SlideShare a Scribd company logo
1 of 57
Download to read offline
The image part with relationship ID rId2 was not found in the file.
The image part with
relationship ID rId2
was not found in the
file.
Новая	эра	корпоративных	сетей	
с	Cisco Catalyst 9000	и	другие	
инновации	для	маршрутизации	
и	коммутации.
Денис	Коденцев
Инженер-консультант, CCIE
2
DNA	Center	
• Инновационное	решение	для	внедрения	и	управления	
корпоративной	сетью	и	сетевыми	сервисами
DNA	Assurance	&	Analytics
• Анализ	и	проактивное обнаружение	проблем	
Software-Defined	Access
• Универсальная	сетевая	фабрика	с	динамической	
микросегментацией
Enhanced	Network	as	a	Sensor
• Обнаружение	вредоносного	ПО	в	зашифрованном	
обмене	(без	расшифровки)
Коммутаторы	Catalyst	9000
• Первые	специально	созданные	в	рамках	DNA	коммутаторы
Лицензирование с поддержкой подписки | Дополнительные сервисы от Cisco
Новая эра сетей Cisco – анонс 20 июня 2017
Cisco	Catalyst	9000
© 2017 Cisco and/or its affiliates. All rights reserved. 4
Семейство	коммутаторов	Catalyst	9K
Catalyst 9300
Lead Fixed Access
Catalyst 9400
Модульный доступ
Catalyst 9500
Lead Fixed Core
Единое ПО, возможности, лицензирование
Cisco	Catalyst	9000	
инновации
UADP 2.0
Cisco IOS® XE Software
SD-Access
x86 CPU and containers
Encrypted Traffic Analytics
(ETA)*
AES256/MACSEC256*
Trustworthy systems
StackWise® Virtual*
IEEE1588 and AVB*
NBAR2
Perpetual/fast PoE
Model-driven programmability
Patching/GIR
Streaming telemetry*
© 2017 Cisco and/or its affiliates. All rights reserved. 5
Up	to	32MB
Packet	Buffer
Up	to	64K	x2
Netflow RecordsEmbedded	CPUs
Shared	
Lookup	
Up	to	240GE
Bandwidth
384K	Flex	
Counters
Up	to	2X	to	4X	
forwarding	+	TCAM
Universal	Deployments
Adaptable	Tables
Enhanced	Scale/Buffering
Multicore	resource	share
Investment	Protection
Flexible	Pipeline
UADP	2.0	– Инновационный	программируемый	ASIC
© 2017 Cisco and/or its affiliates. All rights reserved. 6
Ingress	
Programmable	
Pipeline
Punt
Flex	Parser
IGR
NF
SPAN
VXLAN
L3/L2
FIB
Lookup
Table
Lookup
Table
Lookup
Table
ACL
MCast
Lookup
Table
Lookup
Table
Lookup
Table
QOS
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
Lookup
Table
SPAN
Flex	Parser
EGR
Stage
#..
Sec
MPLS
Policy
Egress	
Programmable	
Pipeline
TCAM/	SRAM
Flexible
Look	up	Tables
(Shared
Across	Cores)
Programmed	to	
understand
VXLAN
Programmed	to	
understand
MPLS
Настройка	конвейера	обработки	с	помощью	микрокода
ASIC
Micro	Code
Software	Features
VXLAN MPLS
NG	
Protocol
7
Представляем Catalyst 9300
1G Data
mGig UPOE
1G UPOE/POE+
2.5G at the
Price of 1G
40G at the
Price of 10G
Новое решение для фиксированного доступа
24 Ports
Modular Power SuppliesModular UplinksModular Fans
UADP 2.0
Open IOS-XE
SD-Access
X86 CPU & Containers
Encrypted Traffic
Analytics (ETA)*
256 bit MACSEC*
Trustworthy
Systems
StackWise Virtual*
IEEE1588 & AVB*
NBAR2
Perpetual/Fast PoE
Model Driven
Programmability
Patching/GIR
Catalyst 9K Leadership
Streaming Telemetry*
48 Ports
8x10G 2x40G 4x mGig 4x1G 350W 715W 1100
W
*not available at FCS
Only
Stackable
Switch with 8X
10G Uplinks
Highest
2.5G/mGig
Density in the
Industry
Представляем Catalyst 9400
Новое решение для модульного доступа
4-Slot* 7-Slot 10-Slot
Power Supply
3200W AC
3200W DC*
2400W AC*
Core Linecards
24x 10G SFP+*
48x1G SFP*
24x1G SFP*
Access Linecards
24xmGig + 24xUPOE*
48xUPoE
48xPoE+*
48xData
Supervisor
Sup-1: 80G/Slot Access Optimized
Sup-1XL*: 120G/Slot Core
Optimized
Redundancy
is now
Table-stake
Industry’s
Highest PoE
Scale
9Tbps System
b/w UADP 2.0
Open IOS-XE
SD-Access
X86 CPU & Containers
Encrypted Traffic
Analytics*
256 bit MACSEC*
Trustworthy
Systems
StackWise Virtual*
IEEE1588 & AVB*
NBAR2
Perpetual PoE*
Model Driven
Programmability
Patching/GIR
Catalyst 9K Leadership
Streaming Telemetry*
*not available at FCS
Catalyst 9400- инновации и преимущества Extending Cat 4500E
Leadership in Modular
Access
Up to 1TB SATA Storage
Side-to-side
air flow
DualServiceable
Fan Tray
Mix AC & DC Power Supplies
N+1/N+N Modular Power Supply
UPOE Simultaneously on all ports
Native 25/10G & 40G Uplinks
4X Throughput
3X Client Scale
2X Wireless Scale
4X Power scale
3X Buffering
10X Bandwidth
4X Memory & Flash
Lower Power
Better Acoustics
Higher MTBF
MPLS VPN
While preserving ….
HA Architecture
Investment
Protection Story
Intel x86 CPU,
4 Core 2.4GHz
Rear accessible Fan
Tray for flexible cable
management
Ergonomic handles
for efficient weight
distribution
Up to 480Gbps/Slot
Fits non-standard
racks (16”)
Re-architected power
distribution for 10% higher
energy efficiency
Efficient Platinum Rated
Power Supplies
© 2017 Cisco and/or its affiliates. All rights reserved. 10
Supervisor
Архитектура	C9400
Forwarding
Features
Embedded	CPUs
Centralized	Architecture
Control	Plane
Container
HA	communication
Passive	BackPlane
Upto	480G	BW	per	slot
Line	Card
STUB
ASIC
Line	Card
STUB
ASIC
Line	Card
STUB
ASIC
…
Open	
IOS-XE
Catalyst 9400 – новый уровень надежности
Only Campus
Access platform
in the industry to
support ISSU
N+1 Power supply redundancy
Safeguard against power supply
failure
Dual Supervisors
with sub 50ms ISSU* & NSF/SSO
“Transparent” line card design
Minimal on-board components for
very high MTBF
Unique uplink redundancy
Uplinks of failed supervisor continue to
remain active
Redundant Fans
N+1 Fan redundancy within Fan-tray;
Up to 2 minutes of fan-less operation for
servicing fan-tray
N+N Power Supply Redundancy
Safeguard against power circuit failure
Catalyst 9400 – SUP1XL, SFP LCs
C9400-LC-24XS
24-Port	SFP/SFP+C9400-LC-48S
48	Port	SFP
Line	rate	on	all	ports
C9400-LC-24S
24	Port	SFP
Line	rate	on	all	ports
Nov	`17
Mar	`18
Nov	`17
Mar	`18
C9400-SUP1XL
Up	to	120G	per	slot
Sup1XL	– Up	to	120G	
Per	Slot
Distribution	Template	
with	Sup1XL*
Fiber	to	the	desktop
Collapsed	Access	
Distribution
SDA	Border	Template*
Note:	120G	per	slot	on	7	Slot
Full	Portfolio	readiness	in	7	and	10	Slot	chassis	for	4K	Migration
Catalyst 9400 – mGig & PoE+
48x	10/100/1000	Data 48x	10/100/1000	UPoE
24x	1G	+	24x	mGig UPoE
48x	10/100/1000	PoE+
Shipping
24x	mGig +	24x	1G
PoE+	for	price	neutral	
transition
192	ports	of	mGig
Nov	`17
Mar	`18
Highest	mGig Port	Density	in	the	Industry
© 2017 Cisco and/or its affiliates. All rights reserved. 14
8 x	10G 2 x	40G
The	only	40G Optimized	Enterprise	Class	Switch
40	x	10G
12	x	40G
24	x	40G
Line	rate	on	all	ports
Non-blocking ports
with 5.3MB (shared)
packet buffer per port
Built-In RFID Up to 24 ports
of QSFP
Internal Storage : 16GB
External Storage :1xUSB 2.0
(front) , 1xUSB 3.0 (back)
High scale control plane
with 2.4GHz x86 CPU with
16 GB DDR4 Memory
IOS 16.x
SD-Access, MPLS AVB,
WRED,NAT, PAT, NBAR2
Stackwise Virtual
Up to 2x 950W
AC/DC PSU
5 x Fan Trays
3X Throughput
3X Bandwidth
5X Buffering
5X CPU Speed
4X Memory & Flash
4X Port Speed
2.4X 10G Port Density
Представляем	Catalyst	9500
новое	решение	для	фиксированного	ядра
Новые возможности по управлению Catalyst 9K
Ease of Serviceability with Blue
Beacons on each component
Ergonomic Design with Industry
standard Icons
Wireless Console Access with
Bluetooth
Mobil
e
Lapto
p
Icons
Inventory Management Efficiency
with Built-in RFID
Программные	инновации	
Catalyst	9K	и	не	только
17
Надежного периметра уже недостаточно
Phishing
Email Link
Email attachment
Malware on
Personal device
Social Media Site with Malware
1
Initial Compromise
Malware Propagation2
Botnet creation /
Privilege Escalation
3
DDoS Attack /
Data Exfiltration
4
Perimeter Security
ineffective
Cryptographic Audits
Malware in Encrypted
Traffic
§ Netflow Data:	SrcIP,	DstIP,	SrcPort,	DstPort,	Proto,	#Bytes,	#Packets
§ Intraflow Data:	Sequence	of	Packet	Lengths	&	Times	(SPLT),	Byte	Distribution,	…
§ TLS	Metadata:	Extensions,	Ciphersuites,	SNI,	Certificate	Strings,	…
Специализированная	телеметрия
Encrypted Traffic Analytics
Эксклюзивная поддержка на Catalyst 9K
Основная	задача Вторичная	задача
Make	the	most	of	the
unencrypted	fields
Identify	the	content	type	through	the	
size	and	timing	of	packets
Initial	data	packet
Sequence	of	packet	lengths	
and	times
Как	мы	анализируем	зашифрованный	трафик?
Self-Signed certificate
Data exfiltration
C2 message
Who’s	who	of	the	Internet’s
dark	side
Threat
intelligence	map
Broad behavioral information about the
servers on the Internet.
1110110110000
0100011110011
1101001000100
001
Коммутатор
Catalyst 9K
Stealthwatch
NetFlow с
расширенной
телеметрией
на скорости
порта
Машинное
обучение
Обнаружение
вредоносов в
шифрованном
трафике
ISE
(Identity Services Engine)
Cognitive Analytics
Автоматическая
изоляция угрозы
Развитие	решения	Cisco	«Сеть	как	Сенсор»
Обнаружение	вредоносного	ПО		в	зашифрованном	трафике
Encrypted
Traffic Analytics
*Source : Identifying Encrypted Malware
Traffic with Contextual Flow Data, Oct 2016
точность
обнаружения угроз*
0.01%
ложных
срабатываний*
99%
21
Поддержка ETA
ETA is NetFlow records are collected and exported at the Access/Fabric Edge
Campus / Branch
Wired Deployments
SD–Access Wired and
Wireless Deployments
C
BBCatalyst	9300
Sends	ETA	Data	to	
Flow	Collectors
For	SD-Wireless	ETA	is	
deployed	on	VLANs	
which	correspond	to	
Wireless	IP	Pools
For	Wired	clients	ETA	
is	applied	directly	to	
interfaces
Network	Functions,	Analytics	
and	Telemetry	Applications
Open	Programmability
(Python	scripts,	Puppet	
Master)	
Customer	Specific	
Edge	Applications
Cloud	Connect	
Applications
Application	Hosting
Fast	multi-core	x86	processor
Linux-based	OS
up	to	16BG	RAM
Storage	expansions	(USB,	SSD)
Mar	`18
Сервисные контейнеры в Cisco IOS-XE
Cisco	Connect	2017 © 2017 Cisco and/or its affiliates. All rights reserved. 23
Linux OS
KVM/LXC
IOSd
Control Plane
Cisco Apps (WAAS, Snort)
Приложения
сторонних разработчиков
Platform-Specific Data Plane
Internal Services Blade
(UCS® E-Series)
External Services Blade
(UCS)
Virtual Ethernet
© 2017 Cisco and/or its affiliates. All rights reserved. 24
Stackwise Virtual - развитие	технологии	VSS
Core
Catalyst	9500Catalyst	9500
Centralized	Control	&	
Management	Plane
Distributed	Forwarding	
Architecture
Multi	Chassis	
Etherchannel
Single	Virtual	System
Stackwise Virtual
24
• StackWise Virtual	technology	is	integrated	platform	
in	DNA	architecture
• Catalyst	9500	series	StackWise Virtual	can	be	Edge	
Node	(EN)	or	in	Border	Node	(BN)	in	Fabric	enabled	
network
• StackWise Virtual	helps	building	simplified	underlay	
IP	infrastructure
• SDA	support	available	starts	from	initial	software	
release	
StackWise	Virtual
Полная совместимость		с	SD-Access
B
SV
B
E E E
SV
SV SV
SV SV SV
26
MPLS	Features
L3VPN
MP-BGP
Multicast	VPN
Draft-Rosen
L2VPN
EOMPLS
VPLS
IPv6	VPN
6PE
6VPE
Polaris	|			UADP	|			Standards-based
M
CE	
MPLS	Backbone
CE	
CE	
PEPE
PESource
Receiver
ReceiverMDT
Multicast	VPN
CE	
PE	
CE	
IPV6 IPV6
P PE
IPv4	MPLS	Enabled
IPv6	VPN	– 6PE/6VPE
M
CE	
MPLS	Backbone
CE	
PEPE
PE
L3VPN
L3	VPN
CE	
PE	
CE	
L2 L2
P PE
EOMPLS
VPLS
L2VPN	– EOMPLS/	VPLS
L3VPN
Multicast	VPN	- DraftRosen
Catalyst 9K - MPLS
Layer Platform Version FCS
Access/Distribution/
Core
3850/3650(	All	Models) 16.6.1 July	17
9300	(	All	models	) 16.6.1 July	17
9500	(	All	models	) 16.6.1 July’17
L2VPN	EOMPLS / VPLS	– где	поддерживается?
VPLSEOMPLS
User
Devices
Service Discovery
Agent on Cat 9k
Policy Management
on DNA-Center
WAN
Bonjour Devices
(Apple TV, Printers)
Wide Area Bonjour
§ Enables Discovery and service distribution across
WAN
§ Group-Based Policies for access control
§ Simplified Controller Based Management
Traditional Bonjour
§ Single Gateway solution, cannot scale
across enterprises
§ No access control
§ Limited Management capabilities
Wide Area Bonjour Mar`18
Catalyst 9K: унификация функционала и лицензирования
Current-Gen	- three-tier	packaging
IP	Services
Full	L3	and	Core	Differentiators
IP	Base
Routed	Access	and	Access	Differentiators
Lan	Base
L2	Features	and	Competitive	Parity
C9K		- Simplified	two-tier	packaging
DNA	Essentials
Simplified	Network	Operations	Solution	Package
DNA	subscriptions	required	(min	3-year	term)	at	time	
of	Cat	9K	order
DNA	Advantage
Software	Defined	Access,	Assurance	and	ETA	Solution	
Package
Network	Advantage
Full	L3	with	flexible	Segmentation	and	Network	Resiliency
Network	Essentials	
Competitive	Parity	with	Full	L2	and	Routed	Access
Catalyst 9K: сравнение Advantage и Essentials
Full	Routing	Functionality	
BGP,	HSRP,	OSPF,	ISIS,	HSRP,GLBP	
Flexible	Network	Segmentation
VRF,	VXLAN,	LISP,	Trustsec,	
Wireless	Client	and	Guest,		MPLS	L3VPN
Enhanced	Security	Controls
MACSEC-256
IoT	&	Mobility
CoAP
Optimize	Bandwidth	
Utilization	with	Multicast	
MSDP,	mVPN,	AutoRP,	PIM-BIDIR
Software-defined	Access
Policy-based	Automation	and	
Assurance,	SD-Wireless
Security	&	IoT
Encrypted	Traffic	Analytics,
mDNS	GW,	NAT/PAT
Telemetry	&	Visibility
ERSPAN,	AVC,	NBAR2
Network	Advantage	(Inclusive	of	Network	Essentials)
DNA	Advantage	(Inclusive	of	DNA	Essentials)
Assurance	&	Analytics
Network	insights	from	analytics	and	
machine	learning,	clients	and	
applications	covering	on-boarding,	
connectivity	and	performance
Essential	Switch	Capabilities
Layer	2,	Routed	Access,	PIM	Stub,	
PVLAN,	VRRP,	PBR,	CDP,	QoS,	FHS,	
802.1x,	Macsec-128,	CoPP,	Trustsec	SXP,	
IP	SLA	Responder,	SSO
DevOps	Integration
Programmability	with	Open	
Models	and	Netconf/Restconf,	
PnP	Agent,	ZTP
Telemetry	&	Visibility
Sampled	NetFlow,	SPAN,	RSPAN
Basic	Automation
Plug	and	Play,
Patch	Management *,
EasyQOS Configuration*
Basic	Monitoring	Capabilities
EasyQOS Monitoring*,	Client	and	Device	
360,	PSIRT	Compliance*
Element	Management
Image	Management,	
Topology	and	Discovery
Cisco	Differentiators
Containers,	Python,	EEM,	ANI,
Full	NetFlow,	Wireshark
DNA	Essentials
Network	Essentials
Perpetual
Perpetual
3,5,7YearTerms
3,5,7YearTerms
Advantage Essentials
High	Availability	&	Resiliency
NSF,	GIR,	Stackwise Virtual,	ISSU
Inclusive of Switch and DNA Center Capabilities
* Future
SD-
Access
Ready
Element	Management
Patch	Management
Routed Access –доступен везде!
2960L
Lan	Lite	
includes
Routed	Access
§ Default-route
§ Static
§ RIP
2960X
Lan	Base	
includes
Routed	Access
§ RIP
§ EIGRP	Stub
§ OSPF(200	routes)
§ PBR
§ PIM	Stub	Multicast	(up	
to	200	routes)
3650/3850/4500E
Lan	Base
includes
Routed	Access
§ RIP
§ EIGRP	Stub
§ OSPF	(1000	routes)
§ PBR
§ PIM	Stub	Multicast	(up	
to	1000	routes)
3650/3850/4500E
IP	Base
includes
Routed	Access	&
VRF	
§ 3	Virtual	Networks	for	
SD-Access
IOS 15.2(6)E IOS 15.2(6)E IOS	XE	16.6/3.10E IOS	XE	16.6/3.10E IOS	XE	16.5
C9K
Network	Essentials
includes
Routed	Access
§ RIP
§ EIGRP	Stub
§ OSPF	(1000	routes)
§ PBR
§ PIM	Stub	Multicast	(up	
to	1000	routes)
Инновации	в	области	
маршрутизации
Маршрутизаторы для филиала: ISR4000
© 2017 Cisco and/or its affiliates. All rights reserved. 33
ФУНКЦИОНАЛ IWAN
ГИБКОСТЬ И УПРАВЛЯЕМОСТЬ
ВЫСОКАЯ И ПРЕДСКАЗУЕМАЯ
ПРОИЗВОДИТЕЛЬНОСТЬ
4 IOS Firewall, VPN, IPSec, PfRV3,
NBAR2, AVC, AppNav, VRF, MPLS
4 Автоматизация с APIC-EM
4 Возможность программного апгрейда
производительности
4 Интеграция сервисов
4 NFV
4 Разделение data, control, services
plane
4 Предсказуемая производительность
ISR4431
ISR4351
ISR4331
ISR4321
ISR4451
500Mbps/1Gbps
200/400Mbps
100/300Mbps
50/100Mbps
1-2Gbps
ISR4221 35/70Mbps
Маршрутизаторы для агрегации: ASR1000
© 2017 Cisco and/or its affiliates. All rights reserved. 34
ФУНКЦИОНАЛ IWAN
ВЫСОКАЯ
ОТКАЗОУСТОЙЧИВОСТЬ
МОЩНЫЕ, КОМПАКТНЫЕ
МАРШРУТИЗАТОРЫ
4 IOS Firewall, VPN, IPSec, PfRV3,
NBAR2, AVC, AppNav, VRF, MPLS
4 Отдельные control и data planes
4 Резервирование аппаратуры и ПО
4 In-service software upgrades
4 Производительность 2.5G ... 200G+
со включенными сервисами
4 Криптоподсистема 2G ... 60G+
4 Гибкость I/O: SPAs и Ethernet LCs
§ 2.5G с апгрейдом до 5G, 10G, 20G
§ До 8G крипто
§ 5G с апгрейдом до 10G, 20G, 36G
§ До 4G крипто
§ Модульный, до 200G
§ Резервирование RP/ESP
§ До 60G крипто
ASR1001-X
ASR1002-X
ASR1006-X
§ 44G с апгрейдом до 100G
§ 8, 16, 25G крипто
ASR1002-HX
ASR1001-HX
§ 40G с апгрейдом до 60G
§ 8G или 16G крипто
New
New
New
• All	ISR4000,	IOS	16.7.1
• FCS	Nov	2017
• Enforced	License
• PAK	is	needed
• 60	day	Boost	Eval	available.		
• Once	installed
• Unshackle	the	performance
• Container	services	not	supported	on	4331	&	4351	with	Boost	license
• Boost	license	is	repurposing	cores	on	4331	&	4351
ISR 4000 - новая «Boost» лицензия
ISR 4000 Boost лицензия
Что можно ожидать в плане производительности?
Performance	license
4451 2	Gbps	 @	19%	CPU
4431 1	Gbps	 @	18%	CPU
4351	 400	Mbps @	17%	CPU
4331 300	Mbps @	16%	CPU
4321 100	Mbps @	8%	CPU
4221 75	Mbps @	8%	CPU
Boost	license
4	Gbps	 @	35%	CPU
4	Gbps	 @	62%	CPU
2	Gbps @	45%	CPU
2	Gbps	 @	53%	CPU
2	Gbps @	68%	CPU
1.2	Gbps @	94%	CPU
IP	Routing	(	CEF	)	
UP	results	on	uncapped	platforms	IOS	16.4
Представляем	Cisco	ISR	1100
Cisco ISR 1100
cамый маленький маршрутизатор на базе IOS XE
§ FCS	Starting	Nov	(depending	on	SKU)	
§ Regions	covered:	US,	Canada,	EU,	Japan	and	Australia
§ G.fast /	Super-vectoring	(35b)	orderable	in	Jan	-18
§ 800	Series	product	offering	not	affected	by	ISR 1100
Mobility	Express LTE	AdvancedSD-WAN ProgrammabilityUmbrella	Security
Licensing Packaging Model
Default	License:	IP	Base
• Technology	Package:	APP,	SEC
• Feature	parity	with	the	ISR	4000
SECAPP
IP Base
Performance (IPSec)HSEC
Cisco	Enterprise	NFV
Сетевая	виртуализация	для	
удаленного	офиса
Представляем Cisco Enterprise NFV
© 2017 Cisco and/or its affiliates. All rights reserved. 41
Cisco 4000 Series ISR +
UCS® E-Series
Cisco® UCS
C-Series
Enterprise Network Compute
System
(ENCS)
Network Functions Virtualization Infrastructure Software (NFVIS)
Cisco Enterprise Service Automation (ESA) + APIC-EM + PI
Virtual Router
(ISRv)
Virtual Firewall
(ASAv)
Virtual WAN
Optimization
(vWAAS)
Virtual Wireless
LAN Controller
(vWLC)
Third-Party VNFs
Виртуальные функции для Вашей сети
© 2017 Cisco and/or its affiliates. All rights reserved. 42
APIC-EM с
Enterprise
Service
Automation
q vRouter
q vFirewall
q vWAN Optimization
q vWLAN Controller
q 3rd party services
q ISR/UCS E-Series
q UCS C-Series
q X86 Server
Выберите функции
сети
1
Выберите
платформу
2 Оркестрация и
автоматизация
3
IT Agility
Серия ENCS 5400
© 2017 Cisco and/or its affiliates. All rights reserved. 43
6, 8, или 12-Core
Intel Xeon-D
16 – 64 GB
DRAM
Интегрированный 8-
портовый коммутатор с
опцией POE
Слот Network Interface
Module для LTE & WAN
Выделенный Board
Management Controller
2 HDD или SSD
RAID 0 & 1
Интегрированный
M.2 Storage
USB 3.0
Storage
2 порта Gigabit
Ethernet ports
с SFP
Опциональный
аппаратный RAID
контроллер
Интегрированный
блок питания
Аппаратная оптимизация
передачи трафика между
виртуальными машинами
ENCS 5100 ISRv
250	Mbps
(NAT,	QoS,	ZBFW)
4-Core	CPU
ISRv +	1	VNF	
16	&	32	GB	
DRAM
M.2	Storage
64	– 400	GB
2	x	USB	3.0	
Storage
4	GE	ports	
with	2	SFPs
Integrated	
Power	Supply
Size:	1	RU
13”	x	10”
Console
&	MGMT
AMD	3.4GHz
Новый ENCS 5104 уже доступен для заказа!
ENCS5412
12-Core
ENCS5104
4-Core
ENCS5408
8-Core
ENCS5406
6-Core
• ISRv +	3	cores
• LAN	Ports
• NIM	LTE,	DSL,	T1
• HDD,	SSD
• RAID,	HW	Crypto
• ISRv +	9	cores
• PoE
• ISRv +	5	cores
• PoE
• ISRv +	2	cores
Представляем	Cisco	SD-WAN	
(Viptela)
47
Зачем SD-WAN заказчикам?
Simplify	WAN/Branch	
management
Reduce	WAN	and	
operating	costs
Optimize	application	
experience
Cisco SD-WAN – общая архитектура
4G/LTE
MPLSInternet
Private/Hosted/Managed	
Cloud
vEdge Router
vSmart
ControllersvManage
Secure
SD-WAN	Fabric
Secure	
Control	Plane
REST	API
GUI
Data	Center
Campus
Branch
Small	Office
Home	Office
Analytics
Multitenant,	Cloud	Delivered	and	Cloud	Operated
Cloud	Data	Center
Централизованное управление (Cloud&On-Prem)
REST NETCONF Syslog
Flow
ExportSNMP
CLI Linux Shell
Power Tools
Single Pane Of Glass Rich Analytics & Monitoring
Zero Touch Provisioning (ZTP)
Control	and	Policy
Elements
*	Factory	default	config
Assumption:
• DHCP	on	Transport	Side	(WAN)
• DNS	to	resolve	ztp.viptela.com*
§ Delivered	as-a-Service
Zero	Touch	Provisioning
Server
1
2
Full	Registration	and	
Configuration
5
3
4
vEdge
Контроль состояния каналов
Path1:	10ms,	0%	loss,	5ms	jitter
Path2:	200ms,	3%	loss,	10ms	jitter
Path3:	140ms,	1%	loss,	10ms	jitter
vManage
App	Aware	Routing	Policy
App	A	path	must	have:	
Latency	<	150ms
Loss	<	2%
Jitter	<	10ms
Path	2
vEdge
Router
vEdge
Router
§ vEdge Routers	continuously	
perform	path	liveliness	and	quality	
measurements
Device	QoS
(shaping,	policing,	
queuing,	marking)
Internet
MPLS
4G	LTE
Optimal	Application	Throughput
Управление SD-WAN на основе политик
Policy Augmented Dynamic Routing
vEdge
WAN
router
Access Layer
Branch/DC
vSmart controller – Policy
Enforcement/Advertisement
Control Policy:
Routing and Services
vManage GUI – Policy Orchestration1
2
3
Data Policy:
Extensive Policy-based
Routing and Services
App-Route Policy:
App-Aware SLA-based
Routing
Combine and Apply per Site
Execute Control Policy
Advertise AAR/Data Policies to Sites
Execute AAR and Data Policy as received
Dynamic Routing and Policies Combine
to dictate behavior
Портфолио Viptela - vEdge
SOHO
SMB
(100 M)
Branch
(1 G)
Head-End
Aggregation
(10 G)
NFV, vCPE
(N x cores)
IaaS & Cloud
Interconnect
(Nx cores)
Dual LTE variant
back
Higher Capacity
Aggregation
(20 G+)
ARM
IOT /
Small Footprint
Окончание	цикла	продаж
ISR	G2
В качестве напоминания…
End-of-sale	2900	&	3900	series	on	Dec	9,	2017
Plan	to	End-of-sale	1900	series	in	December,	2018
Подводя	итог…
Спасибо!	Вопросы?
Денис	Коденцев, Cisco
dkodents@cisco.com

More Related Content

What's hot

CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISECHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISEAlexander Kravchenko
 
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation FirewallCisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation FirewallCisco Canada
 
Cisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven TelemetryCisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven TelemetryCisco Canada
 
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...Alexander Kravchenko
 
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series Switches
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series SwitchesTechWiseTV Workshop: Application Hosting on Catalyst 9000 Series Switches
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series SwitchesRobb Boyd
 
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...Alexander Kravchenko
 
Technical Overview of Cisco Catalyst 9200 Series Switches
Technical Overview of Cisco Catalyst 9200 Series SwitchesTechnical Overview of Cisco Catalyst 9200 Series Switches
Technical Overview of Cisco Catalyst 9200 Series SwitchesRobb Boyd
 
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Canada
 
100%-ный контроль для 100%-ной безопасности
100%-ный контроль для 100%-ной безопасности100%-ный контроль для 100%-ной безопасности
100%-ный контроль для 100%-ной безопасностиАльбина Минуллина
 
Дизайн отказоустойчивых локальных сетей
Дизайн отказоустойчивых локальных сетейДизайн отказоустойчивых локальных сетей
Дизайн отказоустойчивых локальных сетейCisco Russia
 
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...Cisco Canada
 
DPDK IPSec Security Gateway Application
DPDK IPSec Security Gateway ApplicationDPDK IPSec Security Gateway Application
DPDK IPSec Security Gateway ApplicationMichelle Holley
 
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)Takao Setaka
 
Оборудование Huawei в сетях АСУ ТП
Оборудование Huawei в сетях АСУ ТПОборудование Huawei в сетях АСУ ТП
Оборудование Huawei в сетях АСУ ТПАйдар Гилязов
 
Cisco Connect Toronto 2017 - Security Through The Eyes of a Hacker
Cisco Connect Toronto 2017 -  Security Through The Eyes of a HackerCisco Connect Toronto 2017 -  Security Through The Eyes of a Hacker
Cisco Connect Toronto 2017 - Security Through The Eyes of a HackerCisco Canada
 
Cisco Connect Vancouver 2017 - Anatomy of Attack
Cisco Connect Vancouver 2017 - Anatomy of AttackCisco Connect Vancouver 2017 - Anatomy of Attack
Cisco Connect Vancouver 2017 - Anatomy of AttackCisco Canada
 
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsIncredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsRobb Boyd
 
Cisco 900 Series Integrated Services Routers Datasheet
Cisco 900 Series Integrated Services Routers DatasheetCisco 900 Series Integrated Services Routers Datasheet
Cisco 900 Series Integrated Services Routers Datasheet美兰 曾
 

What's hot (20)

CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISECHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
 
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation FirewallCisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
 
Cisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven TelemetryCisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven Telemetry
 
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
 
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series Switches
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series SwitchesTechWiseTV Workshop: Application Hosting on Catalyst 9000 Series Switches
TechWiseTV Workshop: Application Hosting on Catalyst 9000 Series Switches
 
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
 
Technical Overview of Cisco Catalyst 9200 Series Switches
Technical Overview of Cisco Catalyst 9200 Series SwitchesTechnical Overview of Cisco Catalyst 9200 Series Switches
Technical Overview of Cisco Catalyst 9200 Series Switches
 
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
 
100%-ный контроль для 100%-ной безопасности
100%-ный контроль для 100%-ной безопасности100%-ный контроль для 100%-ной безопасности
100%-ный контроль для 100%-ной безопасности
 
Дизайн отказоустойчивых локальных сетей
Дизайн отказоустойчивых локальных сетейДизайн отказоустойчивых локальных сетей
Дизайн отказоустойчивых локальных сетей
 
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...Cisco Connect Ottawa 2018   data center - protecting your data with Cisco hyp...
Cisco Connect Ottawa 2018 data center - protecting your data with Cisco hyp...
 
DPDK IPSec Security Gateway Application
DPDK IPSec Security Gateway ApplicationDPDK IPSec Security Gateway Application
DPDK IPSec Security Gateway Application
 
Vyatta 3500 Datasheet
Vyatta 3500 DatasheetVyatta 3500 Datasheet
Vyatta 3500 Datasheet
 
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)
10G/40G gen to 25G/100G gen, and go forward (HPVI community meetup)
 
Оборудование Huawei в сетях АСУ ТП
Оборудование Huawei в сетях АСУ ТПОборудование Huawei в сетях АСУ ТП
Оборудование Huawei в сетях АСУ ТП
 
Cisco Connect Toronto 2017 - Security Through The Eyes of a Hacker
Cisco Connect Toronto 2017 -  Security Through The Eyes of a HackerCisco Connect Toronto 2017 -  Security Through The Eyes of a Hacker
Cisco Connect Toronto 2017 - Security Through The Eyes of a Hacker
 
Cisco Connect Vancouver 2017 - Anatomy of Attack
Cisco Connect Vancouver 2017 - Anatomy of AttackCisco Connect Vancouver 2017 - Anatomy of Attack
Cisco Connect Vancouver 2017 - Anatomy of Attack
 
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIsIncredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
Incredible Compute Density: Cisco DNA Center Platform: Digging Deeper with APIs
 
SDDC Strategy 1.3
SDDC Strategy 1.3SDDC Strategy 1.3
SDDC Strategy 1.3
 
Cisco 900 Series Integrated Services Routers Datasheet
Cisco 900 Series Integrated Services Routers DatasheetCisco 900 Series Integrated Services Routers Datasheet
Cisco 900 Series Integrated Services Routers Datasheet
 

Similar to Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для маршрутизации и коммутации

Seminar Accelerating Business Using Microservices Architecture in Digital Age...
Seminar Accelerating Business Using Microservices Architecture in Digital Age...Seminar Accelerating Business Using Microservices Architecture in Digital Age...
Seminar Accelerating Business Using Microservices Architecture in Digital Age...PT Datacomm Diangraha
 
DPDK: Multi Architecture High Performance Packet Processing
DPDK: Multi Architecture High Performance Packet ProcessingDPDK: Multi Architecture High Performance Packet Processing
DPDK: Multi Architecture High Performance Packet ProcessingMichelle Holley
 
cisco-c9200-48p-a-datasheet.pdf
cisco-c9200-48p-a-datasheet.pdfcisco-c9200-48p-a-datasheet.pdf
cisco-c9200-48p-a-datasheet.pdfHi-Network.com
 
cisco-vs-s720-10g-3cxl-datasheet.pdf
cisco-vs-s720-10g-3cxl-datasheet.pdfcisco-vs-s720-10g-3cxl-datasheet.pdf
cisco-vs-s720-10g-3cxl-datasheet.pdfHi-Network.com
 
Технологии Intel® для облачных решений
Технологии Intel® для облачных решенийТехнологии Intel® для облачных решений
Технологии Intel® для облачных решенийFujitsu Russia
 
Summit 16: Deploying Virtualized Mobile Infrastructures on Openstack
Summit 16: Deploying Virtualized Mobile Infrastructures on OpenstackSummit 16: Deploying Virtualized Mobile Infrastructures on Openstack
Summit 16: Deploying Virtualized Mobile Infrastructures on OpenstackOPNFV
 
Netronome Corporate Brochure
Netronome Corporate BrochureNetronome Corporate Brochure
Netronome Corporate BrochureNetronome
 
cisco-c9200l-48t-4x-a-datasheet.pdf
cisco-c9200l-48t-4x-a-datasheet.pdfcisco-c9200l-48t-4x-a-datasheet.pdf
cisco-c9200l-48t-4x-a-datasheet.pdfHi-Network.com
 
cisco-c9500-16x-e-datasheet.pdf
cisco-c9500-16x-e-datasheet.pdfcisco-c9500-16x-e-datasheet.pdf
cisco-c9500-16x-e-datasheet.pdfHi-Network.com
 
cisco-c9200l-48t-4x-e-datasheet.pdf
cisco-c9200l-48t-4x-e-datasheet.pdfcisco-c9200l-48t-4x-e-datasheet.pdf
cisco-c9200l-48t-4x-e-datasheet.pdfHi-Network.com
 
cisco-c9200l-48p-4x-a-datasheet.pdf
cisco-c9200l-48p-4x-a-datasheet.pdfcisco-c9200l-48p-4x-a-datasheet.pdf
cisco-c9200l-48p-4x-a-datasheet.pdfHi-Network.com
 
Forwarding Plane Opportunities: How to Accelerate Deployment
Forwarding Plane Opportunities: How to Accelerate DeploymentForwarding Plane Opportunities: How to Accelerate Deployment
Forwarding Plane Opportunities: How to Accelerate DeploymentCharo Sanchez
 
cisco-vs-s720-10g-3c-datasheet.pdf
cisco-vs-s720-10g-3c-datasheet.pdfcisco-vs-s720-10g-3c-datasheet.pdf
cisco-vs-s720-10g-3c-datasheet.pdfHi-Network.com
 
cisco-c9200l-48p-4x-e-datasheet.pdf
cisco-c9200l-48p-4x-e-datasheet.pdfcisco-c9200l-48p-4x-e-datasheet.pdf
cisco-c9200l-48p-4x-e-datasheet.pdfHi-Network.com
 
cisco-ws-c4500x-16sfp+-datasheet.pdf
cisco-ws-c4500x-16sfp+-datasheet.pdfcisco-ws-c4500x-16sfp+-datasheet.pdf
cisco-ws-c4500x-16sfp+-datasheet.pdfHi-Network.com
 
cisco-c9200-48t-a-datasheet.pdf
cisco-c9200-48t-a-datasheet.pdfcisco-c9200-48t-a-datasheet.pdf
cisco-c9200-48t-a-datasheet.pdfHi-Network.com
 
cisco-c9200-48t-e-datasheet.pdf
cisco-c9200-48t-e-datasheet.pdfcisco-c9200-48t-e-datasheet.pdf
cisco-c9200-48t-e-datasheet.pdfHi-Network.com
 
cisco-c9200-48p-e-datasheet.pdf
cisco-c9200-48p-e-datasheet.pdfcisco-c9200-48p-e-datasheet.pdf
cisco-c9200-48p-e-datasheet.pdfHi-Network.com
 
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSwitch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSAM Romania
 

Similar to Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для маршрутизации и коммутации (20)

Новые коммутаторы QFX10000. Технология JunOS Fusion
Новые коммутаторы QFX10000. Технология JunOS FusionНовые коммутаторы QFX10000. Технология JunOS Fusion
Новые коммутаторы QFX10000. Технология JunOS Fusion
 
Seminar Accelerating Business Using Microservices Architecture in Digital Age...
Seminar Accelerating Business Using Microservices Architecture in Digital Age...Seminar Accelerating Business Using Microservices Architecture in Digital Age...
Seminar Accelerating Business Using Microservices Architecture in Digital Age...
 
DPDK: Multi Architecture High Performance Packet Processing
DPDK: Multi Architecture High Performance Packet ProcessingDPDK: Multi Architecture High Performance Packet Processing
DPDK: Multi Architecture High Performance Packet Processing
 
cisco-c9200-48p-a-datasheet.pdf
cisco-c9200-48p-a-datasheet.pdfcisco-c9200-48p-a-datasheet.pdf
cisco-c9200-48p-a-datasheet.pdf
 
cisco-vs-s720-10g-3cxl-datasheet.pdf
cisco-vs-s720-10g-3cxl-datasheet.pdfcisco-vs-s720-10g-3cxl-datasheet.pdf
cisco-vs-s720-10g-3cxl-datasheet.pdf
 
Технологии Intel® для облачных решений
Технологии Intel® для облачных решенийТехнологии Intel® для облачных решений
Технологии Intel® для облачных решений
 
Summit 16: Deploying Virtualized Mobile Infrastructures on Openstack
Summit 16: Deploying Virtualized Mobile Infrastructures on OpenstackSummit 16: Deploying Virtualized Mobile Infrastructures on Openstack
Summit 16: Deploying Virtualized Mobile Infrastructures on Openstack
 
Netronome Corporate Brochure
Netronome Corporate BrochureNetronome Corporate Brochure
Netronome Corporate Brochure
 
cisco-c9200l-48t-4x-a-datasheet.pdf
cisco-c9200l-48t-4x-a-datasheet.pdfcisco-c9200l-48t-4x-a-datasheet.pdf
cisco-c9200l-48t-4x-a-datasheet.pdf
 
cisco-c9500-16x-e-datasheet.pdf
cisco-c9500-16x-e-datasheet.pdfcisco-c9500-16x-e-datasheet.pdf
cisco-c9500-16x-e-datasheet.pdf
 
cisco-c9200l-48t-4x-e-datasheet.pdf
cisco-c9200l-48t-4x-e-datasheet.pdfcisco-c9200l-48t-4x-e-datasheet.pdf
cisco-c9200l-48t-4x-e-datasheet.pdf
 
cisco-c9200l-48p-4x-a-datasheet.pdf
cisco-c9200l-48p-4x-a-datasheet.pdfcisco-c9200l-48p-4x-a-datasheet.pdf
cisco-c9200l-48p-4x-a-datasheet.pdf
 
Forwarding Plane Opportunities: How to Accelerate Deployment
Forwarding Plane Opportunities: How to Accelerate DeploymentForwarding Plane Opportunities: How to Accelerate Deployment
Forwarding Plane Opportunities: How to Accelerate Deployment
 
cisco-vs-s720-10g-3c-datasheet.pdf
cisco-vs-s720-10g-3c-datasheet.pdfcisco-vs-s720-10g-3c-datasheet.pdf
cisco-vs-s720-10g-3c-datasheet.pdf
 
cisco-c9200l-48p-4x-e-datasheet.pdf
cisco-c9200l-48p-4x-e-datasheet.pdfcisco-c9200l-48p-4x-e-datasheet.pdf
cisco-c9200l-48p-4x-e-datasheet.pdf
 
cisco-ws-c4500x-16sfp+-datasheet.pdf
cisco-ws-c4500x-16sfp+-datasheet.pdfcisco-ws-c4500x-16sfp+-datasheet.pdf
cisco-ws-c4500x-16sfp+-datasheet.pdf
 
cisco-c9200-48t-a-datasheet.pdf
cisco-c9200-48t-a-datasheet.pdfcisco-c9200-48t-a-datasheet.pdf
cisco-c9200-48t-a-datasheet.pdf
 
cisco-c9200-48t-e-datasheet.pdf
cisco-c9200-48t-e-datasheet.pdfcisco-c9200-48t-e-datasheet.pdf
cisco-c9200-48t-e-datasheet.pdf
 
cisco-c9200-48p-e-datasheet.pdf
cisco-c9200-48p-e-datasheet.pdfcisco-c9200-48p-e-datasheet.pdf
cisco-c9200-48p-e-datasheet.pdf
 
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSwitch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
 

More from Cisco Russia

Service portfolio 18
Service portfolio 18Service portfolio 18
Service portfolio 18Cisco Russia
 
История одного взлома. Как решения Cisco могли бы предотвратить его?
История одного взлома. Как решения Cisco могли бы предотвратить его?История одного взлома. Как решения Cisco могли бы предотвратить его?
История одного взлома. Как решения Cisco могли бы предотвратить его?Cisco Russia
 
Об оценке соответствия средств защиты информации
Об оценке соответствия средств защиты информацииОб оценке соответствия средств защиты информации
Об оценке соответствия средств защиты информацииCisco Russia
 
Обзор Сервисных Услуг Cisco в России и странах СНГ.
Обзор Сервисных Услуг Cisco в России и странах СНГ.Обзор Сервисных Услуг Cisco в России и странах СНГ.
Обзор Сервисных Услуг Cisco в России и странах СНГ.Cisco Russia
 
Клиентские контракты на техническую поддержку Cisco Smart Net Total Care
Клиентские контракты на техническую поддержку Cisco Smart Net Total CareКлиентские контракты на техническую поддержку Cisco Smart Net Total Care
Клиентские контракты на техническую поддержку Cisco Smart Net Total CareCisco Russia
 
Cisco Catalyst 9000 series
Cisco Catalyst 9000 series Cisco Catalyst 9000 series
Cisco Catalyst 9000 series Cisco Russia
 
Cisco Endpoint Security for MSSPs
Cisco Endpoint Security for MSSPsCisco Endpoint Security for MSSPs
Cisco Endpoint Security for MSSPsCisco Russia
 
Профессиональные услуги Cisco для Software-Defined Access
Профессиональные услуги Cisco для Software-Defined AccessПрофессиональные услуги Cisco для Software-Defined Access
Профессиональные услуги Cisco для Software-Defined AccessCisco Russia
 
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...Cisco Russia
 
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отрасли
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отраслиПромышленный Интернет вещей: опыт и результаты применения в нефтегазовой отрасли
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отраслиCisco Russia
 
Полугодовой отчет Cisco по информационной безопасности за 2017 год
Полугодовой отчет Cisco по информационной безопасности за 2017 год Полугодовой отчет Cisco по информационной безопасности за 2017 год
Полугодовой отчет Cisco по информационной безопасности за 2017 год Cisco Russia
 
Годовой отчет Cisco по кибербезопасности за 2017 год
Годовой отчет Cisco по кибербезопасности за 2017 годГодовой отчет Cisco по кибербезопасности за 2017 год
Годовой отчет Cisco по кибербезопасности за 2017 годCisco Russia
 
Безопасность для цифровой экономики. Развитие продуктов и решений Cisco
Безопасность для цифровой экономики. Развитие продуктов и решений CiscoБезопасность для цифровой экономики. Развитие продуктов и решений Cisco
Безопасность для цифровой экономики. Развитие продуктов и решений CiscoCisco Russia
 
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...Cisco Russia
 
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...Cisco Russia
 
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...Cisco Russia
 

More from Cisco Russia (20)

Service portfolio 18
Service portfolio 18Service portfolio 18
Service portfolio 18
 
История одного взлома. Как решения Cisco могли бы предотвратить его?
История одного взлома. Как решения Cisco могли бы предотвратить его?История одного взлома. Как решения Cisco могли бы предотвратить его?
История одного взлома. Как решения Cisco могли бы предотвратить его?
 
Об оценке соответствия средств защиты информации
Об оценке соответствия средств защиты информацииОб оценке соответствия средств защиты информации
Об оценке соответствия средств защиты информации
 
Обзор Сервисных Услуг Cisco в России и странах СНГ.
Обзор Сервисных Услуг Cisco в России и странах СНГ.Обзор Сервисных Услуг Cisco в России и странах СНГ.
Обзор Сервисных Услуг Cisco в России и странах СНГ.
 
Клиентские контракты на техническую поддержку Cisco Smart Net Total Care
Клиентские контракты на техническую поддержку Cisco Smart Net Total CareКлиентские контракты на техническую поддержку Cisco Smart Net Total Care
Клиентские контракты на техническую поддержку Cisco Smart Net Total Care
 
Cisco Catalyst 9000 series
Cisco Catalyst 9000 series Cisco Catalyst 9000 series
Cisco Catalyst 9000 series
 
Cisco Catalyst 9500
Cisco Catalyst 9500Cisco Catalyst 9500
Cisco Catalyst 9500
 
Cisco Catalyst 9400
Cisco Catalyst 9400Cisco Catalyst 9400
Cisco Catalyst 9400
 
Cisco Umbrella
Cisco UmbrellaCisco Umbrella
Cisco Umbrella
 
Cisco Endpoint Security for MSSPs
Cisco Endpoint Security for MSSPsCisco Endpoint Security for MSSPs
Cisco Endpoint Security for MSSPs
 
Cisco FirePower
Cisco FirePowerCisco FirePower
Cisco FirePower
 
Профессиональные услуги Cisco для Software-Defined Access
Профессиональные услуги Cisco для Software-Defined AccessПрофессиональные услуги Cisco для Software-Defined Access
Профессиональные услуги Cisco для Software-Defined Access
 
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...
Обнаружение известного вредоносного кода в зашифрованном с помощью TLS трафик...
 
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отрасли
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отраслиПромышленный Интернет вещей: опыт и результаты применения в нефтегазовой отрасли
Промышленный Интернет вещей: опыт и результаты применения в нефтегазовой отрасли
 
Полугодовой отчет Cisco по информационной безопасности за 2017 год
Полугодовой отчет Cisco по информационной безопасности за 2017 год Полугодовой отчет Cisco по информационной безопасности за 2017 год
Полугодовой отчет Cisco по информационной безопасности за 2017 год
 
Годовой отчет Cisco по кибербезопасности за 2017 год
Годовой отчет Cisco по кибербезопасности за 2017 годГодовой отчет Cisco по кибербезопасности за 2017 год
Годовой отчет Cisco по кибербезопасности за 2017 год
 
Безопасность для цифровой экономики. Развитие продуктов и решений Cisco
Безопасность для цифровой экономики. Развитие продуктов и решений CiscoБезопасность для цифровой экономики. Развитие продуктов и решений Cisco
Безопасность для цифровой экономики. Развитие продуктов и решений Cisco
 
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...
Cisco StealthWatch. Использование телеметрии для решения проблемы зашифрованн...
 
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...
Обеспечение бесперебойной работы корпоративных приложений в больших гетероген...
 
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...
Новое поколение серверов Сisco UCS. Гиперконвергентное решении Cisco HyperFle...
 

Recently uploaded

Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontologyjohnbeverley2021
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Bhuvaneswari Subramani
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityWSO2
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...apidays
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfOrbitshub
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Victor Rentea
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Zilliz
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 

Recently uploaded (20)

Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 

Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для маршрутизации и коммутации

  • 1. The image part with relationship ID rId2 was not found in the file. The image part with relationship ID rId2 was not found in the file. Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для маршрутизации и коммутации. Денис Коденцев Инженер-консультант, CCIE
  • 2. 2 DNA Center • Инновационное решение для внедрения и управления корпоративной сетью и сетевыми сервисами DNA Assurance & Analytics • Анализ и проактивное обнаружение проблем Software-Defined Access • Универсальная сетевая фабрика с динамической микросегментацией Enhanced Network as a Sensor • Обнаружение вредоносного ПО в зашифрованном обмене (без расшифровки) Коммутаторы Catalyst 9000 • Первые специально созданные в рамках DNA коммутаторы Лицензирование с поддержкой подписки | Дополнительные сервисы от Cisco Новая эра сетей Cisco – анонс 20 июня 2017
  • 4. © 2017 Cisco and/or its affiliates. All rights reserved. 4 Семейство коммутаторов Catalyst 9K Catalyst 9300 Lead Fixed Access Catalyst 9400 Модульный доступ Catalyst 9500 Lead Fixed Core Единое ПО, возможности, лицензирование Cisco Catalyst 9000 инновации UADP 2.0 Cisco IOS® XE Software SD-Access x86 CPU and containers Encrypted Traffic Analytics (ETA)* AES256/MACSEC256* Trustworthy systems StackWise® Virtual* IEEE1588 and AVB* NBAR2 Perpetual/fast PoE Model-driven programmability Patching/GIR Streaming telemetry*
  • 5. © 2017 Cisco and/or its affiliates. All rights reserved. 5 Up to 32MB Packet Buffer Up to 64K x2 Netflow RecordsEmbedded CPUs Shared Lookup Up to 240GE Bandwidth 384K Flex Counters Up to 2X to 4X forwarding + TCAM Universal Deployments Adaptable Tables Enhanced Scale/Buffering Multicore resource share Investment Protection Flexible Pipeline UADP 2.0 – Инновационный программируемый ASIC
  • 6. © 2017 Cisco and/or its affiliates. All rights reserved. 6 Ingress Programmable Pipeline Punt Flex Parser IGR NF SPAN VXLAN L3/L2 FIB Lookup Table Lookup Table Lookup Table ACL MCast Lookup Table Lookup Table Lookup Table QOS Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table Lookup Table SPAN Flex Parser EGR Stage #.. Sec MPLS Policy Egress Programmable Pipeline TCAM/ SRAM Flexible Look up Tables (Shared Across Cores) Programmed to understand VXLAN Programmed to understand MPLS Настройка конвейера обработки с помощью микрокода ASIC Micro Code Software Features VXLAN MPLS NG Protocol
  • 7. 7 Представляем Catalyst 9300 1G Data mGig UPOE 1G UPOE/POE+ 2.5G at the Price of 1G 40G at the Price of 10G Новое решение для фиксированного доступа 24 Ports Modular Power SuppliesModular UplinksModular Fans UADP 2.0 Open IOS-XE SD-Access X86 CPU & Containers Encrypted Traffic Analytics (ETA)* 256 bit MACSEC* Trustworthy Systems StackWise Virtual* IEEE1588 & AVB* NBAR2 Perpetual/Fast PoE Model Driven Programmability Patching/GIR Catalyst 9K Leadership Streaming Telemetry* 48 Ports 8x10G 2x40G 4x mGig 4x1G 350W 715W 1100 W *not available at FCS Only Stackable Switch with 8X 10G Uplinks Highest 2.5G/mGig Density in the Industry
  • 8. Представляем Catalyst 9400 Новое решение для модульного доступа 4-Slot* 7-Slot 10-Slot Power Supply 3200W AC 3200W DC* 2400W AC* Core Linecards 24x 10G SFP+* 48x1G SFP* 24x1G SFP* Access Linecards 24xmGig + 24xUPOE* 48xUPoE 48xPoE+* 48xData Supervisor Sup-1: 80G/Slot Access Optimized Sup-1XL*: 120G/Slot Core Optimized Redundancy is now Table-stake Industry’s Highest PoE Scale 9Tbps System b/w UADP 2.0 Open IOS-XE SD-Access X86 CPU & Containers Encrypted Traffic Analytics* 256 bit MACSEC* Trustworthy Systems StackWise Virtual* IEEE1588 & AVB* NBAR2 Perpetual PoE* Model Driven Programmability Patching/GIR Catalyst 9K Leadership Streaming Telemetry* *not available at FCS
  • 9. Catalyst 9400- инновации и преимущества Extending Cat 4500E Leadership in Modular Access Up to 1TB SATA Storage Side-to-side air flow DualServiceable Fan Tray Mix AC & DC Power Supplies N+1/N+N Modular Power Supply UPOE Simultaneously on all ports Native 25/10G & 40G Uplinks 4X Throughput 3X Client Scale 2X Wireless Scale 4X Power scale 3X Buffering 10X Bandwidth 4X Memory & Flash Lower Power Better Acoustics Higher MTBF MPLS VPN While preserving …. HA Architecture Investment Protection Story Intel x86 CPU, 4 Core 2.4GHz Rear accessible Fan Tray for flexible cable management Ergonomic handles for efficient weight distribution Up to 480Gbps/Slot Fits non-standard racks (16”) Re-architected power distribution for 10% higher energy efficiency Efficient Platinum Rated Power Supplies
  • 10. © 2017 Cisco and/or its affiliates. All rights reserved. 10 Supervisor Архитектура C9400 Forwarding Features Embedded CPUs Centralized Architecture Control Plane Container HA communication Passive BackPlane Upto 480G BW per slot Line Card STUB ASIC Line Card STUB ASIC Line Card STUB ASIC … Open IOS-XE
  • 11. Catalyst 9400 – новый уровень надежности Only Campus Access platform in the industry to support ISSU N+1 Power supply redundancy Safeguard against power supply failure Dual Supervisors with sub 50ms ISSU* & NSF/SSO “Transparent” line card design Minimal on-board components for very high MTBF Unique uplink redundancy Uplinks of failed supervisor continue to remain active Redundant Fans N+1 Fan redundancy within Fan-tray; Up to 2 minutes of fan-less operation for servicing fan-tray N+N Power Supply Redundancy Safeguard against power circuit failure
  • 12. Catalyst 9400 – SUP1XL, SFP LCs C9400-LC-24XS 24-Port SFP/SFP+C9400-LC-48S 48 Port SFP Line rate on all ports C9400-LC-24S 24 Port SFP Line rate on all ports Nov `17 Mar `18 Nov `17 Mar `18 C9400-SUP1XL Up to 120G per slot Sup1XL – Up to 120G Per Slot Distribution Template with Sup1XL* Fiber to the desktop Collapsed Access Distribution SDA Border Template* Note: 120G per slot on 7 Slot Full Portfolio readiness in 7 and 10 Slot chassis for 4K Migration
  • 13. Catalyst 9400 – mGig & PoE+ 48x 10/100/1000 Data 48x 10/100/1000 UPoE 24x 1G + 24x mGig UPoE 48x 10/100/1000 PoE+ Shipping 24x mGig + 24x 1G PoE+ for price neutral transition 192 ports of mGig Nov `17 Mar `18 Highest mGig Port Density in the Industry
  • 14. © 2017 Cisco and/or its affiliates. All rights reserved. 14 8 x 10G 2 x 40G The only 40G Optimized Enterprise Class Switch 40 x 10G 12 x 40G 24 x 40G Line rate on all ports Non-blocking ports with 5.3MB (shared) packet buffer per port Built-In RFID Up to 24 ports of QSFP Internal Storage : 16GB External Storage :1xUSB 2.0 (front) , 1xUSB 3.0 (back) High scale control plane with 2.4GHz x86 CPU with 16 GB DDR4 Memory IOS 16.x SD-Access, MPLS AVB, WRED,NAT, PAT, NBAR2 Stackwise Virtual Up to 2x 950W AC/DC PSU 5 x Fan Trays 3X Throughput 3X Bandwidth 5X Buffering 5X CPU Speed 4X Memory & Flash 4X Port Speed 2.4X 10G Port Density Представляем Catalyst 9500 новое решение для фиксированного ядра
  • 15. Новые возможности по управлению Catalyst 9K Ease of Serviceability with Blue Beacons on each component Ergonomic Design with Industry standard Icons Wireless Console Access with Bluetooth Mobil e Lapto p Icons Inventory Management Efficiency with Built-in RFID
  • 17. 17 Надежного периметра уже недостаточно Phishing Email Link Email attachment Malware on Personal device Social Media Site with Malware 1 Initial Compromise Malware Propagation2 Botnet creation / Privilege Escalation 3 DDoS Attack / Data Exfiltration 4 Perimeter Security ineffective
  • 18. Cryptographic Audits Malware in Encrypted Traffic § Netflow Data: SrcIP, DstIP, SrcPort, DstPort, Proto, #Bytes, #Packets § Intraflow Data: Sequence of Packet Lengths & Times (SPLT), Byte Distribution, … § TLS Metadata: Extensions, Ciphersuites, SNI, Certificate Strings, … Специализированная телеметрия Encrypted Traffic Analytics Эксклюзивная поддержка на Catalyst 9K Основная задача Вторичная задача
  • 20. 1110110110000 0100011110011 1101001000100 001 Коммутатор Catalyst 9K Stealthwatch NetFlow с расширенной телеметрией на скорости порта Машинное обучение Обнаружение вредоносов в шифрованном трафике ISE (Identity Services Engine) Cognitive Analytics Автоматическая изоляция угрозы Развитие решения Cisco «Сеть как Сенсор» Обнаружение вредоносного ПО в зашифрованном трафике Encrypted Traffic Analytics *Source : Identifying Encrypted Malware Traffic with Contextual Flow Data, Oct 2016 точность обнаружения угроз* 0.01% ложных срабатываний* 99%
  • 21. 21 Поддержка ETA ETA is NetFlow records are collected and exported at the Access/Fabric Edge Campus / Branch Wired Deployments SD–Access Wired and Wireless Deployments C BBCatalyst 9300 Sends ETA Data to Flow Collectors For SD-Wireless ETA is deployed on VLANs which correspond to Wireless IP Pools For Wired clients ETA is applied directly to interfaces
  • 23. Сервисные контейнеры в Cisco IOS-XE Cisco Connect 2017 © 2017 Cisco and/or its affiliates. All rights reserved. 23 Linux OS KVM/LXC IOSd Control Plane Cisco Apps (WAAS, Snort) Приложения сторонних разработчиков Platform-Specific Data Plane Internal Services Blade (UCS® E-Series) External Services Blade (UCS) Virtual Ethernet
  • 24. © 2017 Cisco and/or its affiliates. All rights reserved. 24 Stackwise Virtual - развитие технологии VSS Core Catalyst 9500Catalyst 9500 Centralized Control & Management Plane Distributed Forwarding Architecture Multi Chassis Etherchannel Single Virtual System Stackwise Virtual 24
  • 25. • StackWise Virtual technology is integrated platform in DNA architecture • Catalyst 9500 series StackWise Virtual can be Edge Node (EN) or in Border Node (BN) in Fabric enabled network • StackWise Virtual helps building simplified underlay IP infrastructure • SDA support available starts from initial software release StackWise Virtual Полная совместимость с SD-Access B SV B E E E SV SV SV SV SV SV
  • 27. Layer Platform Version FCS Access/Distribution/ Core 3850/3650( All Models) 16.6.1 July 17 9300 ( All models ) 16.6.1 July 17 9500 ( All models ) 16.6.1 July’17 L2VPN EOMPLS / VPLS – где поддерживается? VPLSEOMPLS
  • 28. User Devices Service Discovery Agent on Cat 9k Policy Management on DNA-Center WAN Bonjour Devices (Apple TV, Printers) Wide Area Bonjour § Enables Discovery and service distribution across WAN § Group-Based Policies for access control § Simplified Controller Based Management Traditional Bonjour § Single Gateway solution, cannot scale across enterprises § No access control § Limited Management capabilities Wide Area Bonjour Mar`18
  • 29. Catalyst 9K: унификация функционала и лицензирования Current-Gen - three-tier packaging IP Services Full L3 and Core Differentiators IP Base Routed Access and Access Differentiators Lan Base L2 Features and Competitive Parity C9K - Simplified two-tier packaging DNA Essentials Simplified Network Operations Solution Package DNA subscriptions required (min 3-year term) at time of Cat 9K order DNA Advantage Software Defined Access, Assurance and ETA Solution Package Network Advantage Full L3 with flexible Segmentation and Network Resiliency Network Essentials Competitive Parity with Full L2 and Routed Access
  • 30. Catalyst 9K: сравнение Advantage и Essentials Full Routing Functionality BGP, HSRP, OSPF, ISIS, HSRP,GLBP Flexible Network Segmentation VRF, VXLAN, LISP, Trustsec, Wireless Client and Guest, MPLS L3VPN Enhanced Security Controls MACSEC-256 IoT & Mobility CoAP Optimize Bandwidth Utilization with Multicast MSDP, mVPN, AutoRP, PIM-BIDIR Software-defined Access Policy-based Automation and Assurance, SD-Wireless Security & IoT Encrypted Traffic Analytics, mDNS GW, NAT/PAT Telemetry & Visibility ERSPAN, AVC, NBAR2 Network Advantage (Inclusive of Network Essentials) DNA Advantage (Inclusive of DNA Essentials) Assurance & Analytics Network insights from analytics and machine learning, clients and applications covering on-boarding, connectivity and performance Essential Switch Capabilities Layer 2, Routed Access, PIM Stub, PVLAN, VRRP, PBR, CDP, QoS, FHS, 802.1x, Macsec-128, CoPP, Trustsec SXP, IP SLA Responder, SSO DevOps Integration Programmability with Open Models and Netconf/Restconf, PnP Agent, ZTP Telemetry & Visibility Sampled NetFlow, SPAN, RSPAN Basic Automation Plug and Play, Patch Management *, EasyQOS Configuration* Basic Monitoring Capabilities EasyQOS Monitoring*, Client and Device 360, PSIRT Compliance* Element Management Image Management, Topology and Discovery Cisco Differentiators Containers, Python, EEM, ANI, Full NetFlow, Wireshark DNA Essentials Network Essentials Perpetual Perpetual 3,5,7YearTerms 3,5,7YearTerms Advantage Essentials High Availability & Resiliency NSF, GIR, Stackwise Virtual, ISSU Inclusive of Switch and DNA Center Capabilities * Future SD- Access Ready Element Management Patch Management
  • 31. Routed Access –доступен везде! 2960L Lan Lite includes Routed Access § Default-route § Static § RIP 2960X Lan Base includes Routed Access § RIP § EIGRP Stub § OSPF(200 routes) § PBR § PIM Stub Multicast (up to 200 routes) 3650/3850/4500E Lan Base includes Routed Access § RIP § EIGRP Stub § OSPF (1000 routes) § PBR § PIM Stub Multicast (up to 1000 routes) 3650/3850/4500E IP Base includes Routed Access & VRF § 3 Virtual Networks for SD-Access IOS 15.2(6)E IOS 15.2(6)E IOS XE 16.6/3.10E IOS XE 16.6/3.10E IOS XE 16.5 C9K Network Essentials includes Routed Access § RIP § EIGRP Stub § OSPF (1000 routes) § PBR § PIM Stub Multicast (up to 1000 routes)
  • 33. Маршрутизаторы для филиала: ISR4000 © 2017 Cisco and/or its affiliates. All rights reserved. 33 ФУНКЦИОНАЛ IWAN ГИБКОСТЬ И УПРАВЛЯЕМОСТЬ ВЫСОКАЯ И ПРЕДСКАЗУЕМАЯ ПРОИЗВОДИТЕЛЬНОСТЬ 4 IOS Firewall, VPN, IPSec, PfRV3, NBAR2, AVC, AppNav, VRF, MPLS 4 Автоматизация с APIC-EM 4 Возможность программного апгрейда производительности 4 Интеграция сервисов 4 NFV 4 Разделение data, control, services plane 4 Предсказуемая производительность ISR4431 ISR4351 ISR4331 ISR4321 ISR4451 500Mbps/1Gbps 200/400Mbps 100/300Mbps 50/100Mbps 1-2Gbps ISR4221 35/70Mbps
  • 34. Маршрутизаторы для агрегации: ASR1000 © 2017 Cisco and/or its affiliates. All rights reserved. 34 ФУНКЦИОНАЛ IWAN ВЫСОКАЯ ОТКАЗОУСТОЙЧИВОСТЬ МОЩНЫЕ, КОМПАКТНЫЕ МАРШРУТИЗАТОРЫ 4 IOS Firewall, VPN, IPSec, PfRV3, NBAR2, AVC, AppNav, VRF, MPLS 4 Отдельные control и data planes 4 Резервирование аппаратуры и ПО 4 In-service software upgrades 4 Производительность 2.5G ... 200G+ со включенными сервисами 4 Криптоподсистема 2G ... 60G+ 4 Гибкость I/O: SPAs и Ethernet LCs § 2.5G с апгрейдом до 5G, 10G, 20G § До 8G крипто § 5G с апгрейдом до 10G, 20G, 36G § До 4G крипто § Модульный, до 200G § Резервирование RP/ESP § До 60G крипто ASR1001-X ASR1002-X ASR1006-X § 44G с апгрейдом до 100G § 8, 16, 25G крипто ASR1002-HX ASR1001-HX § 40G с апгрейдом до 60G § 8G или 16G крипто New New New
  • 35. • All ISR4000, IOS 16.7.1 • FCS Nov 2017 • Enforced License • PAK is needed • 60 day Boost Eval available. • Once installed • Unshackle the performance • Container services not supported on 4331 & 4351 with Boost license • Boost license is repurposing cores on 4331 & 4351 ISR 4000 - новая «Boost» лицензия
  • 36. ISR 4000 Boost лицензия Что можно ожидать в плане производительности? Performance license 4451 2 Gbps @ 19% CPU 4431 1 Gbps @ 18% CPU 4351 400 Mbps @ 17% CPU 4331 300 Mbps @ 16% CPU 4321 100 Mbps @ 8% CPU 4221 75 Mbps @ 8% CPU Boost license 4 Gbps @ 35% CPU 4 Gbps @ 62% CPU 2 Gbps @ 45% CPU 2 Gbps @ 53% CPU 2 Gbps @ 68% CPU 1.2 Gbps @ 94% CPU IP Routing ( CEF ) UP results on uncapped platforms IOS 16.4
  • 38. Cisco ISR 1100 cамый маленький маршрутизатор на базе IOS XE § FCS Starting Nov (depending on SKU) § Regions covered: US, Canada, EU, Japan and Australia § G.fast / Super-vectoring (35b) orderable in Jan -18 § 800 Series product offering not affected by ISR 1100 Mobility Express LTE AdvancedSD-WAN ProgrammabilityUmbrella Security
  • 39. Licensing Packaging Model Default License: IP Base • Technology Package: APP, SEC • Feature parity with the ISR 4000 SECAPP IP Base Performance (IPSec)HSEC
  • 41. Представляем Cisco Enterprise NFV © 2017 Cisco and/or its affiliates. All rights reserved. 41 Cisco 4000 Series ISR + UCS® E-Series Cisco® UCS C-Series Enterprise Network Compute System (ENCS) Network Functions Virtualization Infrastructure Software (NFVIS) Cisco Enterprise Service Automation (ESA) + APIC-EM + PI Virtual Router (ISRv) Virtual Firewall (ASAv) Virtual WAN Optimization (vWAAS) Virtual Wireless LAN Controller (vWLC) Third-Party VNFs
  • 42. Виртуальные функции для Вашей сети © 2017 Cisco and/or its affiliates. All rights reserved. 42 APIC-EM с Enterprise Service Automation q vRouter q vFirewall q vWAN Optimization q vWLAN Controller q 3rd party services q ISR/UCS E-Series q UCS C-Series q X86 Server Выберите функции сети 1 Выберите платформу 2 Оркестрация и автоматизация 3 IT Agility
  • 43. Серия ENCS 5400 © 2017 Cisco and/or its affiliates. All rights reserved. 43 6, 8, или 12-Core Intel Xeon-D 16 – 64 GB DRAM Интегрированный 8- портовый коммутатор с опцией POE Слот Network Interface Module для LTE & WAN Выделенный Board Management Controller 2 HDD или SSD RAID 0 & 1 Интегрированный M.2 Storage USB 3.0 Storage 2 порта Gigabit Ethernet ports с SFP Опциональный аппаратный RAID контроллер Интегрированный блок питания Аппаратная оптимизация передачи трафика между виртуальными машинами
  • 44. ENCS 5100 ISRv 250 Mbps (NAT, QoS, ZBFW) 4-Core CPU ISRv + 1 VNF 16 & 32 GB DRAM M.2 Storage 64 – 400 GB 2 x USB 3.0 Storage 4 GE ports with 2 SFPs Integrated Power Supply Size: 1 RU 13” x 10” Console & MGMT AMD 3.4GHz
  • 45. Новый ENCS 5104 уже доступен для заказа! ENCS5412 12-Core ENCS5104 4-Core ENCS5408 8-Core ENCS5406 6-Core • ISRv + 3 cores • LAN Ports • NIM LTE, DSL, T1 • HDD, SSD • RAID, HW Crypto • ISRv + 9 cores • PoE • ISRv + 5 cores • PoE • ISRv + 2 cores
  • 48. Cisco SD-WAN – общая архитектура 4G/LTE MPLSInternet Private/Hosted/Managed Cloud vEdge Router vSmart ControllersvManage Secure SD-WAN Fabric Secure Control Plane REST API GUI Data Center Campus Branch Small Office Home Office Analytics Multitenant, Cloud Delivered and Cloud Operated Cloud Data Center
  • 49. Централизованное управление (Cloud&On-Prem) REST NETCONF Syslog Flow ExportSNMP CLI Linux Shell Power Tools Single Pane Of Glass Rich Analytics & Monitoring
  • 50. Zero Touch Provisioning (ZTP) Control and Policy Elements * Factory default config Assumption: • DHCP on Transport Side (WAN) • DNS to resolve ztp.viptela.com* § Delivered as-a-Service Zero Touch Provisioning Server 1 2 Full Registration and Configuration 5 3 4 vEdge
  • 52. Управление SD-WAN на основе политик Policy Augmented Dynamic Routing vEdge WAN router Access Layer Branch/DC vSmart controller – Policy Enforcement/Advertisement Control Policy: Routing and Services vManage GUI – Policy Orchestration1 2 3 Data Policy: Extensive Policy-based Routing and Services App-Route Policy: App-Aware SLA-based Routing Combine and Apply per Site Execute Control Policy Advertise AAR/Data Policies to Sites Execute AAR and Data Policy as received Dynamic Routing and Policies Combine to dictate behavior
  • 53. Портфолио Viptela - vEdge SOHO SMB (100 M) Branch (1 G) Head-End Aggregation (10 G) NFV, vCPE (N x cores) IaaS & Cloud Interconnect (Nx cores) Dual LTE variant back Higher Capacity Aggregation (20 G+) ARM IOT / Small Footprint