Avaya Data Make no mistake Avaya is IN

  • Slides: 74
Download presentation
Обзор линейки Avaya Data “Make no mistake, Avaya is IN the Data Business” Todd

Обзор линейки Avaya Data “Make no mistake, Avaya is IN the Data Business” Todd Abbott SVP Global Sales & Marketing & President, Field Operations, Avaya Павел Белкин Belkin_p@rrc. ru Инженер по решениям Авайя www. rrc. ru 1

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management Филиалы и удаленные офисы Кампусные сети Цо. Д Инвестиции в продукты передачи данных 3 3

Общие принципы дизайна Эффективное ценовое решение для филиалов Гибкое и масштабируемое Высокопроизводительная сеть решение

Общие принципы дизайна Эффективное ценовое решение для филиалов Гибкое и масштабируемое Высокопроизводительная сеть решение для сетей среднего большого предприятия размера ERS 2500 GE Uplinks IST ERS 5000 -Stack – Cluster Link Aggregation Group (Multi-Link-Trunk) ERS 4500 G/5000 10 G or GE Uplinks 10 GE or GE Uplinks IST ERS 8300 – Cluster ERS 5000 - Cluster ERS 8600 – Cluster VSP 9000 - Cluster IST = Inter Switch Trunk FE GE 10 GE

Ethernet Routing Switch 8600/8800 компоненты FE/GE/10 G Modules 8003 R Fiber GE/10 G Modules

Ethernet Routing Switch 8600/8800 компоненты FE/GE/10 G Modules 8003 R Fiber GE/10 G Modules 8692 Switch Fabric/CPU 8010 8006 Topic 2: Campus Solution: Core Switches Built-in resiliency 8895 Switch Fabric/CPU 15

Ethernet Routing Switch 8800 RS модули (релиз 5. 0 или выше) 8612 XLRS –

Ethernet Routing Switch 8800 RS модули (релиз 5. 0 или выше) 8612 XLRS – 12 -port XFP 10 G LAN 8692 SF – Switch Fabric and CPU 720 -Gbps Architecture 8634 XGRS – 2 -port 10 -Gb. E LAN XFP + 24 -port 100/1000 SFP + 8 -port 10/1000 8648 GTRS – 48 -port 10/1000 8648 GBRS – 48 -port 100/1000 SFP High-speed fan trays 8005 AC Dual Input 1500 -W PS 8005 AC/DC 1500 -W PS Topic 2: Campus Solution: Core Switches 16

Ethernet Routing Switch 8300 уникальное позиционирование – Edge/Core • Высокоскоростная коммутация и маршрутизация •

Ethernet Routing Switch 8300 уникальное позиционирование – Edge/Core • Высокоскоростная коммутация и маршрутизация • – RIP, OSPF, PIM-SM, VRRP – 720 -Gbps switching architecture – Switch clustering (SMLT, RSMLT) – обе Switch Fabrics активны – 802. 3 af Po. E – 310 -345 Mpps forwarding • – TDR (cable tester) Высокая плотность I/O модулей – Advanced filtering and Qo. S – 10/100 non-Po. E и Po. E – 10/1000 non-Po. E и Po. E Возможности – VRF-Lite (w/ 8394 SF) • 6 -slot or 10 -slot chassis – 1 -Gb. E SFP – 10 -Gb. E LAN XFP • Избыточность – N+1 блоки питания (доступны AC и DC) – Все компоненты поддерживают горячую замену Topic 2: Campus Solution: Core Switches 17

Ethernet Routing Switch 8300 компоненты FE/GE(+Po. E) Modules Fiber GE/10 G Modules 8310 8393

Ethernet Routing Switch 8300 компоненты FE/GE(+Po. E) Modules Fiber GE/10 G Modules 8310 8393 Switch Fabric 8394 Switch Fabric 8306 Built-in resiliency Topic 2: Campus Solution: Core Switches 18

Ethernet Routing Switch 8300 модули Switch Fabric and I/O Modules Module Ports 8393 SF

Ethernet Routing Switch 8300 модули Switch Fabric and I/O Modules Module Ports 8393 SF 8 8394 SF 2 8348 TX-PWR 8324 GTX Type Density IPv 4 Hardware 208 -Gbps Switching Fabric with 8 SFP ports 16 48 232 -Gbps Switching Fabric with 2 10 -Gb. E XFP ports 48 -port 10/100 I/O module 4 384 48 24 48 -port 10/100 w/ Po. E I/O module 24 -port 10/1000 I/O module 384 192 8394 SF 2 8348 GTX 48 VRF and IPv 6 ready Hardware 232 -Gbps Switching Fabric with 2 10 -Gb. E XFP ports 48 -port 10/1000 I/O module 8348 GTX-PWR 48 48 -port 10/1000 w/ Po. E I/O module 384 8348 GB 48 48 -port SFP I/O module 384 8308 XL 8 8 -port 10 Gb. E XFP I/O module 64 8308 XL Topic 2: Campus Solution: Core Switches 8394 SF 8393 SF 4 384 8348 GTX-PWR 19

ERS 2500 Series Po. E and Convergence * Для стекирования нужна лицензия на каждый

ERS 2500 Series Po. E and Convergence * Для стекирования нужна лицензия на каждый ERS SFP Port Transceivers or mini -GBIC or SFP

ERS 4500 Series Stackable Switches Topic 3: Campus Solution: Edge Switches

ERS 4500 Series Stackable Switches Topic 3: Campus Solution: Edge Switches

ERS 5000 Series Stackable Switches Topic 3: Campus Solution: Edge Switches 24

ERS 5000 Series Stackable Switches Topic 3: Campus Solution: Edge Switches 24

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management Филиалы и удаленные офисы Кампусные сети Цо. Д Инвестиции в продукты передачи данных 29 29

WLAN 8100 Release 1 WAP 8120 Ø Полное решение для 802. 11 n Ø

WLAN 8100 Release 1 WAP 8120 Ø Полное решение для 802. 11 n Ø WLAN точки доступа 8120 • 802. 11 n • Dual radio WC 8180 -16 L Ø WLAN контроллер 8180 Ø WLAN управляющее ПО 8100 • Support for 64 (до 512 lic) APs • Lower cost option for small branch deployments • Support for 16 (до 64 lic) APs WLAN Management Software 8100 Ø Унифицированное управление Ø Большое количество приложений Ø Устойчивая поддержка Vo. WLAN * Delivered via software in future release 30

WLAN 8100 емкость (релиз 1) Parameter Domains WC 8180 -16 L WAP 8120 Radio

WLAN 8100 емкость (релиз 1) Parameter Domains WC 8180 -16 L WAP 8120 Radio Notes Controllers 32 N/A N/A 32 controllers per domain WMS supports 2, 000 APs per domain in this release. APs 4, 000 256 16 N/A 2 Mobility Users 10, 000 400 200 Mobility VLANs* 4094 248 248 N/A Tunnel N/A 1, 000 1 N/A Virtual APs N/A N/A 32 16 16 per Radio License Capacity (APs) 4, 000 64 16 N/A WMS supports 2, 000 in this release. *See note at bottom * Note for MUs on Captive Portal - There can be at most 2048 authenticated clients from peers - so this means at any time only 2048 clients are synched up and capable of roaming across controllers. But there can be 32 x 1024 clients logged in at any time across individual controllers, with the last 2048 synched across the domain. Topic 2: Wireless Networking 33

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management Филиалы и удаленные офисы Кампусные сети Цо. Д Инвестиции в продукты передачи данных 36 36

Avaya Secure Router 1000 Series Topic 3: Unified Branch 40

Avaya Secure Router 1000 Series Topic 3: Unified Branch 40

Обзор SR 2330 4 x Fast Ethernet Ports Ø Три слота для small модулей

Обзор SR 2330 4 x Fast Ethernet Ports Ø Три слота для small модулей Ø Модули совместимы с SR 4134 Ø 8 встроенных Ethernet порта: Ø 4 x 10/100 3 x Small Module Slots IP Router Qo. S 4 x Gigabit Ethernet Ports WAN Features IPsec Branch VPN Firewall & Security Convergenceready Ø Ø Ø 4 x Gig. E (2 медных и 2 SFP) 1 RU форм-фактор Слот Compact Flash Все модули поддерживают «горячую замену» Типы модулей Ø 1 -port & 2 -port T 1/E 1 Ø 2 -port ISDN Ø 2 -port Serial Ø 2 -port & 4 -port FXS Ø 2 -port & 4 -port FXO Ø 1 -port ADSL 2+

Обзор SR 3120 2 -слотовое 1 RU шасси 2 Fast Ethernet порта SR 3120

Обзор SR 3120 2 -слотовое 1 RU шасси 2 Fast Ethernet порта SR 3120 2 RJ-45 порта Console/AUX AC или DC блоки питания Compact Flash & USB Memory Интерфейсные модули: – 8 -port and 4 -port E 1/T 1 Interface Modules – 4 -port and 2 -port serial – 1 port DS 3 c/ DS 3 IP Router WAN Features Firewall & Security Qo. S IPsec Branch VPN

Модули для SR 4134 • Большие (Large) – 44 -Port Gigabit Ethernet – Hot-swap

Модули для SR 4134 • Большие (Large) – 44 -Port Gigabit Ethernet – Hot-swap • Средние (Medium) – 10 –Port Gigabit Ethernet – Hot-swap – 24 -port FE/Po. E (Requires Power Supply) – 8 x T 1/E 1 – 1 x. DS 3 , 1 XCT 3 – 1 X HSSI • Малые (Small) – 1 -Port and 2 -Port T 1/E 1 SM (PRI) (Can be configured as ISDN PRI) – 1/2 - Port BRI (U&S/T) – 1/2 -Port Serial SM Topic 3: Unified Branch 44

Avaya Secure Router 4134 (used as AG) выживающий SIP шлюз Topic 3: Unified Branch

Avaya Secure Router 4134 (used as AG) выживающий SIP шлюз Topic 3: Unified Branch 47

Secure Routers емкость интерфейсов (часть 1) INT /PRODUCT SR 1000 SR 2330 SR 3120

Secure Routers емкость интерфейсов (часть 1) INT /PRODUCT SR 1000 SR 2330 SR 3120 AG 2330 SR 4134 (+AG) FXS 12 12 16 FXO 12 12 16 2 72 ETH BT 10/100 2 2 2 ETH BT 10/100 POE ETH BT 10/1000 72 x x SFP 1 Gig 44 6 +2 DSPs (PVMs) 64 DSPs 128 DSPs VPN/IPSEC 100* none 1000* AG 2330 can be converted to an SR 2330 with a license code and Router Software * Requires crypto cards Topic 3: Unified Branch

Secure Routers емкость интерфейсов (часть 2) Interface SR 1000 SR 2330 SR 3120 AG

Secure Routers емкость интерфейсов (часть 2) Interface SR 1000 SR 2330 SR 3120 AG 2330 SR 4134 (+AG) T 1/E 1 4 6 16 6 24+7 Clear Channel T 3 2 6 Channelized T 3 2 3 ISDN BRI S/T x 3 x 7 ISDN BRI /U 2 7 SERIAL 8 48 + 7 HSSI x 6 4 6 3 ADSL/ADSL 2 4 G SHDSL 7 VDSL 4 Analog Modem 4 Topic 3: Unified Branch

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management Филиалы и удаленные офисы Кампусные сети Цо. Д Инвестиции в продукты передачи данных 50 50

Avaya’s Security Vision • Securing wired connections with fine-grained controls for compliance: – Dynamic

Avaya’s Security Vision • Securing wired connections with fine-grained controls for compliance: – Dynamic VLANs with role-based access • Securing wireless across enterprise campuses: – Authenticated wireless by way of 802. 1 X – Removing client configuration complexity • Consolidating RADIUS, centralizing authentication and authorization services with rich policies: – Single set of controls – Simple audit and reporting • Delegated guest management across all network access methods: – Visitor access, contractor access – Events and conferences Topic 1: Network Access Control

Network Access Control Portfolio Ignition Guest Manager Ignition Compliance Portal Core Application Avaya Ignition

Network Access Control Portfolio Ignition Guest Manager Ignition Compliance Portal Core Application Avaya Ignition Server Avaya VPN Gateway Eo. S NAP Integration Module Ignition Analytics *Third-party logos and content belong to the respective owners. Avaya is not an owner or licensee of the same. Topic 1: Network Access Control 3050 Appliance 3070 Appliance Virtual Appliance

Identity Engines - Overview • A Network Access Control security solution delivering best-in-class policy

Identity Engines - Overview • A Network Access Control security solution delivering best-in-class policy management across wired, wireless, and VPN networks. • Standards-based vendor-agnostic solution. • Supports granular, hierarchical policies based on multiple attributes including user identity, health of device, day of the week, time of day, and access method. • Delivers an enterprise-wide guest management solution and reporting capabilities. • Out-of-band solution for maximum scalability and cost effectiveness. • Built from the ground up as an open and fully interoperable solution : – 802. 1 X, RADIUS, XACML (e. Xtensible Access Control Markup Language), Trusted Network Connect (TNC), and Microsoft Network Access Protection (NAP) Topic 1: Network Access Control

Avaya Identity Engines Portfolio Components • Ignition Server – Centralized policy engine that performs

Avaya Identity Engines Portfolio Components • Ignition Server – Centralized policy engine that performs user and context-based authentication and authorization for clients attempting network access. • Ignition Guest Manager – Web portal allows Front Desk staff to create temporary guest user accounts. – Windows server software application. • Compliance Portal – Performs clientless health assessments for unmanaged devices to ensure that endpoints comply with security policies. • Identity Engines NAP Integration Module – Simplified endpoint health and posture checking for employees and managed devices. – Leverages the readily available Windows client, ensuring easy and simple support for users. • Ignition Analytics – Delivers at-a-glance reports highlighting user information, failed authentications, usage summaries, and so on. – Web services reporting system. Topic 1: Network Access Control

Identity Engines Features and Capabilities • Robust policy creation and health checking • Audit

Identity Engines Features and Capabilities • Robust policy creation and health checking • Audit logging • Centralized policy decision • Multi-vendor support • Directory integration • AAA server • Support for virtual groups – Authentication • Quarantine and repair of infected devices – Authorization • Ability to dynamically assign VLANs and filters • Comprehensive reporting and analytics • Guest management • Compliance and health checking • Reporting and analytics – Accounting • 802. 1 X – Authentication/Authorization • MAC – Authentication/Authorization • TACACS+ – Protocol used by Cisco switches *The content on this page may be confidential and belong to the respective owners. Avaya is not an owner or licensee of the same. Topic 1: Network Access Control

The Old Way vs. The Avaya Way Complex architecture with multiple AAA servers and

The Old Way vs. The Avaya Way Complex architecture with multiple AAA servers and network overlays Topic 1: Network Access Control Simplified authenticated network architecture with centralized policy decision provided by the Identity Engines Ignition Server

Avaya's Identity Engines in Action Ignition NAP Integration Module Policy Authors and Administrators Identity

Avaya's Identity Engines in Action Ignition NAP Integration Module Policy Authors and Administrators Identity Information Sources: Ø Active Directory Ø Novell e. Directory Ø Sun Directory Wired Ignition Dashboard Ø Oracle Internet Directory Ø LDAP Ø Kerberos Wireless Ø RSA Secur. ID VPN Ignition Server Ø RADIUS and “other” tokenbased services Firewall Corporate Resources Ignition Guest Manager Front Desk Personnel Topic 1: Network Access Control Ignition Analytics Audit and Compliance Officers

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management

Портфель Avaya Data Solutions Ethernet Switching Wireless Networking Unified Branch Access Control Unified Management Филиалы и удаленные офисы Кампусные сети Цо. Д Инвестиции в продукты передачи данных 58 58

Avaya Management Interfaces ERS CLI Avaya CLI Для управления сетью Enterprise Device Manager Configuration

Avaya Management Interfaces ERS CLI Avaya CLI Для управления сетью Enterprise Device Manager Configuration and Orchestration Manager Topic 2: Network Management Unified Communications Management

Console Interface Menus • пример CLI – ERS 5000 • ERS 2500 и ERS

Console Interface Menus • пример CLI – ERS 5000 • ERS 2500 и ERS 4500 поддерживают опцию «быстрый старт» Topic 2: Network Management

Enterprise Device Manager Functionality On-box vs. Off-box Topic 2: Network Management

Enterprise Device Manager Functionality On-box vs. Off-box Topic 2: Network Management

Unified Communications Management Avaya's Solution Topic 2: Network Management

Unified Communications Management Avaya's Solution Topic 2: Network Management