Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
1
SMB produkty, novinky
Alef Nula Reseller Workshop Martin Půlpán SMB Business Development CZ/SK
[email protected] Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
2
Agenda • SOHO 71, Cisco 806 • Cisco 1721 • Cisco 3700 • Aironet Wireless • PIX 501 • Promo - Catalyst 2950, 3550
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
3
Výhody Dual Ethernet směrovačů s DSL a kabelovými modemy Internet or SP Network DSL or Cable Modem
Cisco SOHO 71 or Cisco 806 Broadband Router
Poskytují inteligentní širokopásmové spojení se zvýšeným zabezpečením
Funkce Firewallu pro bezpečnou práci na Internetu
Centralizovaná a vzdálená správa zařízení Podpora VPN – bezpečné spojení poboček (3DES podporovaný na 806, IPSec pass-through na SOHO 71) Jeden standard s rozdílným WAN připojením – vzdálená pracoviště, domácí kanceláře QoS pro hlasové a video aplikace, jako jsou IP Telefony (Cisco 806) Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
4
Cisco Dual Ethernet - řešení přístupu
Cisco 806 Broadband Router Cisco SOHO 71 Broadband Router
Malé kanceláře a domácí pracoviště s potřebou kvalitního Firewallu Presentation_ID
Malé kanceláře a domácí pracoviště vyžadující integrovaný Firewall, VPN a Traffic Management
© 2001, Cisco Systems, Inc. All rights reserved.
Cisco 1710 Security Router
Malé kanceláře a menší firmy vyžadující rychlé VPN připojení
5
Cisco SOHO 71
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
6
Cisco SOHO 71 – širokopásmový směrovač Dostupný, bezpečný přístup do Internetu pro malé kanceláře a domácí pracoviště
• Integrovaný Firewall (IOS) • Jednoduché nastavení • Cisco IOS software • $350 EU koncová cena • Jen jeden feature set IP/FW Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
7
Cisco SOHO 71 – architektura směrovače To Hub/To PC Button Determines the Ethernet device and cable type used for Ethernet Hub
Console Port Connects to PC or terminal for configuration
Locking Power Connector
Cable Lock
Securely connects power supply
Physically secures router
10 MB Ethernet LAN Hub Connect to Ethernet network devices
Processor •RISC MPC855T@50MHz
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
Ethernet WAN Port Connects to broadband modem or Ethernet Switch
Memory •DRAM Default: 16MB •FLASH Default: 8MB Usable (4MB of 12MB for Web Flash)
8
Cisco SOHO 71 – funkční vlastnosti Kategorie
Hlavní vlastnosti • • • •
Multiuser
PPPoE NAT/PAT DHCP client/server MAC Address & Hostname pass-through for cable modems
Cisco IOS® Security
• Extended access lists • PAP/CHAP authentication • Stateful firewall - Context-Based Access Control (CBAC), Java blocking, audit trail, DoS detection, real-time alerts • IPSec Pass-though with 9Mbps performance w/ 256 byte packets
Cisco IOS Management & Reliability
• • • • •
Presentation_ID
One feature set only: Cisco IOS IP Firewall Telnet, syslog, SNMP 3, IPSec monitoring MIB Cisco IOS debug commands (show, trace, etc) IP routing, routed protocols (IGRP, RIP, EIGRP) Cisco Router Web Set Up tool
© 2001, Cisco Systems, Inc. All rights reserved.
9
Jednoduchá konfigurace a správa s ostaními Cisco směrovači. • Plug and Play for most connection types
Cisco 806 Configuration Tool
• Cisco Router Web Setup (CRWS) Quick setup for common Cable and DSL scenarios requiring name entry Stateful Firewall with one check box Router status monitoring & trouble-shooting Supports Cisco SOHO Series & 800 Series Broadband & DSL Routers
• Configuration Express Drop ship pre-configured uniquely configured devices to end users
Cisco Configuration Express service
Free to Cisco Partners No need for staging, inventory and logistics
• CNS IE2100 Configuration completion for up to thousands of devices Ongoing configuration updates for devices with static and dynamic IP connections Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
10
Cisco 806 Broadband Router
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
11
Cisco 806 širokopásmový směrovač Bezpečný a zvládnutelný VPN přístup s Cisco IOS technologií pro malé pobočky a domácí kanceláře. • Business Class Security pro VPN přístup do internetu • Malé řešení • Voice, video a traffic managementh • Prověřená spolehlivost a správa se Cisco IOS • Cisco 806 s IP FW PLUS $649 • IP Firewall PLUS IPSEC $150 Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
12
Požadavky na spojení pro malé kanceláře a domácí pracoviště • Security Integrated VPN and Stateful Firewall in one device SSH for secure administration
• Visibility & Control Remote management of all functions SLAs, Cisco Easy VPN, User Authentication*
• Support for Voice, Multimedia and Traffic Management QoS for traffic prioritization and rate limiting IP Multicast, GRE for multimedia
• Affordability & Scalability Lower costs without PC management Pre-configuration for fast deployment Cisco Easy VPN Update configurations and policies for up to thousands of users *Q3CY02 Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
13
Cisco 806 – architektura směrovače To Hub/To PC Button Determines the Ethernet device and cable type used for Ethernet Hub
Console Port Connects to PC or terminal for configuration
Locking Power Connector
Cable Lock
Securely connects power supply
Physically secures router
10 MB Ethernet LAN Hub Connect to Ethernet network devices
Processor •RISC MPC855T@50MHz
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
Ethernet WAN Port Connects to broadband modem or Ethernet Switch
Memory •DRAM Default: 32MB •DRAM Max: 32MB •FLASH Default: 8MB Usable (4MB of 12MB for Web Flash) •FLASH Max: 12 MB 14
Cisco 806 – hlavní soft. vlastnosti Category • • • •
Multiuser
Cisco IOS® Security & Encryption
Cisco IOS Management & Reliability QoS Presentation_ID
Key Features PPPoE NAT/PAT DHCP client/server MAC Address & Hostname pass-through for cable modems
• Client Mode VPN Configuration (Easy VPN) – Auto Tunnel Initiation with Dynamic Policy Push • Extended access lists • PAP/CHAP authentication • Stateful firewall - Context-Based Access Control (CBAC), Java blocking, audit trail, DoS detection, real-time alerts • IPSec 3DES encryption with IKE support (up to 10 tunnels) • IPSec Pass-though for VPNs initiated with PC VPN Clients: 9Mbs performance w/ 256 byte packets • Cisco Easy VPN Remote & Easy VPN Server • • • • • • • •
Telnet, syslog, SNMP 3, IPSec monitoring MIB Cisco IOS debug commands (show, trace, etc) IP routing, routed protocols (IGRP, RIP, EIGRP) Cisco Router Web Set Up tool IP multicast H.323, SIP*, Skinny* NAT passthrough (Q2CY02) CAR for Rate Limiting Traffic Shaping Class Based Traffic Shaping
© 2001, Cisco Systems, Inc. All rights reserved.
15
Pozice jednotlivých produktů
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
16
Cisco SOHO 71 a Cisco 806 směrovače Cisco 806
Cisco SOHO 71
IP/FW/PLUS, optional VPN image Multi-User Access IP/FW Cisco IOS Image Multi-User Access Stateful IOS Firewall 4 Port Hub IOS Software Updates (IP Firewall Only)
Stateful IOS Firewall, IDS, Radius, TACAS+ VPN Ready (increased default memory to support VPN image) IOS Plus features – EIGRP, Multicast, SA Agent, Named Access Lists, QoS (LLQ, CAR) 4 Port Hub IOS Software Updates & Upgrades
$350 List – No SW options
$650 List, Router + VPN $799
Applications: single sites, VPN pass-through
Applications: multi-sites, VPN termination
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
17
Přehled řady menších směrovačů Cisco SOHO 71- Secure
•Secure Internet Access with Stateful Firewall Internet access for small •Simple set up offices & home offices •Proven reliability and manageability with Cisco with manageable, stateful IOS software
firewall
Cisco 806 - Secure and
Manageable VPN Access with the power of Cisco IOS Technologies for small offices and teleworkers
Cisco PIX 501- Robust
integrated security for small/remote offices demanding the highest levels of security with VPN
Presentation_ID
•Business Class Security for VPN and Internet access •Low deployment & lifecycle cost •Voice, video and traffic management •Proven reliability and manageability with Cisco IOS software •Enterprise Class Security •Compact, purpose-built security appliance •All-in-one design integrating Stateful Firewall, VPN and IDS •Rich application and multimedia support •Intuitive, web-based management & monitoring
© 2001, Cisco Systems, Inc. All rights reserved.
18
Porovnání produktů Cisco SOHO 71 Router
Cisco 806 Router
$649 FW + VPN Ready List Price
$350 IP FW
$150 3DES SW $799 (806 + 3DES SW)
Operating System
Cisco IOS
Cisco IOS
Software Upgrades
Image Updates Only
VPN Support
IPSec Pass-through Only
DES, 3DES, Easy VPN
Firewall Features
Cisco IOS FW Phase 1
Cisco IOS FW Phase 1-3 with IDS*
HW Configuration Presentation_ID
1 Eth WAN, 4 port Eth LAN Hub © 2001, Cisco Systems, Inc. All rights reserved.
Updates & Upgrades
*SW update in CY Q3 1 Eth WAN, 4 port Eth LAN Hub
PIX 501 Firewall
$549 for 10/DES $649 for 10/3DES PIX OS Updates & Upgrades DES, 3DES, High Speed Encryption, Easy VPN (Q1 CY02) Cisco PIX Firewall & IDS
1 Eth WAN, 4 port Eth LAN Switch 19
Cisco SOHO 71 & Cisco 806 detailní srovnání Small Office, Unmanaged Teleworkers Cisco SOHO 71 • Fixed configuration • 4x1 ports 10-Mbps Ethernet • SW Updates, No SW Upgrades
Cisco 806 Hardware Configuration
• Packet filtering, stateful firewall, denial-of-service detection & prevention • NAT (many-to-one & many-to-many) • Only IPSec Pass-through • None
Presentation_ID
Security
QoS Features
• Web-based Setup tool • CNS IE2100 • Cisco IOS® remote management, debug, troubleshooting, CSPM, VPN Solution Center • IP, RIP, RIPv2 • 9Mbps clear traffic
Small Office, Managed Teleworkers
Setup & Management Routing & Performance
© 2001, Cisco Systems, Inc. All rights reserved.
Red = Differentiation (some features optional)
• Fixed configuration • 4x1 ports 10-Mbps Ethernet • Upgradeable memory & Images • Packet filtering, stateful firewall, denial-ofservice detection & prevention • VPNs: Optional IPSec 3DES SW encryption, Easy VPN Remote, IPSec Pass-through, Easy VPN Server (testing required) • NAT (many-to-one & many-to-many) • • • •
LLQ, CAR, Class-based Traffic Shaping Web-based Setup tool CNS IE2100 Cisco IOS® remote management, debug, troubleshooting, CSPM, VPN Solution Center
• IP, RIP, RIPv2, EIGRP, GRE, L2TP • IP Multicast • 9Mbps clear traffic, 370K 3DES half duplex 20
Přehled: cíloví zákazníci Cisco SOHO 71 & Cisco 806 Routers • SOHO 71 Small businesses who need shared Internet access with stateful firewall protection Teleworkers and agents who use PC VPN clients and need shared Internet access with stateful firewall protection • Cisco 806 Small remote offices and teleworkers connecting to a corporate network, with managed VPN and stateful firewall in one device Enterprises considering voice and video applications Customers who want managed CPE with scalable total cost of ownership
• For both products: Non technical users can take advantage of the simple set up of the SOHO 71 and 806 routers and customers with knowledge of Cisco IOS software can leverage remote management and troubleshooting features. Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
21
Cisco 1721
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
22
Cisco 1721 – zaměřený na e-bussiness • Flexibility and Investment Protection Modular design Field upgradeable WAN interface cards
• Comprehensive Security Wire-Speed VPN access with IPSec 3DES Cisco IOS® Firewall, IDS, DMZ LAN Cisco Easy VPN for simplified deployment
• Business-Class DSL ADSL and G.SHDSL support Enhanced QoS over DSL
• Manageability SNMP manageable CiscoWorks and CiscoView Cisco IOS software with QoS features Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
23
Cisco 1721 - architektura • High Performance RISC Architecture • Two WAN Slots • One Auto-Sensing 10/100 FE Port with IEEE 802.1Q VLAN • AUX Port up to 115 kbps • Internal Expansion Slot for VPN Hardware Encryption • VPN IPSec 3DES up to T1/E1 Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
24
Cisco 1721 podpora LAN a WAN • Maximum LAN Density Support for 3 Ethernet connections 1 Fast Ethernet (on board) 2 Ethernet (10BaseT) WICs option
• Maximum WAN Density 5 Asynchronous Serial 4 Synchronous Serial (up to T1/E1) 2 Basic Rate Interface (BRI) (ISDN)
• WAN Interface Card (WIC) Support WIC-1T, WIC-2T, WIC-2A/S, WIC-1B-S/T WIC-1B-U, WIC-1DSU-56K4, WIC-1DSU-T1 WIC-1ENET, WIC-1AM, WIC-2AM WIC-1ADSL, WIC-1SHDSL
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
25
Cisco 1721/1720 produktové srovnání Cisco 1721
Cisco 1720
12,000 pps
8,400 pps
DRAM (Default/Maximum)
32 MB/96 MB
32 MB/48 MB
Flash (Default/Maximum)
16 MB/16 MB (Non-upgradable)
8 MB/16 MB
IEEE 802.1Q VLAN Routing
YES
NO
Encryption Module LED Indicator
YES
NO
Routing Performance (Based on 64-byte Packet)
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
26
New Cisco 3700 Series Application Service Routers Integrated Access Solutions for the Branch Office March 11, 2002 Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
27
Enterprise Branch WAN přístup More applications distributed to the Branch Either integrated or Stand alone switching
WAN PSTN
Cisco 2600/3600 Router
Headquarters
Market Drivers – 1996-2000
New Market Drivers – 2000-2004
• Multiservice
• Webification/E-business apps
• Intranet Apps
• New Access Technologies
• Standardization on IP
• Security/QoS/Availability
• SP Services/Bandwidth $$
• IP Telephony/Convergence
• Modularity / Flexibility Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
• Application and Service Integration 28
Úvod - Cisco 3700 Series Cisco 3700 Series – Application Service Router • Vysoká hodnota
•Modularní Single-platform IP Telephony řešení • Integrovany of flexible routing and low-density switching
Flexible enterprise branch office solution for modular integration of services and applications… helps customers to accelerate cost reduction, reduce total cost of ownership and improve competitive leverage of the network Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
29
Cisco 3700 vlastnosti
New!
Cisco 3745 Application Service Router • 4 Network Module, 2FE, 3WIC, 2 AIM
• Shares modules with 1700/2600/3600 • US List Price - $12,000 • Cisco IOS Release 12.2(8)T
Cisco 3725 Application Service Router • 2 Network Module, 2FE, 3WIC, 2 AIM
• Shares modules with 1700/2600/3600 • US List Price - $8,500 • Cisco IOS Release 12.2(8)T
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
30
EtherSwitch moduly 36-port EtherSwitch High Density Service Module for Cisco 3700 Series Routers
New!
• 36 port 10/100 double-width High Density Service Module (HDSM) (requires 2 NM slots) • Optional in-line power and GE ports • Requires Cisco IOS 12.2(8)T1 or greater; requires Cisco IP Plus images
16-port EtherSwitch Network Module for Cisco 2600/3600/3700 Series Routers • 16 port 10/100 single width Network Module • Optional in-line power and GE ports • Requires Cisco IOS 12.2(2)T1 or greater; requires Cisco IP Plus images Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
31
Cisco 3700 Series
Vhodný pro integraci různých komunikačních služeb Customer Requirements* Rapid deployment of WAN Infrastructure
Single Platform solution with Single point of management
Build robust Infrastructure to support IP Telephony
Combines Scalable Analog & Digital Voice Gateway with Integrated IP Telephony Solution
Deploy mission critical, delay-sensitive applications & services
*Metzler, State of the WAN, 2001 Presentation_ID
Cisco 3700 Solution
© 2001, Cisco Systems, Inc. All rights reserved.
Options for enhanced availability and are performance-tuned for QoS
32
Hlavní aplikace
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
33
Modulární řešení pro malou pobočku Infrastruktura pro IP telefony • Optimized for Integrated IP Telephony – IP phone powered switch
Cisco 3700 36 Port EtherSwitch NM Internal Power capabilities
– High density voice gateway
PSTN
WAN
– Flexible WAN routing –Survivable Remote Site Telephony
• Flexible combination of analog and/or digital voice with scalable port density
Branch Office
• Full support for Cisco IOS voice suite of features • Platforms performance-tuned for scaling packet voice solutions Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
34
Integrované směrování a přepínání
Aplikace vyžadující přepínání na 3 vrstvě a WAN propojení • New density options for integrated switching modules (36-port) • Common user interface with Catalyst series switches
Cisco 3700 36 Port EtherSwitch NM Internal Power capabilities
WAN
• Simplified management from a single platform for ease of: – configuration – deployment – troubleshooting
PSTN
Branch Office
• Integrated inline power for –wireless access points –IP phones
• GigE connectivity
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
35
New 3725, 3745 Applications Services Router High Service Density - Compact Form Factor • Optimized for multiple high density services
Cisco 3725 AIM-VOICE-30 AIM-VPN-EP
• Integrated connectivity options free up network module slots • Optional features enhance availability/resiliency (3745 only) –internal redundant power, –hot-swappable modules –field-serviceable components
36-port EtherSwitch HD Analog Voice
FE PBX
• Versatile High Density Service Module (HDSM) design enhances integrated services options
Dial Backup
PBX
Dial Backup
Cisco 3745 AIM-VOICE-30
AIM-VPN-HP
PSTN
FE 36-port EtherSwitch
WAN Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
HSSI
HD Analog Voice 36
Specifikace produktu
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
37
Cisco 3725 - technický popis Features: • • • •
2 - NM Slots (one double-wide capable) 2 - 10/100 FE Ports 3 - WIC slots 2 - AIM slots (internal)
• 100 Kpps Performance • Aux. & Console ports (115.2 Kbps) • Internal and External Flash (32 - 128MB) • DIMM DRAM (128 - 256MB) • Field Replaceable Units: Power Supply
FCS 03/11/02 US List Price - $8,500 Cisco IOS Release 12.2(8)T
• Dimensions: 3.5” (2RU) x 17.25” x 14.7”
Options: • -48V In Line Power • External RPS (System & In Line)* Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
38
Cisco 3745 – technický popis Features: • • • •
4 - NM Slots (two double-wide capable) 2 - 10/100 FE Ports 3 - WIC slots 2 - AIM slots (internal)
• 225 Kpps Performance • Aux. & Console ports (115.2 Kbps) • Internal and External Flash (32 - 128MB) • SODIMM DRAM (128 - 256MB) • OIR: NMs & RPS • FRUs: motherboard, I/O board, Fan Tray, PS • Dimensions: 5.25” (3RU) x 17.25” x 15”
FCS 03/11/02 US List Price - $12,000 Cisco IOS Release 12.2(8)T
Options: • -48V In Line Power • Internal RPS (System & In Line) • Presentation_ID DC system power (single & RPS) © 2001, Cisco Systems, Inc. All rights reserved.
39
36 portový EtherSwitch Network Module pro Cisco 3700 Features: • 36 - 10BaseT/100BaseTX Ports • Full/Half duplex with auto detect • Line-rate Layer 2 switching • Cisco IOS®/Catalyst OS Software • 802.1Q VLAN and 802.1P QoS support • 802.1D Spanning Tree protocols
Options: • Line power for IP Phones • Single/dual Gig Ethernet Uplink Ports • Stacking support in 2HCY02
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
FCS 05/02 Cisco IOS Release 12.2(8)T1
40
Podporovaná rozhraní pro řadu Cisco 3700 – Phase 1 LAN/WAN
LAN
Serial
ISDN/ Chan'l
Voice
ATM
Modem
Encrypt’n/ Compres’n
FE Combo NMs (NM1FE2W, etc)
16 & 32 port Etherswitch NMs
2 port Serial WICs
1 & 2 port T1/E1 Channelized /ISDN Pri NMs
Low Density Analog Voice NMs (all VICs except BRI NT/TE)
4 & 8 port T1/E1 NMs
Digital Modem NMs
EP & HP AIMs
1 port ADSL WIC
1 & 2 port T1/E1 CSU/DSU VWICs
4 & 8 port T1/E1 ISDN BRI NMs\ ISDN BRI WICs
1 port 56k CSU/DSU WIC
High density T1/E1 Digital Voice NMs
1 port DS3 /E3 NMs
1 & 2 port Analog Modem WICs
4 & 8 port Sync/Async Serial NMs HSSI NM
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
41
Podporovaná rozhraní pro řadu Cisco 3700 – Phase 2/3 LAN/WAN
LAN
Serial
NM-16A NM-32A
NM-1FE-FX WIC-1SHDSL
ISDN/ Chan'l
Voice
ATM
Modem
Encrypt’n/ Compres’n
AIM- ATMVoice
AIM-ATM
NM-8AM
Compression- AIM
NM-16AM AIM-Voice30 VIC-2BRINT/TE
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
42
Shrnutí – Cisco 3700 • Cisco představuje novou řadu směrovačů Cisco 3700 : • Mnoho druhů různých služeb na jednom kompaktním zařízení • Modulární řešení pro IP Telelefony na jedné platformě • Integrovaný výkonný směrovač a přepínač s nízkou hustotou portů • Zařízení vhodné pro nový typ služeb • Osvědčená technologie Cisco IOS a zajištěná QoS
• Ideální řešení pro distribuované zákaznické E-aplikace Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
43
Bezdrátové LAN, zabezpečený přístup do Internetu vždy a všude
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
44
Bezdrátové technologie WAN (Wide Area Network)
MAN (Metropolitan Area Network)
LAN (Local Area Network)
PAN (Personal Area Network) PAN
LAN
MAN
WAN
Standards
Bluetooth
802.11a, 11b, 11g HiperLAN2
802.11 MMDS, LMDS
GSM, GPRS, CDMA, 2.52.5-3G
Speed
< 1 Mbps
2 to 54+ Mbps
22+ Mbps
10 to 384 Kbps
Range
Short
Medium
MediumMedium-Long
Long
PeerPeer-toto-Peer DeviceDevice-toto-Device
Enterprise networks
Fixed, last mile access
PDAs, Mobile Phones, cellular access
Applications Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
45
Nelicencovaná frekvenční pásma Short-Wave Radio FM Broadcast Infrared Wireless LAN AM Broadcast Television Cellular 840 MHz Audio NPCS 1.9 GHz Extremely Very Low Medium High Very Ultra Super Infrared Visible Ultra- X-Rays Low Low High High High Light violet
902 –928 MHz 902–928 26 MHz
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
2.4 –2.4835 GHz 2.4–2.4835 83.5 MHz IEEE 802.11b
5 GHz IEEE 802.11a HyperLAN HyperLAN2 46
Bezdrátové LAN technologie
802.11b
802.11a
802.11g
Frekvenční pásmo
2.4 GHz
5 GHz
2.4 GHz
Dostupnost
Worldwide
US/AP
Worldwide
Maximální Přenosová rychlost
11 Mbps
54 Mbps
54 Mbps
Pravidla radiového přenosu: Vysoká přenosová rychlost = kratší komunikační vzdálnost Vysoký výstupní výkon = zvyšuje dosah, problém s životností baterií Vysoké přenosové frekvence = vyšší rychlost, kratší dosah Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
47
802.11b WLAN podíl na trhu Access Points/Bridge Other 31%
Revenue $XX Q3 02
Symbol 4% 3Com 4% Enterasys 5% Breezecom 5%
Agere 20%
Network Cards
Cisco 31% DLink 5%
Other 25% Agere 25%
Cisco 29%
Symbol 3% 3Com 4% Enterasys 4% Breezecom Breezecom 3% 3% Intel 3%
Source: Dell’Oro Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
48
Cisco Aironet přehled produktů
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
49
Bezdrátová LAN infrastruktura pro Enterprise
• The Cisco Aironet 1200 Access Point – vhodný pro náročná Enterprise řešení
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
50
Výkony • Začíná s komunikačním standardem 802.11b Zkušenosti z řady Aironet 340 a 350
• Bude následovat Dual Radio 802.11a/802.11b • Přináší vysoký přenosový výkon, maximálně 54 Mbps
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
51
Ochrana investic a budoucí rozšíření
• Modulární platforma pro jednopásmovou a dvojpásmovou komunikaci • Možnost upgradu radiové části • Osm megabytů paměti a podpora nástrojů pro řízení sítě
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
52
Flexibilita
• Vhodné pro interní nasazení v kancelářích, možnost připevnění na zeď Odolnost proti extrémním teplotám
• Možnost připevnění na stěnu, kovová skřínka • Podpora in-line napájení přes Ethernet a lokalního zdroje • Volitelný výstupní výkon
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
53
Integrace s Enterprise Management nástroji
• Podora standardních nástrojů - CiscoWorks 2000, CDP, RME, etc. - nový Wireless LAN Solution Engine (WLSE)
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
54
Aironet 1200 Ethernet In-Line napájení • Aironet 350 uses Ethernet in-line power ONLY • Eliminates need for local power and AC infrastructure cost • Draws in-line power from edge devices (-48 Volts) • Catalyst power switches support device discovery mode
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
Power
No Power
Power
Ethernet In-line Power Source: • Aironet Power Injector Ethernet In-line Power Source: • Catalyst 3524-PWR XL Switch • Catalyst 4006 and 6500 Series Switches • 48 Port Power Patch Panel
55
Redundance-Hot Standby
Primary
Standby
• Oba AP mají stejnou konfiguraci včetně vysílacího kanálu Standby AP stále monitoruje primary AP • Když primary AP přestane komunikovat, standby AP automativky převezme aktivitu a začne komunikovat s klienty Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
56
Cisco Aironet 350 WLAN klientské karty • PCMCIA karty pro notebooky a PDA • PCI karta pro desktop počítače • Mini-PCI pro různé aplikace • Ovladače Windows 95, 98, Me, NT 4.0, 2000, XP Windows CE 2.11, 3.0 (Pocket PC) Linux Mac OS 9, X
• Nástroje pro uživatelskou konfiruraci, nastavení, průzkum lokality a upgrade firmware • Workgroup Bridge
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
57
Aironet 350 bezdrátové bridge • Building-to-building links of up to 25 miles (40.2 km) • Flexibility: point-to-point and point-to-multipoint • Metal case for durability and plenum rating; UL 2043 certified • Inline power; simplified installation tools; industryleading receive sensitivity • Management capabilities: SNMP, Telnet, FTP, HTML 802.1d spanning tree
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
58
Cisco Aironet antény Omni Directional
Directional
• Dipole • Patch • Mast mount • Yagi
• Ceiling mount
• Ground plane
• Dish
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
59
Cisco Wireless - bezpečné řešení No Security
Basic Security
Enhanced Security
Specialized Security
No WEP and Broadcast Mode
Wi-Fi 40-bit, 128-bit, and Static WEP
Dynamic Key Management System, Mutual Authentication, and 802.1x via EAP
End-to-end security using VPN
Public Access
Telecommuter and Small Business
Mid-Market and Enterprise
Mobile User and Public Access
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
60
Wireless LAN Roadmap
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
61
Nový AP1200 Dual-Band Access Point
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
62
Přenosové pásmo - 5 GHz 5GHz UNII Band US (FCC) 12 Channels (*can use up to 6dBi gain antenna)
Europe 19 Channels (*assumes no antenna gain)
5.15
5.25
5.35
5.470
5.725
4 Ch
4 Ch
UNII-1
UNII-2
UNII-3
40mW
200mW
800mW
200mW
11 Ch
5.825 4 Ch
1W
UNII-1: Indoor Use, antenna must be fixed to the radio UNII-2: Indoor/Outdoor Use, fixed or remote antenna UNII-3: Outdoor Bridging Only *if you use a higher gain antenna, you must reduce the transmit power accordingly Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
63
Bezdrátové sítě - roadmap: Hardware • New Flagship: The AP1200 Platform Dual-Band, Upgradeable Radios Rugged Metal Housing AP1200 Access Point 802.11b version
Apr/May ’02
with choice of external antennas
802.11a version
3Q’02
innovative combo omni/patch antenna
Dual-band 802.11a+b
3Q’02
operates in 2.4 GHz & 5 GHz bands simultaneously
AP1200F AP with Fiber Uplink Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
est. 4Q’02 64
Bezdrátové sítě - roadmap: Hardware
• 5 GHz 802.11a PC Card Client
3Q’02
• “High-Density Deployment” AP
4Q’02
• Compact Flash (802.11b Type 1)
est. 4Q’02
• 54 Mbps 5GHz UNII-3 Bridge
est. 1Q’03
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
65
Bezdrátové sítě - roadmap: Software AP/Bridge Software (VxWorks) • “Sorak”
Apr.‘01
Maintenance and minor enhancements
• “Twin Peaks”
est. 3Q‘02
VLANs, QoS (for phones), Rogue AP detection, etc.
Client Software • TKIP for Mac OS, WinCE, Linux
2Q’02
• “Adirondack” maintenance release
2Q’02
• SIM and tokens (OTPs) over 802.1X
est. 3Q’02
• Ease-of-use enhancements
est. 4Q’02
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
66
Produktový Roadmap - přehled Q4CY01 Access Points
2.4 GHz Rugged AP
Client Adapters
2.4 GHz Mini-PCI
Software Releases
Q1CY02
Q2CY02
Q3CY02
QxCY03
5GHz (802.11a) AP
5 GHz (802.11a) PC Card Bus
Windows Client Release R11.09 Security Release
2.4 GHz Card Bus Adapters
Windows Client Release 2 IOS
R12.xx VLAN (Subnet Roaming), QoS, VoIP Product Product Roadmap Roadmap subject subject to to change change
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
67
Cisco PIX 501 Firewall
Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
68
Seznámení s produktem Cisco PIX 501 Firewall ®
• IIdeální deální bezpečné řešení pro malé firmy, domácí kanceláře využívající širokoásmový přístup do Internetu • Kompaktní Kompaktní,, spolehlivé spolehlivé,, plug ‘n play zabezpečení pro : • Enterprise -class bezpečnost Enterprise-class • Vysokorychlostní připojení • Propracovaný vzdálená zpráva • Rozšíření zákaznického end -to-end řešení end-to-end v oblasti bezpečnosti pro malé firmy
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
69
Cisco PIX 501 Firewall přehled ®
Důležité vlastnosti Malé firmy, domácí kanceláře
• Kvalitní hardwarový firevall • VPN pro bezpečný přístup do vzdálených sítí • Detekce průniků a další vlastnosti …
Plug ‘n Play síťové řešení
• Integrovaný 4-port 10/100 Mbps přepínač • Integrovaný DHCP klient a server • Podpora dynamického/statického NAT a PAT
Vzdálená správa zařízení
Presentation_ID
• Intuitivní, web-based PIX Device Manager • Možnost využít Cisco Secure Policy Manager 3.0 •Podpora dalších standardů - telnet, SSH, TFTP, SNMP a syslog
© 2001, Cisco Systems, Inc. All rights reserved.
70
Cisco PIX 501 Firewall vybavení produktu ®
Front View • Intuitive LEDs display current status of all network ports, power and VPN tunnels Rear View
• Integrated security lock slot provides improved physical security (cable lock not provided with unit) • Console port for local PIX CLI access • 10 BaseT port for outside interface • Integrated 4-port 10/100 switch for inside “interface” with auto-sensing and auto-MDIX features
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
71
Cisco PIX 501 Firewall technická specifikace ®
Hardware Features
• 133 MHz AMD Processor • 16 MB SDRAM, 8 MB Flash Memory • Convection cooled design – no fan needed • Compact 6.25x5.5x1” (WxDxH”) form factor
Performance Metrics
• 10 Mbps cleartext firewall throughput • 6 Mbps DES VPN performance • 3 Mbps 3DES VPN throughput • 3,500 concurrent connections
Software Features
• Supports full Cisco PIX Firewall feature-set • Runs same software images as all other PIX platforms • First PIX platform with new plug ‘n play factory default configuration
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
72
Cisco PIX 501 Firewall ceny produktů ®
Bundles
PIX 501 with 10 user and DES licenses, $595 PIX 501 with 10 user and 3DES licenses, $695 PIX 501 with 50 user and DES licenses, $1,195 PIX 501 with 50 user and 3DES licenses, $1,295
Configurable Chassis and Options
PIX 501 chassis with PIX OS 6.1(1) software, $595 User license: 10 users $0, 50 users $600 Encryption license (optional): DES $0, 3DES $100
Upgrades / Spares
10 to 50 user license upgrade, $700 Encryption license: DES $0, 3DES $100 Spare AC power supply, $60
Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
73
Promotion
Cisco
® Catalyst
® Catalyst Session Number Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
2950 Series
3550 Series 74
Catalyst 2950 a Catalyst 3550 Inteligentní Ethernet přepínače
Wiring Closet Aggregation Small Network Backbone
Wiring Closet Catalyst 3550 Series
NEW
Catalyst 3550-12T
Catalyst 3550-12G
Catalyst 3550 Stackables
Price/Performance
Stackable 10/100 and GE configurations High performance switching and routing Enterprise-class intelligent services Clustering capable
Catalyst 2950 Stackables Stackable 10/100 switching GBIC-based Gigabit connectivity Advanced intelligent services Clustering capable
NEW
Catalyst 2950T-24/2950C-24 Wire-speed standalone 10/100 switching 10/100/1000BaseT & 100BaseFX uplinks Advanced intelligent Ethernet services Clustering capable
Catalyst 2950-24/2950-12 Wire-speed standalone 10/100 switching Basic Cisco IOS functionality Clustering capable
Presentation_ID
Scalability © 2001, Cisco Systems, Inc. All rights reserved.
75
Catalyst 2950 a Catalyst 3550 Series Iinteligentní Ethernet přepínače Wiring Closet Aggregation Small Network Backbone
Wiring Closet Catalyst 3550 Series
NEW
Catalyst 3550-12T
Catalyst 3550-12G
Catalyst 3550 Stackables
Price/Performance
Stackable 10/100 and GE configurations High performance switching and routing Enterprise-class intelligent services Clustering capable
Catalyst 2950 Stackables Stackable 10/100 switching GBIC-based Gigabit connectivity Advanced intelligent services Clustering capable
NEW
Catalyst 2950T-24/2950C-24 Wire-speed standalone 10/100 switching 10/100/1000BaseT and 100BaseFX uplinks Advanced intelligent Ethernet services Clustering capable
Catalyst 2950-24/2950-12 Wire-speed standalone 10/100 switching Basic Cisco IOS functionality Clustering capable
Scalability Presentation_ID
© 2001, Cisco Systems, Inc. All rights reserved.
76
F0_7082_c2
© 2000, Cisco Systems, Inc.
77