nexus7k roadshow sept2011
TRANSCRIPT
Cisco Nexus 7000 Series
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 2
Where the 7K fits
Data Center Virtualization Projects DC Networking Upgrades to accommodate 10Gig Ethernet, FCOE1
DC Disaster Recovery ProjectsOpportunity to build secondary DC, OTV as a solution for DC Migration
New Campus Network High-density 10GE aggregation for video ready campus network
2
5
DC Consolidation ProjectsNexus can add value with options such as VDC, FEX-Link, 10GE3
Green-field Data Center Build-outvPC, vDC, FabricPath, OTV, FCoE, & UCS differentiate the Nexus 7K4
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 3
How the Nexus 7K Stacks Up230/550 Gbps
per slotFabricPath FCoE OTV VDC vPC ISSU
Nexus 7K
Catalyst 6500
HP
Brocade
Juniper
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 5
List Price ComparisonNexus 7K vs Catalyst 6500
PlaceIn theNetwork
Configuration Cat 6509-E Nexus 7010 Comparison
All 1GbE Common Equipment1 SupervisorDual 6KW PS
I/O Ports96 -10/100/100048 – 1GbE SFP
$125,495 $105,000 N7K is $20K less, about 20% less
DC Access
Common Equipment2 SupervisorDual 6KW PS
I/O Ports240 -10/100/10004 – 10GbE
$206,475 $205,080 ~Same Price
DC Aggregation
Common Equipment2 SupervisorDual 6KW PS
I/O Ports16 -10GbE Linerate48 – 1GbE SFP $244,975 $234,920
Nexus 7000 is $10K less,
about 4% less
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Hardware overview
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 8
What Is Nexus 7000? Data-center class Ethernet switch designed to
deliver high-availability, system scale, usability, investment protection
I/O Modules
Forwarding Engines
Chassis
Supervisor Engines
Fabrics
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 9
Nexus 7009 Nexus 7010 Nexus 70188.8 Tbps 9.9 Tbps 18.8 Tbps
Slots 7 I/O + 2 sup 8 I/O + 2 sup 16 I/O + 2 sup
Height 14 RU 21 RU 25 RU
BW / Slot Fab 1 N/A 230 Gig / slot 230 Gig / slot
BW / Slot Fab 2 550 Gig / Slot 550 Gig / slot 550 Gig / slot
9, 10 & 18 Slot versions 15+ Terabit SystemDCB and FCoE ReadyModern, Modular OSDevice Virtualization Cisco TrustSec Continuous Operations
Nexus 7000 SeriesFirst in Class
Highest Density 1G / 10G / 40G / 100GE Switching Platform in Industry
NX-OS Operating System and Data Center Network Manager
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 10
Nexus 7018 Chassis
Front Rear
System statusLEDs
Integrated cablemanagement
Supervisor slots (9-10)
Power supply air intake
Crossbar fabric modules
Power supplies
25RU
Side-to-side airflow
Common equipment removes from rear
Systemfan trays
I/O module slots(1-8, 11-18)
Optional front door
Supported in NX-OS release 4.1(2) and later
N7K-C7018
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 11
Nexus 7010 Chassis
Optional locking front doors
Front Rear
System statusLEDs
Integrated cablemanagementwith cover
Supervisor slots (5-6)
I/O module slots(1-4, 7-10)
Air intake with optional filter
Air exhaust
Crossbar fabric modules
System fan trays
Power supplies
Fabric fan trays
21RU
ID LEDs on all FRUs
Front-to-back airflow
Locking ejector levers
Common equipment removes from rear
Two chassis per 7’ rack
N7K-C7010
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 12
Nexus 7009Expanding the Nexus 7000 Portfolio
October2011
14 RU (same form factor as Catalyst 6509-E)
2 supervisor slots (slots 1 and 2) 7 I/O module slots (slot 3 – 9) 5 fabric slots at front center of chassis
• Next-Gen fabric module delivering 110 Gbps per slot per fabric
• 550 Gbps per slot w/5 fabrics
2 power supplies (installed from rear) 1 fan tray (installed from rear)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 13
Nexus 7000 Linecard OptionsFeature comparison of M-Series and F-Series
M1 Series(Service Rich)
F1 Series(Performance)
Performance (bps) 80Gbps 320Gbps Local, 230Gbps Fabric
Line Rate 10GbE Ports (18 slot) 128 512
L3 (IPv4, IPv6) Yes(Up to 1M routes) No
L2 Table 128K 16KNetflow Yes NoACL Up to 128K 2KPer Line Rate 10G Port Ingress / Egress Buffer 100MB / 112MB 1.53MB / 0.7MB
FCoE No YesFabricPath (TRILL) No YesLatency ~ 20 μs ~ 5 μsPower per Line Rate 10GbE Port ~ 80 watts per port ~ 10 watts per port
List Price$70K - 32 ports 4-1$44K – 8 ports 1-1
$35K – 32 ports
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 14
Nexus 7000 M-Series ModuleHigh Performance 10GbE Routing Modules
8 port 10GE XL (80G) X2Up to 120Mpps
48 ports 1GE XL (46G) SFPUp to 60Mpps
N7K-M108X2-12L
N7K-M148GS-11L
Capability Size (w/o Scalable Feature License)
Size (w/ Scalable Feature License)
MAC entries 128K 128K
IPv4 / IPv6 routes (128K / 64K) Up to (1M / 350K)Security / QoS ACL entries 64K 128KNetflow 512K 512K
32 port 10GE (80G) XL SFP+ Up to 60Mpps
N7K-M132XP-12L
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 15
M1 Module XL Series licenses The M1 modules use non-XL table sizes by default. A Scalable Feature
license is required per chassis to enable XL table sizes.
When scalability license is applied, all line modules have to be of the XL type. A mix of modules drops overall FIB size to non-XL size
This behavior is per VDC, so non XL modules may not affect XL modules in other VDCs
License
Support for 8 modules 1M FIB TCAM (IPv4/IPv6) 128K ACL/QoS TCAM
7010 Scalable Feature
Features
7018 Scalable Feature
Support for 16 modules 1M FIB TCAM (IPv4/IPv6) 128K ACL/QoS TCAM
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 16
Nexus 7000 F-Series Module High Performance 10GbE supporting Unified Fabrics
Supports FCoE (NX-OS 5.2) L2 only. L3 provided by M1 modules Multi-protocol – Classic Ethernet, VPC, FabricPath, DCB Flexible 1G and 10G autosensing High Performance/Scalabilty - 320G Fabric Capacity, 512 Ports/System No FEX support 1G/10G AutoSensing
32-port 1/10 GbE for server access and
aggregation
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 17
M1 and F1 modules are complementary
CoreAll M1 Series
AggregationM1 Series Up LinksF1 Series Down Links
Access – All F1 Series
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 19
SFP+ Twinax Summary
1 Meter (3.37 Feet)
3 Meter (10.11 Feet)
5 Meter (16.40 Feet)
10GBASE-CU
10GBASE-CU
10GBASE-CU
Please reference the Nexus 7000 Data Sheets for a complete list of supported optics and specifications.
10GBASE-ACU
10GBASE-ACU
7 Meter (22.96 Feet)
10 Meter (32.80 Feet)
SFP+ Copper Twinax cables are a cost effective solution for connecting devices within a rack or across racks in close proximity. The SFP+ Twinax cables are supported on the 32 port 10GigE M1-XL module.
5.1(x)
5.1(1)
5.1(1)
5.1(2)
5.1(2)
5.1(2)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 20
FET Optics for 32 Port 10G Modules
25 - 100 Meters10G-SFP-FET
Fabric Extender Transceivers (FET) provide a low cost solution for connecting a Nexus 2000 (FEX) to a Nexus 7000. A FET is only supported for fabric connectivity on the 32 port 10GigE modules
SpecificationsForm Factor SFP
Cable Type Multimode (OM2 or OM3)
Power 1 Watt
Latency 0.1 Microsecond
FabricUplink
5.1(1)
Please reference the Nexus 7000 Data Sheets for a complete list of supported optics and specifications.
Nexus 2000
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 22
40G module6-port 40G module with 120MppsQSFP transceivers – focused on DC distances 550Gbps fabric (2nd generation fabric)
40/100G module2-port 40/100G module with 120MppsCFP transceivers – focused on wide-area distances550 Gbps fabric (2nd generation fabric)
M-Series 40G and 100G XL I/O Modules1H CY12
Cisco Confidential
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:High Availability
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 24
Hardware FIB
Software RIB
Stateful Fault Recovery
Linux Kernel
BG
P
OSP
F
PIM
TCP/
UD
P
IPv6
STP
HSR
P
LAC
P
etc
HA Manager
Restart process!
If a fault occurs in a process…
HA manager determines best recovery action (restart process, switchover to redundant supervisor)
Process restarts with no impact on data plane
Table Update
N7K Data Plane
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 25
Release 4.0
Release4.1
In-Service Software Upgrade (ISSU)
Linux Kernel
OSP
F
BG
P
PIM
etc.
HA Manager
N7K Data Plane
Linux Kernel
HA Manager
Active
I/O Module Images
Upgrade and reboot
Release 4.0
Release4.1
OSP
F
BG
P
PIM
etc.
Standby
Initiate stateful failoverUpgrade and rebootUpgrade and reboot I/O modules
Active
Standby
Needed for animation,
don’t remove!
N7K# install all kickstart bootdisk:4.1-kickstart system bootdisk:4.1-systemN7K#N7K#
Release 4.0
Release4.1
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 26
High Availability - Independently Verified Zero Packet Loss
Zero Packet Loss when Upgrading and Downgrading the software image - ISSU
Zero Packet Loss when removing Fabric Cards
Zero Packet Loss when killing and restarting OSPF
Zero Packet Loss when failing over Supervisors
http://www.networkworld.com/reviews/2008/090108-test-cisco-switch.html
Test Conditions: Nexus 7000 I/O modules load balance all of the traffic across all 5 Fabric Cards. The test was performed with 51,200 OSPF routes, 256 OSPF neighbors (one on each 10GbE port), every packet going through a security ACL of 7000 lines, every packet being rewritten using a 500 line QOS ACL, each line cards was doing 48 Mpps lookup, and Cisco Netflow to track up to 512,000 flows .
Cisco Confidential
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Virtual Device Context (VDC)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 28
Various Degrees of Virtualization
VRFs & VLANsLogical separation of data-plane (and some control-plane) functionality
Virtual Contexts (i.e. Firewalls, ACE, etc.)Logical separation of configuration or management and data-plane
Virtual Device ContextsLogical separation of control-plane, data-plane, management, resources, and system processes
Data/Control Plane
Data/Control Plane+
Management Plane
Data/Control Plane+
Management Plane+
Resources+
Operating Environment
Hypervisor Model
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 31
Virtual Device Contexts (VDCs)Application exmaples
Consolidate and support multiple business units, departments, and networks
Web, App, Database
Production, OOB mgmt, Development, Test
Customer A, Customer B, Customer C
Provide network segmentation to meet security compliance requirements
Internet, Extranet, DMZ, Intranet
Non-Secured, Secured, PCI
Implement logical tier design Core, Aggregation, Access
VDC2
Secure
VDC3Non-
Secure
VDC2 Internal
VDC3 DMZ
VDC3Agg
VDC4Access
VDC2Core
VDC2 BU1 /App 1
VDC3BU2 / App 2
VDCs provide logical separation of control-plane, data-plane, management, resources, and system processes within a physical switch
VDC4Internet
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Port channels & Virtual Port Channels (vPC)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 33
Virtual Port Channel - vPC
vPC is a Port-channeling concept extending link aggregation to two separate physical switches
Allows the creation of resilient L2 topologies based on Link Aggregation.
Eliminates the need for STP in the access-distribution
Provides increased bandwidth All links are actively
forwarding vPC maintains independent
control planes Supported on both M-series and
F-series modules
Virtual Port ChannelPhysical Topology Logical Topology
L2
SiSi SiSi
Increased BW with vPC
Non-vPC vPC
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:FabricPath
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 36
Architecture Flexibility Through NX-OS
Spanning-Tree vPC FabricPath
PodBandwidth
Active Paths
Up to 10 Tbps Up to 20 Tbps Up to 160 Tbps
Single Dual 16 Way
Infrastructure Virtualization and Capacity
Layer 2 Scalability
16Switches
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Fiber Channel over Ethernet (FCoE)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 40
Converged End-to-End FCoE
FCoE Rack Mount Servers
Unified Access Layer
Nexus 5K
LAN
Cisco UCS Blade servers
Nexus 2232
Nexus 7K
iSCSI FCoE • Completely Eliminate dedicated SAN switches.
• A single network for LAN and SAN with lower points of management.
• Requires two licenses on N7K: 7K-FCOEF132XP (per module) and N7K-SAN1K9 (per chassis) if adv features (as IVR, VSAN-based Access Control, Fabric Binding) are required.
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Fabric Extender (FEX)Support
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 42
Nexus 2000 (FEX) Overview
Nexus 7000
Nexus 2000
Virtual Chassis
Single Mgmt Entity1 Configuration
The Nexus 2000 platform integrates with the Nexus 7000 to create a cost effective, highly scalable logical switching platform for server aggregation. The Nexus 7000 performs all configuration and provisioning functions, which simplifies the network architecture and reduces implementation time.
Reduced Cap-EX and Op-EX Cost-Effective Cabling Options Highly Scalable/Flexible NX-OS Feature Consistency Simplified Management Reduced Power Consumption 10GE Transition Strategy
Benefits:
5.1(1)
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Overlay Transport Virtualization (OTV)
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 44
OTV OverviewOTV provides layer-2 network connectivity between remote sites over a layer-3 network. OTV is a key enabler for increasing server availability when clusters and virtualized deployments require layer-2 connectivity between remote sites connected by a layer-3 IP network.
Alternative to EoMPLS, VPLS, and DWDM for extending layer-2 networks Optimized control plane with loop-prevention supporting point-to-cloud connectivity
Benefits:
5.0(3)
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Security
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 47
Control Plane Policing (CoPP)
Prioritizes important control plane traffic and protects supervisor from DoS attacks
Follows MQC model, with service-policy applied to “control-plane” interface
Provides granular classification, marking, and rate control for control-plane bound packets
Receive packets Broadcast MAC + non-IP packets
Multicast packets Broadcast MAC + IP packetsException packets Mcast MAC + IP packets
Redirect packets Router MAC + non-IP
ARP packets
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 48
Encrypted links
• Provides “WLAN / VPN equivalent” encryption (128bit AES) to LAN connections
•Consists of Encryption (IEEE802.1AE) + Key Management (IEEE802.1X-Rev)
•Performs hop-by-hop encryption which makes it compatible with network services (ACL, QoS, etc)
CampusAAA
Single Sup-E
MACSec
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Serviceability
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 50
Smart Call Home
Can help reduce MTTR Active/Proactive
Notification - Alerts provided before you know there is a problem
Integrates with existing NOC tools (XML/SMTP)
Devices continually monitored with Connected Service
Optional automated TAC case creation
Integrates with EEM and GOLD
Call HomeCall
Home DB
Service RequestTracking System
Messages Received: Diagnostics Environmental Syslog Inventory and
Configuration
Customer
NotificationReportingAnalysis
AutomatedDiagnosisCapability
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 51
Configuration RollbackConfiguration rollback provides a way to archive and save older configurations so that they may be recovered as and when needed…
Configuration rollback allows the user to specify how many older configuration versions they wish to archive ..
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 52
Configuration Rollback Provides checkpointing and rollback facility to return
configuration to any previous state Options to name checkpoints, view contents of
checkpointed configuration, diff checkpoints versus each other or running/startup configuration, etc.
n7k# sh checkpoint
---------------------------------------------------------------------
Checkpoint_id Label UserName TimeStamp
---------------------------------------------------------------------
16777476 10-8 tstevens Mon Oct 8 21:55:45 2007
n7k# rollback destination label 10-8
Note: Processing the Request... Please Wait
Note: Generating the Rollbackpatch... Please Wait
Note: Executing the patch... Please Wait
`conf t`
`interface Ethernet1/1`
`no service-policy type qos input foo stats-enable`
`no ip access-group test in`
n7k#
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 53
Embedded WireShark Analyzer
Real-time, on the device protocol analyzer provide ultimate visibility into various traffic hitting CPU from remote locations
Control Processor
Data Traffic
Management Traffic
mgmt0Inband
Control Traffic
Network
Attack
Monitor traffic from inband and mgmt0 interfaces to the Control Processor
Extensive capture and display options, including to file (.pcap)
Capture rules/filters
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 54
Data-Plane Traffic Monitoring
Facilitate troubleshooting by provide additional visibility into user-traffic either on or off the device
CPU
Supervisor
ACL
SPAN Support mix of
interface/port-channel/VLAN as SPAN sources
Avoid service interruption caused by mis-config -- Require ‘switchport monitor’ to be configured on SPAN destinations
RSPAN / ERSPAN (Released in 5.1(1)) Support RSPAN VLANs (pass-through)
and destination
ACL Logging Monitoring live traffic on the device with
minimal impact on CPU loading
VLAN
I/O Module
RSPAN VLAN
RSPAN VLAN
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 55
Slash Notation
n7k(config)# int e2/23
n7k(config-if)# ip add 10.2.23.1/24
n7k(config-if)# ipv6 add ::abcd:223/120
n7k(config-if)# ip access-list test
n7k(config-acl)# permit ip 10.1.1.0/24 any
n7k(config-acl)#
“Slash” notation supported for all IPv4/IPv6 masks
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 56
Interface Ranges
n7k(config)# int e1/1-3
n7k(config-if-range)# no sh
n7k(config-if-range)# int e2/3
n7k(config-if)# ip add 10.2.3.1/24
n7k(config-if)# int e2/1-4,e1/1-2,e1/15
n7k(config-if-range)# mtu 9216
n7k(config-if-range)#
Same configuration used for interface ranges as for single interfaces
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features:Management
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 58
Nexus Management Options
Nexus
SNMPCLINetconf/XML
3rd Party ApplicationDCNM
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 59
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 60
DCNM: VPC Pre-Deployment Validation
DCNM automatically enforces configuration
consistency between the VPC peers for all
matching variables.
No need for interacting with 3 cli consoles, a
wizard guides the user step by step with clear indication of the task being completed.
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 61
DCNM: VPC Network Compliance Monitoring
1. An Operator tampered with the VPC settings via cli, creating configuration inconsistencies.
2. Inconsistencies are automatically discovered.
3. A color-coded elliptic visual is indicative of such a condition.
Detailed physical and logical VPC topology
maps provide valuable insight for
troubleshooting.
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 62
VPC Configuration Automatic Repair
.. and are automatically
resolved.
VPC configuration
inconsistencies are clearly reported …
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 63
Per Virtual Device Context Operations
VDC are transparently handled throughout the application
Wizard-based Configuration - Interfaces Allocation Across VDC - Resource Limit Enforcement with Templates - Resource consumption monitoring - IPv4 and IPv6 Capable
VDC aware Fault & Performance MonitoringVDC aware RBACTopology Representation
- VDC per Chassis - VDC to VDC Connectivity
Real-time or DelayedDiscovery
Managing Virtualization: VDC
InfrastructureKernel
VDC 1VDC 2VDC 3VDC 4
VDC 2
GLBPOSPFBGPEIGRP
HSRPIGMP
PIM SNMP …
Layer 2 Protocols
VLANPVLAN
UDLDCDP802.1XSTP
LACP CTS …
Layer 3 Protocols
VDC #1VDC 1
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 64
DCNM- OS Image Management Wizard based installation of NX-OS images on multiple devices
simultaneously Performs validations before installation:
- Verifies the switch’s flash memory space availability for the image to download- Verifies compatibility between currently running network services and the new image
Allows for time based deployment i.e. on-demand or scheduled Fully leverages NX-OS ISSU transparent software upgrade that has no
impact to the network traffic (no service disruption, zero packet loss) Detects installation failure and automatically initiates recovery action Images can be installed from external servers using TFTP/FTP/SFTP
NexusDCNM Compatibility Matrix
Software Version Change
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 65
DCNM- Fault Management
Industry Standard Event BrowserEvent Collection and NormalizationPer Network Feature Correlation Noise Filtering for Root Cause IsolationEvent Propagation
- actionable tasks- integration in the SMF
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 66
DCNM- Performance MonitoringReal-time Traffic Statistics
* Port utilization: inbound/outbound, unicast / multicast / broadcast, etc * Port error: CRC errors, collisions, overruns, run frame count, etc * Packet loss: drops, discards * GRE tunnel: keep alive retries * Port security : address count and security violation on secure ports, etc * PortChannel: traffic rate, link utilization vs total traffic and wire speed * VLAN traffic: traffic switched, routed in and out VLAN, etc * ARP packets: forwarded, dropped due to MAC/IP validation failure, etc * Storm control statistic, etc
Environmental Status and Resource UtilizationHistorical ReportsVisuals and Exportable Reports
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 67
DCNM Licensing
Nexus 7000
Nexus 7000 Nexus 5000, Nexus 2000, Nexus 4000, Nexus 1000V
Inventory L1 & L2 Topology Map L2 ACL VPC FabricPath Fault Management Traffic Statistics Reports …
All Features
VDC CISF Configuration Change Control OS Image Mgmt …
DCNM LAN Enterprise
$10K per Nexus 7000
DCNM LAN $0
Unlimited nb of devices
DCNM SAN licensing unchanged
No charge zone
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Features: Licenses
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 69
Base
Enterprise (L3, PBR, GRE)
Advanced (VDC)
Enhanced L2 (FabricPath)
Storage
MPLS XL Transport Services
Transport Services: OTV, P2P L2VPN (EoMPLS), MP L2VPN (VPLS)
MPLS license will enable L3 VPN
Storage license will be per linecard
Base license includes all the following
Nexus 7000 Software Licenses
LISP5.2
5.2
5.1
ISSU PVRST+ MSTP+ 802.1Q LACP PVLANs CDP SPAN QoS
RIP/RIPng IGMP snooping
DHCP helper
uRPF check
Port Security SSHv2 RBAC SNMP RADIUS/
TACACS+
HSRP GLBP VRRP VRF lite CoPP DHCP snooping DAI IPSG 802.1x
Jumbo Frames UDLD Storm
control EEM GOLDs Call home NAC NetFlow ACLs
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 70
License Model SummaryFeature License FeaturesEnterprise Services Package BGP (Multi-Protocol), EIGRP, GRE (IP
Tunnels), ISIS, MSDP, OSPF, PBR and PIM
Advanced Services Package Cisco Trustsec (Encryption)Virtual Device Context (VDC)
Transport Services Package OTV
Scalable Feature Package M1 XL Modules
Enhanced Layer 2 Package Cisco Fabric Path
FCoE Package F1 Series / Multi-Hop
MPLS Package LDP, MPLS, L3VPN, TE
SAN Enterprise Package IVR, VSAN AC, Fabric Binding
5.1(1)
5.0(2a)
5.0(2a)
5.2(1)
5.2(1)
5.2(1)
© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialC97-561519-00
Nexus 7K Roadmap
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 72
Nexus 7000 I/O Module Family Roadmap
Services Rich Platform (M Series)
General-purpose, full L2/L3/L4
Shipping 2010 2011
Performance Platform (F Series)
Server access and specialized applicationsM1 Series Modules
32 port 10G (80G/slot)48 port 1G RJ45 (46G/slot)
48 port 1G (46G/slot)
M1 Series XL Modules8 port 10G-XL (80G/slot)
32 port 10G-XL (80G/slot) 48 port 1G-XL (46G/slot)
M1 Series XL Module16+ port 10G (160G/slot)
F1 Series I/O Modules32 port 10G SFP+ (230G/slot)
F2 Series I/O Modules48 port 10G SFP+ w/L3 (480G/slot)48 port 10G 10G-T w/L3 (480G/slot)
M1 Series Modules 40G/100G modules
…2012
Cisco Confidential – Under NDA
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 73
Provide Simple solutions to complex problemsF-Series M-Series
L2 / L3 flexibility with greater port density and
performance
Access and Aggregation supporting Unified Fabric
Transport capabilities
Broad L2 and L3 features, “6500 HW capability”
QoS, Security, Large ACLs and Tables, Netflow
10G/1G options with deep buffers
Common characteristics: Performance, Scale, NX-OS
L2+ for highest port density and bandwidth
FabricPath, DCB, vPC, FCoE, Low Latency
Optimized for the 1G to 10G transition
Cisco Confidential – Under NDA
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 74
Nexus 7000 F-Series I/O Modules
F1-Series Modules32-Port 1/10GbE Module
Shipping Q3 CY2010320 GPS local switching -230 Gbps per slot across the fabric480 MPPS ~ 5us latency slot to slot (64 bytes)
Layer 2 SwitchingFabricPath / TRILL Support
Multi-hop FCoE Support – 2H CY2010
F2-Series Modules48-Port 1/10GbE Module
Shipping 2H CY2011L2 / L3 720 MPPS / 480 Gbps per slot~ 5us latency slot to slot (64 bytes)
Layer 2 SwitchingLayer 3 Routing – 32K FIBFabricPath / TRILL Support
Fabric Extender SupportOTV Support, Sampled NetflowVN-Link SupportMulti-hop FCoE Support
Cisco Confidential – Under NDA
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 75
10G module 16+ ports of 10GigE with 120Mpps forwarding 40G module
6-port 40G module with 120MppsQSFP transceivers – focused on DC distances 550Gbps fabric (2nd generation fabric)
40/100G module2-port 40/100G module with 120MppsCFP transceivers – focused on wide-area distances550 Gbps fabric (2nd generation fabric)
M-Series 10/40/100G XL I/O Modules2H CY11
Cisco Confidential
Cisco Confidential – Under NDA
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKDCT-2951 76
Hard
war
eNexus 7000 Software Roadmap
Scal
abili
ty,
Conv
erge
nce,
O
pera
tion
IOS
Mig
ratio
nPl
atfor
m
Solu
tion
• Scalability enhancements (L3, FabricPath Trees)
• BFD Triggered FRR• MIBs (PIM, BFD, Mroute, FCoE)• EEM Enhancements• vPC and Port Channel host/FEX• FEX L3 routed ports• F1 Series: PTP IEEE 1588 • Parallel ISSU/EPLD upgrades
• MPLS – Phase 1 (L3VPN)• 6VPE / PE• VACL Capture
• Nexus 7009• Fabric2: 7009
• Fabric2: 7010, 7018• F2 Series: 48p 1/10GE SFP+
(Phase I Support: F2 only VDC, L2/vPC, L3/ VRF, ACLs, QoS Policy, SPAN)
DelhiTarget: Q2 CY2011Status: Execute Commit
Edinburgh Target: Q4 CY2011Status: Execute Commit(Short Lived Release)
• Nexus 2232-10G • Nexus 2224• FCoE – FCF, E_Port, F_Port• OTV Adjacency Server• LISP
• + 1x Admin VDC• VDC CPU/Memory Control Groups• vPC Scale (Multicast 20K (S,G),…)• 2000 VRF-lite, L3VPN Scale• MIBs (IGMP, P-BRIDGE, Q-BRIDGE)• Fabric QoS• L3 over vPC (with F2 modules)• vPC Config Sync• PVLAN on PC and vPC• vPC Enhancements• OTV Enhancements, VLAN Translation …• F2 Series Phase II: FEX, FCoE, FabricPath,
12 Tx/Rx SPAN, ERSPAN, 1588 ERSPAN • LISP Multi-tenancy• CCN – Phase I• VACL Deny• IS-ISv6• BGP, OSPF enhancements• IP-SLA, sender/responder, basic probes• MPLS – Phase 2 (EoMPLS, VPLS )
FreetownTarget: 1H CY2012Status: Execute Commit
• F2 Series: 40p 1/10GBase-T • M2 Series: 6x 40GE (Feature Parity with
M-Series inc. FEX)• M2 Series: 2x 40/100GE (Feature Parity.)• N2232TM
v6.1v6.0v5.2.x