1 © 2001, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Catalyst 6500 Series IDSM-2 Service Module for the Catalyst 6500 Chassis.

Slides:



Advertisements
Similar presentations
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Confidential 1 Cisco 7500 to Cisco 7200 Technical Migration Program PROMOTION December 2006.
Advertisements

What’s new in this release? September 6, Milestone Systems Confidential Milestone’s September release 2012 XProtect ® Web Client 1 Connect instantly.
Cisco Confidential © 2013 Cisco and/or its affiliates. All rights reserved. 1 Unity Connection Qualification for Prime Collaboration Development Release.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Using the Cisco Technical Support & Documentation Website for Voice Issues.
NETOP REMOTE CONTROL What’s new in version 9.5? DECEMBER 09 NETOP REMOTE CONTROL1.
Implementing a Highly Available Network
1 © 2005 Cisco Systems, Inc. All rights reserved. Cisco Confidential Session Number Presentation_ID Cisco Unified Wireless Network Webinar Commercial WLAN.
© 2011 Cisco Systems, Inc. All rights reserved. Cisco Confidential Presentation_ID 1 Cisco Connected Energy Vision Utility Operations Connected Buildings.
© 2003, Cisco Systems, Inc. All rights reserved. FWL 1.0— © 2003, Cisco Systems, Inc. All rights reserved.
© 2006 Cisco Systems, Inc. All rights reserved. Implementing Secure Converged Wide Area Networks (ISCW) Module 6: Cisco IOS Threat Defense Features.
Chapter 15 Cisco Secure Intrusion Detection. Location of IDS Sensor Deployment.
Enterprise Network Security Accessing the WAN Lecture week 4.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Cisco Technical Support Presentation Using the Cisco Technical Support.
111 © 2002, Cisco Systems, Inc. All rights reserved. Presentation_ID.
presented by marathonstore.com 2003 Marathon Technology The Western NRG Team Magnum Router: Feature, Function, Benefit Applications Promotions Service.
1 © 2001, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Cisco Easy VPN Solutions Applications and Implementation with Cisco IOS.
Cisco Confidential 1 © 2011 Cisco and/or its affiliates. All rights reserved.
Network Intrusion Detection Systems Slides by: MM Clements A Adekunle The University of Greenwich.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Using the Cisco Technical Support & Documentation Website for LAN Issues.
CISCO CONFIDENTIAL – DO NOT DUPLICATE OR COPY Protecting the Business Network and Resources with CiscoWorks VMS Security Management Software Girish Patel,
© 2012 Cisco and/or its affiliates. All rights reserved. 1 CCNA Security 1.1 Instructional Resource Chapter 10 – Implementing the Cisco Adaptive Security.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Using the Cisco Technical Support & Documentation Website for Security.
1 Windows Server Roadmap Update. 2 Agenda Windows Server Market Trends A Look Ahead NAP Collaboration Announcement Windows Server 2003 R2 Product Update.
© 2003, Cisco Systems, Inc. All rights reserved. CSIDS 4.0—11-1 Chapter 11 Enterprise IDS Management.
© 2012 Cisco and/or its affiliates. All rights reserved. 1 CCNA Security 1.1 Instructional Resource Chapter 5 – Implementing Intrusion Prevention.
Barracuda Load Balancer Server Availability and Scalability.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Enterprise Network Security Accessing the WAN – Chapter 4.
Jaskaran Kalsi Assoc. Technical Manager - Europe & CE April 2009
1 © 2005 Cisco Systems, Inc. All rights reserved. Cisco Confidential Session Number Presentation_ID CCNP Updates September, 2006 Snezhy Neshkova Technical.
1 Session Number Presentation_ID © 2001, Cisco Systems, Inc. All rights reserved. Using the Cisco TAC Website for IP Routing Issues Cisco TAC Web Seminar.
1 © 2005 Cisco Systems, Inc. All rights reserved. Session Number 11911_11_2005 Managing Cisco Unified Communications Reducing costs and improving resilience.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 6 Switch Configuration.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 6 Switch Configuration.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Thanks for joining! We will begin in just a few minutes as more people.
IPv6 Network Assessor 111 © 2005 Cisco Systems, Inc. All rights reserved. Susan Shareshian Solutions Manager, Cisco Systems, Inc.
Dell ProSupport: Networking support capabilities update
1 SCO Update Service Kerri Wallach, SCO Services Product Manager April 16, 2003.
1 © 2002, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Key differences between Cisco Unity Connection and Cisco Unity Manjit.
© 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Confidential. For Channel Partners only. Do not distribute. C
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicBSCI Module 6 1 Basic Switch Concept Prepared by: Akhyari Nasir Resources form Internet.
1 © 2001, Cisco Systems, Inc. All rights reserved. Cisco Info Center for Security Monitoring.
1 Course Number Presentation_ID © 2001, Cisco Systems, Inc. All rights reserved. External User Security Model (EUSM) for SNMPv3 draft-kaushik-snmp-external-usm-00.txt.
Chapter 5: Implementing Intrusion Prevention
© 2006 Cisco Systems, Inc. All rights reserved. Cisco IOS Threat Defense Features.
© 2006 Cisco Systems, Inc. All rights reserved. Implementing Secure Converged Wide Area Networks (ISCW) Module 6: Cisco IOS Threat Defense Features.
1 Session Number Presentation_ID © 2001, Cisco Systems, Inc. All rights reserved. Using the Cisco TAC Web Site for LAN Switching Issues Cisco TAC Web Seminar.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
1 Session Number Presentation_ID © 2002, Cisco Systems, Inc. All rights reserved. Using the Cisco TAC Website for Security and Virtual Private Network.
© 2006 Cisco Systems, Inc. All rights reserved. Implementing Secure Converged Wide Area Networks (ISCW) Module 6: Cisco IOS Threat Defense Features.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 Security Management Update.
1 © 2006 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Using the Cisco Technical Support & Documentation Website for IP Routing.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 2 Module 4 Learning About Other Devices.
1 Session Number Presentation_ID © 2002, Cisco Systems, Inc. All rights reserved. Using the Cisco TAC Web Site for Network Security and Virtual Private.
What’s New in Fireware v WatchGuard Training.
1 © 2004 Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Cisco Technical Support Seminar Using the Cisco Technical Support Website.
MAG SERIES JUNOS PULSE GATEWAYS April Copyright © 2011 Juniper Networks, Inc. AGENDA 1.Overview of MAG Series 2.MAG Series Models.
Model: DS-600 5x 10/100/1000Mbps Ethernet Port Centralized WLAN management and Access Point Discovery Manages up to 50 APs with access setting control.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY Intrusion Detection and Incidence Response Course Name – IT Intrusion Detection and Incidence.
1 © 2001, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Catalyst 6500 Series IDSM-2 Service Module for the Catalyst 6500 Chassis.
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 2 v3.1 Module 2 Introduction to Routers.
What’s New in Fireware v
© 2002, Cisco Systems, Inc. All rights reserved.
© 2002, Cisco Systems, Inc. All rights reserved.
Cisco ASA 5500 Series Transition and Migration Guide for Distributors
IDSM-2 Service Module for the Catalyst 6500 Chassis
Campus Communications Fabric
Getting Started with LANGuardian
Internet Advancement 2.0 May 29, 2019
Presentation transcript:

1 © 2001, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Catalyst 6500 Series IDSM-2 Service Module for the Catalyst 6500 Chassis Features, Management, Pricing & Comparisons to IDSM-1 Ver 17 Jay Bazzinotti Product Manager April, 2003 IDSM-2

222 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM-2 Module for the Catalyst 6500 Chassis Catalyst-integrated security module delivering full-featured intrusion protection Industry-exclusive product providing high speed threat protection Promiscuous operation with no impact on Catalyst performance or reliability Common code base for consistent features and signature updates Enhanced management simplifying deployment

333 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM Modules IDSM-1IDSM-2 Performance120Mbps600Mbps* OrderableNowFebruary 2003 AvailabilityNowMarch 2003 Part NumberWS-X6381-IDS, or WS- X6381-IDS= WS-SVC-IDS2-BUN-K9, or WS-SVC-IDS2BUNK9= UgradeableNo (swap only to IDSM-2) No Code Base3.0.5 (last feature release) 4.0 (first feature release) List Price*$14,995$29,995 Covered by Chassis Service Pricing YesNo, pricing separate (see later in preso) * 600Mbps using 450 byte HTTP packets, with 4000 new TCP cps and 500K concurrent connections at 100% alarm rate Catalyst 6500 Series IDSM-1 EOS on April 21, We are no longer taking orders

444 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM Features Supported IDSM-1IDSM-2 SPAN/RSPANYes VACL CaptureYes ShunningYes IEVYesYes IDMNoYes TCP ResetsNoYes IP LoggingNoYes CLINoYes Signature Micro EnginesNoYes Same Code as AppliancesNoYes Fabric EnabledNoYes Event retrieval methodPostOffice (push)RDEP (pull) Performance120Mbps600Mbps Slot Size (form factor)1 RU Local Event Store100,000 EventsNot accessible, retrieved

555 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM-2 Service Pricing ProductService P/nSNTSNTESNTPOSOSEOSP WS-SVC-IDS2-K9 CON-XXX-WS- IDSM2-K9 $2,000$2,899$3,199$2,500$3,624$3,999 Service modules will no longer be covered by the chassis These are the annual service price charges per module Service Pricing DOES NOT apply to IDSM-1! SNT = 8 X 5 X Next Business Day SNTE = 8 X 5 X 4 Hour service SNTP = 24 X 7 X 4 Hour service OS = 8 X 5 X Next Business Day service Onsite OSE = 8 X 5 X 4 Hour service Onsite OSP = 24 X 7 X 4 Hour service Onsite Service Key: Appliance Service Pricing

666 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM Supervisor OS Version Support IDSM-1 (120M) IDSM-2 (600M) Cat OS/Hybrid 6.1(1)7.6(1) Apr ‘03 Native (IOS) (first) 12.1(8a)EX12.1(19)E May ‘03 Supervisor IDSM-2 Catalyst 6503 Note: A special IOS release 12.2(14)SY will be available in mid-April to support all mods but CSM and SSL 7.5(1) will work on the IDSM-2 but there is a PSIRT – use 7.6(1)

777 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID Service Module Interoperability FWSMNAM-1/2IDSM-2VPNSM FCSNov ‘02Aug ‘02May ‘03Dec ‘03 1 st IOS12.1(13)E 12.1(19)E (May) Tetons 1 st CAT OS 7.5(1)7.3(1)7.6(1) (now) Kissimee 7.7(1) Interop- erability NAMNAM+ FWSMNAM+FWSM+ IDSM- 2+SSL+CSM NAM+FWSM+ IDSM- 2+VPNSM Available Now Mar ’032H CY ‘03 Recommended to Use Supervisor 2 MSFC2 for Best Results Note: A special IOS release 12.2(14)SY will be available in mid-April to support all mods but CSM and SSL

888 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM-2 Supervisor Support SupervisorCAT OS/Hybrid (7.5(1)) Native (IOS) 12.1(19)E Sup1 No Support Sup1A ApprovedNo Support Sup1A/PFC ApprovedNo Support Sup1A/MSFC1 No SupportApproved Sup1A/MSFC2 ApprovedNot Tested Sup2 ApprovedNot Tested Sup2/MSFC2 Approved Rank of installed base: 1) Sup1A; 2) Sup1A/MSFC1; 3) Sup1A/MSFC2; 4) Sup2/MSFC2 IOS 12.2(14)SY supports only Sup 2 Msfc 2

999 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM Management Techniques * Requires download from CCO to get R1.1 IDSM-1IDSM-2PriceLocationRevisionUsers/ Devices IDM (config) No Support YesIncludedOn module browser4.01 device IEV (monitor) Yes IncludedLoaded on W2K device/includes MySQL database 4.03 devices VMS Yes $8,000+Separate Bundle with Management Center (MC) and Security Monitor 2.1 includes IDSMC and Sec Mon R1.0* 20 users SNMP No N/A Post-4.0 feature N/A Unix Director YesNo$5000HP Openview (Solaris in ~Jun ’03) 3.5No limit CSPM YesNo$2000 (EOS) Win NT, config, monitoring, alarm monitor, notification 2.3.3iMultiple

10 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM-2 Third Party Support & Misc Monitoring - Netforensics - Tivoli - Red Siren Configuration - No one yet… No limit to number of modules in chassis No limit to number of VLANs Increasing number of VLANs for IDS has no impact on CAT performance MPLS is not supported

11 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID Switch Sensor Catalyst 6500 IDS Module (IDSM-2) Key Features 5x performance of IDSM-1 Lock-Step code and sig updates with standalone units (Release 4.0) Supports TCP Resets Supports CLI Supports IP Logging Supports VACL Capture, SPAN/RSPAN/ERSPAN Integrated with IDM/IEV NTP IDSM-2

12 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID IDSM-1 to IDSM-2 Upgrade Program Customers with IDSM-1 can upgrade to IDSM-2 by swap under an aggressive trade-in program Program Details – Standard customer discount off IDSM-2 – Then take $10,000 off the result – Final number is customer price – Customer MUST return IDSM-1 (cannot be redeployed) – Program ends December, 2003 – Cannot be combined with other IDSM-2 promotions IDSM-1 IDSM-2

13 © 2001, Cisco Systems, Inc. All rights reserved. Presentation_ID Reasons to Upgrade from IDSM-1 Performance - IDSM-2 proves 5x performance uplift Same code as Appliance reducing dev time, training, implementation, lock step sig updates IDSM-1 EOS April, R4.0 and beyond cannot run on IDSM-1, it is locked at R3.0.5 so no advanced feature development is possible New management capabilities such as IDM and MC do not support IDSM-1 and will not support it Many new features supported in IDSM-2 such as CLI, SME, Fabric, RDEP, TCP Resets, more