Borderless Network Services for Cisco Catalyst 6500 Series Switches
The Cisco® Catalyst® 6500 Borderless Services Node integrates the Cisco Wireless Services Module (WiSM) and the Cisco Firewall Services Module (FWSM) with the Cisco Catalyst 6500 Virtual Switching Supervisor Engine 720 to enable three important pillars of Borderless Networks architecture-security, performance, and mobility (Figure 1). This easily deployed solution delivers a secure and mobile solution that enables system virtualization and provides increased throughput with scalable performance.
Enterprises around the world must provide connectivity anywhere and anytime, on an ever-larger number of devices and to a global workforce, customers, and trusted partners. This necessity essentially means breaking down the traditional device, location, and application border. The challenges that it introduces are not all new, but they are definitely more complex-and they put more demands on security, high availability, scalability, and manageability.
Cisco Catalyst 6500 Borderless Services Node Primary Features
• The borderless services node offers dual FWSMs for increased security and application performance.
• The WiSM enables mobility through up to 300 access points and 10,000 clients.
• The Supervisor Engine 720 with 10 Gigabit Ethernet uplinks and IPv6 combines high-density Cisco Catalyst 6500 Virtual Switching System (VSS) uplinks, system virtualization, and increased throughput with scalable performance and a rich IP feature set.
• The node has a 16-port 10G module option or 24-port Small Form-Factor Pluggable (SFP) module.
• Workflow automation is managed through CiscoWorks LAN Management Solution (LMS) templates that simplify device detection and provisioning.
• Cisco EnergyWise technology reduces energy consumption across the entire corporate infrastructure and optimizes operating costs.
• The Cisco Catalyst 6509-E chassis offers high port density and side-to-side airflow.
Deployment Options for Integrated Services
The Cisco Catalyst 6500 Borderless Service Node can be the switching system in the distribution block or it can complement the existing switching infrastructure in distribution or core as a services chassis (Figure 2). For customers who have a collapsed distribution or core, the Cisco Catalyst 6500 Borderless Services Node can be the collapsed node. It can also be the services chassis that replaces a host of service appliances in a demilitarized zone (DMZ).
Figure 2. Deployment Options for Integrated Services
The integrated switching and services design enables you to install this node easily in your current deployment, it saves rack space, and it helps to reduce total cost of ownership (TCO). The VSS enables load sharing and increases network availability.
The policy enforcement based on user access group-also called identity-based segmentation-is one of the most common applications of the borderless services node. It allows you to use firewall virtual contexts and Virtual Route Forwarding (VRF) instances to virtualize your network to enable security of your network, data, and resources and facilitate compliance with government regulations where needed.
If you have strict traceability requirements because of the confidentiality of data, you can use the Cisco Catalyst 6500 Borderless Services Node to segregate all untrusted traffic to a restricted servers block or DMZ, while permitting the rest of your employee traffic to use corporate servers. Overall phase I of this solution will demonstrate how different Cisco technologies come together to deliver an intelligent and integrated services solution to streamline your network operations and increase the flexibility, security, and resiliency of your network.
Switch Configurations
The Cisco Catalyst 6500 Borderless Services Node comes in two configurations (Table 1).
Table 1. Network Modules
Product Number
Description
BSN09E-VS720-10G
Cisco Catalyst 6509-E Switch with Supervisor Engine VS-SUP720-10G, 6509E Fan, dual 6000W AC power supplies, two FWSM, 1 WiSM, 1 6716-10G-3C and 2 VFW licenses for 20 VC each
BSN09E-VS720-1G
Cisco Catalyst 6509-E Switch with Supervisor Engine VS-SUP720-10G, 6509E Fan, dual 6000W AC power supplies, two FWSM, 1 WiSM, 1 6724-SFP and 2 VFW licenses for 20 VC each
Table 2 lists the data sheets of the individual modules that compose each configuration of the Cisco Catalyst 6500 Borderless Services Node.