Cisco Systems
Transcription
Cisco Systems
Cisco Systems up2date 13. Oktober, 2004 Wolfgang Schmidhuber Senior Account Manager 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 1 Agenda 08.30 - 09.00 Registrierung & Kaffee 09.00 - 09.30 Begrüßung & Tagesübersicht, Cisco Runs on Cisco Wolfgang Schmidhuber, Senior Account Manager Cisco Systems Austria 09.30 - 10.15 Überblick Cisco's neue Integrated Services Router Familie: Neue Intelligente Dienste! Thomas Krewedl, Systems Engineer Cisco Systems Austria 10.15 - 11.00 Cisco 2800, 3800 Integrated Voice Anwendungen: Einfachere und kostengünstigere Integration von IP Telephony! Thomas Krewedl, Systems Engineer Cisco Systems Austria 11.00 - 11.15 Pause 11.15 - 12.00 Cisco 1800, 2800, 3800 Integrated Security Lösungen Markus Kunstmann, Systems Engineer Cisco Systems Austria 12.00 - 13.00 Mittags Buffet 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 2 Cisco’s Network Infrastructure Flexibility We face the same challenges as our customers Performance 8461_07_2003_c10 Cost of Ownership © 2003 Cisco Systems, Inc. All rights reserved. Functionality Ease of Operation and Maintenance 3 Cisco Runs It’s Business on a Cisco Infrastructure 274 Content Engines 1253 Voice and Remote Gateways 3154 Switches 2390 Routers 3068 Access Points 74 MDS 9000 Multilayer Directors 54,500 IP Telephones 8461_07_2003_c10 47,000 Cisco Security Agents © 2003 Cisco Systems, Inc. All rights reserved. 13,309 IP Communicator / Softphones 4 Core Routing and Switching 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 5 Cisco All Packet Network Common enterprise-wide infrastructure • 250 sites • 3154 Switches - 2390 Routers • OC-12 / OC-3 / DS-3 Wide Area Network backbone • The 7600 series routers • The Catalyst 6500 series switch • Service Provider MPLS IP-VPN network throughout the EMEA theatre 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 6 IP Communications 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 7 IP Communications at Cisco Global Deployment • 250 sites in production • 54.500+ phones deployed • 13.309+ IP Communicators/softphones deployed • 13 Call Manager clusters • Personal productivity applications being deployed 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 8 Executive Summary • Reduced 600 PBXs to 12 IP Call Managers in Central Call Processing clusters • IT Moves, Adds, and Changes reduced to $0.00 – Total move cost reduced by 63% • Total recurring cost reduced by $2.2m/year • Worldwide Central Voice Management in place • Added worldwide voice mobility In the office, at home, and on the road 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 9 Telephony at Cisco • All-PBX infrastructure • Replaced with IP Call Managers in 2000-2002 timeframe • Cost per move = $179 Global: • 54,500+ IP phones • 13 IP Call Manager Central Call Processing clusters in production Cisco San Jose: • 24,000+ IP telephones in a single cluster with availability 99.999% (last 18 months) • Cost per move = $65 3 Years Ago 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. Today • Expanding Audio conferencing into Rich Media Communications • Home office IP telephony extensions • Global IP Tel Applications Leading to… 10 Security 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 11 Network Security at Cisco • Secure access; globally • On site, remote site, mobile worker, telecommuter • Analysis and detection tools in place Firewall service modules Network Intrusion Detection Cisco Security Agent 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 12 Executive Summary • Firewalls: Cisco ACLs and Firewall Service modules (primary sites), Cisco PIX (secondary sites) • Remote Access: Cisco VPN concentrators VPN v3.6 • Desktop: Cisco Security Agent v4.0.1 and 4.02 • Secure Traffic: uRPF, QoS for voice • Automatic mitigation: Riverhead Guards for CCO Cisco ACS (backend authentication) 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 13 Network Security at Cisco • Basic Firewall (access lists) • Wireless WEP • IDS engines without data correlation or usage • 3002 for tele-worker • ACS on Solaris • Basic & Advanced Firewall (ACLs + FWSM) • IDS appliances • Cisco Security Agent • Blended management tools • Tele-worker standard • Traffic control • DDoS mitigation • Anomaly Detection • ACS on Solaris and Windows 3 Years Ago 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. Today • Advanced Firewall capability • Data correlation via SIMS • Integrated management tools • Network Admission Control • Device integrity via code-signing • IDS IPS transition • CSA on Linux/ Windows 2003 Server • ACS on Appliance Leading to… 14 Cisco Security Agent • 47,000 Desktops • Baseline policy requirements • Deployment - pushed to all supported desktops using Altiris application running on Cisco ACNS 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 35000 30000 25000 20000 15000 10000 5000 0 03 .0 2. 20 04 05 .0 2. 20 04 07 .0 2. 20 04 09 .0 2. 20 04 11 .0 2. 20 04 13 .0 2. 20 04 15 .0 2. 20 04 17 .0 2. 20 04 19 .0 2. 20 04 21 .0 2. 20 04 23 .0 2. 20 04 • Global virtual team consisting of Desktop, Global Technical Resource Center, InfoSec Deployment of Cisco Security Agent 3 Weeks 15 Wireless LAN 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 16 Ubiquitous Connectivity at Cisco • Worldwide mobility, office, home, and on the road - Global, Scalable, and Secure • Every employee has seamless access to wireless tools (over 35,000 users) • 3068+ Access Points, 300 sites, 100 countries • WLAN hot spots being deployed for customer access in Executive Briefing Centers 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 17 Executive Summary • 25%of the employee base use wireless as primary connectivity all the time • Significant reduction in cabling costs in new buildings • IT Support cost $400K/year – 2-3 employees • Documented employee productivity improvement (~$6.3m) 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 18 Wireless at Cisco • All wired infrastructure • Overlaid wireless infrastructure Cisco global: • 3,000+ AP in the network today; All employees and location wireless enabled • 25% of all employees use wireless as primary connection • Wireless hot spots in selected locations • Wireless network is more secure than wired 3 Years Ago 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. Today • Enhanced security and QoS • Wireless phone deployed where appropriate • Wireless home office • Management of wireless capacity worldwide Leading to… 19 Wireless at Cisco Today Park Status: 35,000 Users Stockley - every office wireless Gothenburg, Oslo Chicago, IL Bloomington, MN Anchorage, AK Carmel, IN Boise, ID Co Springs San Jose (Encore) Dallas Metro Dallas Sales London City Brussels, Marcel Thirey (Antares *, Pegasus, *) Gland Amsterdam Toronto Paris Istanbul Berlin, Mannheim, Munich NY Lisbon Howell, Glen Allen Raleigh, North Carolina Tulsa, Rogers Metaire, LA Jacksonville, FL Montgomery Baton Rouge 3000 Access Points 300 Sites 100 + Countries 8461_07_2003_c10 Helsinki, Copenhagen © 2003 Cisco Systems, Inc. All rights reserved. Madrid Luxembourg, Stuttgart Beijing (*) Athens Tokyo (*) Barcelona Hong Kong Bangkok Riyadh Bryanston, South Africa Akasaka Fukuoka Nagoya Singapore (*) New Delhi Adelaide Melbourne Perth Brisbane Auckland Wellington Sydney (CM 3.0) (North Sydney, Chattswood) 20 Storage Networking 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 21 Executive Summary • Availability More ports to support multiple paths between servers and storage • Data center crowding Storage to be located in another part of the floor Primary storage to be located in nearby data centers • Cost reduction Increasing storage frame usage by sharing each storage frame among many servers and applications • Improved provisioning speed Upgrade frame firmware without affecting application availability • Improved performance A fully non-blocking architecture Intelligent traffic management 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 22 Storage Networking • 1st pair of MDS9509s off of the production line used to support mission-critical ERP environment in January, 2003 • ~74 Cisco MDS switches deployed globally at Cisco • ~6000 ports in production globally • Single 2500 port SAN in production in RTP (spanning multiple datacenters) • iSCSI used to support several mid-range applications • FCIP being researched for SAN extension between SJ and RTP – will be implemented by end of Q4FY04 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 23 Storage Networking at Cisco • 90% DAS environment until 1999 • Storage per client/per application. Cost high, flexibility none. • Dozens of small SAN islands • More units to manage • Consolidated SAN per datacenter, still DAS & SAN islands in some areas • V-SAN consolidation • Storage Networking World Best Practice Award for MDS implementation in ERP environment • All Cisco MDS in Data Center • More effective use of hardware, cost optimized, higher flexibility. • Consolidated storage management 3 Years Ago 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. Today • Flexible Data Center • Utility level storage through SLA management • Virtualization of resources, automated, on demand provisioning • Single SAN per site to Single SAN Worldwide Leading to… 24 Storage Networking at Cisco Today ERP at Cisco: V-SAN implemented • 640 port SAN • Two Fabrics: 2 Cisco MDS 9509 SAN Switches each • 33 Host • 5 VSANS • 38 Storage Frames • >350 Terabytes es t y b ra 01 e t 0. n 0 o 10 x $ Milli $1 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. DR VSAN 1 DR VSAN 2 Backup Development VSAN 1 VSAN Development VSAN 2 25 Executive Summary – Best Practices in Storage 5000 Systems Implementation Spring 2004 4000 3000 2000 1000 0 Dec-02 Dec-03 McData 8461_07_2003_c10 Brocade Jan-04 Feb-04 Cisco MDS © 2003 Cisco Systems, Inc. All rights reserved. 26 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 27 Grundverständnis: Wichtigkeit der Architektur Vision eines State-of-the-art Haus… Errichtet ohne Blueprint The Winchester Mansion Das Mystery Haus Anzahl Arbeiter Datum: 1884 147 Bauleute • 160 Zimmer • 6 Küchen • Gaslichter • 47 Kamine • 10.000 Fenster • Sprechanlagen 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. Resultat 0 Architekten • 65 Türen an Wänden • 13 Treppen unvollständig • 24 Löcher im Boden Fertigstellung – 38 Jahre Kosten - $5,5M 28 Total Cost of Ownership 1 Flugzeugtyp 1 Trainingsprogramm 1 Set of Spareparts 1 Maintenance Programm 1 Menü 8461_07_2003_c10 © 2003 Cisco Systems, Inc. All rights reserved. 29