Cisco 5-Port Gigabit Ethernet Shared Port Adapter Cisco 1-Port 10GE LAN-PHY Shared Port Adapter Cisco 1-Port 10GE LAN-PHY Shared Port Adapter Performance Routing Engine, 1GB DRAM, 64MB Flash Performance Routing Engine Performance Routing Engine 4 Performance Routing Engine 4 Quad-shield RF cable bundle, MC520 to HFC plant, 3m Spare quad-shield RF cable bundle, MC520 to HFC plant, 3m RF cable bundle, MC520/ RFSW to HFC plant, 3m, with UCH2 Spare RF cable bundle, MC520/ RFSW to HFC plant, 3m, with UCH2 Quad-shield RF cable bundle, MC520 to RF switch, 1m, with UCH2 Spare quad-shield RF cable bundle, MC520 to RF switch, 1m, with UCH2 Cisco 3GX60V DOCSIS 3.0 Broadband Processing Engine; Base HW 1 Count of DS license (minimum 16) 1 Count of US license (minimum 16) 3G60 to RF Plant 3G60 to RF Plant RF Switch to HFC Plant RF Switch to HFC Plant 3G60 to RF Switch 3G60 to RF Switch
Video
7-29
Specifications
Input Power Requirements Unit Control AC100 to 240 VAC, 50 to 60 Hz, operating range: 90 to 254 VAC DC-48 to -60 VDC, operating range: 140.5 to -72 VDC, 200 mVpp ripple/ noise 10BaseT EthernetSNMP Switching time from active (working) to standby (protect)150 mS maximum after SNMP command RF connectorsMCX AC powerIEC320 type DC powerThree terminal block EthernetRJ-45 RS-232 Bus9-pin male D Input/ output impedance: 75 ohms; maximum RF input power: +15 dBm (63.75 dBmV); Switch type: Electro-mechanical, absorptive for working path, non-absorptive on the protect path; Switch setting time per switch module: 20 ms maximum; Downstream frequency range: 54 to 860 MHz; Typical downstream insertion loss: +/ - 1.1 dB from CMTS to cable plant; +/ - 2.1 dB from protect to cable plant; 5.5 dB from working to output; 8.0 dB from, protect to output Downstream insertion loss flatness: +/ - 1.1 dB from CMTS to cable plant; +/ - 2.1 dB from protect to cable plant Downstream output return loss: > 15.0dB at <450 MHz, > 12.0 dB at >= 450 MHz; Downstream input return loss: > 15.0 dB; Downstream isolation: > 60 dB from channel to channel in working mode; > 52 dB from CMTS to protect when in protect mode; Upstream frequency range: 5 to 70 MHz; Typical upstream insertion loss: 4.1 dB from cable plant to CMTS; 5.2 dB from cable plant to protect; Upstream insertion loss flatness: +/ - 0.4 dB from cable plant to CMTS; +/ - 0.6 dB from cable plant to protect; Upstream input return loss: > 16 dB; Upstream isolation: >60 dB from channel to channel in working mode: > 60 dB from CMTS to protect when in protect mode; Protect mode: CMTS return loss > 10 dB, cable plant return loss: > 10 dB 41,000 MTBF @ +50C as calculated by BellCore 5, 80 percent confidence factor 5.25 x 17.5 x 14.8 in. (13.335 x 44.45 x 37.592 cm) Operational temperature range0 to +40C Operating temperature range-5 to +55C 36 lbs.
Connectors
RF Requirements
7-30
Cisco Services
Realize the full business value of your video technology investments faster with smart, personalized services from Cisco and our partners. Backed by deep networking expertise and a broad ecosystem of partners, Cisco Services enable you to successfully plan, build, and run your network as a powerful business platform. Whether you are looking to quickly seize new opportunities to meet rising customer expectations, improve operational efficiency to lower costs, mitigate risk, or accelerate growth, we have a service that can help you. For more information about Cisco Services, visit http:/ / www.cisco.com/ go/ services/ businessvideo. A listing of Cisco trademarks can be found at www.cisco.com/ go/ trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership between Cisco and any other company. DOCSIS is a registered trademark, and PacketCable is a trademark, of Cable Television Laboratories, Inc.
Video
7-31
7-32
Cisco ONS 15216 Metropolitan/Regional DWDM System Cisco ONS Multiservice Provisioning Platforms
8-5
8-6
8-9
Optical Networking
8-1
Specifications
Feature Service Slots Maximum Capacity Cisco ONS 15454 M12 MSTP 12 Line cards: 6x 40Gb/ s (240Gb/ s) Ethernet: 120 GEs + 12x 10GEs Yes, dual redundant Cisco ONS 15454 M6 MSTP 6 Line cards: 6x 100Gb/ s (600Gb/s) Ethernet: 60 GEs + 6x 10GEs Yes, dual redundant Cisco ONS 15454 M2 MSTP 2 Line cards: 2x 100Gb/ s Ethernet: 20 GEs + 2x 10GEs No, single, has a built-in memory module to back up the software package AC or DC, dual option No, redundant A and B feeds Fan tray 40W AC power module 300W DC power module 30W
Redundant Processor card Internal Power Supply Redundant Power Supply Power Requirements
No Yes, dual DC
Typical/Maximum Watts Fan tray 120W Terminal node 253W/ 403W AC power module 500W 2-degree ROADM node 461W/ DC power module 40W 641W 8-degree ROADM node 809W/ 1,118W 2-degree SMROADM node 265W/447W 4-degree SMROADM node 313W/561W Line Amplifier node 200W/ 307W
8-2
ANSI 11 RU ETSI 14 RU Yes, up to 3 per rack ANSI: 18.5 x 17.6 x 12 in. (469.9 x 447 x 304.8 mm) ETSI: 24.3 x 17.5 x 11 in. (616.5 x 445 x 280 mm)
6 RU Yes, up to 7 per rack 10.5 x 17.5 x 11 in. (265.4 x 443.3 x 280 mm)
2 RU Yes, up to 21 per rack 3.5 x 17.2 x 11 in. (87.9 x 436.4 x 280 mm)
Timing, Communications, and Control Card, Version 3 (TCC3), I-Temp, 15454 chassis Timing, Communications, and Control Card, Version 3 (TCC3), I-Temp, 15454E chassis Controlled cooling fan-tray assembly, includes fan-tray filter
Mechanical interface card, craft, timing, and power inputs, ETSI Mechanical interface card, alarm, and power inputs, ETSI Air ramp (ships with ANSI 19-in. and 23-in. and ETSI 600mm mounting brackets) Alarm Interface Controller, international card Shelf slot-filler panel, fits any slot in Cisco ONS 15454 ANSI shelf assembly Shelf slot-filler panel, fits any slot in Cisco ONS 15454 ETSI shelf assembly Shelf FMEC slot-filler panel, fits Cisco ONS 15454 ETSI shelf assembly 6-service-slot MSTP shelf, includes M-SHIPKIT, M6-FTF 6-service-slot MSTP chassis DC power filter 6-service-slot MSTP chassis AC power supply 6-service-slot MSTP chassis door 2-service-slot MSTP shelf, includes M-SHIPKIT, M2-FTF 2-service-slot MSTP chassis DC ANSI filter with memory 2-service-slot MSTP chassis DC ETSI filter with memory 2-service-slot MSTP chassis AC power supply with memory 2-service-slot MSTP chassis door Transport Node Controller for M2 and M6 chassis Transport Shelf Controller for M2 and M6 chassis
Optical Networking
15454-PP-MESH-4= 15454-PP-MESH-8=
10Gbps E-FEC ADM-On-A-Blade, 16x SFP-based client interfaces, 1x XFP-based interconnection interface, 2x XFP-based trunk interfaces GE E-FEC Ethernet Enhanced Crossponder, 20x SFP-based client interfaces, 2x XFP-based trunk interfaces 4x OTN E-FEC Multirate Xponder, 2x XFP-based trunk/ client FEC interfaces, 2x XFP-based trunk/ client E-FEC interfaces 4x10GE/ OC192/ STM64/ OTU2 Muxponder CP-DQPSK Extended Performance 4x10GE/ OC192/ STM64/ OTU2 Muxponder CP-DQPSK Metro Edge Performance OC-768/ STM-256/ 40GE Transponder CP-DQPSK Extended Performance OC-768/ STM-256/ 40GE Transponder CP-DQPSK Metro Edge Performance 40-channel wavelength cross connect 100-GHz, C-band, Odd grid, MPO connector for interconnection with Mesh Patch Panel, LC connectors for interconnection, includes one 2m LC/ LC fiber-optic cable 80-channel wavelength cross connect 50-GHz, C-band, Odd and Even grid, LC connectors 40-channel single-module ROADM, 100-GHz, C-band, LC connectors for interconnection and add path, includes one 2-meter LC/ LC fiber-optic cable and one 0-dB LC/ LC loopback (to be used if DCU is not required). Combines the OSC add/ drop filter, a preamplifier and a 2x1 WSS-based ROADM core into a single slot unit. 40-channel single-module ROADM, 100-GHz, C-band, LC connectors for interconnection, MPO connector for interconnection with Mesh Patch Panel, includes one 0-dB LC/ LC loopback (to be used if DCU is not required). Combines the OSC add/ drop filter, PRE and BST amplifiers and a 4x1 WSS-based ROADM core. 40-Channel Multiplexer and Demultiplexer Passive Patch Panel, 100-GHz, C-band Odd, 2RU high, 40 duplex LC add and drop ports, 3 duplex LC ports for internal and monitor connections, USB port for passive inventory. Ships with ANSI 19-in. and 23-in. and ETSI 600mm mounting brackets. Optical amplifier, 17dBm output power, 17dB gain, can be configured as preamplifier or booster, C-band, 80-channel, 50-GHz compatible, LC connectors, includes two 2-meter LC/ LC fiber-optic cables Enhanced optical amplifier, 20dBm output power, can be configured as preamplifier or booster, C-band, 80-channel, 50-GHz compatible, LC connectors, midstage access, includes one LC/ LC loopback (to be used if DCU is not required) and two 2m LC/ LC fiberoptic cables Optical preamplifier, 17dBm output power, C-band, 80-channel, 50-GHz compatible, LC connectors, midstage access, includes one 4-dB LC/ LC attenuated loopback (to be used if DCU is not required) Extended Performance Optical Raman amplifier with embedded EDFA, 500mW total counter-propagating Raman pump power, 2 pump wavelengths, 20dBm EDFA output power, C-band, 80-channel, 50-GHz compatible, LC connectors, midstage access, includes one LC/ LC loopback (to be used if DCU is not required) and two 2m LC/ LC fiber-optic cables High Power Counter-Propagating, 1W optical pump output power, C-band, 96 channel 50GHz Raman unit with 2 LC-LC 2m cables and 2 ES 2000 PS LC 2m cables. High Power Co-Propagating, 1W optical pump output power, C-band, 96 channel 50GHz Raman unit with 2 ES 2000 PS PC 2m cables. Enhanced C-band 96 channel low cost amplifier 17 dB max gain, 50 GHz compatible, LC connector Enhanced C-band 96 channel low cost amplifier 24 dB max gain, 50 GHz compatible, LC connector Optical service channel card, 1510-nm, LC connectors, includes two 2m LC/ LC fiber-optic cables Protection Switching Module, LC connectors
15454-80-WXC-C= 15454-40-SMR1-C=
15454-40-SMR2-C=
15216-MD-40-ODD=
15454-OPT-AMP-17C=
15454-OPT-AMP-C=
15454-OPT-PRE=
15454-OPT-RAMP-CE=
8-4
Cisco ONS 15216 The Cisco ONS 15216 Edge Product Family is a suite of products that enable the Cisco ONS 15454 Edge Optical Add/ Drop Multiservice Transport Platform (MSTP) product line to address the edge of the optical network as Multiplexers well as enterprise and data center applications cost-effectively without sacrificing operational ease of use. The Cisco ONS 15216 Edge product line includes the following filter options: 4-channel optical add/ drop multiplexer (OADM) 8-channel coarse wavelength-division multiplexing (CWDM) multiplexer/demultiplexer Optical Supervisory Channel (OSC) OADM This mix of filter options enables the Cisco ONS 15454 MSTP to address edge DWDM network applications such as point-to-point data center networks, enabling WDM into cell sites and extending wavelength services to customer premises. The FlexLayer architecture allows for deployment of point-to-point, point-to-multipoint, ring, bus, Cisco ONS 15216 100-GHz FlexLayer and tree-and-branch architectures. These networks can be deployed as unprotected or protected networks, and they may also be deployed in transmit-only applications for broadcast networks. Filter Solution This flexibility is inherent in the design of the FlexLayer architecture.
Optical Networking
15216-MD-48-CM=
15216-HD-EXT-PNL= 15216-FLD-4-30.3= 15216-FLD-4-33.4= 15216-FLD-4-36.6= 15216-FLD-4-39.7= 15216-FLD-4-42.9= 15216-FLD-4-46.1= 15216-FLD-4-49.3= 15216-FLD-4-52.5= 15216-FLD-4-55.7=
8-5
Edge 4-Ch Bi-Directional OADM Mod 1558.98 to 1561.42 Edge 8-Ch CWDM Mux/ Demux Module Edge Optical Service Channel Add /Drop Edge 4-Ch Bi-Directional OADM Mod 1530.33 to 1532.68 Edge 4-Ch Bi-Directional OADM Mod 1533.47 to 1535.82 Edge 4-Ch Bi-Directional OADM Mod 1536.61 to 1538.98 Edge 4-Ch Bi-Directional OADM Mod 1539.77 to 1542.14 Edge 4-Ch Bi-Directional OADM Mod 1542.94 to 1545.32 Edge 4-Ch Bi-Directional OADM Mod 1546.12 to 1548.51 Edge 4-Ch Bi-Directional OADM Mod 1549.32 to 1551.72 Edge 4-Ch Bi-Directional OADM Mod 1552.52 to 1554.94 Edge 4-Ch Bi-Directional OADM Mod 1555.75 to 1558.17 Edge 4-Ch Bi-Directional OADM Mod 1558.98 to 1561.42 FlexLayer 4 Slot Shelf Assembly
Business access networks Managed services networks Bandwidth manager at interexchange carrier (IXC) offices Voice switch interface DSL access multiplexer (DSLAM) trunk aggregation and transport High-speed router or ATM switch link extender Wireless cell site traffic aggregation and transport Cable TV backbone data and voice network Storage transport networks Flexible optical networking: Many factors, including access to physical media (that is, fiber, coaxial, etc.), capital budget, time to market, etc. influence the final design of a network. To accommodate the wide deployment needs, the Cisco ONS Multiservice Provisioning Platforms are designed with flexible, readyto-use card architecture and comprehensive optical operating software, enabling support for multiple capabilities from a single platform type. Resilient transport: SONET and SDH provide carrier-class circuit protection with sub-50-millisecond (ms) restoration and multilayer performance-monitoring statistics, which enable proactive maintenance and reduced communication downtime. Flexible bandwidth: Network bandwidth can be matched to user demand with plug-in optical cards, with support from 155 Mbps to 10 Gbps for SONET/ SDH and 1.5 Mbps to 1 Gbps for Ethernet cards. In-service bandwidth upgrades help ensure that the network will meet current and future demands. Integrated multiservice aggregation: Cisco ONS Multiservice Provisioning Platforms consolidate SONET/ SDH, dense wavelength-division multiplexing (DWDM) transmission, Layer 2 and Layer 3 packetprocessing functions, and storage area network (SAN) transport with the intelligence of an IP-based management plane in a single, cost-effective family. Integrated element management: Each of the Cisco ONS Multiservice Provisioning Platforms offers operational simplicity through an integrated, network-based GUI, the Cisco Transport Controller, which simplifies the setup, provisioning, and maintenance of the transport network.
Specifications
Feature Throughput (Gbits) Rack units Max. Ports DS-1 DS-3 EC-1 FE GE OC-3 OC-12 OC-48 OC-192 Feature Throughput (Gbits) Rack units Max. Ports E1 E3 DS-3 FE GE STM-1 STM-4 STM-16 STM-64 ETSI/SDH 15310ME 5 6 252 12 12 32 24 2 2 2 15454E 60 13.5 252 96 96 96 20 32 32 24 4 128 128 128 128 32 15600 320 14.5 2 2 ANSI/SONET 15310CL 1.2 1 21 3 3 8 15310MA 5 6 336 12 12 32 24 2 2 2 15454 80 13.5 224 192 192 96 20 32 32 24 4 128 128 15600 320 14.5
Optical Networking
128 128 32
8-7
15310E-84WBE-3BBE 15310E-28WBE-3BBE 15310E-P-CE-100T-8 15310-EXP-FILLER Cisco ON 15454E 15454E-SA-ETSI 15454E-TCC3-K9 15454E-XC-VXC-10G 15454E-CC-FTA 15454E-AIC-I 15454E-AP-MIC48V 15454E-CTP-MIC48V 15454E-10G-XR 15454E-MRC-I-12 15454E-MRC-2.5G12 15454E-ML-MR-10 15454E-ML100T-12 15454E-ML100X-8 15454E-CE-MR-10 15454E-CE-100T-8 15454E-FC-MR-4 15454E-E1-42 15454E-E1-120PROA 15454E-E1-120PROB 15454E-E1-120NP 15454E-E3-12 15454E-DS3IN-12 15454E-E3DS3-FMEC 15454E-BLANK 15454E-BLANK-FMEC
15310E E1/ E3/ DS3 TRIBUTARY CARD-HIGH DENSITY PORTS 15310E E1/ E3/ DS3 TRIBUTARY CARD-LOW DENSITY PORTS 15310E 8 PORT 10/ 100 ETHERNET L1 ONLY, ETSI VERSION 15310 blank expansion module ONS 15454 SDH ETSI Chassis and Ship-Kit Timing, Communications, Control Three, I-temp,15454E chassis SDH HO/ LO XC, 60G VC-4, 5G VC-12/ 11 - ANSI/ ETSI Support 48V Controlled Cooling Fan Tray with filter for ETSI Chassis SDH Alarm Interconnect module - ANSI/ ETSI Support ONS15454SDH Alarm,-48V PwrMgmt IF Conn ONS15454SDH Craft, Timing, -48V PwrMgmt IF Conn 10G, Any Reach, XFP compatible (Ordered Separately) STM1/ 4/ 16, 12 ports, IOF - ANSI/ ETSI Support STM1/ 4/ 16, 2.5G Max, 12 ports, IOF ML2 10-pt Multi-rate L2/ RPR Card Ethernet, 12Ckt.- ANSI/ ETSI Support 100Mbps Fiber Ethernet, 8 SFP Ckt, L2/ L3- ANSI/ ETSI Support Carrier Ethernet card - 10 port Multirate 10/ 100/ 1000 Mbps 8x10/ 100T Carrier Ethernet - ANSI/ ETSI Support Fibre Channel/ FICON, 1-/ 2-Gbps, 4-Ckt, - ANSI/ ETSI Support 15454 International ETSI chassis 42 part E1 module HD E1 120 ohm FMEC, 1:3 protection Side A HD E1 120 ohm FMEC, 1:3 protection Side B HD E1 120 ohm FMEC, No Protection 12 port E3 Module (1:1 only) - need FMEC 12 port DS3 Module (1:N<=4) - need FMEC 12 port E3/ DS3 75ohm FMEC (T54) 15454 ETSI Blank Module (Slot Filler) 15454 ETSI Blank Module for FMEC (Slot Filler)
Cisco Carrier Packet Transport 600 Series, Cisco Packet Transport 256G, Four 10-Gigabit Ethernet Fabric, Cisco Packet Transport Module, and Four 10 Gigabit Ethernet
Optical Networking
The Cisco Carrier Packet Transport (CPT) 50, CPT 200, and CPT 600 set the industry standard as a carrierclass converged access and aggregation platform for Cisco Unified Packet Transport architectures. The Cisco CPT product family represents an exciting new paradigm in the world of packet transport, with exceptional pay-as-you-grow scalability, carrier-class reliability, incredible flexibility, and time-division multiplexing (TDM)-like ease of packet service provisioning, operations, administration, and maintenance (OA&M) and protection capability. The CPT platform has great revenue potential for service providers by providing TDM-like Ethernet private lines as well as multipoint capabilities for business, residential, mobile backhaul, data center, and video services. These next-generation services can be readily deployed at low operational costs using the Cisco Transport Controller and Cisco Transport Manager tools that allow fast and simple network turn-up, A-to-Z provisioning, and OA&M features. This platform is first to market with advanced standards-based
Chapter 8: Optical Networking 8-9
Multiprotocol Label Switching-Transport Profile (MPLS-TP) management for Ethernet aggregation and transport, which combines the feature richness of MPLS with the simplicity of transport operational models. The Cisco CPT 200 and CPT 600 can be configured with integrated DC or AC power inputs. The DC power module has inputs for redundant A and B feeds. The integrated AC power module has a single input, and is universal in that it accepts a power input ranging from 110 to 240 VAC, 50 to 60 Hz. With its front-facing connections, the Cisco CPT 200 and CPT 600 are ideal for cabinet installations and ETSI front connection requirements, making this platform truly global. In addition to MPLS-TP, the CPT product portfolio can support IP/ MPLS and native Ethernet-based transport solutions, giving customers data- and control-plane flexibility as the network evolves. Its small form, simplicity, unique set of integrated features, and low power consumption reduce capital and operational expenditures. The Cisco CPT Family reduces total cost of ownership (TCO) based on its innovative satellite architecture that centralizes the management and allows scalable Ethernet fan-out. The Cisco CPT 50 Series satellite panel can be an extension of the Cisco CPT 200 or CPT 600 Packet Transport Fabric and Modules, thereby extending the service interface by a factor of 10. The Cisco CPT architecture is designed to provide a-la-carte options to deploy packet transport, Multiservice Transport Platform (MSTP), or Optical Transport Network (OTN) switched networks, allowing the customer to reduce day-one costs and grow capabilities as required.
Platform and control cards: Contain synchronization circuitry, a Stratum-3 clock, and dedicated backplane timing traces, enabling transport-class network timing and support for network-synchronized services and applications such as mobile backhaul and migration of time-division multiplexing (TDM) services Cisco CPT 600 chassis: Two slots for redundant control cards and 6 slots for service cards; these 6 linecard slots connect across the backplane to provide redundant aggregation and switching capability Cisco CPT 600: Can be configured with integrated and redundant DC or AC power inputs; a single power module could be used for low-power and low-cost configurations Cisco CPT 200 chassis: One slot for software and database backup in the LCD panel and 2 slots for service cards; these two line-card slots connect across the backplane to provide redundant aggregation and switching capability Cisco CPT 200: Can be configured with integrated and 0:1 nonredundant DC or AC power inputs
Specifications
Feature Service Slots Maximum Capacity Redundant Processor card Internal Power Supply Redundant Power Supply Power Requirements Carrier Packet Transport 600 6 Line cards: 3x 40Gb/ s (120Gb/ s) Ethernet: 60 GEs + 6x 10GEs Yes, dual redundant AC or DC, dual option Yes, dual AC or DC Fan tray 120W AC power module 500W DC power module 40W 6 RU Yes, up to 7 per rack 10.5 x 17.5 x 11 in. (265.4 x 443.3 x 280 mm) Specification SFP+ interfaces provide mix/ match interface types across a single line card. For a complete list of supported interfaces, please see the Cisco CPT pluggable configuration guide. Combined Carrier Ethernet, MPLS-Transport Profile (TP), & IP/ MPLS 16K Point to Point EVC 4K Point to Multi-Point EVC with 8K members Carrier Packet Transport 200 2 Line cards: 2x 40Gb/ s (120Gb/ s) Ethernet: 176 GEs + 4x 10GEs 0:1 Redundant AC or DC, dual feeds Yes, dual AC or DC Fan tray 40W AC power module 300W DC ANSI power module 30W DC ETSI power module 30W 2 RU Yes, up to 7 per rack 3.46 in. (H) x 17.18 in. (W) x 11.02 in. (D) 87.9 mm (H) x 436.4 mm (W) x 280 mm (D)
Chassis Height Rack Mountable Dimensions (H x W x D) Description Interface Support Pluggable SFP+ (PTM) and XFP (PTF) Interfaces
Scalable and Integrated Multiservice Support Layer 2 Point to Point Ethernet Virtual Circuit (EVC) Point to Multi-Point Ethernet Virtual Circuit (EVC) Multicast Groups MAC Address MPLS-Transport Profile (TP) Tunnels Point to Point MPLS-Transport Profile (TP) Circuits VPLS Pseudowires over MPLS-TP LSP MPLS-Transport Profile (TP) LSPs MPLS-TP & MPLS-TE MultiSegment Pseudowires Virtual Forwarding Instances (VFIs) Policers Egress queues Evolutionary Monitoring Carrier-class Operations, Administration, and Maintenance (OA&M) IETF MPLS-TP Continuity Checks (CC) Bidirectional Forwarding Detection (BFD) (RFC5860) IETF MLS-TP Continuity Verification (CV) LSP Ping and LSP Traceroute IP/ MPLS OAM Virtual Circuit Connectivity Verification (VCCV), Ping, and Traceroute
Optical Networking
8-11
Network Timing & Synchronization Synchronous Ethernet IEEE 1588v2 Derive and provide synchronization from BITS and Ethernet interfaces on CPT 200 and 600 Derive, provide, and transparently passes timing and frequency information on all CPT 200 and 600 Ethernet interfaces Cisco Transport Controller: End-to-End Network Point and Click Provisioning, Maintenance, & Alarm Correlation. Integrated Robust Command Line Interface (CLI) IETF Standard Based MPLS-Transport Profile: RFC 5317 RFC 5654 RFC 5921 RFC 5880 RFC 5960 RFC 5586 RFC 5951 RFC 5950 Ethernet Virtual Connections (EVCs): Ethernet services are supported using individual EVCs to carry traffic belonging to a specific service type or end user through the network. EVC-based services can be used in conjunction with MPLSbased L2VPNs and native Ethernet switching deployments. Flexible VLAN classification: VLAN classification into Ethernet flow points (EFPs) includes single-tagged VLANs, double-tagged VLANs (QinQ and 802.1ad), contiguous VLAN ranges, and noncontiguous VLAN lists. IEEE Bridging: The line cards support native bridging based on IEEE 802.1Q, IEEE 802.1ad, and QinQ VLAN encapsulation mechanisms. Resilient Ethernet protocol (REP): The REP provides a resilient, fast-convergence mechanism for aggregating and connecting to Ethernet-based access rings. MPLS-TP Circuit with Ethernet over MPLS-TP (EoMPLS-TP): EoMPLS-TP transports Ethernet frames across an MPLS-TP LSPs using pseudowires. Individual EFPs or traffic from an entire port can be transported over an MPLS-TP network using pseudowires to an egress interface or sub-interface. Virtual Private LAN Services (VPLS): These services are included in a class of VPN that supports the connection of multiple sites in a single bridged domain over a MPLS-TP network. VPLS presents an Ethernet interface to customers, simplifying the LAN and WAN boundary for service providers and customers, and enabling rapid and flexible service provisioning, because the service bandwidth is not tied to the physical interface. All services in a VPLS appear to be on the same LAN, regardless of location. Pseudowire redundancy: Pseudowire redundancy supports the definition of a backup pseudowire to protect a primary pseudowire in case of failure. Multi-segment pseudowire stitching: Multi-segment pseudowire stitching is a method for interworking two pseudowires together to form a cross-connect relationship. IGMP v2 and v3 snooping: This Layer 2 mechanism efficiently tracks multicast membership on an L2VPN network. Individual IGMP joins are snooped at the VLAN level or pseudowire level. In residential broadband deployments, this scenario enables the network to send only channels that are being watched to downstream users. Multicast VLAN Registration (MVR): MVR optimizes the control plane (IGMP) load between the router and switch. MVR feature enables switch to aggregate different JOINs received on different VLANs (from the receivers) into one JOIN (on a single VLAN, which could be the same as or different from the VLANs of the receiving ports) towards the router. The switch then distributes (replicate) the received content into the relevant ports. IP/ MPLS OA&M: Virtual Circuit Connectivity Verification (VCCV), Ping, and Traceroute MPLS-TP OAM: The line cards support MPLS-TP OAM with GACH/ GAL support. MPLS-TP BFD OAM Support. Ethernet OAM will be supported in a follow-up release as a software upgrade. MPLS-TP: 1:1 MPLS TP LSP delivers Layer 1 protection switching for networks with sub-50ms APS switching for link, node, path failures. Bidirectional Forwarding Detection (BFD): BFD is a detection protocol that is designed to provide fast forwarding path-failure detection times for all media types, encapsulations, topologies, and routing protocols. 802.3ad Link Aggregation Bundles: The line cards support a bundle of multiple links to provide added resiliency and the ability to load balance traffic over multiple member links.
L2VPN services
Multicast
OA&M
High Availability
8-12
Manageability
Cisco Transport Manager is the industrys most advanced optical transport domain manager. It delivers the full power of the Cisco Carrier Packet Transport System products to a customers operation personnel and back office systems alike. A carrier-class Element Management System (EMS), Cisco Transport Manager: Lowers network operations, administration, maintenance, and provisioning costs Provides fault, configuration, performance, and user access security management capabilities Features a comprehensive client/ server-based platform that scales to manage the equivalent of 3000 CPT50, CPT200, CPT600 network elements and up to 100 simultaneous user sessions Offers network provisioning, surveillance, and performance monitoring features that help customers rapidly deploy and maintain revenue-generating services that are built on Cisco Optical Networking and Voice Gateway Systems The intelligent Cisco Transport Manager High Availability Agent is designed to automatically detect problems, attempt to restart processes, and fail over to a secondary Sun UNIX server if required. The Cisco Transport Manager High Availability solution: Significantly reduces the risk of losing data Optimizes the Cisco Transport Manager platform to provide continuous service in the event of a failure does occur Helps ensure constant visibility in a customers network Cisco Transport SoftwareCisco Transport Software provides comprehensive network security features, including access control lists (ACLs); control-plane protection; authentication, authorization, and accounting (AAA) and RADIUS; Secure Shell (SSH) Protocol; SNMPv3; and Hypertext Transfer Protocol Secure (HTTPS); SecurityMany critical security features are supported: 802.1ad Layer 2 Control Protocol (L2CP) and bridge-protocol-data-unit (BPDU) filtering MAC limiting per EFP or bridge domain Unicast, multicast, and broadcast storm-control blocking on any interface or port Unknown Unicast Flood Blocking (UUFB) 4x10-Gbps 802.3 Ethernet SFP+ Ports 2 GB DRAM 13.035 x .975 x 10.085 inches2.30 pounds (US) 513.1990 x 2.4765 x 25.6159 centimeters 1.04kg Max Power 128 Watts Nominal Power 89 Watts GR-1089 Issue 5, GR-63 Issue 3
Security
Connectivity Memory Physical dimensions (H x W x D); Weight Power Network Equipment Building Standards (NEBS)
CPT 200 Environmental & Compliance Standardization Physical dimensions (H x W x D); Weight Power Network Equipment Building Standards (NEBS) Physical dimensions (H x W x D) 13.035 x .975 x10.085 inches2.30 pounds (US) 513.1990 x 2.4765 x 25.6159 centimeters1.04kg Max Power 128 Watts Nominal Power 89 Watts GR-1089 Issue 5, GR-63 Issue 3
Optical Networking
CPT 50 Environmental & Compliance Standardization AC: 1.560 in. x 17.417 in. x 9.095 in. DC ANSI: 1.560 in. x 17.417 in. x 9.095 in. DC ETSI: 1.560 in. x 17.417 in. x 9.095 in. 4.22 Kg Max Power 210 Watts Nominal Power 159Watts 5C to 55C 5-85% noncondensing, operation is guaranteed up to 95% noncondensing -40C to 70C 93% noncondensing 4000 meters /13,123.36 feet Chapter 8: Optical Networking 8-13
Weight Power Operating temperature (nominal) Operating humidity (nominal) (relative humidity) Storage temperature Storage (relative humidity) Operating altitude
8-14
9-5
9-5
9-6
Network management
9-1
Cisco Prime Network is a comprehensive and feature-rich device operation, administration, 9-7 and network fault management solution for IP NGNs. It provides GUI-based device component configuration and hundreds of prebuilt and downloadable scripts. Operators achieve efficiencies through real-time display of network event, state, and configuration changes, as well as topology-guided troubleshooting, automatic root-cause identification, and alarm reduction through de-duplication. It supports a standardsbased northbound interface (NBI), Software Development Kits (SDKs), and partner and thirdparty applications including InfoVista VistaInsight for Networks and IBM Tivoli Netcool. As a component of Cisco Prime Carrier Management suite, this solution helps accelerate the time to value of Cisco architectures while easing the deployment and management of multivendor networks. Cisco Prime Provisioning automates design, fulfillment, and auditing of network services across core, aggregation, access, and edge devices. It helps accelerate the time to value of Cisco equipment deployed in IP NGNs through automated resource management and profile-based planning and provisioning. Policydirected workflows help accelerate reliable service deployments across Multiprotocol Label Switching (MPLS), Carrier Ethernet, and Radio Access Network (RAN) backhaul networks. It simplifies configuration and management of MPLS tunnels. Workflow-based troubleshooting and diagnosis and traffic-engineering management helps decrease mean time to repair (MTTR) and enable service providers to meet stringent service-level agreements (SLAs). As a component of the Cisco Prime Carrier Management suite, this solution helps accelerate the time to value of Cisco architectures while easing the deployment and management of multivendor networks. Cisco Prime Optical is an advanced optical domain management solution supporting todays fast-evolving converged IP and optical networks consisting of legacy Time-division multiplexing (TDM) and dense wavelength-division multiplexing (DWDM) technologies. It supports the Cisco ONS and Carrier Packet Transport (CPT) product families and enables highly resilient, scalable, and flexible transport networks. The GUI-based management system makes advanced management capabilities such as A-to-Z circuit provisioning easy to learn and use. The solution is cost-effective, running on both Oracle Sun Solaris and Linux Red Hat Distribution; no additional third-party software is required because the Oracle database is embedded in the application. Cisco Prime Optical can be easily integrated with third-party operations-support-systems (OSSs) tools with its TeleManagement Forum (TMF) 814 standard northbound interface options. As a component of the Cisco Prime Carrier Management suite, this solution helps accelerate the time to value of Cisco architectures while easing the deployment and management of multivendor networks. Cisco Prime Performance Manager is an extensible and highly scalable performance management solution for next-generation architectures, supporting Carrier Ethernet, mobile backhaul, and IP/MPLS networks. It generates prepackaged reports on a wide range of network services, technologies, and devices to enable detailed visibility into network and service performance across the entire network. When used together with Cisco Prime Network, this application enables proactive service assurance by providing real-time access to critical network information and performance statistics. It is easy to integrate this application with the OSS through CSV files for bulk statistics and Simple Network Management Protocol (SNMP) traps for fault indications. As a component of the Cisco Prime Carrier Management suite, this solution helps accelerate the time to value of Cisco architectures while easing the deployment and management of multivendor networks. 9-8
9-8
9-9
IT Management Cisco Prime Infrastructure Cisco Prime Infrastructure delivers comprehensive lifecycle management of the wired 9-10 and wireless access, campus, and branch-office networks, and rich visibility into end-user connectivity and application performance assurance problems. Cisco Prime Infrastructure accelerates the rollout of new services and provides secure access and management of mobile devices, making bring-your-own-device (BYOD) workspaces a reality for corporate IT. Tightly coupling client awareness with application performance visibility and network control, Cisco Prime Infrastructure helps ensure uncompromised enduser quality of experience (QoE). Deep integration with the Cisco Identity Services Engine (ISE) further extends this visibility across security and policy-related problems, presenting a complete view of client access problems with a clear path to solving them. Cisco Prime Infrastructure provides: All of the existing Cisco Prime Network Control System (NCS) capabilities for converged user access visibility, wireless lifecycle management, troubleshooting, radio frequency planning, and optimization Wired lifecycle management functions from Cisco Prime LAN Management Solution (LMS), such as inventory, configuration, and image management; compliance reporting; integrated best practices; and reporting End-to-end network visibility of applications and services to quickly isolate and troubleshoot performance problems Configuration compliance auditing against best practices baselines or regulatory standards such as the Payment Card Industry Data Security Standard Powerful Representational State Transfer (REST)- based application programming interfaces (APIs) to gather and distribute network information for operations, capacity planning, and business intelligence
9-2
Routing and Switching Management Cisco Multicast Manager Cisco Multicast Manager simplifies multicast monitoring and troubleshooting. This web-based network management application is ideal for: Enterprise customers who employ multicast for financial market data Cable operators that use multicast to transport video over IP Service providers that need to manage a multicast VPN (MVPN) environment Integrated in the Cisco Catalyst 6500 Series Switches, the Cisco NAM Service Modules can provide high-performance traffic monitoring, deep insightful packet captures, and accurate performance analytics. Prepackaged dashboards, interactive reports, and intuitive workflows enhance operational efficiency and accelerate problem resolution. The NAM-1 and NAM-2 modules are also supported on Cisco 7600 Series Routers. Cisco Prime Network Analysis Module Software for the Cisco Integrated Services Routers Generation 2 (ISR G2) is a software option for the Cisco ISR G2 Services-Ready Engine (SRE). The software allows you to remotely manage a branch office using a built-in web-based user interface. The purpose-built workflows provide integrated visibility into end-user experience, traffic statistics, and packet capture analysis, essential to manage committed service levels. As next-generation, purpose-built appliances, Cisco NAM 2300 Series Appliances offer an optimal blend of application visibility, performance, and usage analytics along with continuous packet-capture capabilities. These appliances offer the maximum deployment flexibility to meet monitoring and troubleshooting needs at different places in the network. They can be deployed in data center, campus, WAN edge, and service provider networks. Integrated with the Cisco Nexus 1010 and Nexus 1110 Series Appliance, Cisco Prime Network Analysis Module (NAM) offers a dedicated solution that extends visibility into the virtual-machine network with Cisco Nexus 1000V switch deployments. It helps to identify performance bottlenecks, troubleshoot performance problems, and optimize the use of virtual-machine network resources. 9-11
Network Analysis Module (NAM) Products Cisco Catalyst 6500 Network Analysis Modules (NAMs) Cisco Prime Network Analysis Module (NAM) for ISR G2 ServicesReady Engine (SRE) Cisco NAM 2000 Series Appliances 9-11
9-11
9-11
Cisco Prime Network Analysis Module (NAM) for Cisco Nexus 1100 Series Appliance Core Services
9-11
Cisco Prime Home Cisco Prime Home is a feature-rich remote management and provisioning solution based on the Broadband Forums TR-069 suite of protocols, providing visibility into the home network, reducing operating costs, and improving the subscriber experience with: Zero-touch provisioning, remote configuration and software upgrades Real-time problem diagnosis and troubleshooting Easy-to-use web portal for both subscribers and service providers Consumer services, including managed Wi-Fi, managed firewall, parental controls, and bandwidth monitoring An analytics engine for greater visibility into home network usage and characteristics
9-12
Cisco Prime Cisco Prime Network Registrar provides fast, scalable, and reliable Domain Name System 9-13 Network Registrar (DNS), Dynamic Host Configuration Protocol (DHCP), and IP-address-management (IPAM) services for both IPv4 and IPv6. It provides the following: Reliability with avalanche prevention to reduce downtime after network outages, DHCP safe failover, support for high-availability DNS, IPAM database replication for backup of IPAM data Speed and scalability: It can assign more than 47,000 DHCP leases per second and significantly accelerate DNS queriesand can provide DHCP services for more than 50 million devices in a single customer deployment. Centralized, automated management of IP address space and DHCP servers that results in significant operational efficiencies and elimination of IP conflicts and configuration errors. IPv6 support helps automate and manage the transition from IPv4 to IPv6 with dual-stack deployments on a single server. Domain Name System Security Extension (DNSSEC) support helps prevent cache poisoning and other common DNS vulnerabilities. Cisco Broadband Access Center Cisco Broadband Access Center is a centralized, automated platform that controls and configures residential gateways and IP devices. It provides: Recognition of all devices coming into the service provider network Generation and distribution of the appropriate IP lease and configuration files based on the service provider business policies Distributed architecture with central management and single point of integration Support for tens of millions of devices and avalanche protection to limit downtime after network outages Support for DOCSIS, PacketCable, CableHome, and TR-069 device types Cisco Prime Access Registrar is a high-performance carrier-class RADIUS and Diameter solution for authentication, authorization, and accounting (AAA) access control services. Capabilities include: One common server platform with support for a wide range of network access technologies, including DSL, dialup, Code Division Multiple Access (CDMA), General Packet Radio Service (GPRS), Universal Mobile Telecommunications Service (UMTS), wireless LAN (WLAN), public WLAN, WiMAX, femtocell, and others Speed and scalability to support large service deployments and millions of simultaneous active sessions 9-13
Network management
9-14
9-3
Extensibility that allows providers to meet unique business, regulatory, and technical requirements Broad integration with an extensive variety of external data stores, provisioning and billing systems, and multivendor network access servers Session and resource management tools that attract user sessions and dynamically allocate resources such as IP addresses and user or group session limits Operational Support Systems Cisco Prime Fulfillment Cisco Prime Fulfillment is a comprehensive, end-to-end service-fulfillment solution that promotes highly efficient coordination of business and operational processes for service design, creation, and delivery. The solution converts customer orders into live services through efficient resource management and communications with systems, partners, and other entities within todays highly complex telecommunications service ecosystem. The Cisco Prime Fulfillment solution also enables optimization of the entire product lifecycle management processfrom initial design to the provisioning of the new product or service. It is designed to promote continuous improvements in operational efficiencies to help service providers achieve their business goals while meeting demanding subscriber expectations. Cisco Prime Fulfillment provides the following benefits: Faster revenue generation of new services Compatibility with existing systems for delivery of new, value-added services Efficient reuse of resources and intelligence Highly secure alignment of order processing, inventory management, and network activation before new service launches Automated provisioning of next-generation services across multiple architectures Cisco Prime Collaboration provides simplified, unified management for Cisco Unified Communications and Cisco TelePresence systems, including accelerated Cisco voice provisioning and real-time monitoring and troubleshooting of Cisco voice and video. It provides: Automated processes for initial Cisco Unified Communications deployments and day-2 moves, adds, and changes and deletions help accelerate site rollouts and maintenance and lower operating expenses. Policy-based automation aligns with enterprise rules, workflow, and delegation. Tracking of all provisioning changes expedites auditing and troubleshooting. A single pane of glass for comprehensive monitoring and troubleshooting of Cisco Unified Communications and Cisco TelePresence networks includes dashboard summaries to view network status at a glance and quickly identify potential problems. Event correlation facilitates event notification reduction. Proactive fault detection and rapid isolation using purpose-built diagnostic tools to simulate traffic and test circuits and endpoints help expedite operator resolution of problems before they affect end users. The Cisco Media Gateway Controller Node Manager is an element manager for the fault, configuration, performance, and security management of the Cisco PGW 2200 Softswitch gateway. 9-15
9-16
Video, Cable, and Content-Delivery Management Cisco Broadband Troubleshooter provides a diagnostic tool for RF technicians to quickly and easily isolate problems in the cable plant. It performs the following functions: Analyzes and sorts RF conditions into specific categories such as attenuation, provisioning, and noise or packet corruption (cyclic redundancy check [CRC]) errors Provides dashboard views of network health, cable modem termination system (CMTS), and cable modem statistics and snapshots Correlates cable modem to subscriber information Works with an optional tool to map cable modems and status to subscriber street-level views Cisco Mobile Wireless Transport Manager provides monitoring and management capabilities for the Cisco RAN Optimization Solution for GSM and UMTS backhaul, Cisco IP RAN solutions, Cisco IP Transfer Point (ITP) networks, and Cisco Mobile Internet solutions. Cisco and our authorized partners provide a comprehensive portfolio of services for your network management solutions across the plan, build, and manage phases of the Cisco Lifecycle Services approach. 9-17
Wireless Management Cisco Mobile Wireless Transport Manager Lifecycle Services for Network Management Products and Solutions Technical Services for Operating Network Management Products 9-17
9-17
These technical support services can help you maximize the availability, security, and performance of your Cisco network management products.
9-18
9-4
For More Information Product Ordering To place an order, visit: http://www.cisco.com/en/US/ordering/index.shtml. Cisco Services Cisco Services can be ordered directly or through our global network of certified partners, visit: http:/ / www.cisco.com/ web/ services/order-services/index.html End-of-Life and End-of-Sale Products Please visit the end-of-life and end-of-sale website for a complete and up-to-date listing of products that are no longer being sold or supported, the replacement products that are available, and information about product support: http://www.cisco.com/en/US/products/prod_end_of_life.html. Note: This chapter provides only a subset of Cisco products and part numbers. For the most up-to-date and comprehensive information, refer to the Cisco website at http:/ / www.cisco.com/ go/ nms, the Cisco ordering website at http:/ / www.cisco.com/ en/ US/ ordering/ index.shtml, or the URL listed in the For More Information section of each product.
Network management
Cloud Automation
Cisco Network Services Manager
Cisco Network Services Manager is designed to enable customers to organize their network resources into a flexible multitenant infrastructure that integrates the network with their existing IT operational tools and processes.
Carrier Management
Cisco Prime Central
Cisco Prime Central functions as the centralized user portal for the Cisco Prime Carrier Management components, including Cisco Prime Provisioning, Cisco Prime Network, Cisco Prime Performance Manager, and Cisco Prime Optical. It enables highly intelligent, end-to-end management of todays complex, converged networksfrom access all the way to the core.
Network management
9-8
Network management
9-9
IT Management
Cisco Prime Infrastructure
Cisco Prime Infrastructure delivers comprehensive lifecycle management of the wired and wireless access, campus, and branch-office networks, and rich visibility into end-user connectivity and application performance-assurance problems. Combining the wireless functions of Cisco Prime Network Control System (NCS) with the wired functions of the Cisco Prime LAN Management Solution (LMS), Cisco Prime Infrastructure simplifies and automates many of the day-to-day tasks associated with maintaining and managing the end-to-end network infrastructure from a single pane of glass. The new converged solution delivers all of the existing wireless capabilities for RF management, user access visibility, reporting, and troubleshooting along with wired lifecycle functions such as discovery, inventory, configuration and image management, automated deployment, compliance reporting, integrated best practices, and reporting. A new operational model based on lifecycle processes aligns the product functions with the way network operators do their jobs. Cisco Prime Infrastructure empowers network managers with service-assurance visibility to more effectively manage their networks as well as the services their networks deliver. Converging device lifecycle management with service-assurance monitoring workflows enables a holistic, multidimensional view of the user, application, and network. This powerful combination of application awareness and network savvy helps IT organizations realize operational efficiencies that include improved responsiveness to business needs, faster problem identification and remediation, and lower incident and problem rates. Cisco Prime Infrastructure empowers network managers with service-assurance visibility to more effectively manage their networks as well as the services their networks deliver. Converging device lifecycle management with service-assurance monitoring workflows enables a holistic, multidimensional view of the user, application, and network. This powerful combination of application awareness and network savvy helps IT organizations realize operational efficiencies that include improved responsiveness to business needs, faster problem identification and remediation, and lower incident and problem rates. Cisco Prime Infrastructure enables embedded Cisco instrumentation and industry-standard technologies, such as NetFlow, Network-Based Application Recognition (NBAR), medianet, Cisco Performance Agent, and Simple Network Management Protocol (SNMP), to deliver networkwide application-aware visibility. It provides operations monitoring and quality-of-experience (QoE) workflows that reduce instrumentation configuration and data collection complexity to quickly and easily gain insight into network and application performance. It also integrates with the Cisco Prime Network Analysis Module (NAM) to permit the collection and correlation of granular flow- and packet-based data from one NAM or many, helping enable deeper analysis and troubleshooting to rapidly solve challenging application and network problems.
Network management
Application performance intelligence helps characterize the end-user experience and isolate application response-time problems. Cisco Performance Agent reporting enables multibranch-office performance visibility from centralized network-analysis-module (NAM) deployment. Flow- and packet-based traffic monitoring combines a broader network performance view with deeper packet analysis for rapid troubleshooting. Historical analysis with an embedded performance database helps address unanticipated performance problems and assess optimization needs. Web-based packet capture, decode, and error scan expedite resolution of complex performance problems. Representational State Transfer (REST) or XML-based application programming interface (API)based integration preserves investments in existing management assets.
Core Services
Cisco Prime Home
Cisco Prime Home is a feature-rich, standards-based remote management and provisioning solution that provides visibility into the home network, reduces operating costs, and improves the subscriber experience. Powerful customer support tools, an intuitive consumer portal, and extensive analytics combine to make the home network easier to set up and support.
9-12
Network management
9-13
9-14
Network management
9-15
Cisco Prime Collaboration provides efficient, integrated service-assurance management through a single, consolidated view of the Cisco voice and video collaboration environment. The solution proactively notifies operators of problems and facilitates their speedy resolution through proactive fault detection and rapid isolation using purpose-built diagnostic tools. As a result, Cisco Prime Collaboration expedites operator resolution of service-quality problems before they affect end usersfor a superior end-user collaborative experience.
9-16
Wireless Management
Cisco Mobile Wireless Transport Manager
With the Cisco Mobile Wireless Transport Manager (MWTM), Cisco offers monitoring and management capabilities for the Cisco Global System for Mobile Communications (GSM) Radio Access Network (RAN) Optimization solution, Cisco IP Transfer Point (ITP) networks, and Cisco Mobile Service Exchange Framework (mSEF).
Network management
incidents. Network Management Architecture Services support these objectives through assessments, recommendations, and support for implementing and integrating network management systems. Network Management Architecture Assessment Service Review your existing tool capabilities for operating the network with the Network Management Architecture Assessment Service. It provides a management architecture roadmap that aligns with network operations leading practices and future operations requirements so your IT operations team can achieve and maintain a high level of tool-based process automation. Network Management Systems Planning and Design Service Plan and design your network management architecture and systems for fault, configuration, performance, and device-security management so your IT operations team can effectively operate a new network solution or technology. The service also supports the implementation and integration of network management systems based on your existing, documented network management architecture. Cisco IT Operations Planning and Design Services Help your IT operations team to take over a new solution or technology from your engineering team and prepare to support cost-effective day-by-day operations. IT Operations Support Planning Service Prepare your IT operations team for the operations tasks necessary to support a new solution or technology. This service helps define staffing, expertise, roles, and responsibilities; and to develop tools, skills, and detailed processes that will enable smooth transfer of new technologies and solutions into IT operations. Operations Gap Resolution Service Gap resolution helps you implement operational capabilities to improve your operations environment, based on gaps identified through IT operations support planning. Cisco Software Application Support Service Strengthen application availability, functions, and reliability with the Software Application Support Service. Cisco Network Availability and Operations Optimization Service Effectively adopt, manage, and scale technologies and applications in your converged network environment by optimizing your operational processes and network management tools.
9-18
Cisco operating system (Cisco IOS Software) software support to extend the life of Cisco devices with improved security, increased performance, bandwidth management, new protocol support, and greater interoperability Proactive diagnostics and real-time alerts on select devices with Smart Call Home
* Products with SAS or SASU and Cisco SMARTnet or SP Base Service have hardware devices and software applications.
Cisco SMARTnet or SP Base Service is the support service for the hardware and OS and SAS is the support for the software application. Both are required to ensure that the product is completely covered.
Network management
9-19
9-20
Plan
Develop an architectural strategy, transformational roadmap, and designs map in alignment with your business requirements. Smart service capabilities enable you to better understand what you have running in your IT environment so you can more effectively evaluate what needs to change and how to achieve transformation. Strategy and Analysis Services: Effectively support new and future business requirements by creating architectural strategies and roadmaps for transforming your network architecture and operations management. Assessment Services: Reduce deployment costs and delays by determining network and IT infrastructure readiness to support a new technology, application, architecture, or solution. Design Services: Improve infrastructure performance, security, and scalability by establishing a flexible, resilient, scalable architectural foundation.
Build
Validate that the solutions you have designed are ready for your production network, and then implement or migrate new solutions and applications. As you build your network, smart service capabilities provide continuous visibility into the overall state of your network, putting you in a better position to successfully manage deployment and migration. Validation Services: Mitigate risks, accelerate time to market, and improve availability by confirming your solution meets your requirements before implementation. Deployment Services: Reduce costly delays, risk, and rework by receiving expert assistance to deploy new solutions or applications. Migration Services: Control costs, improve efficiency, and mitigate risk while managing refresh by taking a systematic, holistic, efficient approach to upgrading your infrastructure.
Manage
Optimize your infrastructure, applications, and service management approach, and monitor and manage your infrastructure. In day-to-day operations, smart service capabilities provide visibility into your infrastructure, delivering the intelligence you need to preempt potential problems, quickly resolve those that arise, and simplify network management and support processes. They enable a more reliable network so you can turn your focus to initiatives that bring greater value to the business. Product Support Services: Increase operational efficiency, lower support costs, and manage risk with automated network-equipment inventory management and award-winning support. Solution Support Services: Quickly resolve problems within complex multivendor solutions through priority access to dedicated and focused resources.
Cisco Services
10-1
Optimization Services: Improve performance, availability, and resiliency of services by optimizing your infrastructure, applications, and service management. Operations Management Services: Simplify network operations, lower the total cost of network ownership, and accelerate adoption of advanced technologies securely while retaining visibility and control.
10-2
Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco Website at www.cisco.com/go/offices. CIsco and the Cisco logo are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the U.S. and other countries. To view a lits of Cisco trademarks, go to this URL:www.cisco.com/go/trademarks. Third party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R)
All contents are Copyright 1992-2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.