Presentation is loading. Please wait.

Presentation is loading. Please wait.

IDSM-2 Service Module for the Catalyst 6500 Chassis

Similar presentations


Presentation on theme: "IDSM-2 Service Module for the Catalyst 6500 Chassis"— Presentation transcript:

1 IDSM-2 Service Module for the Catalyst 6500 Chassis
Catalyst 6500 Series Features, Management, Pricing & Comparisons to IDSM-1 Ver 17 Jay Bazzinotti Product Manager April, 2003 IDSM-2

2 IDSM-2 Module for the Catalyst 6500 Chassis
Catalyst-integrated security module delivering full-featured intrusion protection Industry-exclusive product providing high speed threat protection Promiscuous operation with no impact on Catalyst performance or reliability Common code base for consistent features and signature updates Enhanced management simplifying deployment

3 We are no longer taking orders
IDSM Modules IDSM-1 IDSM-2 Performance 120Mbps 600Mbps* Orderable Now February 2003 Availability March 2003 Part Number WS-X6381-IDS, or WS-X6381-IDS= WS-SVC-IDS2-BUN-K9, or WS-SVC-IDS2BUNK9= Ugradeable No (swap only to IDSM-2) No Code Base 3.0.5 (last feature release) 4.0 (first feature release) List Price* $14,995 $29,995 Covered by Chassis Service Pricing Yes No, pricing separate (see later in preso) Catalyst 6500 Series * 600Mbps using 450 byte HTTP packets, with new TCP cps and 500K concurrent connections at 100% alarm rate IDSM-1 EOS on April 21, 2003. We are no longer taking orders

4 IDSM Features Supported
SPAN/RSPAN Yes VACL Capture Shunning IEV IDM No TCP Resets IP Logging CLI Signature Micro Engines Same Code as Appliances Fabric Enabled Event retrieval method PostOffice (push) RDEP (pull) Performance 120Mbps 600Mbps Slot Size (form factor) 1 RU 1RU Local Event Store 100,000 Events Not accessible, retrieved

5 IDSM-2 Service Pricing Product Service P/n SNT SNTE SNTP OS OSE OSP
WS-SVC-IDS2-K9 CON-XXX-WS-IDSM2-K9 $2,000 $2,899 $3,199 $2,500 $3,624 $3,999 Service modules will no longer be covered by the chassis These are the annual service price charges per module Service Pricing DOES NOT apply to IDSM-1! Appliance Service Pricing SNT = 8 X 5 X Next Business Day SNTE = 8 X 5 X 4 Hour service SNTP = 24 X 7 X 4 Hour service OS = 8 X 5 X Next Business Day service Onsite OSE = 8 X 5 X 4 Hour service Onsite OSP = 24 X 7 X 4 Hour service Onsite Service Key:

6 IDSM Supervisor OS Version Support
IDSM-1 (120M) IDSM-2 (600M) Cat OS/Hybrid 6.1(1) 7.6(1) Apr ‘03 Native (IOS) (first) 12.1(8a)EX 12.1(19)E May ‘03 Note: A special IOS release 12.2(14)SY will be available in mid-April to support all mods but CSM and SSL 7.5(1) will work on the IDSM-2 but there is a PSIRT – use 7.6(1) Supervisor IDSM-2 Catalyst 6503

7 Service Module Interoperability
FWSM NAM-1/2 IDSM-2 VPNSM FCS Nov ‘02 Aug ‘02 May ‘03 Dec ‘03 1st IOS 12.1(13)E 12.1(19)E (May) Tetons 1st CAT OS 7.5(1) 7.3(1) 7.6(1) (now) Kissimee 7.7(1) Interop-erability NAM NAM+ FWSM NAM+FWSM+IDSM-2+SSL+CSM NAM+FWSM+ IDSM-2+VPNSM Available Now Mar ’03 2H CY ‘03 Recommended to Use Supervisor 2 MSFC2 for Best Results Note: A special IOS release 12.2(14)SY will be available in mid-April to support all mods but CSM and SSL

8 IDSM-2 Supervisor Support
CAT OS/Hybrid (7.5(1)) Native (IOS) 12.1(19)E Sup1 No Support Sup1A Approved Sup1A/PFC Sup1A/MSFC1 Sup1A/MSFC2 Not Tested Sup2 Sup2/MSFC2 Rank of installed base: 1) Sup1A; 2) Sup1A/MSFC1; 3) Sup1A/MSFC2; 4) Sup2/MSFC2 IOS 12.2(14)SY supports only Sup 2 Msfc 2

9 IDSM Management Techniques
* Requires download from CCO to get R1.1 IDSM-1 IDSM-2 Price Location Revision Users/ Devices IDM (config) No Support Yes Included On module browser 4.0 1 device IEV (monitor) Loaded on W2K device/includes MySQL database 3 devices VMS $8,000+ Separate Bundle with Management Center (MC) and Security Monitor 2.1 includes IDSMC and Sec Mon R1.0* 20 users SNMP No N/A Post-4.0 feature Unix Director $5000 HP Openview (Solaris in ~Jun ’03) 3.5 No limit CSPM $2000 (EOS) Win NT, config, monitoring, alarm monitor, notification 2.3.3i Multiple

10 IDSM-2 Third Party Support & Misc
Monitoring - Netforensics - Tivoli - Red Siren Configuration - No one yet… No limit to number of modules in chassis No limit to number of VLANs Increasing number of VLANs for IDS has no impact on CAT performance MPLS is not supported

11 Switch Sensor Catalyst 6500 IDS Module (IDSM-2)
Key Features 5x performance of IDSM-1 Lock-Step code and sig updates with standalone units (Release 4.0) Supports TCP Resets Supports CLI Supports IP Logging Supports VACL Capture, SPAN/RSPAN/ERSPAN Integrated with IDM/IEV NTP

12 IDSM-1 to IDSM-2 Upgrade Program
Customers with IDSM-1 can upgrade to IDSM-2 by swap under an aggressive trade-in program Program Details Standard customer discount off IDSM-2 Then take $10,000 off the result Final number is customer price Customer MUST return IDSM-1 (cannot be redeployed) Program ends December, 2003 Cannot be combined with other IDSM-2 promotions IDSM-2

13 Reasons to Upgrade from IDSM-1
Performance - IDSM-2 proves 5x performance uplift Same code as Appliance reducing dev time, training, implementation, lock step sig updates IDSM-1 EOS April, R4.0 and beyond cannot run on IDSM-1, it is locked at R3.0.5 so no advanced feature development is possible New management capabilities such as IDM and MC do not support IDSM-1 and will not support it Many new features supported in IDSM-2 such as CLI, SME, Fabric, RDEP, TCP Resets, more


Download ppt "IDSM-2 Service Module for the Catalyst 6500 Chassis"

Similar presentations


Ads by Google