3COM Product Presentation
-
Upload
shreedeepk -
Category
Documents
-
view
127 -
download
9
Transcript of 3COM Product Presentation
‘Celebrating 30 Years of Networking’
3com Customer / Partner
Overview Presentation
Shreedeep Khandalkar
Presales Consultant
3Com Confidential
2
Agenda - Brief
✴ How the world has changed
✴ 3com Corporate Overview
✴Technology direction and trends in the current economic ✴3com Green IT revolution and Contribution
✴ How 3Com is positioned to lead the market transformation
✴ 3com NGiN Technology
✴ 3com Product Portfolio
✴ 3com Customers
✴ 3com Support And Warranty
3
Predicting the Future is Difficult
3Com – A Strategic Technology Partner
• Founded in 1979• US company; HQ in
Massachusetts, USA• Listed on Nasdaq• #2 in worldwide switching and
enterprise router market share• Global footprint
– 80 locations– 50 countries – 10,000+ channel partners
• 5,600+ employees worldwide• 2,400+ highly skilled, highly
responsive engineers• Financial Strength
– $343M Revenue in Q1 FY09– Record gross margin– $560M cash balance– Cashflow positive
4
Headquarters
Regional Operations HQ
Technology Centers
EMEA
Hemel, UK
APRSingapore
WW HQ
MarlboroLAT
Miami
3Com History
The New 3Com – An Enterprise Networking Powerhouse
Enterprise Networking Specialist
› #2 in global enterprise switches (ports) and routers (units) market share
› #1 in China
› Securing over 30% of the Fortune 1000
FinanciallyStrong
› Profitable
› Generating cash from operations
› $560 Million in cash as of Q3 FY09
2
› Large enterprise
› Mid-market and small enterprises
› Best-of-breed security
One Company, Three Brands
3Com Confidential
4
Technology Direction & Trends in the Current Economic Climate
9
Common Customer ChallengesItems on the desk of networking and IT execs
IT is prioritizing initiatives that are focused on consolidation, efficiency, and productivity
Applications Users
Network Virtualization
Corporate network
Security & BC/DR
Cloud computing
Server virtualization
Data center consolidation
These major IT initiatives require that the networkevolve and keep pace withthe rate of change
!
Internet
Best Practices for 21st Century E-Government ServicesBest Practices for 21st Century E-Government Services
Optimize and virtualize for more effective services
Security in-depth to protect confidentiality and reduce risk
Evolve to respond with accuracy and speed
Streamlining Communications & Applications
Secure for Privacy and Accessibility
• Protect against growing internal and external threats • Support growing number of users and mobile devices• Safely extend services to remote offices, road-warriors and visitors• Ensure regulatory compliance
• 3Com delivers: – Robust portfolio of standalone and integrated security solutions– Multi-layered solution to ensure no single point of failure– Advanced security features– Powerful monitoring, management, reporting and audit tools– Deployment and lockdown of global security policies across an entire
infrastructure– Quickly respond to new mandates and regulations with simple,
centralized management
3Com Confidential
14
How is 3Com Addressing These Technology Trends?
Enterprise Network Challenges
15
COMPLEX: Legacy, patchworkapproach
EXPENSIVE:Costly to build, manage and run
PROPRIETARY:Locked In
H3C’s broad Enterprise portfolio is changing the Networking Status Quo: “Flight to Value”
• Speeds and feeds wars
• Switching vs Routing wars
• Vendors drive technology
› Internet/post-Y2K bust› Market consolidation –
survival of even blue chip companies in doubt
› Safety first› Vendor drives technology
•Built on open standards to future-proof networks
•Lower total cost of ownership (TCO)
•Energy efficient platforms increased speeds
•Ethernet and IP everywhere
•Customer demands high-performance, secure, converged, flexible and green infrastructure
2001
2007
Maturity Dividend
Do More with Less
Flight to ValueFlight to StabilityFlight to Innovation
The “OLD WAY”
Enterprise-Proven Enterprise-Proven
Expensive & proprietary 33% Lower TCO
Complex NOCs everywhere Single pane, automated mgmt.
Legacy components 25% less power consumed
Proprietary and unresponsive $ 1.3B start up
Hide behind channel Direct client response
Multiple businesses Laser focus on Ent. NW
Proprietary ASICS Modern merchant chipset
Security afterthought Best of breed security
Bolt on legacy system Standards-based, extensible
3Com’s H3C ‘No Compromise Network’
TCO
Architecture
Relationship
17
What is 3NGiN?
COMEXTENERATIONNTELLIGENTETWORK
3NGiN
3Com Confidential
3NGiN
Financial
Operational
Strategic
CSR Policy
How 3NGiN Powers Business
How 3NGiN Powers Business
Operational
• Improve Productivity
• Improve Customer Service
• Manage Infrastructure
• Enforce Security
• Control Applications
Financial
• Reduce CAPEX
• Reduce OPEX• Increase ROI• Lower TCO• Increase
Revenue
Strategic
• Enable Growth• Deliver
Advanced Services
• Provide Business Intelligence
• Gain Competitive advantage
CSR
• Lower Carbon Footprint
• Lower Energy Consumption
• Smarter energy use
• Comply with RoHS and WEEE
• Energy Star rated
Meet the 3NGiN Solutions
3NGiN
XVNeXpandable
Virtual Network
MSCMulti-layer
Security Control
ASMAdaptive Secure
Mobility
MSPMultimedia
Services Platform
UCCUnified
Communications & Collaboration
ICMInfrastructure
Control & Management
XVN is a true Core to Edge communications solution which enables businesses to benefit from:
eXpandable Virtual Network (XVN)
• Increased application performance• Increased control of application priority and delivery• Application visibility through advanced flow
monitoring• State-of-the-Art Resilience and Reliability through
innovative IRF network virtualization technology• XVC – eXpandable Virtual Core• XRN – Network Distribution or Edge Virtualization
• Strong integrated security features• Open standards protocols• Converged network platform• Eco-Friendly green design• Latest ASIC silicon technology• Open Services Network (OSN) platform
3Com’s MSP allows for easy deployment of Triple Play and a variety business services. MSP features:
Multimedia Services Platform (MSP)
• Passive optical network architecture• Built on open standards for Ethernet in the
First Mile (EFM)• Less active devices required• Less power consumption• High reliability and easy to manage• Flexible delivery of a multitude of services
• HD IPTV• Voice over IP• HD Video on Demand• IP video surveillance• Data and Internet services• Cable TV
• Wide area of coverage of up to 20km
The 3Com ASM solution provides businesses with a secure mobile environment. Benefits of deploying an ASM solution are:
• Adaptive RF technology to provide optimal signal and coverage
• Advanced security controls and user authentication
• Centralized management of devices and users• Advanced monitoring and reporting• Supports advanced services such as:
• Multimedia Video• Voice over Wi-Fi• RFID• WIPS
• Resilient architecture• Virtual Controller Technology• Mesh Technology
• High speed next generation 11n technology
Adaptive Secure Mobility (ASM)
3Com’s MSC solution provides all the elements to ensure business information and data is protected.MSC provides businesses with:
• User and device control, which integrates with centralized authentication directories
• Perimeter security for 360o Perimeter protection from external threats
• End point security - health status checks, patch update checks, virus update checks.
• Class-leading Intrusion Prevention Systems• Ensure protection of critical business
applications• Granular control of Applications & Content• IP video surveillance for physical asset
protection.• Virtual Private Network – SSL VPN & IPSec
for remote users
Multi-Layer Security Control (MSC)
3Com’s UCC Solution allows businesses and their employee’s to communicate more effectively with customers, suppliers and each other.By deploying a 3Com UCC solution businesses can benefit from:• Highly resilient and reliable distributed
architecture.• Scalable Architecture to enable growth• Centralized Global Directory and Voicemail
services.• Enterprise-wide Presence, instant messaging,
click to conference, document sharing and much more.
• Built on Open Standards SIP protocol.• Simple integration with 3rd party applications• Full conferencing features.• Call Management and Call Centre Applications.• Integration with ERP and CRM
Unified Communications & Collaboration (UCC)
3Com’s ICM solution offers businesses a ubiquitous infrastructure management platform. ICM delivers solid business benefits, these are:
• Simplifying configuration, deployment, and day-to-day network administration.
• Enhancing business communications by managing today’s converged networks, for smooth operation of voice, video and data.
• Giving network administrators meaningful information on faults, alerts, events and network efficiency.
• Ensuring continuous network uptime by proactively monitoring and managing system outages, upgrades and faults.
Infrastructure Control & Management (ICM)
Green IT: Power Efficiency Advantage
Lower TCO by Design
H3C switches are 53% more efficient than comparable products.
“The H3C S7500E Series switch reduce costs and minimizes environmental impact through many energy-saving attributes”
Rob Smithers, CEO Miercom
28
S7506EIndustryAverage
Green – So many definitions so little time……
“Green is about money, not about the environment.”David Cappuccio, May 2009
vs.
30
Built to be Green• Uses energy efficient power supply, for greater efficiency
• Programmable, intelligent fans reduce noise and energy consumption
• Fan speed control enhances product reliability and extend switch life
• Uses advanced technology and energy saving chips
• Energy saving software features
• Ability to regulate power according to the length of the cable
• Adjust energy in accordance with port speed (Fast Ethernet, Gigabit, 10G)
• Time controlled PoE
• Ability to shut down PoE function when PD is unplugged
• RoHS standard compliant
Energy Efficient Ethernet: Innovations
12
› Institute Electrical Electronic Engineers
― Global Standards body
― 3Com holds 802.3 Ethernet Vice Chair
› 802.3az - Energy Efficient Ethernet
― A method to reduce energy use by an Ethernet interface by rapidly changing to a lower link speed during periods of low link utilization
― Currently expected early 2010› US Energy Star rating for energy efficient
equipment
“Inefficient Ethernet wastes over $1bn a year”
Energy-Efficient Ethernet (EEE) Study
Group
3232
3Com Drives InnovationEnergy Efficiency Products – Industry Recognition
3Com Confidential
3Com Core to Edge Portfolio
Oct 2010
Broad Enterprise Product Portfolio
› 10
› IP Communications› Unified Communications
› Core to Edge Networking› WLAN› Routing
› IP Video Surveillance › IP Security
› VCX Connect
› SR6600 Core
› Router
› MSR Branch
› Router
› Defense in Depth Security
› V1000 - A› SecPath F1000-S/A/E › SecBlade Modules
› VPN Firewall › Embedded Security
› SecCenter› H3C IPS
› Unified Threat Management › Security Operations
› User Management (User access / access control / auditing / authentication and accounting)
› Business management (network traffic / storage / wireless / security / voice / video / application business)
› IMC (Intelligent Management Center)› Resource Management (QoS / ACL / VLAN)
› WLAN
› Controller
› 802.11n AP› WLAN
› Controller
› S12500
›Data Center
› S9500 Core Switch
› S7500E Multi-Service › S3100 FE
› Series
› S55/5100
› GE Series
› S5600 GE
› Series
› S3600 FE
› Series›S5800 Series
› ISC3000 ›VM8000› IP Phones › VCX Enterprise
› Data Center› Campus Core› Aggregation› Access/Edge
The 3Com Core to Edge Network
Aggregation
Core
SMB&Edge
Convergence Applications
Advanced Infrastructure Features› Auto-VLAN, Auto-QoS recognizes IP Phones› Automated network engineering› Gigabit solutions
Powerful Network ManagementComprehensive Security Solutions/UTM
OSN› Switch-based application convergence› Solid and growing feature portfolio
Comprehensive Voice, Wireless, Voice over WiFi Solutions, etc.
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Wireless Convergence Applications / IP Telephony
S3600-EI
S3100-EI
Edge/Access Layer
Core/Data Center Layer
S12500
S5820X
S9500E
Edge to Data Center Switch Portfolio
Resource Management
User Management
Service Management
Security Management
IMC / ComwareBasic Management
Configuration Management
Backbone/Core Layer
S9500E
S7500E
S5800/S5820X
Performance . Reliability . Innovation . Environment
Engineered To Last. Designed To Outperform
S5500 SI / EI
Edge/Convergence Layer
S5800/S5820X
S5100 SI/EI
S12500 Series Core Switch
• Products Info– 100G platform with CLOS Fabric
– Max 512 10GE per chassis
– 200ms buffer, ideal for DC application
• Product Application– Already deployed in domestic market (SOHO,
Zhejiang University. etc. )
– No application on oversea market
• Competitive information– Competitive products support 100G platform
includes Cisco N7000 series, Juniper 8200
series ,Foundry RX series, Force10 E series
•S12500 is H3C’s chassis DC switch, it is designed for high desity 10G access.
S12500 series adopts advanced CLOS fabric to provide 5.76T switching
capacity and scalability.
•Positioned for Data Center, Grid Computing, Core for enterprise network etc.
H3C S12500 Network Position
S12508 S12518
Switching Capacity 2.88T 5.76T
Forwarding 950Mpps 1900Mpps
Engine Redundancy 1+1 1+1
Fabric Redundancy 8+1 8+1
Engine Slots 2 2
Fabric slots 9 9
Line cards slots 8 18
Max GE 384 864
Max 10GE 256 512
Buffer per slot 256Mbytes/10G port21.4Mbytes/GE port
256Mbytes/10G port21.4Mbytes/GE port
Fan Redundancy 1+1 1+1
Power Redundancy AC: 2 + 1, DC:4+1 AC: 4 + 1, DC:6+1
S12500 Switch Specification
512MBCache
512MBCache
512MB缓存
512MB缓存
512MBCache
512MBCache line cards
fabricback plane
180G Switch Capacity per slots
Smoothly upgradable
Ready for 40G/100G port
100G Switch Platform on S12500
CPU
EngineCPU
Engine
XP4L XP8L XP32R
Interface
Type
XFP XFP SFP+
BW on slots 40G 80G 80G
Buffer 1024MB 2048MB 2048MB
4 x 10 GE Line Card
8 x 10 GE Line Card 32 x 10GE Line Card
10GE Line Cards on S12500
High Density Access Capability on S12500
Max 864 GE ports per chassis
Wire-speed switching for 864 GE
Max 512 10G ports per chassis
For high density 10GE access
128 wire speed 10G ports switching
Non-blocking high density 10G access
Updatable architecture for scalability
Advanced Architecture100G per slot bandwidthIndustry-leading CLOS fabric
Advanced Architecture100G per slot bandwidthIndustry-leading CLOS fabric
High Density PortsMax 864 GE ports per chassisMax 512 10GE ports per chassis
High Density PortsMax 864 GE ports per chassisMax 512 10GE ports per chassis
Enhanced Buffering System200 ms port buffering capacityDistributed buffering architecture
Enhanced Buffering System200 ms port buffering capacityDistributed buffering architecture
High security, stability and manageabilityArchitecture of software, hardware and system level security, stability and management
High security, stability and manageabilityArchitecture of software, hardware and system level security, stability and management
S12500 Selling Points
S12500 Nexus 7K
Architechure CLOS Fabric Fabric
Performance 950/1900 Mpps 460 Mpps
Buffer system Distributed buffering system Centralized buffering on out interface
VSS IRF2 for 12500/95E/75E/55 VSS only for N7000 and 6500E
OS Unified Comware 5 NX OS and IOS
Energy Consumption Half of N7000 series High energy consumption
vs
H3C S12500 vs CISCO N7000
• Products Info– Fully Distributed ASIC+NP+Multi-core CPU
– Max 192 10GE per chassis
– Next generation products for S9500
• Products Application– Already sold in domestic market, no application on
overseas markets
• Competitive info– Main competitor includes CISCO 6500 series,
Foundry Bigiron series, HP8200 series, Extreme
10800 series, Force10 C series
S9500E Series Core Switch
Positioned at the large MAN convergence layer and the core layer of medium and small MANs S9500E series contains three switch models, S9505E/S9508E-V/S9512E.
H3C S9500E Core Switch Series
Attribute S9505E S9508E-V S9512E
Number of main control slots 2 2 2
Number of service slots 5 8 12
Product Family of H3C S9500E
All-round high security
Integrates the device-level anti-attack and the service level anti-attack
capabilities, protecting the network.
Mature architecture
Architecture based on ASIC + NP + mult cores enables scalability for
service and performance.
Carrier-class high reliability
Device level reliability and network level reliability provides carrier-class
reliability capability.
Diverse service features
Distributed MPLS+IPv6+VPLS function
The user customization mode provides tailor-made core switches
to users.
Tailor-made core switch - H3C 9500E
Updated Service SupportEnhanced ACL function Multicast VPN, Distributed VPLS 、 IPv6
Updated Service SupportEnhanced ACL function Multicast VPN, Distributed VPLS 、 IPv6
High density 10G & GEMax 576 GE ports per chassisMax 192 10G ports per chassis
High density 10G & GEMax 576 GE ports per chassisMax 192 10G ports per chassis
Enhanced Reliability and SecurityArchitecture of ‘four planes in one system’Hardware BFD , IRF stacking
Enhanced Reliability and SecurityArchitecture of ‘four planes in one system’Hardware BFD , IRF stacking
OAA multi service & application Service module including Load Balance, IPS, SSLVPN, Firewall, WLAN, NAT, IPsec VPN etc.
OAA multi service & application Service module including Load Balance, IPS, SSLVPN, Firewall, WLAN, NAT, IPsec VPN etc.
H3C S9500E Series Switch Selling Point
S9500E C6500E
Architecture Fully Distributed ASIC+NP+Multi-core CPU Centralized or Distributed ASIC + NP
Performance 1.44T per Chassis Up to 1.44T bps with VSS
Port Density Max 16 x 10GE per slot Max 16 x 10GE per slot
VSS IRF2 for 95E/75E/55/56/36 VSS only on 6500E
Multi-service LB/WLAN/SSL/IPS/NSM/IPSEC/NAT WLAN/LB/IPS/NAM/CME/SSL
OAM Hardware Software
vs
H3C 9500E vs Cisco 6500E
H3C S7500E
• Capable of providing a wide range of services
• MPLS/IPv6/EPON/WLAN/PoE
• Firewall/IPS/OAA
• High-performance platform
• Wirespeed IPv6 forwarding
• Wirespeed MPLS forwarding
• Cost-effective 10 Gigabit ports
• The price of a 10 Gigabit port is less than 50% of the 10 Gigabit port price in former products.
• Flexible configuration
• Flexible combination of multiple chassis's, engines, and modules
• High security and reliability
• Endpoint admission defense (EAD)
• Built-in security module
• Graceful Restart
H3C S7500E Chassis Overview
S7502ES7502ES7503ES7503E
S7506ES7506E
S7506E-VS7506E-VS7510ES7510E
Number of slots 4 3 5 8 8 (vertical) 12
Backplane bandwidth ≥ 400G ≥ 600G ≥1T ≥1.6T ≥1.6T ≥2.4T
Switching capacity 192G 288G 480G 768G 768G 1152G/768G
Packet forward capability
143Mpps 178Mpps 274Mpps 488Mpps 488Mpps 773M/488Mpps
Engine redundancy Support N Support Support Support Support
Power supply redundancy
1+1 1+1 1+1 1+1 1+1 1+1
Maximum Gigabit port 96 120 144 288 288 480
Maximum 10 Gigabit port
4 4 10 16 16 24
Occupied rack size 4U 4U 10U 13U 21U 16U
S7503E-SS7503E-S
Ethernet module Service module Route Switching Engine
Dedicated engine of the S7502E
Salience VI
Chassis
Gigabit Ethernet optical interface
10 Gigabit Ethernet
3,4, 5, 8, 8, 12 slots
Service module with the function of IPS
Service module with the function of NAT/NetStream
Service module with the function of firewall
H3C S7500E Modules Overview
Salience VI-TurboSalience VI-10G
Gigabit Ethernet optical interface
Gigabit Ethernet electrical interface
100M Ethernet electrical interfacePassive optical network
module
Access Features
Terminal Access Automatic
Identification
PoE power supply
Wired-wireless integration
Active-passive integration
•Fiber To The Home •Solution for active-passive integration:
•IP surveillance •1:64 splitting ratio, 16 ports per slot
•Cost-effective EPON solution •High-density, high-reliability EPON system
•WLAN AP •Built-in 2800 W power supply to provide PoE
•IP Phone •High performance external PoE power supply
•IP camera •15.4 W per port
•FIT solution •Solution for wired-wireless integration:
•Wireless controller module integrated in switch
•Unified security authentication and admission
•Wireless security, roaming and RF management
•Switch + wireless controller module + PoE +FIT AP
Unified identification
and EAD
•802.1X authentication (wired/wireless) •Support Portal authentication
•VPN authentication •Unified Endpoint Admission Defense (EAD) and access control policies
•Portal authentication •Unified authentication client (iNODE)
•Multimedia terminal •Voice VLAN
•Automatic allocation •MAC Based VLAN
•IPv6 terminal access •Perfect IPv6 service capabilities
Reliability and Security
Loopback Detection (LDT)35 Detects whether a port loops back outside
Device Link Detection Protocol (DLDP)36DLDP can completes detection within 2 seconds, faster than Unidirectional Link Detection (UDLD).
Rapid Ring Protection Protocol (RRPP)32 The ring network provides switching protection in less than 200ms.
Smart-Link33Replaces the STP in dual-homed networking to provide switching protection in less than 50ms
Hot fix of software31This function allows you to fix the software bugs or add small-scale new features on the line.
Graceful Restart (GR)34After GR is configured, the traffic does not lose any packet in active/standby
switching.
ARP Intrusion Inspection/ARP Spoofing Prevention38 Prevents ARP attacks in the network
Unicast Reverse Path Forwarding (uRPF)39 Prevents the IP Spoofing attack
Large-capacity bidirectional ACL and VLAN ACL310 Strictly control the rights of access to the network
Virtual Cable Test (VCT)35Decides the location of a cable failure, and thus helps remove the failuresquickly.
Single Connective Fabric
• Geographically disparate sites connected with a common virtual fabric
• Managed as a single switch entity• Provides scalability and disaster recovery
City A City B
XRN +
RRPPVirtualFabric
Future Proof Architecture
56
Single Underlying Architecture
Future Proof Architecture
All H3C switching, routing and security platforms leverage a common, unified OS – Comware™ V5:
•OPEX Savings– Train technical staff once to manage entire
portfolio•High Reliability
– State-of-the-Art Unified Code Base•Faster Time-to-Market
–Engineering efficiencies allow us to rapidly bring new and custom features to market with better initial and ongoing stability
•Modular Architecture–Easy to enhance and extend feature set without wholesale changes
57
3COM S7900E Vs. Cisco 4500 and 6500
3Com Confidential. Copyright 3Com Corporation 2008
59
Cisco Catalyst 4500E
• The S7900E and the Catalyst 4500E appear similar, but– S7900E with load sharing has 768 Gbps vs 320 Gbps for Sup6-E
– S7900E provides 488 Mpps for both IPv4 and IPv6 vs 250 Mpps for IPv4 and 125 Mpps for IPv6
– S7900E supports 24 10 Gig ports vs 34 @ 5;1 blocking S7900E supports 480 Gig ports media rate vs 384 @ 4:1 blocking
– S7900E supports fully distributed switching and routing vs centralized
– S7900E supports redundancy in all chassis
3Com Confidential. Copyright 3Com Corporation 2008
60
Cisco Catalyst 6500E
• The S7900E and the Catalyst 6500E appear similar, but– S7900E with load sharing has 768 Gbps vs 720 Gbps for Sup720
– S7900E provides 488 Mpps for both IPv4 and IPv6 vs 400 Mpps for IPv4 and 315 Mpps for IPv6
– S7900E supports 24 10 Gig ports vs 130 @ 4:1 blocking
– S7900E supports 480 Gig ports media rate vs 576 @ 2:1 blocking
– S7900E supports fully distributed switching and routing vs centralized or expensive DFCs
H3C IRF2 vs Cisco VSS
H3C IRF2 CISCO VSS
device number 2 or 4 2 or 4
performance 1.44T per device 1.44T for whole group
series support S12500/S9500E/S7500E/S5800/S5500 C6500E
hardware requirement
No special requirement Special engine needed
• Products Info– Next generation modular 10G box switches for DC
and campus LAN
– Providing industry leading GE/10GE high density
– Providing industry leading high buffer and cut-through
forward mode for DC application
• Products Application– New generation products, released in Q2 2009
• Competitive info– Main competitor includes CISCO 3750Eseries/4900
series, Extreme 650 series, HP
S5800 Series Switch
S5800 Series Switch Position
S5800 SeriesS5810 Series
S5820 Series
S5810 Series
High density GE with large buffer designed for DC access
S5800 Series
High density GE access, position at access layer of campus network and DC
S5820 Series
High density 10G with cut-through forward, designed for DC access
H3C S5800 Gigabit Stackable Switches – Server Farm
• 24 and 48-port 10/100/1000
Base-T with 4-port 10G/1G SFP+– PoE versions
• 24-port 100/1000Base-X SFP version with 4-port SFP+
• 1 media slot– 2/4 port 10Gig SFP+
– 16-port Gigabit copper or fiber
• IRF stacks up to 8
64
3Com Confidential.
Campus Aggregation and Access Switch
H3C S5800 Series Models
Models Configuration Performance Ports Power
48 100/1000M PoE + 4
SFP + 2 interfaces slots
+ 1 OAA slot
264Gbps
392.8Mpps 84Pluggable AC or DC(48V) 1+1 redundancy
48 100/1000M PoE + 4
SFP Plus + 1 interface slot
256Gbps 380.9Mpps
68 AC+RPS ( 52V )
48 100/1000M TX + 4 SFP
Plus + 1 interface slot256Gbps
380.9Mpps68 AC+RPS ( 12V )
24 100/1000M PoE + 4
SFP Plus + 1 interface slot
208Gbps 309.5Mpps
44 AC+RPS ( 52V )
24 100/1000M TX + 4 SFP
Plus + 1 interface slot208Gbps
309.5Mpps44 AC+RPS ( 12V )
24 100/1000M SFP + 4
SFP Plus + 1 interface slot
208Gbps 309.5Mpps
44Pluggable AC or DC(48V) 1+1 redundancy
H3C S5800-60C-PWR
H3C S5800-56C-PWR
H3C S5800-56C
H3C S5800-32C-PWR
H3C S5800-32C
H3C S5800-32F
H3C S5810/S5820 Series Models
Series Models Configuration Performance Power
S5810 Series48 100/1000M TX + 2 SFP
Combo + 2*10GE
136Gbps
101.2Mpps Pluggable AC or DC(48V) 1+1 redundancy
S5820 Series
4 100/1000M TX + 14*10GE + 2 interface slot + 1 OAA slots
488Gbps 363Mpps
AC+ DC ( 48V )Redundancy
4 100/1000M TX +24*10GE
488Gbps 363Mpps
AC+ DC ( 48V) Redundancy
H3C S5820X-28C
H3C S5820-28S
H3C S5810X-50S
H3C S5800 – Software Feature Summary
• Layer 2: MSTP, LACP, QinQ, Selective QinQ, GVRP, DHCP, VCT, Guest VLAN, Port Isolation, Auto Voice VLAN, MAC-based VLAN, Protocol-based VLAN, IP subnet-based VLAN, RRPP, DLDP
• Layer 3: RIP, RIPng, OSPF, OSPFv3, BGP4, BGP4+, ISIS, ISISv6, ARP Proxy, DHCP relay, DHCP server, VRRP, Policy Routing, ECMP
• Multicast: IGMP Snooping, MLD Snooping, IGMP v1/v2/v3, MLD v1/v2, MVR+, IGMP, IGMP Group Policy, IGMP Group Restrictions, Multicast Source Inspection
• Multicast routing: PIM-DM, PIM-SM, PIM-SSM, MSDP
• Security: Port Security, 802.1x, EAD Rapid Deployment, MAC Authentication, MAC Address Restrictions, Radius, TACACS+, SSHv2, HTTPS, IP source guard, CPU Anti-DDOS Attack
• Powerful ACL Support: ACL,VLAN ACL
• Management: Web Support Network Management, IMC Support, Cluster Support, Support for bulk port configuration
• Precise Flow Control: Sflow, IPIFX, SPAN, RSPAN, ERSPAN
67
3Com Confidential.
S5800 Series Stackables Competitive Summary
68
Feature H3C S580032C/56C
Cisco Catalyst 3750E
Cisco Catalyst 4928-10G
Cisco Catalyst 4948-10G
Switching 208 Gbps256 Gbps
160 Gbps224 Gbps
96 Gbps 136 Gbps
Bandwidth 155 Mpps191 Mpps
160 Mpps196 Mpps
72 Mpps 102 Mpps
Ports 24BT+4 SFP+48BT+4SFP+
24BT +2 X248BT +2 X2
24 SFP+ 2 X2
48BT + 2 X2
Media modules 1 (16BT, 16 SFP, 2/4 SFP+)
NO NO NO
Stacking 8 @ 40 GbpsL2/L3
9 @ 64 GbpsL2
NO NO
RRPP YES NO NO NO
PoE YES YES NO NO
Watts 110/148 131/152 300 300
3Com Confidential. Copyright 3Com Corporation 2009
3Com Confidential
3COM STACKABLE SWITCHES AT-A-GLANCE:
S5120 SI & EI
S3100-EI
S5500-EI
S5500-SI
S3600-SI & EI
S5800
S5810 and
S5820
Mapping of Switches
Cisco
10G
EG
EF
E
HP-3COM
S9500/S9500EC6500E
C4500E
N5000 S5800
C3750E/G
C3560E/G
S5600
S5500-SI/EI
C2960G S5100
C3750 S3600-SI/EI
C3560 S3600-SI/EI
C2960 S3100-EI
CE500 S3100-SI
S5600
S5500-SI/EI
S7500E
N7000 S12500
S7500E
C4900 S5800 S7502
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Wireless Convergence Applications / IP Telephony
I PS
Access Management
EAD IMC UAM
SecBlade Integrated Security
SSL VPNFW IPS Load BalanceNetStream
SecPathFirewall/VPN
F5000-AF1000-AF1000-S F1000-EF100-A
H3C Defense in Depth Security Firewall Portfolio
Resource Management
User Management
Service Management
Security Management
IMC / ComwareBasic Management
Configuration Management
H3C SecPath Firewall Series
ISP/IDC
Large Branch/Medium Enterprise
Medium Branch/Small Enterprise
/SOHO/Small Branch
Large HQ
SecPath F1000-A: up to 1.5Gbps
SecPath F1000-S: up to 1Gbps
SecPath F100-A: up to 200Mbps
SecPath F1000-E: up to 6Gbps SecBlade FW for S7500E/S9500
Security of Intranet and Data Center
Two SecPathF1000-E
Redundancy Backup/Load Balance
HQs’s Data Center
IntranetServer
IntranetServer
IntranetServer
IntranetServer
WAN
Two SecBlade
Redundancy Backup/Load Balance
WAN Edge Security
Two SecPathF1000-E
Redundancy Backup/Load Balance
HQs’s Data Center
IntranetServer
IntranetServer
Intranet Server
IntranetServer
WAN
WAN Edge
Site to Site VPN (SSL/IPSEC)
Branch2
Branch1
Branch3
VPN Tunnel
HQs
Excellent Cost-Performance ratio
Flexible networking
Good expandability
Key Features—Overview
Basic Functions of Firewalls:
Division of security domain
4-layer attacks prevention
Other Functions:
Intelligent address conversion
Identity authentication
Content depth identification
Traffic QoS assurance
Powerful routing capability
SecPath
Content depth identification
4-layer attacks
prevention
Intelligent address
conversion
Identity authentication
Security Zones Partition
Diverse VPN features
Traffic QoS assurance
Powerful routing
capability
SecPath
Key Features—Division of Security Domain Division of Security Domain: Implementing network security policies in zones with different security levels, and control-
ling accesses
Firewall
Switch
Trust Zone Untrust Zone
DMZ ZoneTrust zone- >DMZ zone, accessible to POP3 and SMTP services
DMZ zone- >Trust zone, inaccessible to all services
Application Server
Untrust zone- >DMZ zone, accessible to POP3 and SMTP services
DMZ zone- >Untrust zone, accessible to all services
Communications between Trust zone and Untrust zone are prohibited.
INTERNETLAN
Key Features—4-layer attacks prevention
Providing multiple build-in attack prevention functions,
removing most threats to network security: Land Prevention Smurf Prevention Fraggle Prevention WinNuke Prevention Ping of Death Prevention Tear Drop Prevention IP Spoofing Prevention SYN Flood Prevention
ICMP Flood Prevention UDP Flood Prevention ARP Spoofing Prevention ARP Automatic Reverse Lookup TCP Message Bit Exception Attack Preven-
tion Super-large ICMP Message Attack Prevention IP Address Scan Prevention Port Scan Prevention
OutstandingDoS-prevention
function!
Firewall
Trust Zone Untrust Zone
DoS Attack
Hacker
Authorized Users
Unauthorized Access
Authorized Access
Accepted by Security Policy
Blocked by Security Policy
Key Features— Content depth identification
Disabling P2P applications completely
Enabling P2P bandwidth limit
Enabling P2P bandwidth limit by time
Enabling P2P bandwidth limit by user
Source: European Tier I ISP Feb ‘04
Traffic comes from P2P files now is the largest single traffic over the Internet!
eDonkey
BT
HTTP
Competitive Analysis
Cisco ASA Firewall Juniper NS Firewall H3C SecPath Firewall
Firewall Throughput
ASA5580-40 10GbpsASA5580-20 5Gbps
NS5400 30GbpsNS5200 12Gbps SecPath F1000-E 6Gbps
ASA5550 1.2Gbps SecPath F1000-A 1.5GbpsSecPath F1000-S 1Gbps
NS500 700Mbps
ASA5505 150MNS208/204 375MbpsNS50 175MbpsNS25 100MbpsNS5 75Mbps
SecPath F100-A 200Mbps
3DES Encryption
ASA5580-40 1GbpsASA5580-20 1Gbps
NS5400 15GbpsNS5200 5Gbps SecPath F1000-E 1Gbps
ASA5550 360Mbps SecPath F1000-A 600MbpsSecPath F1000-S 600Mbps
NS500 250Mbps
ASA5505 100Mbps NS208/204 175MbpsNS50 45MbpsNS25 20MbpsNS5 20Mbps
SecPath F100-A 60Mbps(Hardware)
Maximum Connection
ASA5580-40 1,000,000ASA5580-20 1,000,000
NS5400 1,000,000NS5200 1,000,000 SecPath F1000-E 2,000,000
ASA5550 650,000 SecPath F1000-A 1,000,000SecPath F1000-S 1,000,000
NS500 250,000
ASA5505 25,000NS208/204 128,000NS50 64,000NS25 32,000NS5 32,000
SecPath F100-A 500,000
Tipping Point - IPS
• Customer Pain
– Leading Network Security Concerns
– Security Gap• TippingPoint Overview• Critical IPS Appliance Requirements
– Key In-Band Requirements
– Where to Deploy
– Security Technology• Dispelling the ‘IDS is IPS’ Myth• DVLabs & Digital Vaccine – The Real
Differentiation• Product Line Overview• Solution Service & Support• Summary
Gartner Magic Quadrant for Network Intrusion Prevention Systems Appliances 1H09
“This Magic Quadrant graphic was published by Gartner, Inc. as part of a larger research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from TippingPoint.”
* Magic Quadrant DisclaimerThe Magic Quadrant is copyrighted April 14, 2009 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts Gartner’s analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action. Gartner disclaims all warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose.
Source: Gartner (April 2009)
The “Magic Quadrant for Network Intrusion Prevention Systems Appliances, 1H09” was authored by Greg Young and John Pescatore April 14, 2009.
Proactive Defense Through Intelligence and Power
Attacks are detected and blocked at full network
speed
TippingPoint IPS functions as a “network
patch” or “virtual software patch”
Attacks are stopped before they can cause damage to your
infrastructure
IPS - Security Accuracy
TippingPoint’s vulnerability filter actsas a Virtual Software Patch,
accurately covering the entire vulnerability
Vulnerability “Fingerprint”
False Positive(coarse signature)
“Exploit A”Fingerprint
Simple“Exploit A”
Filter
Virtual Software Patch
Term Definition
Vulnerability A security flaw in a software program
Exploit A program that takes advantage of a vulnerability to gain unauthorized access or block access to a network element, compute element, O/S, or application
Exploit Filter • Written only to a specific exploit
• Filter developers are often forced to basic filter design due to engine performance limitations
• Impact: Missed attacks, false positives and continued vulnerability risk
Vulnerability Filter
• Vulnerability filter covers all possible exploits associated with a particular vulnerability
“Exploit B”Fingerprint
(missed by coarseExploit A signature)
TippingPoint IPS Product Line
TippingPoint 10
TippingPoint210E
TippingPoint600E
TippingPoint 1200E
TippingPoint 2400E
TippingPoint 5000E
Performance • Inspected
Throughput
• Typical Latency
• Total Sessions
• Connections Per Second
• Invalid SYNs/Second Under SYN Flood
Scalability
20 megabits per second
< 500 microseconds
250,000
3,600+
n/a
Four 10/100/1000Ethernet PortsCopper OnlyTotal Segments - 2
200 megabits per second
< 1 millisecond
1,000,000
7,500+
150,000
Ten 10/100/1000Ethernet PortsCopper OnlyTotal Segments - 5
600 megabits per second
< 84 microseconds
2,000,000
92,000
1,170,000
Eight 10/100/1000 Ethernet PortsFiber and CopperTotal Segments - 4
1.2 gigabits per second
< 84 microseconds
2,000,000
215,000
2,344,000
Eight 10/100/1000 Ethernet PortsFiber and CopperTotal Segments - 4
2.0 gigabits per second
< 84 microseconds
2,000,000
350,000
3,000,000
Eight 10/100/1000 Ethernet PortsFiber and CopperTotal Segments - 4
5.0 gigabits per second
< 84 microseconds
2,000,000
350,000
3,000,000
Eight 10/100/1000 Ethernet PortsFiber and CopperTotal Segments - 4
89
Centrally Managed, Distributed Deployment
• Security Management Server Appliance
• Easy Installation
• Scalable/Fault Tolerant
• High Availability
• Enterprise-wide policy management– Per segment policy– Port-by-port policy– Device-by-device
policy
DVLabs – Industry Leading Security Accuracy, Coverage and Speed
• 30 security researchers• 5 QA engineers• 100% focused on IPS filter
development• Unparalleled security and
networking expertise• Digital Vaccine® group monitors
cyber threats• Writes the SANS@ Risk
newsletter – prioritizing critical malicious threats
Most comprehensive, accurate and automatic protection service available
92
Bob WalderPresident, NSS Group
“The NSS Gold Award is a standard that we carefully reserve for products that we deem near perfect.”
NSS Gold Standard
• Achieved 100% score on every test• Ease of use, management
capabilities• Significant unique selling points• Outstanding value for money• Near perfect user experience
TippingPoint UnityOne™ – Best of Class
94
TippingPoint NSS Summary
Switch-Like Latency or Wire-Speed
performance = <200 microseconds
95
Closing the Gap with TippingPoint Intrusion Prevention
High Performance Custom Hardware Highly Advanced Prevention Filters Constant Update Protection Service
5 Gbps Throughput Switch-Like Latency 2M Sessions 250K Sessions/Second Total Flow Inspection 64K Rate Shaping Queues 10K Parallel Filters
PROTECTS:• Routers (e.g. Cisco
IOS)• Switches• Firewalls (e.g.
Netscreen, CheckPoint FW1)• VoIP
FROM:• Worms/Walk-in
Worms• Viruses• Trojans• DDoS Attacks• SYN Floods• Traffic Anomalies
PROTECTS:• Microsoft
Applications & Operating Systems• Oracle Applications• Linux O/S• VoIP
FROM:• Worms/Walk-in
Worms• Viruses• Trojans• DDoS Attacks• Internal Attacks• Unauthorized
Access• Spyware
PROTECTS:• Bandwidth• Server Capacity• Missions-Critical
Traffic
FROM:• Peer-to-Peer Apps• Unauthorized Instant
Messaging• Unauthorized
Applications• DDoS Attacks
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Convergence Applications / IP Telephony
Wireless
Enterprise Wireless Secure Mobility Portfolio
AP2750 • Managed AP • One 802.11abg radio• Flexible 1 x 11bg or 1 x 11a • Sentry sweep capability
WXR100 • 1 10/100 &
1 PoE 10/100 • Max 3 MAPs
AP3750 • Managed AP• 2 802.11abg radios• Flexible 1 x 11bg and 1 x 11a • Sentry sweep device capability
WX1200 • 2 10/100 & 6 PoE
10/100• Max 12 MAPs
WX2200 • 2 10/100/1000 GbE• 2.0 Gbps Throughput• Expandable 120 MAPs
All WX Wireless Controllers are 802.11n Ready
WLANMgmt
AccessPoints
AirProtect Enterprise
Complete Enterprise Wireless Intrusion Prevention and WLAN Management
AirProtect Sentry
Remote offices and SMBs
AirProtect Planner &3WXM Wireless Mgmt
WIPS and Mgmt
AP3150 • Dual radio 802.11a
and 802.11b/g
AP3850• Dual radio 802.11a and 802.11b/g• Local switching, bridging and mesh
Bridge
Bldg to Bldg Bridge• Outdoor Bridge/AP• Dual Radio, 802.11a
andb/g• Weatherproof
AP3950 • Managed AP • Dual radio 802.11n/a +
802.11n/g• Simultaneous 2.4GHz
AND 5GHz
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Wireless Convergence Applications / IP Telephony
3Com MSR Router PortfolioP
erfo
rman
ce a
nd
Cap
acit
y
A radically simple suite of multi-service platforms
delivering an open community of services into the network via
OSN
160kpps 600kpps
2SIC Slots 4SIC + 6FIC Slots
EnterpriseBranch
Large EnterpriseBranch
Regional OfficeRegional Branch
Small Enterprise HQ
20 Series30 Series
50 Series
› Simplicity through:― Common
architecture― Single software
level― Uncomplicated
module choices
MSR Family: Flexible Architecture
Software Architecture
3Com Version 5 Software PlatformPowerful, Fully Featured, Versatile platform
Hardware Architecture
High Speed Modules & Interfaces Powerful CPU & MemoryEmbedded Encryption ModuleVoice Processing Module
Application ServicesData, Voice, Security, ManagementMultiple Services Concurrently
MSR- All-In-Wonder
It integrates the functions of a router, switch, VPN gateway, firewall, voice gateway and PBX, not only saving on network equipment investment but also simplifying the networking scheme and decreasing the O&M cost of the enterprise network.
It supports the open application platform and provides professional L4-L7 solutions under cooperation with industry-leading application software vendors. The standard externally-open interfaces, through secondary cooperation and development, satisfy personalized customer demands.
It provides perfect VPN solutions, with a maximum hardware encryption speed of 500 Mbps . The firewall performance, with a maximum of 1.5 Gbps, supports antivirus, attack-defending and anti-worm. It supports the USB hardware based digital certificate technology.
It greatly increases processing performance , to a maximum of 600 Kpps. It supports hardware acceleration and application layer QoS. It has an advanced N-Bus architecture design, ensuring the wire-speed capability for multi-service concurrency.
H3C MSR Multi-service Open Router
MSR 201X Series
MSR 20-10
MSR 20-11
MSR 20-12
MSR 20-13
MSR 20-15
• Base upon Comware v5 platform, provides
more features
– IPv6
– MPLS TE
– Voice
– Wireless Access
• Base upon new hardware platform, provides
better performance
– Fixed 4 switch fast Ethernet ports & 1
fixed L3 fast Ethernet interface
– 1SIC/DSIC slot, satisfy requirements of
interface neatly
– All MSR 201X series routers include
wireless supported/not-supported
machine
– Special machine for voice VE1/VT1
– 201X has lock against theft
• MSR 201X satisfies SMB customer better
MSR201X Basic Attribute Overview
Item MSR2010 MSR2011 MSR2012 MSR2013 MSR2015
Fixed interface
Con/Aux 1 1 1 1 1
USB 1 1 1 1 1
FE interface 1 1 1 1 1
FE SW port 4 4 4 4 4
SA 0 1 0 0 0
ADSL 0 0 0 0 1
G.SHDSL 0 0 0 1 0
ISDN S/T 0 0 0 1 1
AM 0 0 0 0 1
E1/T1 0 0 1 0 0
External module
SIC 1 1 1 1 1
Internal Module
VPM N/A N/A N/A N/A 1
MSR20 Series
MSR20 Series Basic Attribute Overview
Item MSR 2020 MSR 2021 MSR 2040
Fixed interface
Console 1 1 1
AUX 1 1 1
USB 1 1 1
FE L3 Interface
2 Copper 2 Copper 2 Copper
FE switching port
0 8 0
External module
SIC 2 Sics 2 SICs 4 SICs or 2 DSICs
Internal module
ESM 1 1 2
VCPM 0 0 1
VPM 0 0 2
MSR30XX Series
MSR 30-11
MSR 30-16
MSR30XX Basic Attribute Overview
Item MSR3011 MSR3016 MSR3020 MSR3040 MSR3060
Fixed interface
Console 1 1 1 1 1
AUX 1 1 1 1 1
USB 0 1 2 2 2
GE 0 0 2 Copper 2 Combo 2 Combo
FE 2 2 0 0 0
SA 1 0 0 0 0
External module
SIC 2 4 4 4 4
DSIC 0 2 2 2 2
MIM 1 1 2 4 6
XMIM 1 0 0 0 0
DMIM 0 0 0 1 2
Internal Module
ESM 1 2 2 2 2
VCPM 0 1 1 1 1
VPM 0 2 2 3 3
MSR50 Series
MSCAMPUF
MSR50 Basic Attribute Overview
Item MSR 50-40 MSR 50-60
SIC module 4 4
FIC module 4 6
MSCA module 1 1
Fixed interface
Console 1 1
AUX 1 1
USB 2 2
GE2 GE Combo interfaces
2 GE Combo interfaces
Expandable slots of 50 series MSCA modules Quantity
VPM slot 4
VCPM slot 1
ESM slot 2
Market Position of Router Products ( Quick Reference )
ISR800
ISR1841
AR18
ISR2801
ISR2811
ISR2821
ISR2851
ISR3825
ISR3845
Cisco 7301
Cisco 7200
Cisco 7302/04+PXF
ASR1000 - ESP5
ASR1000 - ESP10
C7600+Sup720
MSR20-1x
MSR 20-21
MSR 30-11
MSR 30-16MSR 30-20
MSR 30-40
MSR50-60+MPUF
MSR50-40/60+MPU G2SR6604 with FIP
100
SR6602
SR6604+FIP 200
SR6608+FIP 200
SR8800
Cisco HP-3COM
Run Rate,
Resell, and
Branch
Enterprise Regional
Office , SMB HQ
Enterprise Core
Enterprise Core
and Egress,
Carriers
Carrier’s Internet
egress
MSR 20-40
MSR 30-60
MSR50-40+MPUF
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Wireless Convergence Applications / IP Telephony
3Com Voice Portfolio
3Com NBX IP Telephony – 25 to 100 Users
• Built-in Applications– ACD, Unified Messaging
• Easy to maintain and administer – 10 minutes to dial tone
• Cost competitive– IP Telephony benefits at a key
system price
The Standard for IP-PBX
VCX Family Offerings
Differentiated attributes for small, medium and large businesses
VCX Connect 100 VCX Connect 200 VCX Enterprise / IBM System i IPT
Ideal owner: Small business that needs an easy-to-manage, integrated communications solution with high resilience
Ideal owner: Medium business that needs an easy-to- manage, resilient communications solution with support for rich media and enhanced applications
Ideal owner: Medium or large multisite business that needs a resilient communications solution with remote site survivability and support for rich media and enhanced applications
Offering attributes: ― Cost-effective― Integrated solution― Redundancy options
Offering attributes:― Cost-effective― Integrated applications― Redundant server option
Offering attributes:― Highly scaleable― Flexible application/server deployment― Open-standard application integration
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
Management Platforms
Ethernet Switches - Stackables Routers
Security Wireless
OSNOpen Services Networking
Convergence Applications / IP Telephony
Today’s Enterprise Customer ScenarioSingle Function Hardware, Multiple Platforms, Limited Flexibility
Edge
Aggregation
Security:
IPS, NAC, UTM
Security
WAN
Optimization
IP-PBX
WLAN
Session Border
Controller (SBC)
IP-PBX SecurityWLAN
SBC
Core
• Discrete products / platforms• Cost inefficiency: CAPEX,
administration, power
Application Layer
• 5500G at Edge, 8800 at Core• Distributed VCX Voice• Comprehensive Security
Connectivity Layer
Aggregation
Core
Edge
3Com Open Services Networking (OSN) Open Platforms, Simplified Management, Scaleable Services
Power of OSN Is the ApplicationsPolicy-based provisioning service for routers, firewall and VPN
E-mail Information Leak Protection
Security Information/Event Management (SIEM) and Network Behavior Analysis
Application Acceleration over the WAN
Voice call processing and voice services (VM)
Video Management Delivery for VoD and streaming content
Wireless LAN
Open Source Services Monitoring Bundle: MRTG, NTOP, TShark, Nagios tools
3Com’s Enterprise Core to Edge Portfolio
Ethernet Switches - Modular
OSNOpen Services Networking
Ethernet Switches - Stackables Routers
Security Wireless
Management Platforms
Convergence Applications / IP Telephony
Innovative Single Pane Management• Fully integrated, comprehensive Management platform
– Based on a Resources, Service and Users model
– Delivers full FCAPS solution
– Designed to support ITIL initiatives
• SOA based modular design– Highly integrated modules to deliver new functionality
• Supports 3Com, H3C and 3rd party devices
• Rich Enterprise class functionality– Topology, Alarm, Performance and Configuration Management
– User Access Management (UAM) & Endpoint Admission Defence (EAD)
– MPLS VPN, Wireless Management
Single pane management for the entire global enterprise network
H3C IMC (Intelligent Management Center)
119
121
iMC Platform and Modular Components
iMC Platform iMC Platform Platform
User Access Management
Endpoint Access Defense
ACL Manager
MPLS VPN Manager
Network Traffic Analysis
Ser
vice
Co
mp
on
ents
Wireless Management
EPON Management
Behavior Audit Component
QoS Audit Component
Security Management Component
……Intelligent ConfigurationCenter
Device Manager
IPSec VPN Manager
Branch Intelligent MgtSystem
122
Problems Solved by Management
• “I have too many tools”– Every vendor, every technology is requiring its own management interface
– The need to “Do more … with less”
• “My network is unstable due to changing configurations”– Role base mgmt controls who can change network configuration
– Lock down network Configuration
• Baselining / Configuration change / role back etc....
– Audit trails – who changed it and when ?
• “I’ve no visibility or control of what's happening on my network”– Network Traffic Analysis = Who is doing what on my network
– ACL Mgmt = Take control
– Leverages Flow data in Routers / Modular via module / 4800 sFlow (5800)
• “I need to control who has access to what”– Network Access Management
122
Strong Presence in US Government
Worldwide Customers By Vertical
3Com Customers - India
CASE STUDY - INDIA
SEBI – End Point Security enabled SCN
2 Switch 881440 Switch 5500G-EIs 6 Router 5642sVCX IP Telephony Solution1000 3Com IP Phones2 Wireless LAN Controller
WX4400s
100 MbpsWAN connection
1000 Mbps
64 Wireless LAN Managed Access Point 3750s
TippingPoint Intrusion Prevention System
Enterprise Management Suite Global Services
3Com Switch 8807TippingPoint™ IPS
Server Farm
Remote Branches
3Com IP Phones and Desktop PCs
3Com Switch 5500-EIs
SEBI Headquarters
3Com Enterprise Management
Suite
3Com VCX Gateway
3Com VCX™ IP Telephony Solution
3Com Wireless LAN Controller WX4400
3Com Wireless LAN Managed Access
Point 3750
3Com® Router 5642
3Com Router 5642
3Com IP Phones and Desktop PCs
3Com Switch 5500-EI
Connectivity to Public Phone
Systems
WAN
Network Solutions Messaging
3Com Confidential
127
The ‘No Compromise Network’
TCO by Design
Innovative Future-Proof Architecture
Defense in Depth
Critical Requirements for a “No Compromise Network”
How We Deliver the ‘No Compromise Network’
Green IT Open Standards
Business Continuity
Operational Efficiency
Defense In Depth
Thank You
Demand Exceptional TCO by Design
Green IT Open Standards
Business Continuity
Operational Efficiency
Integrated Security
Merchant Silicon
R&D Innovation
Future Proof Design
Management Automation
Embedded Applications
$$ Exceptional TCO by Design $$
Critical Requirements for a “No Compromise
Network”
Critical Solution Enablers
End Result
Data CenterCampus
Core
Aggregation / Building
Core
Access Layer
Remote Office
Innovative
Future-proof
Architecture
33% Lowe
r TCO
DeepCustome
rIntimacy
3Com: Meeting the Needs of Today’s CIO/IT Management
• Long-term investment protection– Built on open standards to future-proof networks– Flexible enough to interoperate with existing networks and add new
applications as needed• Lower total cost of ownership (TCO)
– Faster deployment, ease-of use and lower maintenance cost• Energy efficient platforms
– Increased speeds (35% higher with new silicon), lower energy consumption (60% decrease in active power needs)
• Reliable, cost-effective, end-to-end solutions– Data, voice and security
Case Studies- H3C Enterprise Networking
132
Increasingly Proven Around the World
Manufacturing Telecommunications
FinanceEducation GovernmentTransportation
Utilities
Inspira-3Com Services
Global Services & Support Center
Our Mission The health of your business is tied to the efficiency and security of your
network, and 3Com understands this.
Our Services
3Com takes a passionate approach to service delivery; based on a wealth of experience that crosses a broad range of industries, business models, and network configurations.
3Com Confidential
134
3Com Confidential
135
Maintenance Services Overview (Contracts)
MaintenanceOnsite
Engineering Assistance
Advance Hardware
Replacement
Technical Telephone Support
Software Upgrades
Web Services
Guardian Express Software Upgrades Software
Application Support
SLAs9x6xNBDS 24x7xNBDS
3Com Warranty
3Com Confidential
137
3COM WARRANTY SUMMARY
New Product Warranty and Other Services Provided
with the Purchase of Genuine 3Com Product
Limited Lifetime Hardware WarrantyThree (3) Years Limited Hardware WarrantyTwo (2) Years Limited Hardware WarrantyOne (1) Years Limited Hardware WarrantyNinety (90) Days Limited Software Warranty
Services are effective at Warranty start date, and are enabled with Product registration. Customers receive a User ID with eSupport registration.
3Com Confidential
Drop Zones in India
Drop ZonesMumbaiDelhiChennaiBangaloreHyderabad
3Com Confidential
139
Escalation Support TeamIncludes a 3Com product specialist, escalation
engineer, and design center engineerThey isolate product defects, configuration or
environmental issues and create solutionsDo site visits when required
Three Support Levels
Non-TechnicalCall screening and information gathering
Service contract entitlementIncident creation
Live call routing based on product and service level
Technical Support Product SpecialistFault isolation based on problem, operation and
configuration analysisReplicates the problem in the lab
Recommends solutions or workaroundsPublishes new solutions in Knowledgebase
L1
L2
L3
Inspira 3Com Support Centre
• Direct L1 Support• Co-ordination for L2 and L3 Support• Single point contact for support for 3Com products
in India• Toll-Free Access : 1-800-209-9909• Landline : +91-22-66929909• Email-id : [email protected]• Toll-Free (3Com):000-800-4401193
Thank you
Thank you!