Transcript
Routing Overview
Anthony Gay CCIE #35064Navy SE
March, 2016
Cisco Confidential 2C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Agenda Integrated Services Routers (ISR) 4000 Series
ISR 4000 Modules
Aggregation Services Routers (ASR) 1000 Series
Cisco Confidential 3C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ISR 4000 Series
Cisco Confidential 4C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco Branch Router Evolution
ISR 4431 & 4300 familyMaking for a complete ISR 4000 familyISR 4451-X
First ISR based on IOS XE
ISR G2 family800, 1900, 2900 & 3900Taking the ISR concept to the next level
ISR G1 family1800, 2800, 3800The first architecture custom designed for integrated services
Cisco 2500Cisco’s first family of branch routers for 23 different deployments
Cisco 2600Superseded 2500. Considered one of Cisco's premier products.
2014
2013
2009
2004
1998
1993
Not shown here: 700, 1600, 1700, 4000/4500, 3600 & 3700 series routers
Cisco Confidential 5C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Pay-As-You-Grow with Cisco ISR 4000 Series
ISR 432150-100 Mbps
ISR 4331100-300 Mbps
ISR 4351 200-400 Mbps
ISR 4431 500-1000 Mbps
ISR 4451 1-2 Gbps
Investment Protection Without Oversubscription
4-10X FasterAdd performance and services anytime
Flexible consumption options
Cisco Confidential 6C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Modular ISR Migration PathsB
ranc
h co
nsol
idat
ion
Application services
4451(2 RU, 1000-2000 Mbps)
4431(1 RU, 500-1000 Mbps)
4351(2 RU, 200-400 Mbps)
4331(1 RU, 100-300 Mbps)
4321(1 RU (Desktop), 50-100 Mbps)
3945E
3925E
3945
3925
2951
2921
2911
2901
1921 1941
Cisco Confidential 7C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4321ISR4321/K9
50 Mbps or 100 Mbps Performance
Migrate from Cisco® 1941 or 2901 ISR
Entity ISR 4321
CPU architecture 4-core CPU
Network Interface Modules 2
Enhanced Service Modules 0
Front-Panel Ethernet 2 GE (1 dual-phy, 1 RJ45 only)
ISC slot 1 for all ISC cards
USB type A ports 1
Power 1 external AC
Control/services memory
Base 4 GB; max 12 GB1333 MHz DIMMs 2 DIMM slots
Mgmt Ethernet 1 Gbps
Cisco Confidential 8C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4331ISR4331/K9
100 Mbps or 300 Mbps Performance
Migrate from Cisco® 2911 or 2921 ISR
Entity ISR 4331
CPU architecture 8-core CPU
Network Interface Modules 2
Enhanced Service Modules 1
Front-Panel Ethernet1 dual-phy (SFP or RJ45)1 RJ45 only1 SFP only (copper SFP supported)
ISC slot 1 for all ISC cards
USB type A ports 1
Power 1 internal AC
Control/services memory
Base 4 GB; max 16 GB1333 MHz DIMMs 2 DIMM slots
Mgmt Ethernet 1 Gbps
Cisco Confidential 9C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4351ISR4351/K9
200 Mbps or 400 Mbps Performance
Migrate from Cisco® 2951 ISR
Entity ISR 4351
CPU architecture 8-core CPU
Network Interface Modules 3
Enhanced Service Modules 2
Front-Panel Ethernet 3 GE (all dual phy RJ45 or SFP)
ISC slot 1 for all ISC cards
USB type A ports 2
Power Single internal AC or DC
Control/services memory
Base 4 GB; max 16 GB1600 MHz DIMMs 2 DIMM slots
Mgmt Ethernet 1 Gbps
Cisco Confidential 10C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4431ISR4431/K9
500 Mbps or 1 Gbps Performance
Migrate from Cisco® 3900 Series ISR
Entity ISR 4431
CPU architecture 4 core control/services6 core data plane
Network Interface Modules 3
Enhanced Service Modules 0
Front-Panel Ethernet 4 GE (all dual-phy RJ45 or SFP)
ISC slot 1 for all ISC cards
USB type A ports 2
Power Dual internal AC or DC
Control/services memory
Base 4 GB; max 16 GB1600 MHz DIMMs 2 DIMM slots
Mgmt Ethernet 1 Gbps
Cisco Confidential 11C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4451ISR4451-X/K9
Entity ISR 4451
CPU architecture 4 core control/services 10 core data plane
Network Interface Modules 3
Enhanced Service Modules 2
Front-Panel Ethernet 4 GE (all dual-phy RJ45 or SFP)
ISC slot 1 for all ISC cards
USB type A ports 2
Power Dual internal AC or DC
Control/services memory
Base 4 GB; max 16 GB 1600 MHz DIMMs 2 DIMM slots
Mgmt Ethernet 1 Gbps
1 Gbps or 2 Gbps Performance
Migrate from Cisco® 3900E ISR
Cisco Confidential 12C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ISR 4000 Modules
Cisco Confidential 13C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ISR G2 Module Compatibility
ISR G2 ISR 4000
EHWIC
ISM
PVDM-3
SM
SM-X
NIM
ISC
PVDM-4
SM-X(not backward-compatible)
SM-X(backward-compatible)
Cisco Confidential 14C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Price effective L2-only switch NIM-ES2-4 NIM-ES2-8 NIM-ES2-8-P Available now
Features PoE+ on all ports 802.1S Multiple Spanning Tree 802.1W Rapid Spanning Tree Datasheet posted, Q&A about to get posted
4 & 8 port switch NIM Available Now!
Cisco Confidential 15C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Connectivity Options
Outside the office Inside the office
Analog Voice FXS, E/M SRST CME
Ethernet / Switching SM 16/24/48 port
switch module Routed port (1 GE / 10
GE) CU/SFP module NIM 4- and 8-port
switch module (roadmap)
Cisco UCS® E-Series 2, 4, 6 and 8-core
Intel® Xeon® processors Up to 3 TB storage and
48 GB DRAM
T1/E1 FXO, PRI ISDN BRI Data
(roadmap)
T1/E1, T3/E3, Sync Serial, Async (roadmap)
ADSL, VDSL
3G/4G – By 819 3G/4G built in
(roadmap)
PSTN
WAN/ Internet
Backup
Cisco Confidential 16C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco End-to-End SolutionCisco UCS B-Series, C-Series, and E-Series for Data Center and Branch Locations
Location-Suitable Form Factors, Consistent Device Management
Data Center/Cloud
Branch Office
WAN/Internet
Consolidate Infrastructure
Centralize Applications
Support User ExperienceAddress WAN-inducedperformance, availability, and compliance challenges
Cisco UCS® B/C SeriesUnified compute platform for infrastructure consolidation in the data center and large branch offices; offers innovative virtualization, memory, provisioning, I/O, and management capabilities
Cisco® UCS E-Series ServersResidual compute platform with all-in-one device convergence that facilitates centralization of small-to-mid-size branch office applications in the data center
Cisco Confidential 17C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco UCS E-Series Single-Wide Blade Compact, Multipurpose Blade Housed in Cisco ISR G2 – UCS-E140S M2
Up to 2 SATA, SAS, or SSD hard drives
Configuration and management through CIMC
Intel® Xeon® E3 Family quad-core processor
On-board hardware RAID 0/1 with hot-swappable capability
One external and two internal GE ports
USB 2.0 port for external device connectivity
8, 12, and 16 GB DRAM options
Maximum 65 W power draw 80 percent less than server
Wire-free, plug-and-play modularity, low shipping weight (2.5 lb/1.1 kg)
Remote and schedulable power
management
iSCSI initiator hardware offload
KVM console connector
10/100 Ethernet management port
Two SD cards: One for the CIMC and temporary storage of OS and one for a blank virtual drive
Cisco Confidential 18C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco UCS E-Series Double-Wide BladeMultipurpose Blade Housed in ISR G2 and ISR 4000 – UCS-E140D/UCS-E160D/UCS-E180D
Up to 3 SATA, SAS, SSD hard drives or 2 HDD and a PCIe card
Out-of-band configuration and management through CIMC
On-board hardware RAID 0, 1, and 5 configuration options with hot-swappable capability
Two external and two internal GE ports with TCP/IP acceleration
Front-panel VGA, 2 USB, and serial console connectors
8 GB - 48 GB DRAM options
Maximum 130 W power draw, 80 percent less than server
Wire-free, plug-and-play modularity, low shipping weight (7 lb / 3.2 kg)
Remote and schedulable power
management
iSCSI initiator hardware offload
Two SD Cards: one for the CIMC and temporary storage of OS
and one for a blank virtual drive
Intel Xeon E5-2400 Quad Core/Six-Core/Eight-Core Processor
Cisco Confidential 21C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco UCS E-Series Network Compute EngineCompact, Multipurpose Blade Housed in 4000 Series ISR – Cisco UCS EN140N M2
Intel® Atom quad-core processor
Dedicated management port
USB 2.0 port for external device
connectivity
50, 100, 200 GB mSATASSD options
One 2GB SD card for CIMC
KVM console connector
One external Gigabit Ethernet interface
Up to 8 GB RAM
Cisco Confidential 23C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco UCS E-Series in an ISR Chassis
ISR UCS E140S M2 UCS E160D M2 UCS E180D M2 Max Modules/Router
2911 Yes No No 1 SW
2921 Yes Yes No 1 SW or 1 DW
2951 Yes Yes No 2 SW or 1 DW
3925 Yes Yes Yes 2 SW or 1 DW and 1 SW
3925E Yes Yes Yes 2 SW or 1 DW and 1 SW
3945 Yes Yes Yes 4 SW or 2 SW and 1 DW
3945E Yes Yes Yes 4 SW or 2 SW and 1 DW
4451-X ISR Yes Yes Yes 2 SW or 1 DW
4431 ISR No No No NA
4351 ISR Yes Yes Yes 2 SW or 1 DW
4331 ISR Yes No No 1 SW
4321 ISR No No No NA
Reference
Cisco Confidential 25C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco ISR 4400 Series Architecture
Control Plane (1 core) and Services Plane (3 cores)
Data Plane (6 or 10 cores)
Multigigabit Fabric
FPGE
ISC
SM-X
NIMService Plane
(control plane CPU)
KVM - Hypervisor
ISR-WAAS
Service containers live here
IOS
Cisco Confidential 26C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Linux OS
KVM/LXC
IOS-XE Software Architecture
IOSdControl Plane
Cisco Apps (WAAS, Snort) Customer and 3rd Party Applications
Platform-Specific Data Plane AppNav
Internal Services Blade (UCS® E-Series)
External Services Blade (UCS)
Virtual Ethernet
Cisco Confidential 27C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Introducing
Product Overview Open source intrusion prevention system for real-time traffic analysis Lightweight threat defense for price sensitive customers Integrated in ISR 4K service container IPS/IDS functionality with an IOS IPS look and feel
Cisco Confidential 29C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Best of Interop Networking Winner! – Cisco ISR 4451-X Converged Branch Infrastructure
“The 4451-X is poised to address the gap between networking functions that are fully virtualized and those that are still embedded in dedicated networking devices … transforming a product line that began as a way to connect remote sites to corporate networks and the Internet into a small-scale data center in a box.” Kurt Marko, Best of Interop Judge
4451-X with UCSE & SM-X ES3 Switch module
Cisco Confidential 30C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1K
Cisco Confidential 31C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential 32C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Cisco Branch Platform Portfolio
3900(E) (3RU, 100M–350M)
ASR1002-X(5G–36G)
2900 (2RU, 35M–
75M)
ASR1001-X(2.5G–20G)
ISR 4451-X (2 RU, 1G–2G)
Innovative Services and Scale to meet the needs of various sizes of Branches
75Mb
350Mb
500Mb
1Gb
Forw
ardi
ng P
erfo
rman
ce w
ith S
ervi
ces
2Gb2.5Gb
36Gb
.
.
.
.
Cisco Confidential 34C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1001-XPay As You Grow 2.5G Default Upgradeable to 5G, 10G, and
20G Up to 8G Crypto Throughput
Control Plane Quad Cores; each core
clocked at 2.0G Hz 8G DDR3 default shared
memory Secure Boot
Shared Port Adapter 1x SPA slot
Management/USB Ports
2x USB Ports RJ45 GE Ethernet
Multi-Core Network Processor 31 Cores 4 Packet Threads / Core 124 Threads are processed
simultaneously
System Management
Auxiliary Port RJ45 Console
Network Interface Modules
2xSSD Drives ISR 4K Modules
Mini Console 1x Mini USB Console
Built-in I/O 2x10G 6x1G
Multipoint MACsec support
( ETA 11/14)
Certification
AvailableNow !
Cisco Confidential 35C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
NIM PID Description Minimum IOS XE ReleaseNIM-8CE1T1-PRI 8-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-2CE1T1-PRI 2-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-1CE1T1-PRI 1-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-8MFT-T1/E1 8-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-4MFT-T1/E1 4-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-2MFT-T1/E1 2-port channelized E1/T1 NIMs to support clear channel data 3.13
NIM-1MFT-T1/E1 1-port channelized E1/T1 NIMs to support clear channel data 3.13
Network Interface ModulesNew, Small Form Factor IO
NIMs supported on ASR1001-X
Cisco Confidential 36C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR 1001-HX 60G Fixed
System Management RJ45 GE Ethernet 2x USB Ports
8x 1GE Ports MACSec
enabled
8x 10GE / 1GE Ports Enabled by license Configurable to 1 or 10GE
(tentative) MACSec enabled
Power Supplies 2x AC or DC
Memory 2x DIMM
slots (8GB each)
Crypto module Field
upgradeable (8 or 20Gbps)
6x Fans
System Management Console AUX
Multi-Core Network Processor 62 Cores 4 Packet Threads / Core 248 simultaneous threads
Control plane CPU: Quad Core @ 2.5 GHz Memory: 8GB DDR3
default memory,upgradeable to 16GB
Pay as you go 60 Gbps system performance 16 Built-in 10GE/1GE ports enabled
via software license
Application level service performance 30M+ Packets Per Second Up to 20G Crypto IMIX w/ Suite B for
diverse VPN security solutions 6M Firewall and traditional NAT Sessions
FCS TargetAug 2016
EC
Cisco Confidential 37C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Multi-Core Network Processor 124 Cores 4 Packet Threads / Core 496 simultaneous threadsMiscellaneous RJ45 & mini-USB console SSD Secure Boot
ASR 1002-HX (Kahuna) 100G Fixed
Network Interface Module 1 double wide NIM slot or 2 single wide NIM slots NIM - Compatibility with
ISR4400 and ASR1001-X
EPA - Ethernet Port Adapter 1x EPA slotBuilt in I/O
8x TenGigabit Ethernet interfaces enabled by license
8x Gigabit Ethernet interfaces in base
Multipoint MACSEC for linerate encryption (1G & 10G)
Pay as you go 50 Gbps base performance Max performance of 120
Gbps, licensed
Application level service performance 58M Packets Per Second Up to 39G Crypto w/ Suite B Diverse VPN security solutions, 29G
IMIX 13M Firewall and traditional NAT
Sessions
Control plane CPU: Quad Core @ 2.5 GHz Memory: 16GB DDR3
default memory,upgradeable to 32GB
System management Cisco Prime Glue Networks
Crypto module Field
upgradeable
EC FCS TargetApril 2016
Cisco Confidential 38C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1000 Modular ChassisASR 1004 ASR 1006 ASR 1013 ASR 1009-X ASR1006-X
RP Slots 1 2 2 2 2
ESP Slots 1 2 2 2 2
SIP/MIP Slots 2 3 6 3 2
IOS Redundancy Software Hardware Hardware Hardware Hardware
Built-In Ethernet N/A N/A N/A N/A N/A
Height 7” (4RU) 10.5” (6RU) 22.7” (13RU) 15.7” (9RU) 10.5” (6RU)
Bandwidth 10 – 40 Gbps 10 -100 Gbps 40 - 200 Gbps 40 - 200 Gbps 40 - 100 Gbps
Max Output Pwr 765W 1275W 3200W 5500W 5500W
Airflow Front to back Front to back Front to back Front to back Front to back
New in XE3.16.0
Cisco Confidential 39C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1006-X – Next-Gen 6RU with 100G per Slot
Forwarding Plane (ESP) Up to 100Gbps per
system Supports ESP40, ESP100
and future ESPs
Control Plane Supports RP2 and RP3
(future) Default 8G memory (max.
16G) FIPS-140-3 certification
I/O Connectivity 8x SPA slots (with
SIP40) 4x EPA slots (with
MIP100) 100 Gbps I/O slot
bandwidth
System Management RJ45 Console Auxiliary Port 2x USB Ports
Power Supply Modular power supply with N+1
redundancy High efficiency, Load sharing, Hot-
swappable AC (1100W) or DC (950W)
BITS clocking Stratum 3 built-
in
Modular Fan Tray Field Replaceable
without the need to replace power supplies
Cryptography Up to 29/16 Gbps
(1400B/IMIX) crypto throughput using ESP100
Suite-B crypto support
Hardware Redundancy Dual ESP and RP slots
for data plane and control plane redundancy
ISSU
Available Now!
Cisco Confidential 40C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1009-X – Power Efficient 9RU with 100G per Slot
Forwarding Plane (ESP) Up to 200Gbps per
system Supports ESP40,
ESP100, ESP200 and future ESPs
Control Plane Supports RP2 and RP3
(future) 8G – 64G DDR3 memory
(RP3) FIPS-140-3 certification
I/O Connectivity 12x SPA slots 6x EPA slots 100 Gbps I/O slot
bandwidth with ASR1000-MIP100
System Management RJ45 Console Auxiliary Port 2x USB Ports
Power Supply Modular power supply with N+1
redundancy High efficiency, Load sharing, Hot-
swappable AC (1100W) or DC (950W)
BITS clocking Stratum 3 built-
in
Modular Fan Tray Field Replaceable 30% improvement in
airflow per slot vs integrated Fan module
Cryptography Up to 78/59 Gbps
(1400B/IMIX) crypto throughput using ESP 200
Suite-B crypto support
Hardware Redundancy Dual ESP and RP slots
for data plane and control plane redundancy
ISSU
Available Now!
Cisco Confidential 41C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
ASR1000 -X modular chassis configuration
RP0 and RP1control plane processing
FP0 and FP1data plane processing
SIP/ELC/MIP 0, 1, 2SPA interfacesEthernet linecardsEPA interfaces
ASR1009-X and ASR1006-X supports redundant control and data planes via active/standby hardware.
Cisco Confidential 42C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
AC or DC power supply modules1) Fault tolerance - Detects short circuits and component failures within the PS, if a failure is
found, the unit is shut down2) High efficiency - More than 85% efficient to reduce power waste even at low loads3) Load sharing4) Redundancy (N+1)5) Hot-swappable
Both chassis default config is 2xPS (non-redundant model).
ASR1009-X may need 3xPS (non-redundant model) in some high power consumption configs.
Each chassis can accommodate up to 6 power supplies, providing both chassis-level and facility-level power fault tolerance.
ASR 1009/6-X Power Supply (1)
Cisco Confidential 43C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
RP3 – Next Gen Route Processor
Positioned to help customers migrate from RP1s & RP2s
Investment protection – Supports most of existing and all planned ESPs (ESP100-X, ESP200-X, ESP400-X), interface cards (SIP40, MIP100) and modular chassis (ASR1013, ASR1006-X and ASR1009-X)
Higher maximum DRAM capacity - 8G default, expandable to 64GB
Built-in SSD drive - 100GB default, upgradeable to 400GB+ for log / core /data collection and for running container apps in the future
Larger Flash memory - 8G default for NVRAM contents
Dedicated Crypto Assist chip for better crypto performance and scale (CPS)
Same price as RP2USB
Solid state drive
BITS clocking
DRAM
Management Enet
Console/Aux
EC FCS TargetJul 2016
Cisco Confidential 44C97-731146-00 © 2014 Cisco and/or its affiliates. All rights reserved.
Embedded Services Processors (ESP)
ESP-2.5G ESP-5G ESP-10G ESP-20G ESP-40G ESP-100G ESP-200G
System Bandwidth 2.5Gbps 5Gbps 10Gbps 20Gbps 40Gbps 100Gbps 200Gbps
Performance 3Mpps 8Mpps 17Mpps 24Mpps 24Mpps 58Mpps 130Mpps
# of Processors 10 20 40 40 40 124 248
Clock Rate 900 MHz 900 MHz 900 MHz 1.2 GHz 1.2 GHz 1.5 GHz 1.5 GHzCrypto Engine
BW (1400 bytes)
1Gbps 1.8Gbps 4.4Gbps 8.5Gbps 11Gbps 29Gbps 78Gbps
QFP Resource Memory 256MB 256MB 512MB 1GB 1GB 4GB 8GB
Packet Buffer 64MB 64MB 128MB 256MB 256MB 1GB 2GB
Control CPU 800 MHz 800 MHz 800 MHz 1.2 GHz 1.8 GHz Dual core 1.73 GHz
Dual core 1.73 GHz
Control Memory 1GB 1GB 2GB 4GB 8GB 16GB 32GB
TCAM 5Mb 5Mb 10Mb 40Mb 40Mb 80Mb 80Mb x 2
Chassis Support
ASR1001 (Integrated)
ASR1001 (integrated),
ASR 1002ASR1002, 1004,
1006 ASR1004, 1006 ASR1004,1006, 1013 ASR1006,1013 ASR1013
Based on Quantum Flow Processor (QFP)
Thank you.
top related