Positioning - Up-To-Speed-On-Cisco-Switching
Positioning - Up-To-Speed-On-Cisco-Switching
UP-TO-SPEED-ON-CISCO
Renè Andersen TSA, Catalyst Switching
As Co-Host Karen Ritnagel
Q&A
Key Challenges for SMB and Enterprise Mid-Market Businesses
10G mgig
1G fiber
Catalyst
9600 Series
90W
9300L mgig Catalyst
9200 9300B Catalyst
9500 Series
mgig 9300H 90W 9400 Series Catalyst
Catalyst
9300 Series
9000
Catalyst
9200 Series
Switching
Platform
Cisco® Catalyst® 1000 Series Cisco Catalyst 9200 Series Cisco® Catalyst® 9300 Series
• 8 ports of mGig
• Modular uplinks (4x1/10G, 2x25G or 2x40G) • Limited SD
• FRU silver and platinum rated PSUs and Fans Access (4VN
Catalyst Catalyst
2960-XR C9200 • 160 Gbps Stacking Bandwidth for C9200,
1VN for
C9200L)
• Macsec-128
• Fixed uplinks (4x1/10G or 2x25G)
• Cold Patching
• FRU silver and platinum rated PSU
• NBAR2
Catalyst Catalyst • 80 Gbps Stacking Bandwidth
2960-X C9200L
Classic IOS
• Fixed uplinks (2x1G, 4x1G or 4x10G)
• Standalone or single IP management On prem Web UI
Catalyst
2960-L and 2960-P
Catalyst 1000
Positioning
Many mGigs
UPoE
Application hosting
9200
Modularity, more stacking BW,
SDA 4VRF
2960X
1000
Catalyst 9200 Series
Catalyst 9200/L Series Access Switches
Simplicity without compromise- 2x performance at the same price as Catalyst 2960X/XR
2x
Double the performance High availability Improved security
Network Monitoring
Higher speeds and PoE budget, Application visibility with NBAR2, Full PSU/FAN redundancy, Perpetual Macsec-128, policy-based
Stack bandwidth, scale & more Netflow (FnF) PoE, SSO, Cold patching segmentation, trustworthy solutions
Application
experience 24 ports Full POE+, 8xmGig, 10G Uplink 24 ports Full POE+, 8xmGig Trustworthy solutions
24 ports Full POE+, 8xmGig, 25G Uplink
Perpetual/Fast PoE
*C9200 1G skus support 1/10G uplinks while C9200 mGig will support 10/25/40G uplinks
**C9200 32 VN skus only support 1/10G uplinks and these skus cannot be stacked with other C9200 skus
Cisco Catalyst 9200- Multigigabit Models 17.1.1
Introducing Multigigabit speeds with Flexible Uplink modules
• 2 x 40 Gig
c • QSFP Transceivers
• Supported on all 9200 mGig SKUs only
40x 10M/100M/1G Ports 8x 100M/1/2.5/5/10G Ports
• 2 x 25 Gig
SFP/SFP+ Transceivers
c
•
• 1/10/25G speed support
16x 10M/100M/1G Ports 8x 100M/1/2.5/5/10G Ports
• Supported on all 9200/9200L mGig SKUs only
Oct
‘19
Powered by Powered by
Cisco RF ASIC Cisco RF ASIC
Essentials
DNA License
24 port 1G PoE Sku
• Advanced Telemetry & Visibility: Full Flexible Netflow,
0%
Total Price: $3,335 $3,335 Embedded Event Manager(EEM)
• Easy Management- Software Image Management (SWIM),
$610
Discovery, inventory, topology, licensing
• Day 0: Plug-n-Play Application, Lan Automation, Host
Onboarding, Network Settings, Device credeentials.
$3,335 $2,745
HW + Network Stack
• Platform Innovations: mGig SKU’s, High Speed
C2960X C9200L-E Uplinks(4x10G/2x 25G/2x 40G), Stackwise 80, SSO with
stacking.
HW DNA-E (3Y) • Layer 2 and Routed Access: VRRP, PBR, CDP, QoS, RIP,
EIGRP stub, OSPF, PBR, PVLAN
• Security. & Segmentation: Macsec-128, App recognition,
802.1x
• Telemetry and Visibility: Model Driven Telemetry, sampled
Netflow, SPAN, RSPAN
• Automation & HA: Netfconf, Restconf, Yang, PnP Agent
FRU uplinks X √
$2.855
Layer 3 Routed Access* Routed Access*
Trustworthy Solutions √ √
Security and
Network segmentation √ √
Monitoring
Full Netflow (FnF) √ √
Programmable ASIC √ √
Full Routing Functionality High Availability & Resiliency Essential Switch Capabilities DevOps Integration
HSRP, OSPF, ISIS,GLBP Cold Patching (CLI) Layer 2, ▪ Netconf, Restconf, gRPC
Routed Access(RIP, EIGRP Stub, OSPF ▪ Yang Data Models
(1000 routes)), ▪ PnP Agent
PBR, PIM Stub Multicast (1000 routes)
Flexible Network Segmentation Optimize Bandwidth Utilization PVLAN, VRRP, PBR, CDP, QoS,
VRF, VXLAN, LISP, SGT with Multicast FHS, 802.1x, Macsec-128, CoPP, Telemetry & Visibility
MSDP, mVPN, AutoRP SXP, IP SLA Responder, SSO on
▪ Model-driven Telemetry
Stacking
▪ Sampled NetFlow
▪ SPAN,RSPAN
▪ C9K HW includes the Perpetual Network Stack - Network Essentials or Network Advantage *Roadmap
▪ Mandatory to attach DNA License when ordering C9K
▪ DNA License includes Switch and DNA Center Features
Cisco Catalyst
9400 Series
Catalyst access switching Cisco
Scalability for all campus use cases Catalyst 9300
(C9300 models)
SD-Access, Fabric Edge, Full SD-Access, Fabric-in-a- Wired Assurance, ETA, On-box App HA, Hot Patching,
Full NetFlow Box, Embedded wireless SD-Access, AVC MacSec256 Hosting Stackpower,
controller UPOE+
Catalyst 9200 Catalyst 9200L
35.2 cm 28.8 cm
1RU 1RU
Catalyst 9200 Addresses the Compact and Tight Rack Space Deployments
Cisco Catalyst 9200 Series with 32 VNs
addresses 3650 mini SDA use cases with shallow depth requirements
600W 1000W
4x 1G 4x 10G
Priced in line with C3650
Mini
Software and platform feature comparison
Intent-based networks for everyone
Fixed/Stackable Modular
Reliable, easy-to-manage Compact, fanless design makes Quickly adopt new technologies
technology that lets you focus it easy to deploy in workspace while maintaining security over
on your business. environment. your network.
Environmental resiliency
Aggregation
switch
• Manage up to eight
switches through single IP
• Mix and match models
• Management can be done
over 10G SFP+/1G
SFP uplinks
Ease of device management
Application Details
Enhanced Scale/Buffering
Multicore resource share Embedded
CPU
1/2.5/5/10/40G
100GE 6MB
Supports Different
Bandwidth Packet Buffer
Speeds
160/80G Up to 2X to 4X
Stacking Capacity forwarding + TCAM
Cisco IOS XE Lite:
Powering the Catalyst 9200 Series switches
Optimized for Catalyst 9200 Series switches Consistent Light
Optimized Modern
Cisco IOS
XE Lite • Removed unused libraries • Model-driven programmability
• IOSd optimizations • Streaming telemetry
• Bash Optimizations • Network monitoring
Cisco IOS XE
Highly available
16.5.1 16.5.2
16.6.1
16.7.1
16.8.1
16.9.1
16.10.1
16.11.1
16.12.1
Up to 8
member stack
switching models
• StackWise-80 supported on all fixed Catalyst 9200 Series
switching models Stack Adapters Stacking Cable
Thermal Can operate Hot Front-to- Non-stop Hot Easy field Redundancy
Sensors with Swappable back airflow power in 1 Swappable replacement in combined
individual RU mode
Detect fan failure Insert and Irreversible Insert and of failed PSU
ambient Remove Fan flow Optional Remove PS PoE budget
temperature Up to 45 °C on go power on go gets doubled
and adjust ambient redundancy with second
fan speeds temperature with dual PS
, no need to supplies
RMA the
box
Patching
SMU is an emergency point fix positioned for
Cold Patching: Install of a SMU will require a system
expedited delivery to a customer in case of a network
reload. It is traffic impacting.
down or revenue affecting scenario.
Commit Patch
Reload
Add Patch
Activate Patch
Mission-Critical Resiliency across the portfolio
Your business stops if the network is down
UADP 2/3
1 ASIC, 1 Image
Cost of only one hour of
downtime to an average
enterprise > $300,000**
PnP SUDI Physical security practices + Security technology innovations + Logical security processes Secure boot
support Boot sequence
Two-way trust check
Integrity
Image signing
Authentic OS
verification
Malware protection
Hardware Runtime
authenticity defenses
Genuine hardware 64-bit ASLR
Cisco trustworthy solutions use industry best practices to help ensure full development lifecycle integrity and end-to-end security
MACsec-128
Securing the network via link encryption
• Supports switch-to-switch and switch-to-host MACsec 128 Bits MKA Network Network
Essentials Essentials
• 128-bit MACsec capable between switches
Host to 128 Bits MKA Network Network
• Manual or 802.1X modes supported Switch Essentials Essentials
Cloud and Branch Security
Umbrella Security Solution Integrated on the C9K
PC Mac
DNS Queries for
Trusted Cloud Apps
Protected by Cisco
Linux Mobile
Umbrella
Cable Modem
MSP Router
Untrusted Internet
Traffic tunneled through
HQ
Netflow & Application
Visibility and Control
Full flexible NetFlow
Key Differences – Catalyst 9200 Series switches vs Catalyst 2960X/XR Series switches
2-event
Perpetual PoE Fast PoE
classification
• Fast power negotiation • Uninterrupted PoE • Bypasses IOS control
without LLDP power during control plane boot
• Physical layer plane reboot • Restores power to PD
negotiation < 1s within 30 sec of power
resumption
Programmability and
Automation
Simplify network operations
open-standards APIs
Day 0 Day 1 Day N
Device onboarding Model-driven configuration mgmt Monitoring, analytics, SW management
PXE Model-
Yang data
ZTP PnP driven
models
Telemetry
Automatic device bring-up using Open-source tool support for Model-driven telemetry for monitoring and
industry-standard interface configuration and provisioning analytics;On-Box python
Zero Touch
Plug n Play PXE Boot Day 0 Wizard
Provisioning
✓ Use Cisco DNA Centre ✓ Any workflow ✓ Boot from bootloader ✓ Don’t need an expert on site
✓ Complete UI Workflow ✓ Self Managed Certs ✓ Cheaper ✓ Cheaper
✓ Automated certificate ✓ Option 67 ✓ Less resources ✓ Less resources
✓ DHCP/DNS/Cloud discovery ✓ Script execution using
Guestshell
Large Scale Deployments Medium Scale Deployments Small Scale Deployments Small Scale Deployments
Manageability
Active switch
UP Ports
Switch Stack
Standby switch
POE status
DNAC WebUI
Part of the Larger Network Small Branch - CPC Migration
Active switch
UP Ports
Switch Stack
Standby switch
POE status
Troubleshooting made fun !!
Check the Core files
StackWise-480
64 MB (C9300-24UXB) 32 MB (C9300-24UX)
Total Buffer per Platform 32 MB (C9300-48UB) 16 MB (C9300-48U)
32 MB (C9300-24UB) 16 MB (C9300-24U)
Cisco Catalyst 9300 Series
1G Fiber models - Expanding to FTTD and 1G fiber aggregation applications
24-port – C9300-24S • 24 and 48 port SFP SKUs
• Transition Catalyst 3850 1G
SFP
to Catalyst 9300 1G SFP
• Wire-speed, non-blocking
performance
• Seamlessly integrates
48-port – C9300-48S with Cisco Catalyst 9300
Series copper
• Supports same optics
• Common stacking –
StackWise-480
• Common power stacking –
StackPower
• Common uplink modules
Modular Higher-efficiency AC and
Modular uplinks • Common power supplies,
fans DC power supplies fans, cables
Platinum
Fiber to the desktop
rated
1G fiber aggregation
PoE/PoE+/UPOE/UPOE+
2880W max power budget:
• 32x 90W ports
8x 10G 2x 40G 4x Multigigabit 4x 1G 2x 25G 315W AC 715W AC/DC 1100W AC • 48x 60W ports
64
Catalyst 9300 Stacking Support
Modular Uplink Increased Scale Fixed Uplink
C9300 (non –B) SKUs C9300-B SKUs C9300L SKUs
8 switches
8 switches
8 switches
Stacking supported among C9300 SKUs Stacking supported among C9300-B SKUs Stacking supported among C9300L SKUs only
Catalyst
• PoE HA with dual supervisors on C9400
9400
rely on electricians every time ... I can
Catalyst 9400 • 48 x 1G Ports per line card
power my lights, put in new digital
displays…anything needed.” -Ron Grohman,
Sr. Network Engineer
• Perpetual PoE on C9300 standalone or Stack “We are making the system intuitive and
Catalyst
Industry’s first Enterprise Modular and Stackable switches with 90W UPOE+ 66
Cisco Catalyst 9600 Series
Chassis
2 supervisor slots
Built-in RFID (dedicated)
Dimensions
Modular power (HxWxD inches)
supplies 13.95 x 17.4 x 16.1
(8RU)
IOS-XE 17.1.1
Cisco Catalyst 9600 Series
mGig Line Card – C9600-LC-48TX
* Roadmap
IOS-XE Amsterdam 17.2.1
March 2020
IOS-XE 17.2.1 Key Feature Summary
< 30 seconds of
traffic impact
Software Defined
Access
Fabric Edge Node for SD-Access
• B – Border Node NCP
• C – Control Plane Node Fabric Edge Nodes – A fabric device that
• E – Edge Node ISE NDP connects wired endpoints to the SD-Access
• X – Extended Node Cisco DNA Fabric
Center
• - EWLC on a Switch. Provides first-hop services for Users/Devices
• FiaB – Fabric in a Box connected to a fabric
• OTT – Over the top Supports:
• LISP
B B
• VxLAN
C Scale:
Stealthwatch 3Y
$9,190
100 Flows
3YR TCO -92%
$2,900
List Price USD
3YR TCO
Stealthwatch 3Y
$850
$2,297 List Price USD
25 Flows
ISE Base/Plus 3Y
50 Endpoint Sessions $1,208 Incremental StealthWatch – 100 flows
ISE Base/Plus 3Y DNA Premier $850
$603 ISE - 50 endpoint sessions
25 Endpoint Sessions 3Y
3YR TCO
$24,010 Savings!!
List Price USD
3YR TCO
Stealthwatch $9,190
$15,670
3Y List Price USD
C9300-48U-A C9300-48U-A
$11,050 $11,050
(switch only) (switch only)