Cisco Systems

Transcription

Cisco Systems
Cisco Systems
up2date
13. Oktober, 2004
Wolfgang Schmidhuber
Senior Account Manager
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
1
Agenda
08.30 - 09.00
Registrierung & Kaffee
09.00 - 09.30
Begrüßung & Tagesübersicht, Cisco Runs on Cisco
Wolfgang Schmidhuber, Senior Account Manager
Cisco Systems Austria
09.30 - 10.15
Überblick Cisco's neue Integrated Services Router Familie: Neue Intelligente
Dienste!
Thomas Krewedl, Systems Engineer Cisco Systems Austria
10.15 - 11.00
Cisco 2800, 3800 Integrated Voice Anwendungen: Einfachere und
kostengünstigere Integration von IP Telephony!
Thomas Krewedl, Systems Engineer Cisco Systems Austria
11.00 - 11.15
Pause
11.15 - 12.00
Cisco 1800, 2800, 3800 Integrated Security Lösungen
Markus Kunstmann, Systems Engineer Cisco Systems Austria
12.00 - 13.00
Mittags Buffet
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
2
Cisco’s Network Infrastructure
Flexibility
We face the same
challenges as our
customers
Performance
8461_07_2003_c10
Cost of Ownership
© 2003 Cisco Systems, Inc. All rights reserved.
Functionality
Ease of Operation
and Maintenance
3
Cisco Runs It’s Business on a Cisco Infrastructure
274 Content Engines
1253 Voice and Remote
Gateways
3154 Switches
2390 Routers
3068 Access Points
74 MDS 9000 Multilayer
Directors
54,500 IP Telephones
8461_07_2003_c10
47,000 Cisco Security
Agents
© 2003 Cisco Systems, Inc. All rights reserved.
13,309 IP Communicator /
Softphones
4
Core Routing and Switching
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
5
Cisco All Packet Network
Common enterprise-wide infrastructure
• 250 sites
• 3154 Switches - 2390 Routers
• OC-12 / OC-3 / DS-3 Wide Area
Network backbone
• The 7600 series routers
• The Catalyst 6500 series switch
• Service Provider MPLS IP-VPN
network throughout the EMEA
theatre
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
6
IP Communications
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
7
IP Communications at Cisco
Global Deployment
• 250 sites in production
• 54.500+ phones deployed
• 13.309+ IP Communicators/softphones deployed
• 13 Call Manager clusters
• Personal productivity applications being deployed
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
8
Executive Summary
• Reduced 600 PBXs to 12 IP Call
Managers in Central Call Processing
clusters
• IT Moves, Adds, and Changes
reduced to $0.00 – Total move cost
reduced by 63%
• Total recurring cost reduced by
$2.2m/year
• Worldwide Central Voice Management
in place
• Added worldwide voice mobility
In the office, at home, and on the road
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
9
Telephony at Cisco
• All-PBX
infrastructure
• Replaced with IP
Call Managers in
2000-2002 timeframe
• Cost per move =
$179
Global:
• 54,500+ IP phones
• 13 IP Call Manager
Central Call Processing
clusters in production
Cisco San Jose:
• 24,000+ IP telephones in a
single cluster with
availability 99.999% (last 18
months)
• Cost per move = $65
3 Years Ago
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
Today
• Expanding Audio
conferencing into
Rich Media
Communications
• Home office IP
telephony
extensions
• Global IP Tel
Applications
Leading to…
10
Security
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
11
Network Security at Cisco
• Secure access; globally
• On site, remote site, mobile
worker, telecommuter
• Analysis and detection tools in
place
Firewall service modules
Network Intrusion Detection
Cisco Security Agent
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
12
Executive Summary
• Firewalls:
Cisco ACLs and Firewall
Service modules (primary
sites),
Cisco PIX (secondary sites)
• Remote Access:
Cisco VPN concentrators
VPN v3.6
• Desktop:
Cisco Security Agent v4.0.1
and 4.02
• Secure Traffic:
uRPF, QoS for voice
• Automatic mitigation:
Riverhead Guards for CCO
Cisco ACS (backend
authentication)
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
13
Network Security at Cisco
• Basic Firewall
(access lists)
• Wireless WEP
• IDS engines without
data correlation or
usage
• 3002 for tele-worker
• ACS on Solaris
• Basic & Advanced Firewall
(ACLs + FWSM)
• IDS appliances
• Cisco Security Agent
• Blended management tools
• Tele-worker standard
• Traffic control
• DDoS mitigation
• Anomaly Detection
• ACS on Solaris and Windows
3 Years Ago
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
Today
• Advanced Firewall
capability
• Data correlation via
SIMS
• Integrated
management tools
• Network Admission
Control
• Device integrity via
code-signing
• IDS  IPS transition
• CSA on Linux/
Windows 2003 Server
• ACS on Appliance
Leading to…
14
Cisco Security Agent
• 47,000 Desktops
• Baseline policy
requirements
• Deployment - pushed to all
supported desktops using
Altiris application running
on Cisco ACNS
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
35000
30000
25000
20000
15000
10000
5000
0
03
.0
2.
20
04
05
.0
2.
20
04
07
.0
2.
20
04
09
.0
2.
20
04
11
.0
2.
20
04
13
.0
2.
20
04
15
.0
2.
20
04
17
.0
2.
20
04
19
.0
2.
20
04
21
.0
2.
20
04
23
.0
2.
20
04
• Global virtual team
consisting of Desktop,
Global Technical Resource
Center, InfoSec
Deployment of Cisco Security Agent
3 Weeks
15
Wireless LAN
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
16
Ubiquitous Connectivity at Cisco
• Worldwide mobility, office, home, and on the
road - Global, Scalable, and Secure
• Every employee has seamless access to
wireless tools (over 35,000 users)
• 3068+ Access Points, 300 sites, 100 countries
• WLAN hot spots being deployed for customer
access in Executive Briefing Centers
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
17
Executive Summary
• 25%of the employee base use
wireless as primary connectivity all
the time
• Significant reduction in cabling
costs in new buildings
• IT Support cost $400K/year – 2-3
employees
• Documented employee productivity
improvement (~$6.3m)
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
18
Wireless at Cisco
• All wired
infrastructure
• Overlaid wireless
infrastructure
Cisco global:
• 3,000+ AP in the network
today; All employees and
location wireless enabled
• 25% of all employees use
wireless as primary
connection
• Wireless hot spots in
selected locations
• Wireless network is more
secure than wired
3 Years Ago
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
Today
• Enhanced security
and QoS
• Wireless phone
deployed where
appropriate
• Wireless home
office
• Management of
wireless capacity
worldwide
Leading to…
19
Wireless at Cisco Today
Park
Status: 35,000 Users Stockley
- every
office
wireless
Gothenburg, Oslo
Chicago, IL
Bloomington, MN
Anchorage, AK
Carmel, IN
Boise, ID
Co Springs
San Jose
(Encore)
Dallas Metro
Dallas Sales
London City
Brussels, Marcel Thirey
(Antares *, Pegasus, *)
Gland
Amsterdam
Toronto
Paris
Istanbul
Berlin, Mannheim, Munich
NY
Lisbon
Howell, Glen Allen
Raleigh, North
Carolina
Tulsa, Rogers
Metaire, LA
Jacksonville, FL
Montgomery
Baton Rouge
3000 Access Points
300 Sites
100 + Countries
8461_07_2003_c10
Helsinki, Copenhagen
© 2003 Cisco Systems, Inc. All rights reserved.
Madrid
Luxembourg, Stuttgart
Beijing (*)
Athens
Tokyo (*)
Barcelona
Hong Kong
Bangkok
Riyadh
Bryanston,
South Africa
Akasaka
Fukuoka
Nagoya
Singapore (*)
New Delhi
Adelaide
Melbourne Perth
Brisbane
Auckland
Wellington
Sydney (CM 3.0)
(North Sydney, Chattswood)
20
Storage Networking
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
21
Executive Summary
• Availability
More ports to support multiple paths between
servers and storage
• Data center crowding
Storage to be located in another part of the floor
Primary storage to be located in nearby data
centers
• Cost reduction
Increasing storage frame usage by sharing each
storage frame among many servers and
applications
• Improved provisioning speed
Upgrade frame firmware without affecting
application availability
• Improved performance
A fully non-blocking architecture
Intelligent traffic management
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
22
Storage Networking
•
1st pair of MDS9509s off of the production line used to support
mission-critical ERP environment in January, 2003
•
~74 Cisco MDS switches deployed globally at Cisco
•
~6000 ports in production globally
•
Single 2500 port SAN in production in RTP (spanning multiple
datacenters)
•
iSCSI used to support several mid-range applications
•
FCIP being researched for SAN extension between SJ and RTP –
will be implemented by end of Q4FY04
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
23
Storage Networking at Cisco
• 90% DAS
environment until
1999
• Storage per
client/per
application. Cost
high, flexibility none.
• Dozens of small
SAN islands
• More units to
manage
• Consolidated SAN per
datacenter, still DAS & SAN
islands in some areas
• V-SAN consolidation
• Storage Networking World
Best Practice Award for MDS
implementation in ERP
environment
• All Cisco MDS in Data Center
• More effective use of
hardware, cost optimized,
higher flexibility.
• Consolidated storage
management
3 Years Ago
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
Today
• Flexible Data Center
• Utility level storage
through SLA
management
• Virtualization of
resources, automated,
on demand
provisioning
• Single SAN per site
to Single SAN
Worldwide
Leading to…
24
Storage Networking at Cisco Today
ERP at Cisco: V-SAN implemented
• 640 port SAN
• Two Fabrics:
2 Cisco MDS 9509 SAN
Switches each
• 33 Host
• 5 VSANS
• 38 Storage Frames
• >350 Terabytes
es
t
y
b
ra 01
e
t 0. n
0
o
10 x $ Milli
$1
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
DR
VSAN 1
DR
VSAN 2
Backup Development
VSAN 1
VSAN
Development
VSAN 2
25
Executive Summary – Best Practices in Storage
5000
Systems Implementation
Spring 2004
4000
3000
2000
1000
0
Dec-02
Dec-03
McData
8461_07_2003_c10
Brocade
Jan-04
Feb-04
Cisco MDS
© 2003 Cisco Systems, Inc. All rights reserved.
26
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
27
Grundverständnis: Wichtigkeit der Architektur
Vision eines State-of-the-art Haus… Errichtet ohne Blueprint
The Winchester Mansion
Das
Mystery Haus
Anzahl Arbeiter
Datum: 1884
147
Bauleute
• 160 Zimmer
• 6 Küchen
• Gaslichter
• 47 Kamine
• 10.000 Fenster
• Sprechanlagen
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
Resultat
0
Architekten
• 65 Türen an Wänden
• 13 Treppen unvollständig
• 24 Löcher im Boden
Fertigstellung – 38 Jahre
Kosten - $5,5M
28
Total Cost of Ownership
1 Flugzeugtyp
1 Trainingsprogramm
1 Set of Spareparts
1 Maintenance Programm
1 Menü
8461_07_2003_c10
© 2003 Cisco Systems, Inc. All rights reserved.
29