Presentation is loading. Please wait.

Presentation is loading. Please wait.

MOTOROLA SOLUTIONS WIRELESS LAN WiNG5 Update.

Similar presentations


Presentation on theme: "MOTOROLA SOLUTIONS WIRELESS LAN WiNG5 Update."— Presentation transcript:

1 MOTOROLA SOLUTIONS WIRELESS LAN WiNG5 Update

2 AND 2800 PATENTS! A CULTURE OF INNOVATION
COMMERCIAL SPREAD SPECTRUM WLAN WIRELESS LAN SWITCH 802.11n RF DESIGN TOOL BAND-UNLOCKED RADIO FOR SECURITY, TROUBLESHOOTING, ACCESS VoIP WLAN SMARTPHONE SCANNER + WiFI MOBILE COMPUTER FIXED WiMAX OUTDOOR LINK At Motorola, we have a rich history of innovation with key firsts. There were more than we could fit on this slide so I’ve picked a few that tie in to what we’re here to talk about today. Many of these inventions have created industries of their own. Handheld scanners and all the rich set of devices used for data capture today. Enterprise grade wireless LAN. Mobile computers that are widely used in many industries. The first VoWLAN smart phone. [SLIDE TRANSITION STATEMENT] And an important one here at the bottom – the invention of the first wireless LAN controller; an idea that drive a major shift in how wireless LANs were architected and deployed. MIMO POINT-TO-POINT LINK AND 2800 PATENTS! 2

3 TRUSTED, PROVEN RETAIL TRANSPORTATION MANUFACTURING HEALTHCARE HOSPITALITY EDUCATION GOVERNMENT SERVICE PROVIDER While Motorola leads the retail market in wireless we’ve also have a strong presence in a variety of other industries, each of which have their own particular need as shown above – scaleable, tough, compliant, advanced. Overall, these customers’ livelihoods – and in fact human lives -- depend on the reliability and security of the Motorola wireless network. Please contact acct team before using any customer as a reference.

4 WLAN ARCHITECTURE EVOLUTION LEAD BY MOTOROLA
INDEPENDENT STANDALONE HUB AND SPOKE CENTRALIZED WiNG DISTRIBUTED FIRST WIRELESS LANS MOBILE DATA ACCESS NETWORK OF CONVENIENCE COST EFFICIENT a/b/g WLAN FILLED NEED FOR LARGER SCALE AFFORDABLE NETWORKS BETTER QUALITY OF EXPERIENCE MORE ROBUST, AFFORDABLE WAY TO HANDLE HIGHER NETWORK DEMAND NO BOTTLENECKS SCALABLE n VoIP AND VIDEO RELIABILITY SECURITY AT THE EDGE LIMITED 11n SCALABILITY BOTTLENECK AT WIRELESS CONTROLLER LIMITED SECURITY/QoS AT THE EDGE LIMITED MOBILITY DIFFICULT TO MANAGE LIMITED SECURITY

5 MORE CHOICE OUR BROAD PORTFOLIO
INTEGRATED SERVICES CONTROLLERS RF CONTROLLERS ACCESS POINTS MANAGEMENT NX Enterprise NOC Controller 10,000 adaptive APs RFS HQ / Large 1,024 adaptive APs RFS Medium Enterprise 256 adaptive APs RFS Branch Controller 36 adaptive APs AP n, 1/2/3 radio, 3x3:2 AP n, 2 radio, 2x3:2 AP n, 1 radio, 2*2:2 AP 650 thin 11n, 1/2 radio, 2x3:2 AP 621 thin 11n, 1 radio, 2x2:2 AP 6511 Wall plate 11n, 1 radio, 2x2:2 AP 7181 High Power 11n, 2 radio, 3x3:2 AP 7161 Outdoor 11n, 2/3 radio, 3x3:2 AP 5181 Outdoor 11a/b/g, Class1/Div2 AirDefense Network Assurance Remote troubleshooting Infrastructure Management Easy central multi-vendor management Security & Compliance Advanced rogue detection, continuous monitoring with integrated Motorola APs LANPlanner Application-specific 11n network design “Please discuss with product manager before committing to roadmap/availability” Please discuss with product manager before committing to roadmap/availability.

6 WiNG 5 KEY FEATURES Scalable 11n Networks
Configuration Profiles, Plug & Play AP Deployment, Policy based Adoption Easier Provisioning 2 Air Time Fairness, Smart Band Control, Smart Load Balance, Smart RF Capacity Controls Advanced WIPS L2/ L3 Firewall 3 Built-In Security 4 Firmware Management, Centralized Syslog, RF Packet Capture, Remote Debug Centralized Management Multi-site rollouts fast & easy. WiNG5 has Capacity Controls so you get the maximum out of your Wireless network. Unmatched Security, Remote Troubleshooting 6

7 Motorola Wireless Controllers
Common Software “WiNG5” RFS7000 RFS6000 RFS4000 Large Enterprises Data Centers 1024 Adaptive APs Medium – Large Enterprises 256 Adaptive APs Performance Small Office / Branch 36 Adaptive AP 3G Wireless Backhaul 3G Wireless Backhaul Integrated n AP 500 Users 2,000 – 20,000 Users 8,000 – 96,000 Users Scalability

8 RFS4000 – Small / Branch Office
Optional n Access Point 1 x PCI Express Card Slot (3G WAN Card) 2 x USB Ports 1 x 10/100/1000 | SFP Port 5 x 10/100/1000 Ports (802.3at)

9 RFS6000 – Medium Enterprise
1 x RJ45 Console Port 1 x 10/100 Management Port 8 x 10/100/1000 Ports (802.3at) 1 x 10/100/1000 | SFP Uplink Port 1 x Expansion Module 1 x USB Port 1 x PCI Express Card Slot (3G WAN Card)

10 RFS7000 – Large Enterprise 1 x RJ45 Console Port
4 x 10/100/1000 | SFP Uplink Ports 1 x 10/100 Management Port 2 x USB Ports 1 x Compact Flash Card Slot

11 NX 9000 – Enterprise NoC Controller
Centralized Mgmt - Distributed Deployment Complete visibility of the entire distributed deployment One point of configuration, multiple points of control for 10,000 Access Points Security at the edge of the Network Each packet is inspected at Layer 2, via a Stateful firewall, IP SEC VPN, 24*7 WIPS with built-in Sensors – better control of your broadcast domain Wi-NG v5 Multi-level Resiliency with Spectrum Management Network survivability through Access Point failure, Wired Switch Failure, WAN link failure as well as Wireless Switch failure, SMART RF Management for the remote deployment Simple Installation and Remote Debugging Zero touch installation- rule based AP adoption from all locations with a centralized point for gather remote troubleshooting data

12 NX9000 CAPABILITY Features NX9000 DHCP Server Yes RADIUS Server
Data Processing No – Tunnel mode to controller cannot be supported Centralized Configuration Yes – WiNG5 like profile based configuration Troubleshooting Yes – all remote troubleshooting tools supported Site Survivability Yes – APs at remote branch can survive if controller is down

13 Common Software Code-Base
WiNG5 Software Vision Common code base (RFS4000, RFS6000, RFS7000) Feature parity across all switch platforms A issue found on one platform is fixed on all switch platforms supporting the WiNG architecture, and released on all three in the same time frame Common user experience Ability to leverage training across all platforms Common Software Code-Base RFS4000 RFS6000 RFS7000

14 WiNG Feature Highlights
Deployment Topologies Campus deployments Distributed deployments Site survivable architecture Controller less deployments for sites with <24 APs Small / Medium / Large campus and distributed deployments QoS IGMP Snooping Bandwidth Rate Limiting Multicast to Unicast Conversion WMM DSCP Marking (Wired / Wireless) Voice Call Admission Control Services and RF Management AAA Server DHCP Server Captive Portal Server Smart Band Control Smart Load Balance Air Time Fairness SMART RF Performance & Availability: 802.3ad Link Aggregation 802.1Q Trunking 802.1w/s RSTP & MSTP AP Steering Dual Images with Failover Dynamic AP Load Balancing Layer 2 Switching Layer 3 IP Routing Smart License Sharing Switch Clustering Virtual IP VLAN Pooling Security: L2 / L3 Stateful Firewall Role Based Firewall Firewall flow migration Basic WIPS Advanced WIPS with rogue termination Client blacklisting DHCP / ARP Inspection Storm Control IPSEC VPN Gateway WiNG5 Management & Troubleshooting Profile based hierarchical configuration model Zero Touch deployment Auto AP adoption policy CLI / Web UI Management Remote Packet Capture Inline Packet Capture Live view

15 AP Features/ Specifications
Dependant AP AP650 / AP621 Requires Controller Adaptive – local forwarding Onboard Captive Portal Suitable for campus deployment and large branch offices with controller Site Survivable AP AP7131 / AP6532 / AP6521 / AP6511 / AP7161 Site Survivable Adaptive – local forwarding Onboard Captive Portal / RADIUS / DHCP Server Suitable for controller-less remote branch office with < 24 APs Controller AP – one AP acts as controller for stand alone branch deployment of <24 APs Security Encryption / Decryption at the AP Basic and Advanced WIPS Sensor for AD and Advanced WIPS Stateful L2 / L3 Firewall at the AP Role Based Firewall QoS Multicast to unicast conversion SIP CAC Bandwidth rate limit RF Managament SMART RF Smart Band Control Smart Load Balance Band unlocked radios Troubleshooting Remote Packet Capture Inline Packet Capture Live View Ease of deployment L2 / L3 deployment Auto detection of controller Auto adoption of policy Deployment Topologies Intelligent packet forwarding Tunnel Mode Local Mode Full n performance with standard 802.3af Simplifies and reduces total cost of installation using standard Power-over-Ethernet (PoE). Security This unique multi-purpose device can execute and enforce the IDS/IPS security policies configured in the Motorola wireless switch, and can also be utilized as a 24x7 dedicated sensor with Wireless IPS from Motorola AirDefense solutions. Application Support Supports WMM-UAPSD and SIP Call Admission Control, for optimized VoWLAN performance, as well as video streaming and data throughput for a/b/g/n clients. Load balancing, pre-emptiveroaming and rate scaling Increases reliability and resilience of the wireless network to support mission critical applications. Voice, Locationing, Hotspots, Guest Access Out-of-the-box, the AP650 supports voice over wireless LAN (VoWLAN) services, such as QoS, which ensures toll-quality even with many simultaneous VoWLAN calls on a single access point. Locationing services over provide the ability to locate and track people or assets, and even to control access to the network or applications. In addition, its easy to provide hotspot and guest access and assure the user can only access authorized networks, sites,or applications. MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. © Motorola, Inc All rights reserved. 15 15

16 AP 650 / AP 621 FEATURES / SPECIFICATION
Deployment mode Dependant AP Radios Single & Dual band unlocked radios a/b/g/n Single band unlocked radio, a/b/g/n MIMO 2*3:2 2*2:2 DFS support Yes Max radio transmit power 24 dBm for 2.4 GHz / 22 dBm for 5GHz 27 dBm for 2.4 GHz / 23 dBm for 5 GHz Peak antenna gain 2 dBi for 2.4 GHz / 4.8 dBi for 5 GHz 3 dBi for 2.4 GHz / 6 dBi for 5 GHz Antennas Internal / External Mounting Options Ceiling & Wall mount Power 802.3af compliant 802.3af compliant / External power supply Uplink Ports 1 * 1 Gbps 802.3af Compliant Environment Indoor External antenna – plenum rated Op temp: 0 to 50 °C (-4 to 122 °F) Op temp: 0 to 40 °C (32 to 122 °F) Sensor Yes / one radio as sensor Part time scanning Yes – SMART RF and Basic WIPS Network Services Captive Portal Full n performance with standard 802.3af Simplifies and reduces total cost of installation using standard Power-over-Ethernet (PoE). Security This unique multi-purpose device can execute and enforce the IDS/IPS security policies configured in the Motorola wireless switch, and can also be utilized as a 24x7 dedicated sensor with Wireless IPS from Motorola AirDefense solutions. Application Support Supports WMM-UAPSD and SIP Call Admission Control, for optimized VoWLAN performance, as well as video streaming and data throughput for a/b/g/n clients. Load balancing, pre-emptiveroaming and rate scaling Increases reliability and resilience of the wireless network to support mission critical applications. Voice, Locationing, Hotspots, Guest Access Out-of-the-box, the AP650 supports voice over wireless LAN (VoWLAN) services, such as QoS, which ensures toll-quality even with many simultaneous VoWLAN calls on a single access point. Locationing services over provide the ability to locate and track people or assets, and even to control access to the network or applications. In addition, its easy to provide hotspot and guest access and assure the user can only access authorized networks, sites,or applications. MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. © Motorola, Inc All rights reserved. 16 16

17 AP 7131 / AP 6532 / AP 6521 FEATURES / SPECIFICATION
Deployment mode Site Survivable AP Radios Single / Dual / Tri radio Band unlocked radios - a/b/g/n Dual band unlocked radios a/b/g/n single band unlocked radios MIMO 3*3:2 2*3:2 2*2:2 DFS support Yes Max transmit power 24.5 dBm 24 dBm for 2.4 GHz / 22 dBm for 5 GHz 30 dBm for 2.4 GHz / 25 dBm for 5 GHz Antennas Internal / External Mounting Options Ceiling & Wall mount PoE 802.3af compliant for 2 radios 802.3af compliant 802.3af compliant / External power supply Uplink Ports 2 * 1 Gbps 1 * 1 Gbps Environment Indoor, External antenna plenum rated, Op temp: -20 to 50 °C Indoor, External antenna plenum rated, Op temp: 0 to 50 °C Indoor, External antenna plenum rated, Op temp: 0 to 40 °C Sensor Yes – one radio as sensor Part time scanning -SMART RF / Basic WIPS) Network Services Captive Portal, RADIUS Server, DHCP Server 3G WAN backhaul No Full n performance with standard 802.3af Simplifies and reduces total cost of installation using standard Power-over-Ethernet (PoE). Security This unique multi-purpose device can execute and enforce the IDS/IPS security policies configured in the Motorola wireless switch, and can also be utilized as a 24x7 dedicated sensor with Wireless IPS from Motorola AirDefense solutions. Application Support Supports WMM-UAPSD and SIP Call Admission Control, for optimized VoWLAN performance, as well as video streaming and data throughput for a/b/g/n clients. Load balancing, pre-emptiveroaming and rate scaling Increases reliability and resilience of the wireless network to support mission critical applications. Voice, Locationing, Hotspots, Guest Access Out-of-the-box, the AP650 supports voice over wireless LAN (VoWLAN) services, such as QoS, which ensures toll-quality even with many simultaneous VoWLAN calls on a single access point. Locationing services over provide the ability to locate and track people or assets, and even to control access to the network or applications. In addition, its easy to provide hotspot and guest access and assure the user can only access authorized networks, sites,or applications. MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. © Motorola, Inc All rights reserved. 17 17

18 AP 7161 – Outdoor AP Features & Specifications
Deployment mode Site Survivable AP Radios Single / Dual / Tri radio Band unlocked radios - a/b/g/n MIMO 2*3:2 DFS support Yes Max transmit power 26 dBm Antennas External Mounting Options Pole & Wall mount PoE 802.3at over GE1 Uplink Ports 2 * 1 Gbps Environment Outdoor IP67, corrosion resistant enclosure ASTM, B1117 salt, fog and rust resistant Op temp: -40 to 70 °C Op Humidity: 5-100% Op Altitude: 8000 Ft Wind Ratings: 150 mph (unit bracket measurement) IP66 Outdoor Rated 802.3AT Power Injector – add acc Sensor Yes – one radio as sensor Part time scanning Yes – SMART RF and Basic WIPS Network Services Captive Portal, RADIUS Server, DHCP Server Full n performance with standard 802.3af Simplifies and reduces total cost of installation using standard Power-over-Ethernet (PoE). Security This unique multi-purpose device can execute and enforce the IDS/IPS security policies configured in the Motorola wireless switch, and can also be utilized as a 24x7 dedicated sensor with Wireless IPS from Motorola AirDefense solutions. Application Support Supports WMM-UAPSD and SIP Call Admission Control, for optimized VoWLAN performance, as well as video streaming and data throughput for a/b/g/n clients. Load balancing, pre-emptiveroaming and rate scaling Increases reliability and resilience of the wireless network to support mission critical applications. Voice, Locationing, Hotspots, Guest Access Out-of-the-box, the AP650 supports voice over wireless LAN (VoWLAN) services, such as QoS, which ensures toll-quality even with many simultaneous VoWLAN calls on a single access point. Locationing services over provide the ability to locate and track people or assets, and even to control access to the network or applications. In addition, its easy to provide hotspot and guest access and assure the user can only access authorized networks, sites,or applications. MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. © Motorola, Inc All rights reserved. 18 18

19 AP 6511 802.11N WALL PLATE AP HIGH PERFORMANCE – IN A SMALL PACKAGE
26DBM EIRP A/B/G/N, 2X2 MIMO DUAL 3DBI ANTENNAS FAST EASY INSTALLATION SNAP-ON INSTALLATION IN MINUTES, NOT HOURS FLUSH MOUNT (NO PROTRUSION INTO JUNCTION BOX) SLEEK, SMALL, “HIDES IN SIGHT” DESIGN SCALABLE MANAGEMENT ON-BOARD CONTROLLER (UP TO 25 APS), RFS CONTROLLER (UP TO 12,000 APS – L2 OR L3) STANDALONE (WEB UI) Motorola packs in a VERY high performance radio into a deceptively simple package 26dBm 2x2 MIMO radio compares with much larger enterprise class APs Thin is important. Because of its thin design, the AP can be installed ANYWHERE. FAST. Install in minutes not hours. Anywhere. Inside a guest room, in the hallway, or lobby Competitive products suffer from a poor design and thermal problems when installed inside a wall box Lowest cost Management of any network Controller AP feature is a software based controller that manages up to 25 APs in the network. Configure one AP as the Controller, another as the back-up, and the remainder of the APs will be automatically adopted. Standalone management for single unit deployments RF Controller managed for large sites 7.5cm x 12.5cm x 2.5cm (3” x 5” x 1”) 19 19

20 WING5 11N AP PORTFOLIO AP 6511 AP 6521 AP 6532 AP 7131 AP 7161
Independent/ Site Survivable 100Mbps single radio wall plate, no ceiling mount 150Mbps per Radio Higher RF coverage Gigabit Ethernet 200 Mbps per Radio High performance Single and dual Radio option 200 Mbps per Radio Single, dual or tri-radio option, high power, high throughput Room AP, Hospitality, Education (Dorm/Class Room) Single-band access deployment or standalone sensor Retail, Warehouses with < 24 APs, Video Applications Retail Single or Dual Cell, Applications w/ Ethernet bridging on AP AP 621 / AP622 AP 650 Dependent 150 Mbps per radio, controller based networks, single band access 200 Mbps per Radio High performance Single and dual Radio option Warehouse and DC where high throughput is not critical, Retail Campus deployments Retail video applications Performance and Features

21 DEPLOYMENT SCENARIOS CAMPUS DISTRIBUTED
Enterprises / Education / Healthcare / Hospitality Access Points are deployed within a private LAN Network Controller at the data center and Access Points deployed at access layer Retail / Distributed Campus / Telecom / Remote Office Remote branch offices are connected across WAN / public network Controller is deployed at the NOC / Data Center and Access Points are deployed at remote branch / office Site survivability is critical requirement 21

22 CONTROLLER - AP DEPLOYMENT L2 AND L3
APs can be adopted to the controller over L2 network or L3 network – auto discovery L2 Deployment APs send broadcast hello messages on the VLAN of the AP Ethernet port Any Controller receiving the hello message sends reply AP selects the best controller to get adopted to L3 Deployment DHCP option 192 / 189 in the DHCP offer is used to provide list of wireless controllers to the APs L2 Deployment L3 Deployment VLAN 20 VLAN 10 VLAN 10 Internet AP650 AP650 22

23 ADAPTIVE FORWARDING NEIGHBOR DISCOVERY
Neighbor Device Discovery One of the key concepts of adaptive forwarding Every AP tries to finds its neighbor devices Controller is by default added as neighbor device Auto discovery of devices in same L2 network domain Explicit discovery of devices across L3 network domain (manual config) Neighbor Discovery Controller VLAN 20 VLAN 10 Internet AP650 AP1 AP1 Neighbors AP2,AP3,AP4,AP5,Controller AP5 AP6 AP6 Neighbors AP7,AP8,AP9,AP10,Controller AP10 23

24 ADAPTIVE FORWARDING LOCAL AND TUNNEL MODE
Wireless and VLAN traffic can be configured in Tunnel or Local Mode Tunnel Mode Traffic is tunneled to a neighbor device to take the best path Traffic can be tunneled to a neighbor AP or to the Controller Used where wireless VLAN should not be exposed on the wired network – Extended VLAN Local Mode Traffic is bridged on the Ethernet port of the AP Typically used in branch/remote office where there is a private LAN network in the remote branch office 24

25 CAMPUS DEPLOYMENT SIZING
Controller Sizing AP Count Controller AP Model 1 – 36 RFS4000 AP650 / AP621 36 – 256 RFS6000 256 – 1024 RFS7000 <24 AP Controller less architecture AP7131 / AP6532 / AP6511 Sizing of APs per controller should be based on the amount of traffic that flows through each controller. AP650/AP621 are capable of performing local packet forwarding. They are not site survivable Encryption / Decryption performed by the APs. Controller co-ordinates various functions like SMART RF, Statistics collection, Fast Roaming 25

26 TUNNEL MODE EXTENDED VLAN IN CAMPUS
Motorola Tunnel Aruba / CISCO Tunnel Controller Controller VLAN 20 VLAN 20 Router Router VLAN 10 L2 Switch L2 Switch VLAN 10 VLAN 10 VLAN 10 Typical network arch in campus/healthcare Add wlan on different vlan Spf to any destination Others always send data back to controller VLAN 20 VLAN 20 Wireless VLAN is not configured on wired network APs learn each other and ensures traffic takes best / shortest path – MINT Tunnel If wireless VLAN is not configured on the wired network, then the traffic always has to go to the controller Controller becomes bottleneck with 11n traffic Increases latency for voice / video traffic

27 Extended VLAN VS Local VLAN in Campus
Motorola Aruba / CISCO / Aerohive Local Bridging VLAN 20 VLAN 20 Reconfiguration at multiple points VLAN 10 VLAN 10 VLAN 10, 20 VLAN 10, 20, 30 VLAN 10 VLAN 10 VLAN 10, 20 VLAN 10, 20, 30 Extended VLANS made Simple, plug and play Don’t have to touch any Wired Switches… Others HAVE to Touch the Wired side VLAN 20 VLAN 30 VLAN 20 VLAN 30 Wireless VLAN is not configured on wired network Wireless VLAN should be extended to all wired switches and Ethernet port of AP Imagine a deployment with 1000 Access Points and 100 distribution switches – nightmare What happens if you want to add one more Wireless VLAN

28 CAMPUS DEPLOYMENT TUNNEL MODE EXAMPLE SCENARIO
Services, Configuration & Management Building 1 Floor 1 Floor 2 Floor 3 Building 2 VLAN 10 VLAN 20 VLAN 10,100 VLAN 20,110 VLANs10-80 VLANs 30-50 VLANs 60-80 VLAN 30 VLAN 40 VLAN 50 VLAN 60 VLAN 70 VLAN 80 Default Gateway for Extended VLAN 100 Default Gateway for Extended VLAN 110 ! Extended VLANs are only defined on the Access Points, Wireless Controllers and Core Layer 3 Switches (default gateways) Limit the number of APs in a single broadcast domain (neighbor devices) Traffic from AP to a non-neighbor AP will get tunneled through the Controller Extended VLAN 100 Tagged Extended VLAN 110 Tagged Distribution Access Extended VLAN 100 Extended VLAN 100 Extended VLAN 100 Extended VLAN 110 Extended VLAN 110 Extended VLAN 110 MOTOROLA PROPRIATARY AND CONFIDENTIAL MOTOROLA PROPRIATARY AND CONFIDENTIAL

29 CONTROLLER LESS DELPLOYMENT
For a stand-alone deployment of <24 APs, Controller less architecture can be considered AP7131 / AP6532 / AP6511 can be used for controller less deployment. AP6521 support in future release One of the APs is manually designated as Virtual Controller – this AP acts as Controller for the devices in the group Controller functionality like Configuration & Firmware Management / SMART RF / Statistics Collection / Roaming is performed by the Virtual Controller No compromise in service – Security / Firewall / QoS / Roaming / SMART RF Note: Does not support Advanced WIPS / Clustering Virtual Controller can manage only like access points Internet Virtual Controller 29

30 DISTRIBUTED DEPLOYMENT SIZING
Core Air Defense Services Platform: Network Assurance Security & Compliance Small-Medium Branch Large Branch NX1 for APs RFS for 1000 APs NX1 for APs RFS for 1000 APs NX1 for APs RFS for 1000 APs V5.2 ( Aug 2011 ) Per site AP count <24 APs <24 APs <24 APs >24 APs Branch AP 7131 AP 7131 RFS Controllers AP 6532 AP 620 AP 6532 AP 6521 AP 650 AP 6521 AP 650/ AP620 AP 6511 AP 6511 Site Survivable Not Site Survivable!! Site Survivable Site Survivable

31 CONTROLLER AT EACH BRANCH >24 AP BRANCH
Head Quarters Air Defense Management Platform Internet Branch Office Fast Roaming SMART RF Broadcast Traffic Mgt L3 Roaming Highlights 1. Each Site has a RFS6000 / RFS4000 and AP650s (supports both legacy AP300 and new AP650) 2. The RFS controller provides site management functionality and acts as site controller 3. Management platform at the NOC provides centralized Management functionality 4. The APs themselves are capable of performing services like QoS, Role Based Firewall RFS 6000 And now I’d like to introduce you to a customer obsessed with wireless reliability and availability at all corners of every site because it has a direct impact on their sales. Less time hassling with the network means more time on money-making endeavors, such as servicing customers and selling merchandise. But it’s also important to take note that Motorola’s ability to provide the highest levels of security and PCI compliance were key factors, in addition to the fast, secure and seamless roaming. But what ultimately pushed the customer over the edge was the sticker shock. You see, when the competitors products were first compared the prices seemed similar, but once the network was designed with redundancy and security features Motorola stayed reasonable and the competitors price rose appreciably. Stateful Firewall Role Based Firewall Broadcast Traffic Mgt QoS Enforcement AP650 AP650 AP300 31

32 CONTROLLER LESS BRANCH <24 AP BRANCH – RF DOMAIN MANAGER
Head Quarters NX9000 NOC Controller Internet Highlights 1. Each Site has AP6532 which are site survivable (can function if the controller goes down or WAN link is down) 2. One AP6532 acts as the Domain-Manager which performs the controller functionality in the branch. It collects stats and co-ordinates other features like Roaming. Smart RF etc. 3. All the APs themselves are capable of performing services like QoS, Role Based Firewall – no compromise on service 4. The NX9000 at the NOC provides centralized policy configuration for the APs 5. Management platform at the NOC provides centralized Management functionality Branch Office Fast Roaming SMART RF Broadcast Traffic Mgt WLAN Mgt AP6532 RF-Domain-Manager And now I’d like to introduce you to a customer obsessed with wireless reliability and availability at all corners of every site because it has a direct impact on their sales. Less time hassling with the network means more time on money-making endeavors, such as servicing customers and selling merchandise. But it’s also important to take note that Motorola’s ability to provide the highest levels of security and PCI compliance were key factors, in addition to the fast, secure and seamless roaming. But what ultimately pushed the customer over the edge was the sticker shock. You see, when the competitors products were first compared the prices seemed similar, but once the network was designed with redundancy and security features Motorola stayed reasonable and the competitors price rose appreciably. Stateful Firewall Role Based Firewall Broadcast Traffic Mgt QoS Enforcement AP6532 AP6532 AP6532 32

33 NX9000 CONTROLLER DEPLOYMENT DISTRIBUTED BRANCH DEPLOYMENT
Head Quarters Air Defense Management Branch 1 Branch 4 Controller at each site / Air Defense at NOC Controller required at site to provide services Not Scalable More $$$ More hardware to manage NX9000 WAN NX9000 at NOC One AP at remote site as RF-Domain Manager No compromise in service- service at edge No controller for sites <24 APs Highly Scalable Reduce CAPEX Less hardware to manage ->Reduced OPEX Branch 2 Branch 3

34 COMPARING AP MODES RF-DOMAIN-MANAGER VS VIRTUAL CONTROLLER
Is used for remote branch office having <24 APs, but a controller at the NOC 24 AP limit for RF Domain Manager Collects statistics from other AP sin the RF-Domain for SMART RF and run-time reporting Receives firmware from centralized controller, and distributes to other APs in the domain Can manage site with different AP types Cannot adopt and configure other APs – function of the controller If RF-Domain-Manager fails, another AP is elected as the manager Is used for a standalone deployment of a site having <24 APs 24 AP limit for Virtual Controller One AP has to be manually elected as Virtual Controller Can adopt and provide centralized management (firmware / troubleshooting / configuration) for other APs in the site Can manage only like device types – AP7131 cannot be virtual controller for AP6532 If Virtual Controller AP fails, another AP has to manually elected – but other APs continue to operate Advanced WIPS requires Controller And now I’d like to introduce you to a customer obsessed with wireless reliability and availability at all corners of every site because it has a direct impact on their sales. Less time hassling with the network means more time on money-making endeavors, such as servicing customers and selling merchandise. But it’s also important to take note that Motorola’s ability to provide the highest levels of security and PCI compliance were key factors, in addition to the fast, secure and seamless roaming. But what ultimately pushed the customer over the edge was the sticker shock. You see, when the competitors products were first compared the prices seemed similar, but once the network was designed with redundancy and security features Motorola stayed reasonable and the competitors price rose appreciably. 34

35 LOCAL MODE BRANCH USE CASE
VLAN 30-32 VLAN 30 VLAN 32 Local VLAN 20-22 VLAN 20 VLAN 22 Branch Site 1 Branch Site 2 ! VLANs 22 is defined in Branch 1 and VLAN 32 is defined in Branch 2 LOCAL Mode is mostly used in branch where there typically is a local LAN network The Ethernet port of the AP is configured with the local VLAN Local Mode WLAN Local Mode WLAN VLAN 32 VLAN 22

36 TUNNEL MODE BRANCH USE CASE
VLAN 20-21 VLAN 20 Branch Site 1 VLAN 40-41 VLAN 40 VLAN 30-31 VLAN 30 Branch Site 3 Branch Site 2 VLAN 10,100 VLAN 10 Data Center Extended VLAN 100 Tagged Default Gateway for Extended VLAN 100 ! While this design is technically possible, this is not recommended design for a Branch as the broadcast domain for VLAN 100 has been extended over the WAN! Extended VLAN 100 Extended VLAN 100 Extended VLAN 100

37 Why Motorola Solutions
Industry leader in all things Wireless. Wireless LAN market leader for over a decade. Specialize in High Mobility Mission Critical Environments Best in Class Voice Solution Best in Class Security Most Comprehensive Access Point Portfolio in the Industry Indoor Thin/ Adaptive (AP650/ AP6532) AP6511 for already wired zones MESH for hard to wire areas Outdoor AP7181/ AP7161 Tri Radio AP7131 for Additional Services All AP Radios are Band Unlocked World Class Customer List Unmatched Customer Support

38 WORRY | COST | CONGESTION TRUST| INTELLIGENCE | PERFORMANCE
WiNG 5 WIRELESS LAN SOLUTIONS THANK YOU LESS IS MORE WORRY | COST | CONGESTION TRUST| INTELLIGENCE | PERFORMANCE

39 WiNG 5 KEY FEATURES EASY 11n Provisioning
Scalable for large deployments Reusable Policies Location aware policies Configuration Templates 1 Policy Based Config AP automatically discovers Controller No Manual configuration required 2 Plug and Play Automatically assign policies to APs Multiple parameters for adoption policy 3 Adoption Policies WiNG5 takes the burden off IT by making large, complex, multi-site rollouts fast & easy! 39

40 WiNG 5 KEY FEATURES 11n CAPACITY MANGEMENT
Better throughput in mixed client Faster clients not starved by legacy clients 1 Air Time Fairness 2 Clients are directed to better bands Ensure all bands are equally served Smart Band Select APs are evenly loaded (channels / bands) Based on actual load – not client count 3 Smart Load Balance 4 Smart RF Automatic RF Management Interference / RF Coverage hole recovery Too many WiFi devices a problem? Not anymore with WiNG5!!! WiNG5 has Capacity Management so you get the maximum out of your Wireless network. 40

41 WiNG 5 KEY FEATURES BUILT IN REMOTE TROUBLESHOOTING
1 Centralized Syslog Troubleshoot from NOC` Advance Filter – see what you want Save WAN Bandwidth Live RF capture at remote sites No other RF capture tool required Save $$$ and Time 2 RF Packet Capture Debug as the problem happens Multiple sniffing points In-depth analysis 3 Remote Debug Syslog per location Debugging per client – don’t hv to enable Debug Level7 for all Clients WiNG5 Troubleshooting tools helps IT Administrators get to the root-cause of problems quicker. 41

42 WiNG 5 KEY FEATURES INTEGRATED WIPS/ SECURITY
Basic event threat library Part time scanning Customized Signature 1 BASIC WIPS 2 Basic + Advanced threat library Dedicate Radio as sensor Over the Air Rogue AP Containment Automatic Mitigation Vulnerability Protection ADVANCED WIPS 3 Role Based Firewall policy controls Stateful L2 Firewall at the AP Traffic Management Firewall Flow Migration between APs Integrated Firewall WiNG5 provides comprehensive and unmatched security features to protect your Wireless Network 42

43 WiNG 5 KEY FEATURES BUILT IN REMOTE TROUBLESHOOTING
1 Centralized Syslog Troubleshoot from NOC` Advance Filter – see what you want Save WAN Bandwidth Live RF capture at remote sites No other RF capture tool required Save $$$ and Time 2 RF Packet Capture Debug as the problem happens Multiple sniffing points In-depth analysis 3 Remote Debug Syslog per location Debugging per client – don’t hv to enable Debug Level7 for all Clients WiNG5 Troubleshooting tools helps IT Administrators get to the root-cause of problems quicker. 43

44 How WiNG5 helped resolve Problem:1
Label Printer Handheld Print Job from handheld Print Server L2 Switch 44

45 How WiNG5 helped resolve Problem:1
Print Job from device takes < 5 sec to print the report Problem: Took close to 5 mins to print the report Capture packet at Radio interface of AP1 and Ethernet port of AP2 – timestamp difference was >7 Sec Captured packet at Ethernet Port of AP1 and Ethernet Port of AP2– timestamp difference was >7 sec Narrow down the problem to the wired network (In fact later we found one application in the print server was hogging CPU slowing the Print Jobs) Wireless Printer Laptop Print Job from laptop 1 1 2 2 Print Server L2 Switch 45

46 How WiNG5 helped resolve Problem:2
HEADQUARTERS / NOC Problem: Handheld was failing to authenticate after roaming Administrator gets a call from a school site reporting the problem WiNG 5 WLAN CONTROLLER REMOTE BRANCH / OFFICE WAN iPod Touch AIRDEFENSE Troubleshooting Management Security ENTERPRISE CLOUD APPLICATION SERVERS EDGE SWITCH WiNG 5 ACCESS POINT L2 Switch 46

47 How WiNG5 helped resolve Problem:2
HEADQUARTERS / NOC The administrator enabled RF-Domain wide packet capture, with Client MAC as filter When Client is connected to AP1, only AP1 sends logs When client roams to AP2, AP2 sends client logs Administrator sees contiguous message logs as if from a single system Found handheld was not responding to authenticate message when it roams WiNG 5 WLAN CONTROLLER REMOTE BRANCH / OFFICE AIRDEFENSE Troubleshooting Management Security iPod Touch WAN ENTERPRISE CLOUD APPLICATION SERVERS EDGE SWITCH WiNG 5 ACCESS POINT L2 Switch 47

48 WiNG5 Troubleshooting Tools
Air Defense And WiNG5 WiNG5 Troubleshooting Tools Air Defense 24x7 Policy Monitoring Holistic view of Network Reporting Advanced Forensics Centralized Management Spectrum Analysis Historical Analysis Packet Capture at various Interfaces RF-Domain level packet capture Module level syslogs Remote RF Packet Capture Inline Packet Capture Multiple filtering options Live streaming of packet capture Air Defense gives a holistic view of the network and ensures policy compliance. It also ensures appropriate alarms are raised when there is a problem. WiNG5 provides troubleshooting tools which help administrators exactly pin point the root-cause of the problem. WiNG5 troubleshooting tools allows administrators to get to the specifics of the problem 48

49 NX9000 RICH FEATURE SET NX9000 NOC Controller Distributed Architecture
Controller less branch AP as Virtual Controller No Compromise in service Site Survivable Remote Troubleshooting Remote Debug Packet Capture Syslog & Statistics Highly Scalable 10,240 Access Points 200,000 Users 4096 branches Centralized Management Profile based Configuration Auto provisioning Plug & Play Deployment Automatic AP discovery Automatic config download NX9000 NOC Controller Monitoring Heatmaps AP & Client Visualization Client Roaming History Network Services DHCP Server RADIUS Server FTP Server Security BASIC WIPS Advanced WIPS Stateful firewall on AP

50 NX9000 vs CISCO FLEX 7500 A COMPETITIVE ANALYSIS
Features NX9000 FLEX 7500 Supported # of Access Points 10,240 2,000 # of Users 200,000 20,000 # of locations 4,096 500 Inbuilt WIPS Yes Requires external server Remote Inline Packet Capture No Remote RF Packet Capture Auto Provisioning for Zero touch deployment Mesh Support on APs Mobility L2 and L3 at remote branch Only L2 Captive Portal Yes (Not available when controller is down) License sharing in cluster No – separate license required for redundant controller RF Management SMART RF M-Drive AP Visualization on floor plan No – requires external server Client Roaming History Coverage heat maps Native WIPS BASIC IDS/IPS supported on the APs

51 Distributed Deployments
Core Air Defense Services Platform: Network Assurance Security & Compliance Small-Medium Branch Large Branch NX1 for APs RFS for 1000 APs NX1 for APs RFS for 1000 APs NX1 for APs RFS for 1000 APs V5.2 ( Aug 2011 ) Per site AP count <24 APs <24 APs <24 APs >24 APs Branch AP 7131 AP 7131 RFS Controllers AP 6532 AP 620 AP 6532 AP 6521 AP 650 AP 6521 AP 650/ AP620 AP 6511 AP 6511 Site Survivable Not Site Survivable!! Site Survivable Site Survivable

52 NX9000 CAPABILITY Features NX9000 DHCP Server Yes RADIUS Server
Data Processing No – Tunnel mode to controller cannot be supported Centralized Configuration Yes – WiNG5 like profile based configuration Troubleshooting Yes – all remote troubleshooting tools supported Site Survivability Yes – APs at remote branch can survive if controller is down


Download ppt "MOTOROLA SOLUTIONS WIRELESS LAN WiNG5 Update."

Similar presentations


Ads by Google