55
Cisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Catalyst 3850 and 3650 · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

  • Upload
    ngokien

  • View
    262

  • Download
    6

Embed Size (px)

Citation preview

Page 1: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Catalyst 3850 and 3650 switches

René Andersen & Mikkel Brodersen

Cisco SE DK

Page 2: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Agenda

Introduction to Catalyst 3850 & 3650

Platform Architecture

Stacking Architecture – Stackwise-480

Summary Features – Future

Summary

2

Catalyst 3850 & Wireless – Converged Access

Page 3: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Introduction to Catalyst 3850 & 3650

Page 4: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

3K Product Portfolio

Stand-Alone 3K Switches

Fast Ethernet Gigabit Ethernet

Catalyst 3560 v2

Data/PoE

Fixed 1G Uplinks

Single PS

Catalyst 3560-X

Data/PoE(+)/UPoE

Mod 1G/10G Uplinks

Dual PS

Stackable 3K Switches

Fast Ethernet Gigabit Ethernet

Catalyst 3750 v2

Data/PoE

StackWise

Fixed 1G Uplinks

Single PS

Catalyst 3750-X

Data/PoE(+)/UPoE

StackWise+

StackPower

Mod Uplinks 1G/10G

Dual PS

LAN Base IP Base IP Services

4

Optionally

Stackable

Catalyst 3650

Data/PoE(+)/UPoE

Fixed 1G/10G Uplinks

Dual PS

Catalyst 3850

Data/PoE(+)/UPoE

Stackwise-480

StackPower

Mod Uplinks 1G/10G

Dual PS

Gigabit Ethernet Gigabit Ethernet

Page 5: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Introduction to Catalyst 3850 & 3650

5

40 Gbps Uplink Bandwidth

Line Rate on All Ports

Stackables Full POE+

FRU Fans, Power Supplies

Granular QoS/Flexible NetFlow

EEE EEE

Integrated Wireless

Controller 40 Gbps

Uplink BW

Stackable

FRUable Fans

& PS Granular QoS,

Flexible Netflow

Line Rate

on All-Ports

Full PoE+

Built on Cisco’s Innovative “UADP” ASIC

Page 6: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Uplink Options

6

4 x 1Gig

• 4 x 1G

• SFP

• Supported on 24 and

48 Port version

2 x 1Gig, 2 x 10 Gig

• 4 x 1G OR 2 x 10G

OR 2 x 1G + 2 x 10G

• SFP & SFP+

• Supported on 24 and

48 Port version

4x 10 Gig

• Auto-sensing – All

Combinations

• SFP & SFP+

• Supported on 48 Port

version only

Page 7: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Power Supplies

7

640WDC 1025WAC 250WAC 640WAC 350WAC 440WDC 715WAC 1100WAC

• Same as 3750-X – Interchangeable

• New PIDs

• Wider than 3850/3750-X PSs

• Different Watts capacity

Catalyst 3850

• New PIDs

Catalyst 3650

Page 8: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Stack - Cable & Components

8

3 lengths of cable, 0.5 1 and 3 Meters

3 rings vs 1 ring in 3650

Catalyst 3850

Catalyst 3650

Page 9: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

9 © 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

IOS

IOS XE 3.3.1(SE)

Management Interface

Module Drivers

Common Infrastructure / HA

• Modern IOS to enable multi-core CPU

• Easy customer migration

• While maintaining IOS functionality and look and feel

• Allow hosted applications like Wireshark

Management Interface

Module Drivers

Linux Kernel

Common Infrastructure / HA

IOSd

Features Components

Hosted Apps

Features Components

WCM

Kernel

IOS XE Evolution

Wireshark

Page 10: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10

2960X/XR 3560-X 3650 3850

Stacking/members in stack 80 Gbps/ 8 members No 160 Gbps/ 9 members 480 Gbps / 9 members

Native Wireless Controller No No Yes Yes

Wireless Scalability No No 25 AP’s /1000 clients 50 AP’s /2000 clients

10GE Uplinks 2 x 10 Gig

(Fixed) 2 x 10 Gig

(FRU) 4 x 10 Gig/ 2 x 10 Gig

(Fixed) 4 x 10 Gig/ 2 x 10 Gig

(FRU)

StackPower No No No Yes

Power Fixed/Dual (FRU) Dual (FRU); XPS Dual (FRU) Dual (FRU); XPS*

Native Flexible Netflow Support Netflow-Lite No Yes Yes

L3 Features No/Basic L3 Full L3 Full L3 Full L3

Advanced SW Services (AVC, Trustsec, SmartOps)

No Full Full Full

QoS Model and Queues per Port MLS 4/8 (future) MLS, 4 MQC, 8 MQC, 8

Buffers per 48 port 4MB 6 MB 12 MB 12 MB

Flash / DRAM Size 128MB / 512MB 64 MB / 256 MB 2 GB / 4GB 2 GB / 4GB

Operating System IOS IOS IOS-XE IOS-XE

Multi-Core CPU for Hosted Services No No Yes Yes

* On 3850 roadmap

Page 11: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Catalyst 3850/3650 Wireless – Converged Access

Page 12: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Wireless Control

System

Access Control

Server

LAN Mgmt

Solution

Identity

Mgmt

NAC

Profiler

Guest

Server

Cisco Wireless LAN Controller

Internal Resources

Cisco Firewall Cisco Access Point

Catalyst Switch

Corporate

Network Internet

One Management

Prime

One Policy

ISE

One Network with Converged Access

Converged Access

Mode • Integrated wireless

controller

• Distributed wired/wireless data plane (CAPWAP termination on switch)

One Network

Catalyst 3x50

Page 13: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Converged Wired/Wireless Access – Benefits

Scale with distributed wired

and wireless data plane

160G stack bandwidth; 40G wireless/switch;

efficient multicast

Maximum resiliency with

fast stateful recovery

Layered network high availability design with

stateful switchover

Single platform for

wired and wireless

Common IOS, same administration point,

one release

Uni f ied Access - One Po l icy | One Management | One Network

Network wide visibility for

faster troubleshooting

Wired and wireless

traffic visible at every hop

Consistent security and

quality of service control

Hierarchical bandwidth

management and distributed policy

enforcement

Page 14: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Known Deployment Model

Understanding Current Deployment Model The Wireless LAN Controller

• Wireless is an Overlay Network

• Software components within the WLC today:

• Mobility Agent (MA) is responsible for: – AP CAPWAP termination

– Maintaining client database

– Policy enforcement

• Mobility Controller (MC) is responsible for: – Client Mobility

– Radio Resource Management (RRM)

– WiPS, Spectrum Management

Access Points

5508 5508

Inter--Controller EoIP/CAPWAP tunnel

AP-Contoller CAPWAP tunnel

ISE Prime

MC MA

Page 15: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

ISE Prime

Access Points

Better Scale and Bandwidth with Converged Access Separation of MA and MC

• Traditional Controllers continue to play MA and

MC

• Catalyst 3850/3650 can play the role of both MA

and MC • Valid for Branch and small-medium campus type

deployments

• Moving the MA only to the Catalyst 3850/3650

(typically in large campus) helps with:

• Improved Scalability – larger mobility domains

• Increased wireless bandwidth

• Uniform wired/wireless policy enforcement

AP Capwap Tunnels Mobility Tunnels

Catalyst 3750

5508 or WISM2 with SW Upgrade or new 5760

New Catalyst 3850

MC

MA

MC

MA

Page 16: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

DMZ Scale:

• 3850/3650: Up to 16k clients and 250 APs

Migration: • Access Layer Switch – Refresh using Catalyst 3850

• Guest access tunneled to DMZ

• Alternate guest segmentation with separate SSID

Benefits of Converged wired/wireless: • Integrated Controller – Catalyst 3850

• WAN dependency removed

• All WLAN features available locally

• WAN optimization, NetFlow, optimized multicast, Videostream,

granular QoS

• Increased resiliency via next-generation stacking

Prime

ISE

WAN

Catalyst

3850

16 Employee Guest

Guest Traffic tunneled to Guest Anchor

Guest

Anchor

Catalyst

3750

Branch Deployment with Converged Access

Page 17: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Delivering Converged Access – Green Field

Catalyst 3x50:

• Integrated wireless controller

• Distributed wired/wireless data plane

(CAPWAP termination on switch)

WLC 5760:

• First IOS Based Wireless LAN Controller

Benefits of Converged Access: • Single Platform for wired and wireless

• Network wide visibility for faster troubleshooting

• Consistent security and QoS control

• Maximum resiliency with stateful recovery

• Scale with distributed wired and wireless data plane

AP Capwap Tunnels Mobility Tunnels

ISE Prime

Access Points

New Catalyst 3850

New WLC 5760 or WLC 5508 or WiSM2

New Catalyst 3850

Page 18: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

ISE Prime

Access Points

Delivering Converged Access – Brown Field

Scale: • Deployments greater than 16k wireless clients and 250 APs

• Up to 72k APs, 864k clients within a Mobility Domain.

Migration: • Software Update on existing 5508 or Wism2 to release 7.3

• Access Switch Refresh – Catalyst 3850/3650

• Wireless Controller Replacement

Benefits: • Investment Protection with existing WLC code update

• Works seamlessly with Cisco’s Campus Deployment Best

Practices

• Phased Adoption : Interoperable with existing deployment

AP Capwap Tunnels Mobility Tunnels

Catalyst 3750

Code Upgrade on 5508 or wism2

Mobility Domain

New 5760

New Catalyst 3850

Catalyst 3750

MC

MA

Page 19: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

ISE Prime

Access Points Wired Traffic

Catalyst 3650

Catalyst 3650

Unicast with Traditional Deployments • All wired-wireless ( and vice-versa) conversion

happens at the controller.

• Leads to hair-pinning

• Entire network traversed even for peer-to-peer traffic

(wired-wireless or wireless-wireless) on the same

switch

Unicast Optimization with Converged

Access • Wired-wireless conversion (and vice versa)

happens at the 3x50 switch

• Reduces the number of streams in the network and

avoids hair-pinning - Optimized

Better Network Utilization with Unicast Optimization Achieved via Converged Access

Wired –

wireless and

vice-versa

conversion

happens at

the access -

Optimized Jabber call

between

laptop and

Ipad

Wireless Traffic

Hair pinning of

traffic at the

controller -

inefficient

Page 20: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

ISE Prime

Access Points

Wired Multicast Traffic

Catalyst 3650

Catalyst 3650

Multicast with Traditional Deployments (

Multicast-Multicast mode) • Wired Multicast Replication happens at the switch

• Wireless Multicast Replication happens at the

Controller

Multicast Optimization with Converged

Access • Wired and Wireless Multicast Replication happens

at the 3x50 switch

• Reduces the number of streams for the same traffic

type in the network

Multicast

Server

Scalable Multicast Deployments Achieved via Converged Access

Replication

happens at

the 3x50

switch for all

clients

Multicast

wired and

wireless

receivers

Wireless Multicast Traffic

Multiple

Replications

at different

points for

wired and

wireless

Page 21: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Platform Architecture

Page 22: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Power Stack Conn (x2) Redundant Power Supplies

Fan FRU (x3) Back Stack Conn (x2)

Ethernet And

Console Port

Cavium CPU

UADP ASICs

Ampere / Stack Power Controller

PoE+

Controllers (x2)

FRU

Uplink

Module

Downlink

Phys (x12)

Catalyst 3850: Under the Covers…

Page 23: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

UADP ASIC Enables Convergence

Built on UADP

• Unified Access Data Plane

• Unique and powerful Cisco innovation

• Hardware performance with

software flexibility

• Optimized Performance • CAPWAP encapsulation/de-capsulation,

Flexible Netflow, QoS happens in ASIC for line rate performance

• Future Proofed and Programmable

• Flexparser enables new software features

(like SDN) over the product lifetime

• UADP is used across multiple platforms –

Catalyst 3650, 3850, Sup 8E, WLC5760

Page 24: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

24 © 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

480G STACK INTERFACE

2 x 10G, 2 x 1G / 4 x 1G

Dual PHY

MACSec*

Dual PHY

MACSec*

24 x 1G 10/100/1000

24 Port PoE+

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Cons

ole

E

M

P

800 MHz

Quad-Core

CPU

USB

FPGA

SDRAM

4GB

Flash

2GB

Forwarding

Controller

Network Interface

Ingres

s FIFO

Egress

FIFO

Packet Buffer

Reassembly

Crypto

WS-C3850-24 Layout

UADP ASIC

Page 25: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

25 © 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Network Interface

Forwarding

Controller

800 MHz

Quad-Core

CPU

480G STACK INTERFACE

USB

Console

Ingres

s FIFO

FPGA

SDRAM

4GB

24 x 1G 10/100/1000 24 x 1G 10/100/1000

24 Port PoE+ 24 Port PoE+

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Octal

PHY

MACSec*

Octal

PHY

MACSec*

2 x 10G, 2 x 1G / 4 x 10G / 4 x 1G

Dual PHY

MACSec*

Forwarding

Controller

Flash

2GB

EM

P

Network Interface

Egress

FIFO

Ingres

s FIFO

Egress

FIFO

Packet Buffer Packet Buffer

Dual PHY

MACSec*

Reassembly

Crypto Reassembly

Crypto

WS-C3850-48 Layout

UADP ASIC

Page 26: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Stacking Architecture

Page 27: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

27

Stack Interface of UADP

ASIC

Stack Interface of UADP ASIC

6 Rings in the Stack

UADP ASIC

Assuming 4 x 24-port 3850 Switches

The Stack Ring

• 6 rings in total

• 3 rings go East

• 3 rings go West

• Each ring is 40Gbps

• 240Gbps uni-direction

• Spatial Reuse= 480Gbps

Page 28: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Resiliency – StackWise-160 • Modular Stacking (Optional)

• New stack adapters

• New connectors and copper cables

• Stack Bandwidth

• 80 Gbps bi-directional

• 160 Gbps with spatial reuse

• Stateful Switch Over (SSO)

• Faster Convergence (vs 3750-X)

• Active-Standby model

• Improved Central synchronization on

Active Switch for Wired+Wireless

• Tunnel SSO ensures AP, MA-MC

connectivity during failover

Assuming 4 x 24-port 3650 Switches

Page 29: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

29

Creating Segments Re-

ordering segments

1 3 Assuming 4 x 24-port 3850 Switches

4 2

Packet segmented into 256 bytes

Packet travels half the ring for unicast traffic

Segments reordered at destination stack port

Destination strips the packet off the stack ring

Unicast Packet Path on the Stack Ring

Page 30: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public 30

1 3

1 3

Assuming 4 x 24-port 3850 Switches

4 2

4 2

Credit based system on the Stack Ring

Multiple stack ports grab the ring that is free and they have credits on to transmit

Increases the stack ring bandwidth to 480Gbps

Stack Ring Spatial Reuse

Page 31: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

High Availability

Page 32: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

34 © 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Catalyst 3850 Stack vs. Catalyst 6500 • Active and Standby Members run IOSd, WCM, etc.

• Synchronize information

• Active controls Data plane programing for all members

• Member switches act as Line cards– connected via the Stack Cable

A

S

• Active and Standby Supervisors

• Run IOS on Supervisors

• Synchronize information

• Active programs all DFCs

• DFCs run a subset of IOS for LCs

A S

Catalyst 3850 Stack vs Catalyst 6500

Page 33: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

9 Member Stack

Both 3850 & 3650

StackPower stays at 4

No XPS2200 Support yet

9 Member Limit

implemented in Software

Page 34: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Catalyst 3850 Switch

Wireshark

36

3602i AP

Wireless

Client

Gig 1/0/8 • Freeware

• Bundled with Operating System

• Software Process

• Quick & Easy Remote Analysis

• Does NOT replace SPAN

Page 35: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Wireshark - Capture & Monitor Details

POD1#sh monitor capture MY_CAP

Status Information for Capture MY_CAP

Target Type:

Interface: Vlan,

Ingress:

11

Status : Inactive

Filter Details:

IPv4

Source IP: any

Destination IP: any

Protocol: any

Buffer Details:

Buffer Type: LINEAR (default)

File Details:

Associated file name: flash:test.pcap

Limit Details:

Number of Packets to capture: 0 (no limit)

Packet Capture duration: 10

Packet Size to capture: 0 (no limit)

Packets per second: 0 (no limit)

Packet sampling rate: 0 (no sampling)

POD1#

POD1#sh monitor capture file flash:test.pcap

1 0.000000 00:00:00:00:00:00 -> 54:78:1a:be:c1:10 IEEE

802.11 Probe Request, SN=0, FN=0, Flags=........

2 3.000000 00:00:00:00:00:00 -> 54:78:1a:be:c1:10 IEEE

802.11 Probe Request, SN=0, FN=0, Flags=........

3 6.000000 00:00:00:00:00:00 -> 54:78:1a:be:c1:10 IEEE

802.11 Probe Request, SN=0, FN=0, Flags=........

4 6.495961 11.1.1.101 -> 11.1.1.1 DTLSv1.0

Application Data

5 6.496968 11.1.1.101 -> 11.1.1.1 CAPWAP CAPWAP-

Control - WTP Event Request

6 6.499974 00:00:00:00:00:00 -> 54:78:1a:be:c1:10 IEEE

802.11 Probe Request, SN=0, FN=0, Flags=........

7 6.502964 11.1.1.101 -> 11.1.1.1 DTLSv1.0

Application Data

8 6.502964 11.1.1.101 -> 11.1.1.1 CAPWAP CAPWAP-

Control - WTP Event Request

POD1#

For Your Reference

Page 36: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Deployment Tips & Considerations

Page 37: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Wired/Wireless Convergence

Consistent Feature Application

Scalability with Resiliency

Cisco Catalyst 3x50 provides… A Single Platform

Page 38: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 40

B e n e f i t s

• Built on UADP ASIC – Cisco’s Innovative Flexparser ASIC technology

• Eliminates operational complexity

• Single Operating System for wired and wireless

• 802.11n

• CleanAir

• VideoStream

• Radio Resource Management (RRM)

• Wireless Intrusion Prevention System (WiPS)

• 802.11ac Ready

• AP SSO

Features:

• Stacking

• Flexible Netflow

• Granular QoS

• Trustsec*/Identity

• AVC/Medianet*

• Smart Operations*

• EnergyWise*

• HSRP

• Wireshark

• Service Discovery Gateway

Features:

20+ Years o f IOS Richness – Now on Wire less

WIRELESS WIRED

Note: All features may not be available on

new platforms at introduction but are

expected to be added within 12-18 months

Page 39: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 41

C o m p l e t e V i s i b i l i t y i n t o W i r e d + W i r e l e s s T r a f f i c a t t h e A c c e s s

• FNF for the first time on Wireless

• Consistent Configuration for Wired+Wireless

– Single flow monitor can be applied to wired ports and SSID

• Natively available in the UADP ASIC

– No additional hardware required

• Can monitor East-West (peer-to-peer) and North-South flows

– 48k flows on the 48 port model.

• 0$ Collector SKUs available at FCS

– Actively working with PAM and 3rd party collector vendors for supporting key and non-key fields

Understand Bandwidth

consumption by various

devices and applications

Detect Anomaly in Traffic flows

Page 40: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 42

Per AP

Per Radio

Per SSID

Per Client

2.4 Ghz 5 GHz

SSID

1

SSID

2

SSID

1

SSID

2

MQC based CLI

• Alignment with 4500E series

• Class-based Queuing, Policing, Shaping, Marking

New QOS features

• Hierarchical Bandwidth Management (HBM) – Per AP-Radio-SSID-Client upstream and downstream

• Approximate Fair Drop (AFD) – Fair sharing of bandwidth

• Per-user-per-application-level policing and marking in SW roadmap

QOS by the numbers

• Queues/port for Wired traffic : 8 (Up to 2P6Q3T queuing capabilities)

• Queues/port for Wireless traffic : 4

• Buffers - 12 MB/48 port model

• 2000 Aggregate & 48k Microflow Policers

Page 41: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 43

Traditional Deployments Guest SSID can hog the bandwidth

per SSID Bandwidth

Guest Enterprise

BW allocation

AP

Guest

Enterprise

Single user can hog bandwidth

Enterprise

BW allocation

AP

Heavy Hitter

Fair Sharing

Heavy Hitter

(BW hog)

Usage based fair bandwidth allocation

Enterprise

Fair BW allocation

Heavy Hitter

Heavy Hitter

(BW hog)

Converged Access Deterministic SSID bandwidth

Enterprise

BW allocation

Guest

Enterprise

Guest

10% min BW 90% min BW

Page 42: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 44

Catalyst 3K-X and 4K Converged Network Branch Office Advantages

Advanced

and Simple

Mobility

Solution

Optimal TCO

• Single platform for wired and wireless

• Better network auditing for applications

• Single point of configuration for both Wired and Wireless

• Consistent policies for service control including AVC

• Improved network control (Fair Sharing)

• Higher network bandwidth at the edge (802.11ac and

40G)

• Scalable as needed

• Business Continuity with or without WAN

• Less devices to manage and service

• Smart & optimal use of WAN bandwidth

• Faster Troubleshooting

Page 43: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 45

2960X/XR 3560-X 3650 3850

Stacking/members in stack 80 Gbps/ 8 members No 160 Gbps/ 9 members 480 Gbps / 9 members

Native Wireless Controller No No Yes Yes

Wireless Scalability No No 25 AP’s /1000 clients 50 AP’s /2000 clients

10GE Uplinks 2 x 10 Gig

(Fixed) 2 x 10 Gig

(FRU) 4 x 10 Gig/ 2 x 10 Gig

(Fixed) 4 x 10 Gig/ 2 x 10 Gig

(FRU)

StackPower No No No Yes

Power Fixed/Dual (FRU) Dual (FRU); XPS Dual (FRU) Dual (FRU); XPS*

Native Flexible Netflow Support Netflow-Lite No Yes Yes

L3 Features No/Basic L3 Full L3 Full L3 Full L3

Advanced SW Services (AVC, Trustsec, SmartOps)

No Full Full Full

QoS Model and Queues per Port MLS 4/8 (future) MLS, 4 MQC, 8 MQC, 8

Buffers per 48 port 4MB 6 MB 12 MB 12 MB

Flash / DRAM Size 128MB / 512MB 64 MB / 256 MB 2 GB / 4GB 2 GB / 4GB

Operating System IOS IOS IOS-XE IOS-XE

Multi-Core CPU for Hosted Services No No Yes Yes

* On 3850 roadmap

Page 44: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Enhanced Limited

Lifetime Warranty (E-LLW)

Software Policy

Unlimited free IOS updates in the same license

(only on LAN Base and IP Base images)

IP Services requires a SmartNet service contract

SmartNet

Available.

SmartNet required for IP Services

Page 45: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 47

Catalyst

2960-X/XR

Catalyst

3560-X

Catalyst

3650

Catalyst

3850

Catalyst

4K

LAN Lite Yes / No No No No No

LAN Base Yes / No Yes Yes Yes Yes

IP Base No Yes Yes Yes Yes

IP Services/Ent Services No Yes Yes Yes Yes (Ent

Services)

RTU Based Licensing No Yes Yes Yes H1CY13

Page 46: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 48

Page 47: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 49

Reach New Heights

Enterprise Switching

928Gbps Switching Capacity

Scalability

• 8 x 10G Uplinks

• 384 10/100/1000 ports

• 3,6,7 and 10 slot chassis

• 96 SFP+ LC ports

• 256K Routes

Platform Innovations

• 48G/slot

• Flexible NetFlow

• NBAR2 Lite*

• UPOE (60w)

• Hosted Applications (Wireshark)

• VRF-Lite, EVN

• In Service Software Upgrade

• VSS*

• Smart Install Director*

• Cisco TrustSec (SGA*, MACSec)

U N I F I E D AC C E S S I N N O VATI O N *

Integrated Wireless Controller

Upto 20G Wireless capacity (50 APs, 2K clients)

Converged Security Policy for Wired And Wireless

Converged Flexible NetFlow

Granular, Hierarchical BW management (SSID, AP, Radio, Client)

Quad-Core and faster 2 GHz CPU for 3rd party application * Roadmap

Page 48: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 50

4503-E

4507R+E

4510R+E

4506-E

Four Chassis Options

7 and 10 Slot with Sup Redundancy

1GE: WS-X4624-SFP-E

POE: WS-X4748-UPOE+E

Data: WS-X4748-RJ45-E

Port Scale:

Access and Collapse Agg

384 10/100/1000 POE/UPOE,

96 SFP+ , 192 SFP

10GE: WS-X4712-SFP+E

Supervisors

Wireless Convergence vs Traditional

928G Wired, 20G Wireless WS-X45-SUP7L-E WS-X45-SUP8-E

Power Supply

Maximize UPOE/POE+/POE delivery

Fully Loaded 10-Slot with POE PWR-C45-9000ACV PWR-C45-6000ACV PWR-C45-4200ACV

Page 49: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Confidential 51 © 2013-2014 Cisco and/or its affiliates. All rights reserved.

2000

2003

2007 2009

Industry

Standard:

IEEE

802.3af

(15W PoE)

Industry

Standard:

IEEE

802.3at

(30W PoE+)

7W

Inline Power

15W

(PoE)

30W

(PoE+)

Catalyst 3850 UPOE

Benefits of Cisco UPOE

• Wider Choice of End Points

• Efficient Power Delivery

• High Availability

• Universal RJ45

• Lower CapEx/OpEx

2011

NEW

Same Price as Full PoE+

60W

UPOE

$0 premium over 3850-48F-

L/S/E model (48 Port Full POE

Switch)

Page 50: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Confidential 52 © 2013-2014 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential – For NDA use only, not for further disclosure or distribution

Q1 Q2 Q3 Q4 Q1 Q2 Q3 Q4 1HCY14 2HCY14 CY2015

CY2012 CY2013 CY2014 and beyond

Catalyst 4500E/X

Release

Catalyst 2K/3K Feature

Release

IOS-XE NG3K Releases

2K/3K/4K One Release

Nile

15.0(2)SE

Yap XE 3.3.0SG/ IOS 15.1.(1)SG

2960-SF

Launch

Texel XE 3.4.0SG/ IOS 15.1(2)SG

Indus XE 3.5.0E/IOS 15.2(1)E

XE 3.2.0SE Darya

3.3.0SE

3K-X UPOE

Launch

C3850 Launch

Amur

XE 3.6.0E/15.2(2)E

4K Release

2K/3K Release

C3850/5760 Release

Sup-8E Launch

15.0(2)EX

2960X/XR

Launch

IOS XE 3.3.0XO

EM Release

EM Release

EM: Extended Maintenance

EM Release

C3650

Beni

XE 3.7.0/15.3(1)E

Darya

3.3.2SE

C3850 Fiber

One Combined

Release for

Cat2K/3K/4K

Page 51: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Confidential 53 © 2013-2014 Cisco and/or its affiliates. All rights reserved.

One Policy

One Management

One Network

Policy ISE 1.2/1.3

Manageability

Prime 2.1,WEBGUI, MSE8.0

BYOD & Mobility

Service Discovery Gateway Ph 2,

Device Profiling for Wired/Wireless

Application Experience

AVC Wireless on AP Ph II(QoS tie-in with Policy), Medianet on 3850/3650(Wired)

IT Simplicity Plug & Play (PnP), Interface Template, Auto-conf

Infrastructure

New APs- AP2700, AP700I,AP700W, AP1530

Optics: Active/Passive SFPs CX1, Active SFP

IOS-XE3.6.0E/15.2(2)E (Amur) Software Release C4K(SUP8,7,6,4500-X,49xx), C3K(3850,3650,X,C), C2K(2960S,FE,X,XR,C), WLC5760

Target CCO July, 2014

Complete Govt. Certification, One Combined Release, Extended Maintenance

Page 52: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Confidential 54 © 2013 Cisco and/or its affiliates. All rights reserved.

The NEW Catalyst 3850 Fiber Switches

Key Benefits

•12 and 24 port 1G

Fiber SKUs

• 2x10G or 4x1G Uplinks

• Built on UADP ASIC

• Integrated Mobility Controller

• StackPower

• Stackable with 3850 Access

switches

Target

Q2CY14

Converged Access Por t fo l io s t rengthened w i th the New 3850 F iber sw i tches

Licensing Options: IP Base and IP Services

Page 53: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

Cisco Confidential 55 © 2013-2014 Cisco and/or its affiliates. All rights reserved.

APIC EM Access Switches

Sleep Sleep Sleep

Zero Touch Deployments and Maintenance NG Plug n Play &

Smart Install

• Software image & Configuration downloaded

• Consistent for Devices & PIN

• On-going Image Update and Configuration Back-up

• Port Configuration: Applied

• QoS Policy: Enforced

• Security Policy: Enforced

Plug and Play for End Devices

Auto Smart Ports, Auto Conf & Interface

Templates

• Packet Capture for Wired and Wireless

• Proactive diagnostics

• Real time Alerts

• Web-based reports

• Routed to TAC team

Monitor & Troubleshoot

Smart Call Home IPSLA, WireShark

• Ability to take custom actions based on syslogs/triggers

• Enhanced Flexibility and control

Control Your Network

EEM, XML Programmability

• EEE ready

• Energywise – Time of the day policy based on/off of access devices

• 0 $ SKUs for energy management

Reduced Energy Consumption

Energywise and EEE

Please refer to the Software Roadmap for the list of features supported at FCS and upcoming releases

Page 54: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK

56 © 2014 Cisco and/or its affiliates. All rights reserved. BRKARC-3438 Cisco Public

Catalyst 3850 Q&A

http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps12686/qa_c67-

722110.html

Catalyst 3850 Deployment Guide –

http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps12686/deployment_gu

ide_c07-727067.html

Catalyst 3850 Services Guide –

http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps12686/guide_c07-

727066.pdf

Reference Links for 3850 Deployment

For Your Reference

Page 55: Cisco Catalyst 3850 and 3650  · PDF fileCisco Catalyst 3850 and 3650 switches René Andersen & Mikkel Brodersen Cisco SE DK