Upload
xuankhanh333
View
221
Download
0
Embed Size (px)
Citation preview
8/11/2019 Prod Presentation0900aecd80374280
1/25
1 2005 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_10.05
Catalyst 3750 & 3560 Series
Product Overview
8/11/2019 Prod Presentation0900aecd80374280
2/25
2 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
P l a t f o
r m
F l e x i b
i l i t y a
n d
L i f e t i
m e
Scalability
H i g h A v a i l a b i l i t y
A n d I n t e g r a t e d
S e c u r i t y
S u p p o r t
f o r
C o n v e
r g e d
A p p l i c
a t i o
n sE n h a n c e d
M a n a g e a
b i l i t y
Switching Value TodayFar More Than Just Speeds and Feeds
Driver: HighCost of Security
Breaches andDowntime
Driver: GrowingConvergedApplication
Deployments
Driver: NetworkDemands
Growing Faster Than IT Staff
Driver: Higher Network ROI
Requirements
SwitchingValue
8/11/2019 Prod Presentation0900aecd80374280
3/25
3 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Most Complete Line of Fixed ConfigurationLAN Products in the Industry
Granular control of L2+ L3/4 services Baseline enterprise security, availability,
management, and QoS features
Mid-Market &Entry-LevelEnterprise
Catalyst2960
PoE support L3 dynamic routing Enhanced security to prevent man-in-the-
middle and virus attacks
Enterprise-ClassCatalyst3560
High-speed stacking L3 dynamic routing PoE support
Operates as a single unified system withintegrated stack management
Enterprise-ClassCatalyst3750
10/100/1000 + 2 10GE wire speed switching Dual, hot swappable, internal power
supplies Hot swappable fan tray
Space-ConstrainedServer Racks
Catalyst4900
Smart, Simple, Secure
GUI ManagedSMB
(< 250)
CatalystExpress
500
8/11/2019 Prod Presentation0900aecd80374280
4/25
4 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Cisco Catalyst 3750 Series
Innovative StackingSets New Standards
for Resiliency andManagement
Enterprise-Class Services Wire-Speed Switching and Routing
Cisco StackWise Technology
Fault-tolerant, Bi-directional 32 Gbpsstack interconnection
Automated Configuration & Management
Single network instance (IP, SNMP, CLI,Spanning-Tree Protocol , VLAN)
Master/secondary architecture with master failover
Cross-Stack EtherChannel , cross-stackQoS
Next Generation in Desktop Switching
Optimized for Gigabit Ethernet
IPv6-capable in hardware
8/11/2019 Prod Presentation0900aecd80374280
5/25
5 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
32 Gbps Stack Interconnect
Stack up to 9 Units
Separate Stacking Port
1:N Master Redundancy
Autoconfiguration and CiscoIOS Version Check/Update
Cross-Stack EtherChanneland QoS
Line-rate Performance with QoSand ACLs for Gigabit Ethernet
Hot swap of Gigabit Ethernet andFast Ethernet Chassis in SameStack
Patented Cable Connector
Unified Stacking,Behaving As a Single Unit
Cisco Catalyst 3750 SeriesCisco Stackwise Technology
8/11/2019 Prod Presentation0900aecd80374280
6/25
6 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Single IP Address10.0.1.25
Cisco Eases Deployment of RemoteInfrastructure with Automation
Automatic Cisco IOS versioncheck of new units
Automatic configuration of newunits with global configuration
Stack managed with single
IP address Hot swap of switchesauto
reconfiguration
1) Check Cisco IOSversion
2) Download newCisco IOS versionfrom master Flash
3) Download stackconfiguration filefrom master
4) Bring unit online
8/11/2019 Prod Presentation0900aecd80374280
7/257 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Cisco Catalyst 3750 Series Model Overview
24 10/100 + 2 SFP Ports
Catalyst 3750-24TS Catalyst 3750-48TS
48 10/100 + 4 SFP Ports
48 10/100 + 4 SFP Ports 370W PoE
24 10/100 + 2 SFP Ports 370W PoE
Catalyst 3560G-24PS Catalyst 3560G-48PSCatalyst 3750-24PS Catalyst 3750-48PS
24 10/100/1000 + 4 SFP
Catalyst 3750G-24TS-1U Catalyst 3750G-48TS
48 10/100/1000 + 4 SFP
24 10/100/1000 + 4 SFP 370W PoE
Catalyst 3560G-24PS Catalyst 3560G-48PSCatalyst 3750G-24PS Catalyst 3750G-48PS
48 10/100/1000 + 4 SFP 370W PoE
24 10/100/1000
Catalyst 3750-24TS
12 SFP (AC or DC)Catalyst 3560G-24PS
Catalyst 3750-24PS
16 10/100/1000 1x 10GE XENPAK
Catalyst 3750G-24TS-1U
24 10/100/1000
Catalyst 3750-24FS
8/11/2019 Prod Presentation0900aecd80374280
8/258 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Software
Three Software LicensesIP Base (SMI)
Enterprise-class intelligent services:advanced QoS, enhanced security,
RIP, and static IP routingIP Services (EMI)
IP Base feature set plus: dynamicIP unicast routing, smart multicastrouting, and PBR
Advanced IP Services
Adds IPv6 capability(hardware supported)
8/11/2019 Prod Presentation0900aecd80374280
9/259 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Cisco Catalyst 3560 Series SwitchesPositioning
Enterprise-class, fixed configuration, multilayer switching linesupports IEEE 802.3af or Cisco prestandard Power over Ethernet
Enables the deployment of network-wideintelligent services for converged applications
Enhanced securityAdvanced quality of service (QoS)High Availability
Intelligent power management featuresprovide granular control
Express Setup and Cisco Network Assistant software supportseasy deployment and configuration
Cisco ASICs provide superior hardware and softwareintegration, and innovative features
8/11/2019 Prod Presentation0900aecd80374280
10/2510 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Cisco Catalyst 3560 Series Model Overview
24 10/100 + 2 SFP Ports
Catalyst 3560-24TS Catalyst 3560-48TS
48 10/100 + 4 SFP Ports
48 10/100 + 4 SFP Ports 370W PoE
24 10/100 + 2 SFP Ports 370W PoE
Catalyst 3560G-24PS Catalyst 3560G-48PSCatalyst 3560-24PS Catalyst 3560-48PS
Three Software Licenses
IP Base Software License Enterprise-class intelligent
services: advanced QoS,enhanced security,RIP, andstatic IP routing
IP Services Software License IP Base feature set plus:
dynamic IP unicast routing,smart multicast routing, andPBR
Advanced IP Services License Adds IPv6 capability
24 10/100/1000 + 4 SFP
Catalyst 3560G-24TS Catalyst 3560G-48TS
48 10/100/1000 + 4 SFP
24 10/100/1000 + 4 SFP 370W PoE
Catalyst 3560G-24PS Catalyst 3560G-48PSCatalyst 3560G-24PS Catalyst 3560G-48PS
48 10/100/1000 + 4 SFP 370W PoE
8/11/2019 Prod Presentation0900aecd80374280
11/2511 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Power Over Ethernet
Why PoE Enables the network for IP Telephony and Wireless access
Eliminate the need for separate electrical wiring
Protect your investment and avoid costly upgrades
Cisco Catalyst Advantages
Standards-based IEEE 802.3af guarantees device interoperability
Intelligent power management with granular control
Ciscos Redundant Power Supply (RPS675) maximizes reliability
Both Cisco pre-standard POE and 802.3af are fully supported
Wide selection of powered devicesIP Phones
Wireless Access Points
Surveillance cameras
Access Card Readers
8/11/2019 Prod Presentation0900aecd80374280
12/2512 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Gigabit Ethernet
1. http://www.gigabitsolution.com
Proven TechnologyOver 80% of desktops and notebooks are now shippedwith GE 1
Increased PC bus speeds and server TCP offload engines(TOE) allow for full bandwidth utilization
Easy to DeployWorks over existing Cat-5 cablingCiscos Time Domain Reflectometry (TDR) on GE witchesverifies existing cabling
Prepares the network for future applicationdemandsScales beyond 100 Mbps as bandwidth requirementsincreaseProtects your investment and avoids a costly upgrade
8/11/2019 Prod Presentation0900aecd80374280
13/2513 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Gigabit Ethernet (cont.)
131313 2004 Cisco Systems, Inc. All rights reserved.
StorageTakes advantage of simple and affordable NetworkAttached Storage (NAS)
Complies w/regulatory record keeping requirements(SOX, SEC, etc.)
ClusteringEnables high performance GRID and distributed computing
Software Applications
Data Backup, Database Access, Microsoft Exchange, FileSharing, Collaborative Development, Remote OperatingSystem Updates, Medical Imaging
Next generation operating systems, such as MicrosoftVistas remote imaging, data synchronization, andcomputer to computer search applications
8/11/2019 Prod Presentation0900aecd80374280
14/2514 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
The Routed Access (Layer 3) Advantage
Routed Access (RA) utilizes routing in the wiringcloset
Benefits
Simplified Network Implementation with only 1 controlprotocol.
Worst Case 200 ms node/link failover/recovery
Easier Troubleshooting
Works with OSPF, EIGRP and EIGRP-stub(in IP Base)
RA was thoroughly tested in a large real-worldnetwork
8/11/2019 Prod Presentation0900aecd80374280
15/2515 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
IPv6 Services
IPv6 services are supported in hardware for maximumperformance
IPv6 expands the network address space, improves easeof use, mobility, security
The Catalyst 3750 and 3560 support IPv6 routing,management, multicast, and ACLs; host managementavailable in IP Base license
More protocols useefficient multicast traffic
Many protocols usebroadcast trafficMulticast
IPSec Support MandatoryIPSec SupportOptionalSecurity
Mobile IP, but no foreignagent required
Mobile IPMobility
Serverless, Auto-ConfigDHCPAutoconfiguration
128-bit, Multiple Scopes32-bit, NATAddressing Range
IPv6 SolutionIPv4 SolutionIP Service
8/11/2019 Prod Presentation0900aecd80374280
16/2516 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
Cisco Trust AgentNetwork Admission Control
SecureConnectivity
ThreatDefense
Trust andIdentity
Cisco Catalyst SwitchingIntegrated Security
SSLVPN
Man-in-MiddleAttack Mitigation:DHCP Snooping,
DAI, IPSG
Quarantine VLAN(Remediation)
IPSecVPN
Identity-BasedNetworking
(802.1x extensions)
Web and MAC-BasedAuthentication
SiSi SiSi SiSi
SiSi
SiSi
PVLAN
Scavenger-ClassQoS
8/11/2019 Prod Presentation0900aecd80374280
17/2517 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
The Need For Admission Control
Viruses, worms, spyware, etc. still #1cause of financial loss 2
Downtime, recovery, lost productivity,credibility, legal implications
Users routinely authenticated, but...Endpoint devices (laptops, PCs, PDAs)are not checked for security policycompliance
Unprotected endpoints spread infection
Required security software not installed,disabled, or out of date
Checking for compliance is difficult andexpensive
2. 2005 FBI/CSI Report
8/11/2019 Prod Presentation0900aecd80374280
18/2518 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
Endpoint systems are vulnerable and represent themost likely point of infection from which a virus or worm can spread rapidly and cause seriousdisruption and economic damage.
Burton Group
8/11/2019 Prod Presentation0900aecd80374280
19/2519 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
Network Admission Control OptionsTwo Paths: Both Leverage Cisco Network
Network Access Device
AuthenticationPolicy
Enforcement
Discovery
Remediation
CleanAccessAgent
AAAAuthentication
Enforcement
Discovery
P ol i c
y
Remediation
Network Access Device
CiscoTrustAgent
N A C
F r a m e w o r k
C i s c o
C l e a n
A c c e s s
NAC Framework: Vendor products provide assess and remediate across an intelligent networkCisco Clean Access: Turnkey NAC appliance for authentication, assessment, and remediation
8/11/2019 Prod Presentation0900aecd80374280
20/2520 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
NAC Framework Deployment Options
Two NAC Framework Deployment Options:LAN Port 802.1X Basic (LP1X)Available on Cat 3K and 2K
Carries credentials inside EAPoL along with user authentication
Triggered by normal 802.1X exchangeEnforcement policy is RADIUS VLAN Assignment
Requires an enhanced supplicant with CTA built-in
LAN Port IP (LPIP)Available on Cat 3K Only
Carries credentials inside EAPoUDP, completely independentof any user authentication
Triggered by ARP or DHCP traffic from the host
Enforcement policy is RADIUS IP Downloadable ACLs
Can be used with or without CTA ( clientless host )
8/11/2019 Prod Presentation0900aecd80374280
21/2521 2006 Cisco Systems, Inc. All rights reserved. Cisco Public
25482.CLETMG_01_06
The Business Relevanceof Cisco Smartports
Cisco Smartports allows for simpleand accurate deployment of high valuenetwork-optimizing intelligent features
Preconfigured macros enabling fastand easy configuration of advancedCatalyst intelligent capabilities
Quickly enables QoS, Security andavailability features with a singlecommand
Granular flexibility on a per-port basis
Ability to create customized macros
BenefitsWhat It Does
Simplified featuredeployment
Less chance of errors Deployment consistency
across the network
Greater value fromthe intelligent networkthrough Increasedfeature usage
SiSi SiSi
Internet Intranet
8/11/2019 Prod Presentation0900aecd80374280
22/25
22 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Smartports FeatureMaximizing Network Value
Switch(config)#
default interface range FastEthernet[1]/0/[1 - 48]interface range FastEthernet[1]/0/[1 - 48]switchport access vlan [data]switchport mode accessswitchport voice vlan [voice]switchport port-securityswitchport port-security maximum 3
switchport port-security violation restrictswitchport port-security aging time 2switchport port-security aging type inactivityauto qos voip cisco-phonespanning-tree portfastspanning-tree bpduguard enable
failureserrdisable recovery cause link-flaperrdisable recovery cause udlderrdisable recovery interval 60vtp domain [smartports]vtp mode transparentudld aggressivespanning-tree mode rapid-pvst
spanning-tree loopguard defaultspanning-tree extend system-id
G l o b a
l
C o m m a n
d s
I n t e r f a c e
C o m
m a n
d s
This.
OR
This.
Smartports allows for simple and accuratedeployment of high
value network-
optimizing features Security Availability Manageability Performancehttp://www.cisco.com/go/smartports
8/11/2019 Prod Presentation0900aecd80374280
23/25
23 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Why Catalyst 3750 and 3560?Enterprise-Class Switches
Stack operates a single unified system with integrated stack management
Automatic SW version checking Auto configuration 1:N Master failover (sub second L2, sub 3-seconds L3) Cross stack EtherChannel Hot add/delete: plug-and-play
Stackwise(Cat 3750)
2000 ACEs for Security, QoS, and multicast filtering 1000 VLANs 2K multicast groups as
Scalability
NAC LAN port IP Dynamic ARP Inspection IP Source Guard PVLAN RACLs
EnhancedSecurity
24 10/100/1000 + 4 SFP 48 10/100/1000 + 4 SFP
Higher DensityGE
24 & 48 port available in FE or GE modelsPoE
Advanced routing protocols like OSPF, EIGRP, & EIGRP-stub Multicast routing: DVMRP tunneling and PIM
Equal cost routing for load balancing Multi VRF-CE IPv6 forwarding and management
L3 Routing
8/11/2019 Prod Presentation0900aecd80374280
24/25
24 2006 Cisco Systems, Inc. All rights reserved. Cisco Public25482.CLETMG_01_06
Summary
The Catalyst 3750 and 3560 Series deliver value via industry-leading innovativefeatures
Stackwise turns the Catalyst 3750 into the industrys most robust stackablesolution
PoE with Intelligent Power Management and Gigabit Ethernet prepare the networkfor advanced technologies and extend the deployment life
Catalyst Integrated Security prevents viruses and worms from spreading andthwarts man-in-middle attacks
Routed access simplifies deployments with increased scalability and manageability
Smartports enables easy and accurate deployment of advanced security and QoSfeatures
8/11/2019 Prod Presentation0900aecd80374280
25/25
25482 CL