SlideShare ist ein Scribd-Unternehmen logo
1 von 15
Downloaden Sie, um offline zu lesen
Cisco Catalyst 9000
Switching Family
The Cisco® Catalyst® 9000 family of
campus LAN switches is designed for
an entirely new era of networking. The
network can now learn, adapt, and
evolve. Designed to be intuitive, the
network can recognize intent, mitigate
threats through segmentation and
encryption, and learn and change over
time. The new network helps your
organization unlock opportunities,
enhance security, be more agile, and
operate more efficiently.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
Contents
More, more. Faster, faster.
The Cisco Catalyst heritage
The security challenge
Spot malware lurking in
encrypted traffic
The operations challenge
Accelerate change with
programmability
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
09
10
15
The mobility challenge
The IoT challenge
The cloud challenge
The final challenge
But don’t just listen to us,
listen to customers like you
who have been part of our
early field trials
03
05
06
08
11
12
13
14
02
More, more. Faster, faster.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved. 03
Your network is being challenged by more users and more devices that need more and more bandwidth. And this is just the start.
The real deluge of IoT devices and the compounding complexity that comes with it has yet to truly accelerate. A recent Cisco Visual
Networking Index™ analysis estimates that more than 27 billion devices will be connecting to the Internet by 2021. This is essentially
three devices for every person currently in in the world. And it is not just growth in devices, but also growth in how much bandwidth
each device uses.
And while Cisco Catalyst 9000 switches have twice the capacity of those they are designed to upgrade, higher capacity alone
may not be enough to handle the challenges ahead.
By the numbers
By 2021
58%
of the population
will be using the
Internet up from
44% in 2016.
By 2021
61 GB
of internet traffic
per month, per user
up from
24 GB in 2016.
By 2021
3.5
networked devices
and connections per
person up from
2.3 in 2016.
Cisco VNI 2016-2021
More, more. Faster, faster.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved. 04
In fact you are likely being asked to do more with less – handle more users and devices with less budget and less staff to manage the
network. The average number of devices that one IT staff member supports has been increasing, from a hundred devices to hundreds of
thousands, with the expectation that it will be perhaps millions of devices in the future. This is clearly not possible in today’s
command-line interface (CLI)-driven management environment. And while software-defined networking (SDN) concepts have provided a
starting point, it is just as clear that SDN by itself is not enough.
A new network is needed. A network that is software driven and hardware enhanced.
That is why we developed the Cisco Catalyst 9000 family as a foundational element of the Cisco Digital Network Architecture (Cisco DNA
™) and Software-Defined Access (SD-Access). Combining the power of the Cisco Catalyst 9000’s custom Cisco Unified Access® Data
Plane (UADP) application-specific integrated circuit (ASIC) with policy-based networking, an intelligent network fabric, and automation
makes intent-based networking a reality today. SD-Access makes the network look like a single large virtual switch to the users and
devices connecting to it. Virtualization allows for agility and flexibility in ways that are not possible with a traditional network. Using the
Cisco DNA Center™ management interface with the Cisco Catalyst 9000 family of switches, you can manage and secure your network
from a single interface. This allows for faster network design, definition, provisioning, and maintenance, which ultimately improves
network uptime. Altogether, the result is the most intelligent network available, one that allows your network to change as the needs of
your business change.
By the numbers
By 2021
20 Mbps
average mobile
speed up from
6.8 Mbps in 2016.
By 2021
53 Mbps
average broadbond
speed up from
27.5 Mbps in 2016.
By 2021
80%
of all Internet traffic
will be video up from
67% in 2016.
Cisco VNI 2016-2021
The Cisco Catalyst heritage
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved. 05
The Cisco Catalyst 9000 family of switches is the next generation of our best-selling Cisco Catalyst line of enterprise LAN switches and
operates with the same feature-rich Cisco IOS® XE 16 and field-reprogrammable UADP ASIC technology already widely deployed with
the Cisco Catalyst 3850 and 3650 Series. The Cisco Catalyst 9000 family also takes advantage of a shared DevOps toolkit for open
programmability, analytics, and telemetry. This means you can expect to have all of the advanced Layer 2 and Layer 3 capabilities that
you have come to expect and more, at twice the capacity.
One key difference, however, is the new subscription licensing model that helps make ordering easy.
Rather than the multiple, perhaps confusing, licensing options, Cisco Catalyst 9000 switches are offered with three options – Cisco DNA
Essentials, Cisco DNA Advantage, and Cisco ONE™ Advantage. Each of these are offered in 3-, 5-, and 7-year options.
The new Essentials licensing provides all the same great features you get from your current high-performing Cisco Catalyst switches and
more. Full NetFlow, basic programmability, automation, and monitoring plus an onboard x86 CPU complex are included.
And a Cisco Catalyst 9000 switch with a Cisco DNA Essentials package has been priced to be less expensive than current comparable
Cisco Catalyst switches.
But the Cisco Catalyst 9000 family was designed from the ground up to do way more than just turbo-charge your network. These
switches have been packed with a host of new features provided in the Cisco DNA Advantage package that provide greater security,
automation, and insight than was previously possible. This includes DNA Center, SD-Access, and advanced security and analytics
capabilities such as Encrypted Traffic Analytics.
But for you, the one who actually runs the network, it is not so much about what the new Cisco Catalyst 9000 switches can do but what
they can do for you.
We have designed the Cisco Catalyst 9000 family of switches to meet five specific challenges facing your network, with breakthrough
innovations in security, operational simplicity, mobility, IoT, and cloud.
Cisco Catalyst
9500 Series
Up to 6.4 Tbps/chassis
Upgrade from
Cisco Catalyst 6880-X,
6840-X, 4500-X Series:
800 Gbps/chassis
Catalyst 3850 Series fiber:
480 Gbps/chassis
Cisco Catalyst
9300 Series
480 Gbps/chassis
Upgrade from
Cisco Catalyst 3850 Series
copper:
480 Gbps/chassis
Cisco Catalyst
9400 Series
Up to
480 Gbps/slot,
9 Tbps/chassis
Upgrade from
Cisco Catalyst 4500E Series:
48 Gbps/slot,
928 Gbps/chassis
The security challenge
Hardly a day goes by without some news about another network that has been hacked and another company embarrassed by the release
of customer or employee data or, perhaps worse, the exposure of intellectual property.
It is more than just loss of reputation – a security failure can cost you big money. An average data breach costs a company nearly
$4 million. In fact, it has been estimated that cybercrime costs companies and individuals more than a trillion dollars annually.
And threats against your network will only get more sophisticated and more harmful. No one wants to be the next headline.
At Cisco, we spend a lot of time thinking about the threats facing your network and how to defeat them. Like you, we believe the network
edge is the first line of defense in an end-to end security solution. This is where policy is applied to determine who or what has access to
your network. It is also where suspicious activity can be detected and isolated most efficiently.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
“Netflix episodes of Orange Is the
New Black season 5 were released
online by hackers prior to its debut”
“Sony hackers release
personal employee
information”
“Uber pays hacker
to hide massive
data breach”
Equifax hack exposes 143 million consumers
“Hackers release Game of Thrones episodes after HBO hack”
06
Cisco end-to-end security, including Cisco
Catalyst 9000 switches and DNA Center, makes
your network more secure than ever before
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
And so we developed Cisco Catalyst 9000 switches to be a critical part of an end-to-end integrated security solution, one that works
before, during, and after a threat occurs to reduce attack surface, detect malware and threats, and rapidly contain those threats. To do
that, the switches combine a host of security features that make your network far more secure than ever before.
Like its predecessors, the Cisco Catalyst 9000 family leverages the field re‑programmability of the Cisco UADP ASIC to evolve as new
security protocols are introduced. This means your switch can have new, previously unimagined features to handle previously unimaginable
threats with just a micro-code change.
And changes in Cisco IOS Software code have become better with support for new patching capabilities in Cisco IOS XE that help simplify
operations and quickly overcome security vulnerabilities without having to certify a new software image.
Network segmentation, advanced endpoint profiling, advanced encryption, and Network as a Sensor/Network as an Enforcer capabilities
give these switches the ability to act as the first level of defense.
07
Trustworthy systems - Native NetFlow for Cisco Stealthwatch® Analytics
Network as a Sensor/Network as an Enforcer - AES‑256 MACsec encryption
Advanced endpoint profiling - Segmentation and micro‑segmentation
Encrypted Traffic Analytics (ETA) - Graceful Insertion and Removal (GIR) - software patching
Built for security
Spot malware lurking in encrypted traffic
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
Another unique feature in the Cisco Catalyst 9000 switches is
Encrypted Traffic Analytics (ETA), where we take security a
significant step further. Today, nearly half of cyberattacks are
hidden in encrypted traffic, and their number keeps growing.
ETA looks wide and deep using NetFlow data from the switches,
learning to spot anomalies that could signal an incoming threat.
Identifying the fingerprints of known threats, even in encrypted
traffic, and taking action – without decrypting the traffic – means
a more secure network with no impact on data privacy or
network performance.
Security and policy enforcement work together across the
network to simplify complexity, to keep your business more
secure, and to make you more productive.
All told, the end-to-end security offers a reduced attack surface
that secures your network before an attack, active analytics to
detect malware and threats during an attack, and rapid
automated threat response and containment after an attack.
08
Most enterprise networks are complex, error prone, rigid, hard to change, and slow to provision and maintain. Why? Because today
we live in a CLIdriven world where more than 90 percent of all IT activities are manual.
What if you could give time back to IT? What if you could close the IT skills gap created by cloud, virtualization, and IoT? What if you could
provide network access in minutes for any user or device to any application? What if you could troubleshoot problems in half the time?
Do more in less time. With Cisco DNA Center and SD-Access, Cisco Catalyst 9000 switches can operate as part of one fabric for faster,
more secure network access. No more constant cutting, pasting, and tweaking, switch by switch. Create once and apply network-wide,
using cross-domain policy enforcement and automation. By automating mundane day-to-day provisioning and maintenance operations,
you can reduce errors, improve network uptime, and dramatically reduce operational cost, allowing you and your IT staff to focus on
training, creativity, and design.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
The operations challenge
Simplify and automate
09
Reduction
in network
provisioning costs
67%
Reduction in
cost impact of
a security breach
48%
Reduction
in cost to
resolve issues
80%
Reduction
in cost to
optimize policies
94%
Network
Provisioning
Threat
Defense
Monitoring and
Troubleshooting
End User
Experience
*Internal and third party testing results of SD-Access and DNA Center
Cisco Catalyst 9000 switches offer multiple programmability options that allow your network to change as the needs of your business
change. This includes the onboard x86 CPU, the field-reprogrammable UADP ASIC, and open Cisco IOS XE Software, which supports
model-driven programmability, NETCONF and YANG scripting, streaming telemetry, and patching. This makes your network:
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
Accelerate change with programmability
Simpler: Make network policy changes and configurations once and automatically program them everywhere.
Open: Use open APIs and open standards to integrate Layer 4 through 7 services, virtualization, and management vendors.
More innovative: Use state-of-the-art third-party applications securely hosted in containers for maximum flexibility.
This allows you to use your network to deliver new business capabilities closer to the user.
10
Designed for automation and programmability
Device provisioning Through Plug and Play (PnP), Zero- Touch Provisioning (ZTP), and Pre-boot Execution (PXE)
Configuration Model‑driven operation through open APIs over NETCONF/RESTCONF and Python scripting
Policy-based automation Cross-domain policy enforcement and automation with SD-Access
Customization and monitoring Complete DevOps toolkit, streaming telemetry, and application visibility and control with
Next‑Generation Network-Based Application Recognition (NBAR2)
Upgradability and manageability In-Service Software Upgrade (ISSU), GIR, patching, and configure/replace
Mobility is likely mission-critical for you and your users, as it has become the primary access method for connecting. New and different
devices are coming online every day, wanting more bandwidth to connect to new cloudbased services. Each creating a different
security threat. There are new options to deliver higher bandwidth with 802.11ax and 802.11ac Wave 2 access points, but they require
2.5 to 5 Gbps, and often the current cabling (Category 5e or 6) was designed for only 1 Gbps. Cisco Catalyst 9000 switches offer
converged wired and wireless network services that simplify your network and create consistency in policy, segmentation,
orchestration, and automation, and assurance. This delivers the best experience for mobility, guest, IoT, multicast services, and overall
network performance and gives you extraordinary visibility across wired and wireless access networks, while segmentation separates
devices and users to help reduce the attack surface.
The Cisco Catalyst 9000 family has also been optimized to support the industry’s highest-density Wave 2 deployments with Cisco
Catalyst Multigigabit Technology (IEEE 803.2bz), a technology that extends the life of your existing cabling at 1 to10 Gbps capability.
And because the switch integrates with the fabric control plane (LISP), access points and clients are reachable in the fabric.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
The mobility challenge
11
Optimized for mobility
Support for up to 48x 2.5
Gbps and Multigigabit
Simplified guest and
mobility tunneling
No dedicated guest
controller
NBAR2:
Optimized guest
deployment
802.11ac Wave 2
optimized
Support for
2.5G/5G/10G mGig
downlinks
802.11ax ready Policy-based
segmentation:
Wired, wireless, and IoT
Visibility into wired and
wireless networks
White paper
Cisco public
The IoT challenge
There are two key challenges with emerging IoT on the enterprise network. First and foremost is security. IoT devices are often
headless; once connected to the network, they access it without human intervention. The second challenge is access. The potential
scale of IoT – with the number of devices expected to be three time the global population by 2021 - makes manual configuration and
policy setting unmanageable. Flexible and automated network provisioning, segmentation, and policy management, like that offered in
Cisco Catalyst 9000 switches, must be used so that networks can support IoT without interruption, while limiting where IoT devices go
on the network.
Cisco Catalyst 9000 switches also support a broad array of standards and features that can literally power your digital building.
These range from the highest Perpetual Power over Ethernet (PoE), PoE+, and Cisco Universal PoE (Cisco UPOE®) density in the
industry to support for multicast, Audio Video Bridging (AVB), time sync (IEEE 1588), and Bonjour service discovery with Cisco DNA
Service for Bonjour. Cisco Catalyst 9000 switches will also extend network trust to securely identify and onboard devices using
centrally defined policies.
Cisco DNA Service for
Bonjour for discovery/policy
across WAN/LAN
NBAR2 and NetFlow for
full application visibility
and control
Power high availability with
perpetual Cisco UPOE®
(90W ready)
Constrained Application
Protocol (CoAP) for built-in
discovery of services and
resources
Encapsulated Remote
Switched Port Analyzer
(ERSPAN) for monitoring
and forensics
Superior Quality of Service
(QoS), multicast, and
buffer management
Audio Video Bridging for
converged AV
1588 PTP for military and
service provider apps
IT services
(printer, Apple TV, collaboration) Connected lighting IP surveillance Networked AV and timing
Ready for IoT
© 2018 Cisco and/or its affiliates. All rights reserved. 12
Connecting to cloud services exposes
the same challenges and threats that we
see elsewhere, but with an added twist.
Connections are now made inside and
outside your network to a variety of
different cloud services. You may also
be confronted with a wave of data from
these services, but after the fact,
meaning it is often too late to take
advantage of the analytics the network
can provide.
With Cisco Catalyst 9000 switches, you
can simplify, secure, and transform your
network to include a cloud or hybrid
cloud environment. Equipped with a
DevOps toolkit, you have the ability to
use open APIs and model-driven
programmability to customize
provisioning, automation, and monitoring
using off-the-shelf applications or your
own creation that can be locally hosted
on the switch with an onboard x86 CPU
complex and container-based hosting
environment.
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved.
The cloud challenge
Cloud hosting
Automation
assurance policy
On-box app hosting
Monitoring security IoT
DevOps toolkit
Zero-touch provisioning
Model-driven programmability
Server management tools
Analytics
Streaming telemetry
Monitoring network
13
Cloud connectivity
Private/public cloud,
SaaS, co-location
High availability
Patching, GIR, ISSU
White paper
Cisco public
The final challenge
We now live in a “disrupt or be disrupted” world where no industry is immune.
From caring for the sick or the homesick to manufacturing the next spinners or the
next genius, your business and the network that drives your business will need to
change.
Today, you need a network that constantly learns, constantly adapts, and constantly
protects.
We all know why. An explosive growth in network use is underway, and with that
growth comes an ever-expanding threat – and that is no hype.
Our Cisco Catalyst 9000 switches constantly adapt to help you solve new
challenges. Their integrated security helps you address ever-changing threats. They
simplify and automate management of your evolving mobility, IoT, and multicloud
networks.
Whether you operate in a traditional environment or in full fabric-control mode,
Cisco Catalyst 9000 switches offer more capabilities and higher densities at prices
comparable to those of your existing Cisco Catalyst switches.
See how the Cisco Catalyst 9000 switches can take your network beyond the hype.
Visit https://www.cisco.com/c/en/us/products/switches/catalyst-9000.html.
© 2018 Cisco and/or its affiliates. All rights reserved. 14
White paper
Cisco public
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco
trademarks, go to this URL: https://www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership
relationship between Cisco and any other company. (1110R)
But don’t just listen to us, listen to customers like
you who have been part of our early field trials
“The Catalyst 9000 has exceeded NASA’s mission
critical requirements for security and segmentation
… and at twice the performance.”
— Eric Latta, solutions architect,
NASA
“IT can easily orchestrate global policy to secure,
differentiated access for staff and students across
multiple campuses with SD-Access’ network
segmentation. The new network from Cisco makes
our IT faster, more flexible, and more intuitive.”
— Ulrich Hauptmann, head of IT, Jade University of
Applied Sciences (Germany)
“Catalyst 9000 creates immediate IT efficiency
results with a straightforward and simple
provisioning view across secure segments.”
— Kevin Tompkins, network architect, Scentsy
(United States)
“As a leader in state-of-the art healthcare services,
we depend on our ‘always on’ network. The
resiliency, scale, and management simplicity of the
Catalyst 9000 will allow our network to securely
grow as quickly as our needs grow.”
— Thomas Noppe, lead IT architect, UZ Leuven
(Belgium)
C11-740089-01 03/18

Weitere ähnliche Inhalte

Was ist angesagt?

Application Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreApplication Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreCisco Canada
 
Cisco Meraki Portfolio Guide
Cisco Meraki Portfolio GuideCisco Meraki Portfolio Guide
Cisco Meraki Portfolio GuideMaticmind
 
Cisco Application Centric Infrastructure
Cisco Application Centric InfrastructureCisco Application Centric Infrastructure
Cisco Application Centric Infrastructureislam Salah
 
Citrix adc technical overview
Citrix adc   technical overviewCitrix adc   technical overview
Citrix adc technical overviewRoshan Dias
 
Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE)Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE)Anwesh Dixit
 
SDN Architecture & Ecosystem
SDN Architecture & EcosystemSDN Architecture & Ecosystem
SDN Architecture & EcosystemKingston Smiler
 
Building DataCenter networks with VXLAN BGP-EVPN
Building DataCenter networks with VXLAN BGP-EVPNBuilding DataCenter networks with VXLAN BGP-EVPN
Building DataCenter networks with VXLAN BGP-EVPNCisco Canada
 
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise Management Associates
 
Putting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallPutting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallCisco Canada
 
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...ThousandEyes
 
Sangfor's Presentation.pdf
Sangfor's Presentation.pdfSangfor's Presentation.pdf
Sangfor's Presentation.pdfssusera76ea9
 
Data Center Security
Data Center SecurityData Center Security
Data Center SecurityCisco Canada
 
Brkaci 1002
Brkaci 1002Brkaci 1002
Brkaci 1002ccherel
 
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...kds850
 
InfiniBand Essentials Every HPC Expert Must Know
InfiniBand Essentials Every HPC Expert Must KnowInfiniBand Essentials Every HPC Expert Must Know
InfiniBand Essentials Every HPC Expert Must KnowMellanox Technologies
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN Ashutosh Kaushik
 

Was ist angesagt? (20)

Application Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreApplication Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centre
 
Cisco Meraki Portfolio Guide
Cisco Meraki Portfolio GuideCisco Meraki Portfolio Guide
Cisco Meraki Portfolio Guide
 
Cisco Application Centric Infrastructure
Cisco Application Centric InfrastructureCisco Application Centric Infrastructure
Cisco Application Centric Infrastructure
 
Citrix adc technical overview
Citrix adc   technical overviewCitrix adc   technical overview
Citrix adc technical overview
 
StarlingX - A Platform for the Distributed Edge | Ildiko Vancsa
StarlingX - A Platform for the Distributed Edge | Ildiko VancsaStarlingX - A Platform for the Distributed Edge | Ildiko Vancsa
StarlingX - A Platform for the Distributed Edge | Ildiko Vancsa
 
Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE)Cisco Identity Services Engine (ISE)
Cisco Identity Services Engine (ISE)
 
Cisco ASA Firewalls
Cisco ASA FirewallsCisco ASA Firewalls
Cisco ASA Firewalls
 
SDN Architecture & Ecosystem
SDN Architecture & EcosystemSDN Architecture & Ecosystem
SDN Architecture & Ecosystem
 
Building DataCenter networks with VXLAN BGP-EVPN
Building DataCenter networks with VXLAN BGP-EVPNBuilding DataCenter networks with VXLAN BGP-EVPN
Building DataCenter networks with VXLAN BGP-EVPN
 
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
 
Putting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallPutting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation Firewall
 
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
 
Sangfor's Presentation.pdf
Sangfor's Presentation.pdfSangfor's Presentation.pdf
Sangfor's Presentation.pdf
 
Data Center Security
Data Center SecurityData Center Security
Data Center Security
 
Cloud Computing Using OpenStack
Cloud Computing Using OpenStack Cloud Computing Using OpenStack
Cloud Computing Using OpenStack
 
SD WAN
SD WANSD WAN
SD WAN
 
Brkaci 1002
Brkaci 1002Brkaci 1002
Brkaci 1002
 
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...
Brkarc 3454 - in-depth and personal with the cisco nexus 2000 fabric extender...
 
InfiniBand Essentials Every HPC Expert Must Know
InfiniBand Essentials Every HPC Expert Must KnowInfiniBand Essentials Every HPC Expert Must Know
InfiniBand Essentials Every HPC Expert Must Know
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN
 

Ähnlich wie Cisco Catalyst 9000 Switching Family

10 things we learned or didn't--from cisco's insieme launch
10 things we learned or didn't--from cisco's insieme launch10 things we learned or didn't--from cisco's insieme launch
10 things we learned or didn't--from cisco's insieme launchIT Tech
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Canada
 
Cisco Connect Halifax 2018 Cisco dna - deeper dive
Cisco Connect Halifax 2018   Cisco dna - deeper diveCisco Connect Halifax 2018   Cisco dna - deeper dive
Cisco Connect Halifax 2018 Cisco dna - deeper diveCisco Canada
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Canada
 
Cisco Digital Network Architecture Deeper Dive From The Gates To The Gui
Cisco Digital Network Architecture Deeper Dive From The Gates To The GuiCisco Digital Network Architecture Deeper Dive From The Gates To The Gui
Cisco Digital Network Architecture Deeper Dive From The Gates To The GuiCisco Canada
 
Cisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessCisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessNetworkCollaborators
 
Why migrate to the cisco catalyst 6800 series switches
Why migrate to the cisco catalyst 6800 series switchesWhy migrate to the cisco catalyst 6800 series switches
Why migrate to the cisco catalyst 6800 series switchesIT Tech
 
L'azienda è più agile? Tutto merito del Data Center
L'azienda è più agile? Tutto merito del Data Center L'azienda è più agile? Tutto merito del Data Center
L'azienda è più agile? Tutto merito del Data Center SMAU
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Canada
 
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSwitch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSAM Romania
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco merakiCisco Canada
 
How much you know about the cisco catalyst switches
How much you know about the cisco catalyst switchesHow much you know about the cisco catalyst switches
How much you know about the cisco catalyst switchesIT Tech
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitiveCisco Canada
 
The latest trend in ccna training
The latest trend in ccna trainingThe latest trend in ccna training
The latest trend in ccna trainingRitikaSingh257558
 
The latest trend in ccna training
The latest trend in ccna trainingThe latest trend in ccna training
The latest trend in ccna trainingRitikaSingh257558
 
Cisco PWR7AC
Cisco PWR7ACCisco PWR7AC
Cisco PWR7ACsavomir
 
Sdwan webinar
Sdwan webinarSdwan webinar
Sdwan webinarpmohapat
 
Brkarc 2035-cat-9 k
Brkarc 2035-cat-9 kBrkarc 2035-cat-9 k
Brkarc 2035-cat-9 knasiapsi
 

Ähnlich wie Cisco Catalyst 9000 Switching Family (20)

10 things we learned or didn't--from cisco's insieme launch
10 things we learned or didn't--from cisco's insieme launch10 things we learned or didn't--from cisco's insieme launch
10 things we learned or didn't--from cisco's insieme launch
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
 
Cisco Connect Halifax 2018 Cisco dna - deeper dive
Cisco Connect Halifax 2018   Cisco dna - deeper diveCisco Connect Halifax 2018   Cisco dna - deeper dive
Cisco Connect Halifax 2018 Cisco dna - deeper dive
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
 
Cisco Digital Network Architecture Deeper Dive From The Gates To The Gui
Cisco Digital Network Architecture Deeper Dive From The Gates To The GuiCisco Digital Network Architecture Deeper Dive From The Gates To The Gui
Cisco Digital Network Architecture Deeper Dive From The Gates To The Gui
 
Cisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessCisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined Access
 
Why migrate to the cisco catalyst 6800 series switches
Why migrate to the cisco catalyst 6800 series switchesWhy migrate to the cisco catalyst 6800 series switches
Why migrate to the cisco catalyst 6800 series switches
 
Sudharsan rangasamy resume
Sudharsan rangasamy resumeSudharsan rangasamy resume
Sudharsan rangasamy resume
 
L'azienda è più agile? Tutto merito del Data Center
L'azienda è più agile? Tutto merito del Data Center L'azienda è più agile? Tutto merito del Data Center
L'azienda è più agile? Tutto merito del Data Center
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
 
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdfSwitch Cisco Catalyst 9300 Datasheet (2022).pdf
Switch Cisco Catalyst 9300 Datasheet (2022).pdf
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
 
How much you know about the cisco catalyst switches
How much you know about the cisco catalyst switchesHow much you know about the cisco catalyst switches
How much you know about the cisco catalyst switches
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitive
 
The latest trend in ccna training
The latest trend in ccna trainingThe latest trend in ccna training
The latest trend in ccna training
 
The latest trend in ccna training
The latest trend in ccna trainingThe latest trend in ccna training
The latest trend in ccna training
 
Cisco PWR7AC
Cisco PWR7ACCisco PWR7AC
Cisco PWR7AC
 
Capstone Final Part
Capstone Final PartCapstone Final Part
Capstone Final Part
 
Sdwan webinar
Sdwan webinarSdwan webinar
Sdwan webinar
 
Brkarc 2035-cat-9 k
Brkarc 2035-cat-9 kBrkarc 2035-cat-9 k
Brkarc 2035-cat-9 k
 

Kürzlich hochgeladen

Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?Antenna Manufacturer Coco
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsJoaquim Jorge
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessPixlogix Infotech
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Enterprise Knowledge
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 

Kürzlich hochgeladen (20)

Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 

Cisco Catalyst 9000 Switching Family

  • 1. Cisco Catalyst 9000 Switching Family The Cisco® Catalyst® 9000 family of campus LAN switches is designed for an entirely new era of networking. The network can now learn, adapt, and evolve. Designed to be intuitive, the network can recognize intent, mitigate threats through segmentation and encryption, and learn and change over time. The new network helps your organization unlock opportunities, enhance security, be more agile, and operate more efficiently. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved.
  • 2. Contents More, more. Faster, faster. The Cisco Catalyst heritage The security challenge Spot malware lurking in encrypted traffic The operations challenge Accelerate change with programmability White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. 09 10 15 The mobility challenge The IoT challenge The cloud challenge The final challenge But don’t just listen to us, listen to customers like you who have been part of our early field trials 03 05 06 08 11 12 13 14 02
  • 3. More, more. Faster, faster. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. 03 Your network is being challenged by more users and more devices that need more and more bandwidth. And this is just the start. The real deluge of IoT devices and the compounding complexity that comes with it has yet to truly accelerate. A recent Cisco Visual Networking Index™ analysis estimates that more than 27 billion devices will be connecting to the Internet by 2021. This is essentially three devices for every person currently in in the world. And it is not just growth in devices, but also growth in how much bandwidth each device uses. And while Cisco Catalyst 9000 switches have twice the capacity of those they are designed to upgrade, higher capacity alone may not be enough to handle the challenges ahead. By the numbers By 2021 58% of the population will be using the Internet up from 44% in 2016. By 2021 61 GB of internet traffic per month, per user up from 24 GB in 2016. By 2021 3.5 networked devices and connections per person up from 2.3 in 2016. Cisco VNI 2016-2021
  • 4. More, more. Faster, faster. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. 04 In fact you are likely being asked to do more with less – handle more users and devices with less budget and less staff to manage the network. The average number of devices that one IT staff member supports has been increasing, from a hundred devices to hundreds of thousands, with the expectation that it will be perhaps millions of devices in the future. This is clearly not possible in today’s command-line interface (CLI)-driven management environment. And while software-defined networking (SDN) concepts have provided a starting point, it is just as clear that SDN by itself is not enough. A new network is needed. A network that is software driven and hardware enhanced. That is why we developed the Cisco Catalyst 9000 family as a foundational element of the Cisco Digital Network Architecture (Cisco DNA ™) and Software-Defined Access (SD-Access). Combining the power of the Cisco Catalyst 9000’s custom Cisco Unified Access® Data Plane (UADP) application-specific integrated circuit (ASIC) with policy-based networking, an intelligent network fabric, and automation makes intent-based networking a reality today. SD-Access makes the network look like a single large virtual switch to the users and devices connecting to it. Virtualization allows for agility and flexibility in ways that are not possible with a traditional network. Using the Cisco DNA Center™ management interface with the Cisco Catalyst 9000 family of switches, you can manage and secure your network from a single interface. This allows for faster network design, definition, provisioning, and maintenance, which ultimately improves network uptime. Altogether, the result is the most intelligent network available, one that allows your network to change as the needs of your business change. By the numbers By 2021 20 Mbps average mobile speed up from 6.8 Mbps in 2016. By 2021 53 Mbps average broadbond speed up from 27.5 Mbps in 2016. By 2021 80% of all Internet traffic will be video up from 67% in 2016. Cisco VNI 2016-2021
  • 5. The Cisco Catalyst heritage White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. 05 The Cisco Catalyst 9000 family of switches is the next generation of our best-selling Cisco Catalyst line of enterprise LAN switches and operates with the same feature-rich Cisco IOS® XE 16 and field-reprogrammable UADP ASIC technology already widely deployed with the Cisco Catalyst 3850 and 3650 Series. The Cisco Catalyst 9000 family also takes advantage of a shared DevOps toolkit for open programmability, analytics, and telemetry. This means you can expect to have all of the advanced Layer 2 and Layer 3 capabilities that you have come to expect and more, at twice the capacity. One key difference, however, is the new subscription licensing model that helps make ordering easy. Rather than the multiple, perhaps confusing, licensing options, Cisco Catalyst 9000 switches are offered with three options – Cisco DNA Essentials, Cisco DNA Advantage, and Cisco ONE™ Advantage. Each of these are offered in 3-, 5-, and 7-year options. The new Essentials licensing provides all the same great features you get from your current high-performing Cisco Catalyst switches and more. Full NetFlow, basic programmability, automation, and monitoring plus an onboard x86 CPU complex are included. And a Cisco Catalyst 9000 switch with a Cisco DNA Essentials package has been priced to be less expensive than current comparable Cisco Catalyst switches. But the Cisco Catalyst 9000 family was designed from the ground up to do way more than just turbo-charge your network. These switches have been packed with a host of new features provided in the Cisco DNA Advantage package that provide greater security, automation, and insight than was previously possible. This includes DNA Center, SD-Access, and advanced security and analytics capabilities such as Encrypted Traffic Analytics. But for you, the one who actually runs the network, it is not so much about what the new Cisco Catalyst 9000 switches can do but what they can do for you. We have designed the Cisco Catalyst 9000 family of switches to meet five specific challenges facing your network, with breakthrough innovations in security, operational simplicity, mobility, IoT, and cloud. Cisco Catalyst 9500 Series Up to 6.4 Tbps/chassis Upgrade from Cisco Catalyst 6880-X, 6840-X, 4500-X Series: 800 Gbps/chassis Catalyst 3850 Series fiber: 480 Gbps/chassis Cisco Catalyst 9300 Series 480 Gbps/chassis Upgrade from Cisco Catalyst 3850 Series copper: 480 Gbps/chassis Cisco Catalyst 9400 Series Up to 480 Gbps/slot, 9 Tbps/chassis Upgrade from Cisco Catalyst 4500E Series: 48 Gbps/slot, 928 Gbps/chassis
  • 6. The security challenge Hardly a day goes by without some news about another network that has been hacked and another company embarrassed by the release of customer or employee data or, perhaps worse, the exposure of intellectual property. It is more than just loss of reputation – a security failure can cost you big money. An average data breach costs a company nearly $4 million. In fact, it has been estimated that cybercrime costs companies and individuals more than a trillion dollars annually. And threats against your network will only get more sophisticated and more harmful. No one wants to be the next headline. At Cisco, we spend a lot of time thinking about the threats facing your network and how to defeat them. Like you, we believe the network edge is the first line of defense in an end-to end security solution. This is where policy is applied to determine who or what has access to your network. It is also where suspicious activity can be detected and isolated most efficiently. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. “Netflix episodes of Orange Is the New Black season 5 were released online by hackers prior to its debut” “Sony hackers release personal employee information” “Uber pays hacker to hide massive data breach” Equifax hack exposes 143 million consumers “Hackers release Game of Thrones episodes after HBO hack” 06
  • 7. Cisco end-to-end security, including Cisco Catalyst 9000 switches and DNA Center, makes your network more secure than ever before White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. And so we developed Cisco Catalyst 9000 switches to be a critical part of an end-to-end integrated security solution, one that works before, during, and after a threat occurs to reduce attack surface, detect malware and threats, and rapidly contain those threats. To do that, the switches combine a host of security features that make your network far more secure than ever before. Like its predecessors, the Cisco Catalyst 9000 family leverages the field re‑programmability of the Cisco UADP ASIC to evolve as new security protocols are introduced. This means your switch can have new, previously unimagined features to handle previously unimaginable threats with just a micro-code change. And changes in Cisco IOS Software code have become better with support for new patching capabilities in Cisco IOS XE that help simplify operations and quickly overcome security vulnerabilities without having to certify a new software image. Network segmentation, advanced endpoint profiling, advanced encryption, and Network as a Sensor/Network as an Enforcer capabilities give these switches the ability to act as the first level of defense. 07 Trustworthy systems - Native NetFlow for Cisco Stealthwatch® Analytics Network as a Sensor/Network as an Enforcer - AES‑256 MACsec encryption Advanced endpoint profiling - Segmentation and micro‑segmentation Encrypted Traffic Analytics (ETA) - Graceful Insertion and Removal (GIR) - software patching Built for security
  • 8. Spot malware lurking in encrypted traffic White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. Another unique feature in the Cisco Catalyst 9000 switches is Encrypted Traffic Analytics (ETA), where we take security a significant step further. Today, nearly half of cyberattacks are hidden in encrypted traffic, and their number keeps growing. ETA looks wide and deep using NetFlow data from the switches, learning to spot anomalies that could signal an incoming threat. Identifying the fingerprints of known threats, even in encrypted traffic, and taking action – without decrypting the traffic – means a more secure network with no impact on data privacy or network performance. Security and policy enforcement work together across the network to simplify complexity, to keep your business more secure, and to make you more productive. All told, the end-to-end security offers a reduced attack surface that secures your network before an attack, active analytics to detect malware and threats during an attack, and rapid automated threat response and containment after an attack. 08
  • 9. Most enterprise networks are complex, error prone, rigid, hard to change, and slow to provision and maintain. Why? Because today we live in a CLIdriven world where more than 90 percent of all IT activities are manual. What if you could give time back to IT? What if you could close the IT skills gap created by cloud, virtualization, and IoT? What if you could provide network access in minutes for any user or device to any application? What if you could troubleshoot problems in half the time? Do more in less time. With Cisco DNA Center and SD-Access, Cisco Catalyst 9000 switches can operate as part of one fabric for faster, more secure network access. No more constant cutting, pasting, and tweaking, switch by switch. Create once and apply network-wide, using cross-domain policy enforcement and automation. By automating mundane day-to-day provisioning and maintenance operations, you can reduce errors, improve network uptime, and dramatically reduce operational cost, allowing you and your IT staff to focus on training, creativity, and design. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. The operations challenge Simplify and automate 09 Reduction in network provisioning costs 67% Reduction in cost impact of a security breach 48% Reduction in cost to resolve issues 80% Reduction in cost to optimize policies 94% Network Provisioning Threat Defense Monitoring and Troubleshooting End User Experience *Internal and third party testing results of SD-Access and DNA Center
  • 10. Cisco Catalyst 9000 switches offer multiple programmability options that allow your network to change as the needs of your business change. This includes the onboard x86 CPU, the field-reprogrammable UADP ASIC, and open Cisco IOS XE Software, which supports model-driven programmability, NETCONF and YANG scripting, streaming telemetry, and patching. This makes your network: White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. Accelerate change with programmability Simpler: Make network policy changes and configurations once and automatically program them everywhere. Open: Use open APIs and open standards to integrate Layer 4 through 7 services, virtualization, and management vendors. More innovative: Use state-of-the-art third-party applications securely hosted in containers for maximum flexibility. This allows you to use your network to deliver new business capabilities closer to the user. 10 Designed for automation and programmability Device provisioning Through Plug and Play (PnP), Zero- Touch Provisioning (ZTP), and Pre-boot Execution (PXE) Configuration Model‑driven operation through open APIs over NETCONF/RESTCONF and Python scripting Policy-based automation Cross-domain policy enforcement and automation with SD-Access Customization and monitoring Complete DevOps toolkit, streaming telemetry, and application visibility and control with Next‑Generation Network-Based Application Recognition (NBAR2) Upgradability and manageability In-Service Software Upgrade (ISSU), GIR, patching, and configure/replace
  • 11. Mobility is likely mission-critical for you and your users, as it has become the primary access method for connecting. New and different devices are coming online every day, wanting more bandwidth to connect to new cloudbased services. Each creating a different security threat. There are new options to deliver higher bandwidth with 802.11ax and 802.11ac Wave 2 access points, but they require 2.5 to 5 Gbps, and often the current cabling (Category 5e or 6) was designed for only 1 Gbps. Cisco Catalyst 9000 switches offer converged wired and wireless network services that simplify your network and create consistency in policy, segmentation, orchestration, and automation, and assurance. This delivers the best experience for mobility, guest, IoT, multicast services, and overall network performance and gives you extraordinary visibility across wired and wireless access networks, while segmentation separates devices and users to help reduce the attack surface. The Cisco Catalyst 9000 family has also been optimized to support the industry’s highest-density Wave 2 deployments with Cisco Catalyst Multigigabit Technology (IEEE 803.2bz), a technology that extends the life of your existing cabling at 1 to10 Gbps capability. And because the switch integrates with the fabric control plane (LISP), access points and clients are reachable in the fabric. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. The mobility challenge 11 Optimized for mobility Support for up to 48x 2.5 Gbps and Multigigabit Simplified guest and mobility tunneling No dedicated guest controller NBAR2: Optimized guest deployment 802.11ac Wave 2 optimized Support for 2.5G/5G/10G mGig downlinks 802.11ax ready Policy-based segmentation: Wired, wireless, and IoT Visibility into wired and wireless networks
  • 12. White paper Cisco public The IoT challenge There are two key challenges with emerging IoT on the enterprise network. First and foremost is security. IoT devices are often headless; once connected to the network, they access it without human intervention. The second challenge is access. The potential scale of IoT – with the number of devices expected to be three time the global population by 2021 - makes manual configuration and policy setting unmanageable. Flexible and automated network provisioning, segmentation, and policy management, like that offered in Cisco Catalyst 9000 switches, must be used so that networks can support IoT without interruption, while limiting where IoT devices go on the network. Cisco Catalyst 9000 switches also support a broad array of standards and features that can literally power your digital building. These range from the highest Perpetual Power over Ethernet (PoE), PoE+, and Cisco Universal PoE (Cisco UPOE®) density in the industry to support for multicast, Audio Video Bridging (AVB), time sync (IEEE 1588), and Bonjour service discovery with Cisco DNA Service for Bonjour. Cisco Catalyst 9000 switches will also extend network trust to securely identify and onboard devices using centrally defined policies. Cisco DNA Service for Bonjour for discovery/policy across WAN/LAN NBAR2 and NetFlow for full application visibility and control Power high availability with perpetual Cisco UPOE® (90W ready) Constrained Application Protocol (CoAP) for built-in discovery of services and resources Encapsulated Remote Switched Port Analyzer (ERSPAN) for monitoring and forensics Superior Quality of Service (QoS), multicast, and buffer management Audio Video Bridging for converged AV 1588 PTP for military and service provider apps IT services (printer, Apple TV, collaboration) Connected lighting IP surveillance Networked AV and timing Ready for IoT © 2018 Cisco and/or its affiliates. All rights reserved. 12
  • 13. Connecting to cloud services exposes the same challenges and threats that we see elsewhere, but with an added twist. Connections are now made inside and outside your network to a variety of different cloud services. You may also be confronted with a wave of data from these services, but after the fact, meaning it is often too late to take advantage of the analytics the network can provide. With Cisco Catalyst 9000 switches, you can simplify, secure, and transform your network to include a cloud or hybrid cloud environment. Equipped with a DevOps toolkit, you have the ability to use open APIs and model-driven programmability to customize provisioning, automation, and monitoring using off-the-shelf applications or your own creation that can be locally hosted on the switch with an onboard x86 CPU complex and container-based hosting environment. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. The cloud challenge Cloud hosting Automation assurance policy On-box app hosting Monitoring security IoT DevOps toolkit Zero-touch provisioning Model-driven programmability Server management tools Analytics Streaming telemetry Monitoring network 13 Cloud connectivity Private/public cloud, SaaS, co-location High availability Patching, GIR, ISSU
  • 14. White paper Cisco public The final challenge We now live in a “disrupt or be disrupted” world where no industry is immune. From caring for the sick or the homesick to manufacturing the next spinners or the next genius, your business and the network that drives your business will need to change. Today, you need a network that constantly learns, constantly adapts, and constantly protects. We all know why. An explosive growth in network use is underway, and with that growth comes an ever-expanding threat – and that is no hype. Our Cisco Catalyst 9000 switches constantly adapt to help you solve new challenges. Their integrated security helps you address ever-changing threats. They simplify and automate management of your evolving mobility, IoT, and multicloud networks. Whether you operate in a traditional environment or in full fabric-control mode, Cisco Catalyst 9000 switches offer more capabilities and higher densities at prices comparable to those of your existing Cisco Catalyst switches. See how the Cisco Catalyst 9000 switches can take your network beyond the hype. Visit https://www.cisco.com/c/en/us/products/switches/catalyst-9000.html. © 2018 Cisco and/or its affiliates. All rights reserved. 14
  • 15. White paper Cisco public © 2018 Cisco and/or its affiliates. All rights reserved. Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: https://www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R) But don’t just listen to us, listen to customers like you who have been part of our early field trials “The Catalyst 9000 has exceeded NASA’s mission critical requirements for security and segmentation … and at twice the performance.” — Eric Latta, solutions architect, NASA “IT can easily orchestrate global policy to secure, differentiated access for staff and students across multiple campuses with SD-Access’ network segmentation. The new network from Cisco makes our IT faster, more flexible, and more intuitive.” — Ulrich Hauptmann, head of IT, Jade University of Applied Sciences (Germany) “Catalyst 9000 creates immediate IT efficiency results with a straightforward and simple provisioning view across secure segments.” — Kevin Tompkins, network architect, Scentsy (United States) “As a leader in state-of-the art healthcare services, we depend on our ‘always on’ network. The resiliency, scale, and management simplicity of the Catalyst 9000 will allow our network to securely grow as quickly as our needs grow.” — Thomas Noppe, lead IT architect, UZ Leuven (Belgium) C11-740089-01 03/18