You are on page 1of 142

‘Celebrating 30 Years of Networking’

3com Customer / Partner


Overview Presentation

Shreedeep Khandalkar
Presales Consultant
Shreedeep.khandalkar@inspira.co.in
Agenda - Brief
✴How the world has changed
✴3com Corporate Overview
✴Technology direction and trends in the current economic
✴3com Green IT revolution and Contribution

✴How 3Com is positioned to lead the market transformation
✴3com NGiN Technology

✴3com Product Portfolio


✴3com Customers
✴3com Support And Warranty
3Com Confidential
2
Predicting the Future is Difficult

3
3Com – A Strategic Technology Partner

Founded in 1979
US company; HQ in

Massachusetts, USA
Listed on Nasdaq

#2 in worldwide switching and

enterprise router market share


Global footprint EMEA
Hemel, UK
 80 locations
 50 countries WW HQ
 10,000+ channel partners Marlboro
5,600+ employees worldwide LAT
Miami APR
2,400+ highly skilled, highly Singapore
responsive engineers
Financial Strength

 $343M Revenue in Q1 FY09


 Record gross margin
 $560M cash balance Headquarters
 Cashflow positive
 Regional Operations HQ

› Technology Centers

4
3Com History
Listed on US Nasdaq Exchange
The New 3Com – An Enterprise Networking
Powerhouse
Enterprise Networking Financially One Company,
Specialist Strong Three Brands

›#2 in global enterprise switches ›Profitable ›Large enterprise


(ports) and routers (units) market ›Generating cash from ›Mid-market and small
share operations enterprises
›#1 in China ›$560 Million in cash as of ›Best-of-breed security
›Securing over 30% of the Fortune Q3 FY09
1000

2
Technology Direction & Trends in the
Current Economic Climate

3Com Confidential
4
Common Customer Challenges
Items on the desk of networking and IT execs

9
IT is prioritizing initiatives that are focused on
consolidation, efficiency, and productivity
Applications Internet Users

Corporate network

Network Virtualization

Security & BC/DR

Cloud computing

Server virtualization ! These major IT initiatives


Data center consolidation require that the network
evolve and keep pace with
the rate of change
Best Practices for 21st Century E-Government Services

Optimize and virtualize for more effective services


Security in-depth to protect confidentiality and reduce


risk

Evolve to respond with accuracy and speed


Streamlining Communications & Applications
Secure for Privacy and Accessibility

• Protect against growing internal and external threats


• Support growing number of users and mobile devices
• Safely extend services to remote offices, road-warriors and visitors
• Ensure regulatory compliance

• 3Com delivers:
– Robust portfolio of standalone and integrated security solutions
– Multi-layered solution to ensure no single point of failure
– Advanced security features
– Powerful monitoring, management, reporting and audit tools
– Deployment and lockdown of global security policies across an
entire infrastructure
– Quickly respond to new mandates and regulations with simple,
centralized management
How is 3Com Addressing These
Technology Trends?

3Com Confidential
14
Enterprise Network Challenges

na nce
nte
Mai

EXPENSIVE: COMPLEX: PROPRIETARY:


Costly to build,
manage and run Legacy, patchwork Locked In
approach

15
H3C’s broad Enterprise portfolio is changing the
Networking Status Quo: “Flight to Value”

Flight to Innovation Flight to Stability Flight to Value

Speeds and feeds 2001


Do More with Less
wars
Maturity Dividend
Switching vs Routing
wars
›Internet/post-Y2K bust 2007
Vendors drive
›Market consolidation – Built on open standards to future-
technology survival of even blue chip proof networks
companies in doubt 
Lower total cost of ownership (TCO)
›Safety first 
›Vendor drives technology Energy efficient platforms increased
speeds

Ethernet and IP everywhere

Customer demands high-
performance, secure, converged,
flexible and green infrastructure
3Com’s H3C  ‘No Compromise Network’
The “OLD WAY”

Enterprise-Proven Enterprise-Proven

Expensive & proprietary 33% Lower TCO

Complex NOCs everywhere Single pane, automated mgmt.


TCO
Legacy components 25% less power consumed

Proprietary and unresponsive $ 1.3B start up

Hide behind channel Direct


Relationship client response

Multiple businesses Laser focus on Ent. NW

Proprietary ASICS Modern merchant chipset

Security afterthought Best of


Architecture breed security

Bolt on legacy system Standards-based, extensible

17
What is 3NGiN?

3 COM
N EXT
G ENERATION
i NTELLIGENT
N ETWORK
How 3NGiN Powers Business

3Com Confidential
How 3NGiN Powers Business
Meet the 3NGiN Solutions
eXpandable Virtual Network (XVN)
 XVN is a true Core to Edge communications solution which
enables businesses to benefit from:
Increased application performance
Increased control of application priority and delivery
Application visibility through advanced flow
monitoring
State-of-the-Art Resilience and Reliability through
innovative IRF network virtualization technology
XVC – eXpandable Virtual Core
XRN – Network Distribution or Edge
Virtualization
Strong integrated security features
Open standards protocols
Converged network platform
Eco-Friendly green design
Latest ASIC silicon technology
Open Services Network (OSN) platform
Multimedia Services Platform (MSP)
3Com’s MSP allows for easy deployment of Triple
Play and a variety business services. MSP features:

Passive optical network architecture


Built on open standards for Ethernet in the First
Mile (EFM)
Less active devices required
Less power consumption
High reliability and easy to manage
Flexible delivery of a multitude of services
HD IPTV
Voice over IP
HD Video on Demand
IP video surveillance
Data and Internet services
Cable TV
Wide area of coverage of up to 20km

Adaptive Secure Mobility (ASM)
The 3Com ASM solution provides
businesses with a secure mobile
environment. Benefits of deploying an ASM
solution are:

Adaptive RF technology to provide optimal signal


and coverage
Advanced security controls and user
authentication
Centralized management of devices and users
Advanced monitoring and reporting
Supports advanced services such as:
Multimedia Video
Voice over Wi-Fi
RFID
WIPS
Resilient architecture
Virtual Controller Technology
Mesh Technology
High speed next generation 11n technology
Multi-Layer Security Control (MSC)
3Com’s MSC solution provides all the
elements to ensure business information and
data is protected.
MSC provides businesses with:

User and device control, which integrates with


centralized authentication directories
Perimeter security for 360o Perimeter
protection from external threats
End point security - health status checks,
patch update checks, virus update checks.
Class-leading Intrusion Prevention Systems
Ensure protection of critical business
applications
Granular control of Applications & Content
IP video surveillance for physical asset
protection.
Virtual Private Network – SSL VPN & IPSec
for remote users
Unified Communications & Collaboration
(UCC)
3Com’s UCC Solution allows businesses and their
employee’s to communicate more effectively with
customers, suppliers and each other.
By deploying a 3Com UCC solution businesses can
benefit from:
Highly resilient and reliable distributed architecture.
Scalable Architecture to enable growth
Centralized Global Directory and Voicemail
services.
Enterprise-wide Presence, instant messaging, click
to conference, document sharing and much more.
Built on Open Standards SIP protocol.
Simple integration with 3rd party applications
Full conferencing features.
Call Management and Call Centre Applications.
Integration with ERP and CRM
Infrastructure Control & Management (ICM)
3Com’s ICM solution offers businesses a
ubiquitous infrastructure management platform.
ICM delivers solid business benefits, these are:

Simplifying configuration, deployment, and


day-to-day network administration.
Enhancing business communications by
managing today’s converged networks, for
smooth operation of voice, video and data.
Giving network administrators meaningful
information on faults, alerts, events and
network efficiency.
Ensuring continuous network uptime by
proactively monitoring and managing system
outages, upgrades and faults.
Green IT: Power Efficiency Advantage

H3C switches are 53% more efficient


Lower TCO by Design than comparable products.

Industry
S7506E
Average
“The H3C S7500E Series
switch reduce costs and
minimizes environmental
impact through many energy-
saving attributes”

Rob Smithers, CEO Miercom

28
Green – So many definitions so little time……

vs.

“Green is about money, not about the environment.”


David Cappuccio, May 2009
Built to be Green
Uses energy efficient power supply, for greater efficiency
Programmable, intelligent fans reduce noise and energy
consumption
Fan speed control enhances product reliability and
extend switch life
 Uses advanced technology and energy saving chips
 Energy saving software features
 Ability to regulate power according to the length of
the cable
 Adjust energy in accordance with port speed (Fast
Ethernet, Gigabit, 10G)
 Time controlled PoE
 Ability to shut down PoE function when PD is
unplugged
 RoHS standard compliant
30
Energy Efficient Ethernet: Innovations

›Institute Electrical Electronic


Engineers
―Global Standards body
―3Com holds 802.3 Ethernet Vice Chair
›802.3az - Energy Efficient
Ethernet
―A method to reduce energy use by an
Ethernet interface by rapidly changing to
a lower link speed during periods of low
link utilization
―Currently expected early 2010 “Inefficient Ethernet
›US Energy Star rating for energy efficient wastes over $1bn a year”
equipment Energy-Efficient
Ethernet (EEE) Study
Group

12
3Com Drives Innovation
Energy Efficiency Products – Industry Recognition

32
32
3Com Core to Edge Portfolio
Oct 2010

3Com Confidential
Broad Enterprise Product Portfolio
›IMC (Intelligent Management Center)
›Resource Management (QoS / ACL / VLAN)
›User Management (User access / access control / auditing / authentication and accounting)
›Business management (network traffic / storage / wireless / security / voice / video / application business)

›IP Communications ›IP Video Surveillance


›Unified Communications ›IP Security

›IP Phones ›VCX Connect ›VCX Enterprise ›ISC3000 ›VM8000

›Defense in Depth Security


›VPN Firewall ›Embedded Security ›Unified Threat Management ›Security Operations

›SecPath F1000-S/A/E ›SecBlade Modules ›V1000 - A ›H3C IPS ›SecCenter

›Core to Edge Networking


›Data Center ›Campus Core ›Aggregation ›Access/Edge ›Routing ›WLAN

›S5600 GE ›S3600 FE
›S5800 Series
›Series ›Series
›S7500E ›SR6600 Core ›MSR Branch ›WLAN ›802.11n AP ›WLAN
›S12500 ›S9500 Multi-Service ›S55/5100 ›S3100 FE
Core Switch
›Router ›Router ›Controller ›Controller
›Data Center ›GE Series ›Series

›10
The 3Com Core to Edge Network

E
C
-
R V W
S m
M C A
C a N
X /
M i In
l OSN te
› Switch-based application rn
convergence
Core et
›Solid and growing feature portfolio

Powerful Network Management


Comprehensive Security Solutions/UTM
n
gr e gatio
Ag

Advanced Infrastructure Features


›Auto-VLAN, Auto-QoS recognizes IP Phones e
B&Edg
›Automated network engineering SM s
p l ic ation
›Gigabit solutions
enc e Ap
o nverg
C
Comprehensive Voice, Wireless,
Voice over WiFi Solutions, etc.
3Com’s Enterprise Core to Edge Portfolio

Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


Edge to Data Center Switch Portfolio
IMC / Comware
Basic Resource User Service Security Configuration
Management Management Management Management Management Management

Core/Data Center Layer

Backbone/Core Layer S12500

Edge/Convergence Layer

S9500E
Edge/Access Layer
S5800/S5820X S5820X

S5500 SI / EI S7500E
S3600-EI

S9500E
S5800/S5820X

S3100-EI S5100 SI/EI

Performance . Reliability . Innovation . Environment


Engineered To Last. Designed To Outperform
S12500 Series Core Switch

•Products Info
–100G platform with CLOS Fabric
–Max 512 10GE per chassis
–200ms buffer, ideal for DC application
•Product Application
–Already deployed in domestic market (SOHO,
Zhejiang University. etc. )
–No application on oversea market

•Competitive information
–Competitive products support 100G platform
includes Cisco N7000 series, Juniper 8200
series ,Foundry RX series, Force10 E series
H3C S12500 Network Position

• S12500 is H3C’s chassis DC switch, it is designed for high desity 10G


access. S12500 series adopts advanced CLOS fabric to provide 5.76T
switching capacity and scalability.

• Positioned for Data Center, Grid Computing, Core for enterprise network
etc.
S12500 Switch Specification

S12508 S12518
Switching Capacity 2.88T 5.76T
Forwarding 950Mpps 1900Mpps
Engine Redundancy 1+1 1+1
Fabric Redundancy 8+1 8+1
Engine Slots 2 2
Fabric slots 9 9
Line cards slots 8 18
Max GE 384 864
Max 10GE 256 512
Buffer per slot 256Mbytes/10G port 256Mbytes/10G port
21.4Mbytes/GE port 21.4Mbytes/GE port
Fan Redundancy 1+1 1+1
Power Redundancy AC: 2 + 1, DC:4+1 AC: 4 + 1, DC:6+1
100G Switch Platform on S12500

512MB fabric
Cache back plane
512MB
缓存
512MB
Cache
512MB
Cache

512MB
512MB
缓存
Cache
line cards

Engine

CPU Engine

CPU

n180G Switch Capacity per slots


nSmoothly upgradable
nReady for 40G/100G port
10GE Line Cards on S12500
XP4L XP8L XP32R
Interface XFP XFP SFP+
Type
BW on slots 40G 80G 80G

Buffer 1024MB 2048MB 2048MB

4 x 10 GE Line Card

8 x 10 GE Line Card 32 x 10GE Line Card


High Density Access Capability on S12500

Max 864 GE ports per chassis


Wire-speed switching for 864 GE

Max 512 10G ports per chassis


For high density 10GE access

128 wire speed 10G ports switching


Non-blocking high density 10G access

Updatable architecture for scalability


S12500 Selling Points

Advanced Architecture
100G per slot bandwidth
Industry-leading CLOS fabric

High Density Ports


Max 864 GE ports per chassis
Max 512 10GE ports per chassis

Enhanced Buffering System


200 ms port buffering capacity
Distributed buffering architecture

High security, stability and


manageability
Architecture of software, hardware and
system level security, stability and
management
H3C S12500 vs CISCO N7000

vs
S12500 Nexus 7K

Architechure CLOS Fabric Fabric

Performance 950/1900 Mpps 460 Mpps

Buffer system Distributed buffering system Centralized buffering on out interface

VSS IRF2 for 12500/95E/75E/55 VSS only for N7000 and 6500E

OS Unified Comware 5 NX OS and IOS

Energy Consumption Half of N7000 series High energy consumption


S9500E Series Core Switch

•Products Info
–Fully Distributed ASIC+NP+Multi-core CPU
–Max 192 10GE per chassis
–Next generation products for S9500
•Products Application
–Already sold in domestic market, no application on
overseas markets

•Competitive info
–Main competitor includes CISCO 6500 series,
Foundry Bigiron series, HP8200 series,
Extreme 10800 series, Force10 C series
Product Family of H3C S9500E

H3C S9500E Core Switch Series

nPositioned at the large MAN convergence layer and the core layer of medium and small MANs
nS9500E series contains three switch models, S9505E/S9508E-V/S9512E.

Attribute S9505E S9508E-V S9512E


Number of main control slots 2 2 2
Number of service slots 5 8 12
Tailor-made core switch - H3C 9500E

Mature architecture
The user
Architecture based on ASIC + NP + mult cores enables scalability for service andcustomization
performance.
mode
provides tailor-
made core
switches
to users.

All-round high security


Carrier - class high reliability
vel anti-attack and the service level anti-attack capabilities, protecting the
network. Device level reliability and network level reliability provides carrier-clas

Diverse service features


Distributed MPLS+IPv6+VPLS
function
H3C S9500E Series Switch Selling Point

Updated Service Support


Enhanced ACL function
Multicast VPN, Distributed VPLS 、 IPv6

High density 10G & GE


Max 576 GE ports per chassis
Max 192 10G ports per chassis

Enhanced Reliability and Security


Architecture of ‘four planes in one system’
Hardware BFD , IRF stacking

OAA multi service & application


Service module including Load Balance, IPS,
SSL
VPN, Firewall, WLAN, NAT, IPsec VPN etc.
H3C 9500E vs Cisco 6500E

vs
S9500E C6500E
Architecture Fully Distributed ASIC+NP+Multi-core CPU Centralized or Distributed ASIC + NP
Performance 1.44T per Chassis Up to 1.44T bps with VSS

Port Density Max 16 x 10GE per slot Max 16 x 10GE per slot

VSS IRF2 for 95E/75E/55/56/36 VSS only on 6500E

Multi-service LB/WLAN/SSL/IPS/NSM/IPSEC/NAT WLAN/LB/IPS/NAM/CME/SSL

OAM Hardware Software


H3C S7500E

Capable of providing a wide range of services


MPLS/IPv6/EPON/WLAN/PoE
Firewall/IPS/OAA
High-performance platform
Wirespeed IPv6 forwarding
Wirespeed MPLS forwarding
Cost-effective 10 Gigabit ports
The price of a 10 Gigabit port is less
than 50% of the 10 Gigabit port price
in former products.
Flexible configuration
Flexible combination of multiple
chassis's, engines, and modules
High security and reliability
Endpoint admission defense (EAD)
Built-in security module
Graceful Restart
H3C S7500E Chassis Overview
S7506E-V
S7506E-V
S7510E
S7510E
S7506E
S7506E
S7503E
S7503E
S7503E-S
S7503E-S
S7502E
S7502E

Number of slots 4 3 5 8 8 (vertical) 12

Backplane bandwidth ≥ 400G ≥ 600G ≥1T ≥1.6T ≥1.6T ≥2.4T

Switching capacity 192G 288G 480G 768G 768G 1152G/768G

Packet forward capability 143Mpps 178Mpps 274Mpps 488Mpps 488Mpps 773M/488Mpps

Engine redundancy Support N Support Support Support Support

Power supply 1+1 1+1 1+1 1+1 1+1 1+1


redundancy
Maximum Gigabit port 96 120 144 288 288 480

Maximum 10 Gigabit port4 4 10 16 16 24

Occupied rack size 4U 4U 10U 13U 21U 16U


H3C S7500E Modules Overview

Chassis
10 Gigabit Ethernet
Service module with the function of
firewall

Gigabit Ethernet optical interface

Service module with the


function of NAT/NetStream
Gigabit Ethernet optical interface

3,4, 5, 8, 8, 12 slots

Service module with the


Gigabit Ethernet electrical interface function of IPS

Dedicated engine of the Salience VI


S7502E

Passive optical network


100M Ethernet electrical interface module
Salience VI-10G Salience VI-Turbo

Ethernet module Route Switching Engine Service module


Access Features

Multimedia terminal
  Voice VLAN
Terminal Access Automatic allocation
  MAC Based VLAN
Automatic
Identification IPv6 terminal access
  Perfect IPv6 service capabilities

WLAN AP
 Built-in 2800 W power supply to provide PoE

PoE IP Phone
 High performance external PoE power supply

power supply
IP camera
 15.4 W per port

FIT solution
 Solution for wired-wireless integration:

Wired-wireless Wireless controller module integrated in switch Unified security authentication and admission

integration
Wireless security, roaming and RF
 Switch + wireless controller module + PoE +FIT AP

management

 Fiber To The Home  Solution for active-passive integration:

Active-passive  IP surveillance  1:64 splitting ratio, 16 ports per slot


integration  Cost-effective EPON solution  High-density, high-reliability EPON system

 802.1X authentication (wired/wireless)  Support Portal authentication


Unified
VPN authentication Unified Endpoint Admission Defense (EAD) and access
identification
 

control policies
and EAD
 Portal authentication  Unified authentication client (iNODE)
Reliability and Security
This function allows you to fix the software bugs or add small-scale
1
3 Hot fix of software new features on the line.

2
3 Rapid Ring Protection Protocol (RRPP) The ring network provides switching protection in less than 200ms.

Replaces the STP in dual-homed networking to provide switching protection


3 Smart-Link in less than 50ms

After GR is configured, the traffic does not lose any packet in active/standby
4
3 Graceful Restart (GR)
switching.

5
3 Loopback Detection (LDT) Detects whether a port loops back outside

DLDP can completes detection within 2 seconds, faster than Unidirectional


6
3 Device Link Detection Protocol (DLDP) Link
Detection (UDLD).

Decides the location of a cable failure, and thus helps remove the failures
5
3 Virtual Cable Test (VCT) quickly.

ARP Intrusion Inspection/ARP Spoofing


8
3 Prevention
Prevents ARP attacks in the network

9
3 Unicast Reverse Path Forwarding (uRPF) Prevents the IP Spoofing attack

Large-capacity bidirectional ACL and


10
3 VLAN ACL
Strictly control the rights of access to the network
Single Connective Fabric

•Geographically disparate sites connected with a


ure Proof Architecturecommon virtual fabric
•Managed as a single switch entity
•Provides scalability and disaster recovery

XRN
+
City A RRPP
Virtual City B
Fabric

56
Single Underlying Architecture

All H3C switching, routing and security platforms


ure Proof Architecture
leverage a common, unified OS – Comware™ V5:

OPEX Savings
–Train technical staff once to manage entire
portfolio
High Reliability
–State-of-the-Art Unified Code Base
Faster Time-to-Market
–Engineering efficiencies allow us to rapidly
bring new and custom features to market
with better initial and ongoing stability
Modular Architecture
–Easy to enhance and extend feature set
without wholesale changes

57
3COM S7900E Vs. Cisco 4500 and
6500
Cisco Catalyst 4500E

• The S7900E and the Catalyst 4500E appear similar, but


– S7900E with load sharing has 768 Gbps vs 320 Gbps for Sup6-E
– S7900E provides 488 Mpps for both IPv4 and IPv6 vs 250 Mpps for
IPv4 and 125 Mpps for IPv6
– S7900E supports 24 10 Gig ports vs 34 @ 5;1 blocking S7900E
supports 480 Gig ports media rate vs 384 @ 4:1 blocking
– S7900E supports fully distributed switching and routing vs
centralized
– S7900E supports redundancy in all chassis
3Com Confidential. Copyright 3Com Corporation 2008

59
Cisco Catalyst 6500E

• The S7900E and the Catalyst 6500E appear similar, but


– S7900E with load sharing has 768 Gbps vs 720 Gbps for Sup720
– S7900E provides 488 Mpps for both IPv4 and IPv6 vs 400 Mpps for
IPv4 and 315 Mpps for IPv6
– S7900E supports 24 10 Gig ports vs 130 @ 4:1 blocking
– S7900E supports 480 Gig ports media rate vs 576 @ 2:1 blocking
– S7900E supports fully distributed switching and routing vs
centralized or expensive DFCs
3Com Confidential. Copyright 3Com Corporation 2008

60
H3C IRF2 vs Cisco VSS

  H3C IRF2 CISCO VSS

device number   2 or 4   2 or 4

performance 1.44T per device     1.44T for whole group

series support S12500/S9500E/S7500E/S5800/S5500   C6500E

hardware No special requirement Special engine needed  

requirement
S5800 Series Switch

•Products Info
–Next generation modular 10G box switches for DC
and campus LAN
–Providing industry leading GE/10GE high density
–Providing industry leading high buffer and cut-
through forward mode for DC application

•Products Application
–New generation products, released in Q2 2009

•Competitive info
–Main competitor includes CISCO
3750Eseries/4900 series, Extreme 650 series,
HP
S5800 Series Switch Position

S5810 Series
S5800 Series
High density GE
High density GE with large buffer
access, position designed for DC
at access layer S5810 Series access
of campus S5800 Series
network and DC

S5820 Series

S5820 Series
High density 10G with cut-through
forward, designed for DC access
H3C S5800 Gigabit Stackable Switches – Server Farm

• 24 and 48-port 10/100/1000


 Base-T with 4-port 10G/1G
SFP+
– PoE versions
• 24-port 100/1000Base-X SFP
version with 4-port SFP+
• 1 media slot
– 2/4 port 10Gig SFP+
– 16-port Gigabit copper or fiber
• IRF stacks up to 8 Campus Aggregation and
Access Switch

3Com Confidential.

64
H3C S5800 Series Models
Models Configuration Performance Ports Power

H3C S5800-60C-PWR 48 100/1000M PoE + 4 SFP 264Gbps 84 Pluggable AC or


+ 2 interfaces slots + 1 OAA 392.8Mpps DC(48V) 1+1
slot redundancy

H3C S5800-56C-PWR 48 100/1000M PoE + 4 SFP 256Gbps 68 AC+RPS ( 52V )


Plus + 1 interface slot 380.9Mpps

H3C S5800-56C 48 100/1000M TX + 4 SFP 256Gbps 68 AC+RPS ( 12V )


Plus + 1 interface slot 380.9Mpps

H3C S5800-32C-PWR 24 100/1000M PoE + 4 SFP 208Gbps 44 AC+RPS ( 52V )


Plus + 1 interface slot 309.5Mpps

H3C S5800-32C 24 100/1000M TX + 4 SFP 208Gbps 44 AC+RPS ( 12V )


Plus + 1 interface slot 309.5Mpps

H3C S5800-32F 24 100/1000M SFP + 4 SFP 208Gbps 44 Pluggable AC or


Plus + 1 interface slot 309.5Mpps DC(48V) 1+1
redundancy
H3C S5810/S5820 Series Models

Series Models Configuration Performance Power

S5810 Series 48 100/1000M TX + 2 SFP 136Gbps Pluggable AC or


H3C S5810X-50S Combo + 2*10GE DC(48V) 1+1
101.2Mpps
redundancy

S5820 Series H3C S5820X-28C 4 100/1000M TX + 14*10GE 488Gbps AC+


+ 2 interface slot + 1 OAA 363Mpps DC ( 48V ) Redun
slots dancy

4 100/1000M TX + 24*10GE 488Gbps AC+ DC ( 48V)


H3C S5820-28S 363Mpps Redundancy
H3C S5800 – Software Feature Summary
 Layer 2: MSTP, LACP, QinQ, Selective QinQ, GVRP, DHCP, VCT, Guest VLAN, Port Isolation, Auto
Voice VLAN, MAC-based VLAN, Protocol-based VLAN, IP subnet-based VLAN, RRPP, DLDP

 Layer 3: RIP, RIPng, OSPF, OSPFv3, BGP4, BGP4+, ISIS, ISISv6, ARP Proxy, DHCP relay, DHCP
server, VRRP, Policy Routing, ECMP

 Multicast: IGMP Snooping, MLD Snooping, IGMP v1/v2/v3, MLD v1/v2, MVR+, IGMP, IGMP Group
Policy, IGMP Group Restrictions, Multicast Source Inspection

 Multicast routing: PIM-DM, PIM-SM, PIM-SSM, MSDP

 Security: Port Security, 802.1x, EAD Rapid Deployment, MAC Authentication, MAC Address
Restrictions, Radius, TACACS+, SSHv2, HTTPS, IP source guard, CPU Anti-DDOS Attack

 Powerful ACL Support: ACL,VLAN ACL

 Management: Web Support Network Management, IMC Support, Cluster Support, Support for bulk port
configuration

 Precise Flow Control: Sflow, IPIFX, SPAN, RSPAN, ERSPAN
3Com Confidential.
• 67
S5800 Series Stackables Competitive Summary

Feature H3C S5800 Cisco Catalyst Cisco Catalyst 4928- Cisco Catalyst
32C/56C 3750E 10G 4948-10G
Switching 208 Gbps 160 Gbps 96 Gbps 136 Gbps
256 Gbps 224 Gbps
Bandwidth 155 Mpps 160 Mpps 72 Mpps 102 Mpps
191 Mpps 196 Mpps
Ports 24BT+4 SFP+ 24BT +2 X2 24 SFP+ 48BT +
48BT+4SFP+ 48BT +2 X2 2 X2 2 X2
Media modules 1 (16BT, 16 SFP, 2/4 NO NO NO
SFP+)
Stacking 8 @ 40 Gbps 9 @ 64 Gbps NO NO
L2/L3 L2
RRPP YES NO NO NO
PoE YES YES NO NO
Watts 110/148 131/152 300 300

3Com Confidential

68
3Com Confidential. Copyright 3Com Corporation 2009
3COM STACKABLE SWITCHES AT-A-GLANCE:

S5810
S5500-EI and
S5820

S5120 SI & EI

S5500-SI

S5800
S3100-EI

S3600-SI & EI
Mapping of Switches

N7000 S12500

C6500E S9500/S9500E S7500E

C4500E S7500E
10GE

N5000 S5800

C4900 S5800 S7502

C3750E/G S5600 S5500-SI/EI

C3560E/G S5500-SI/EI S5600


GE

C2960G S5100

C3750 S3600-SI/EI

C3560 S3600-SI/EI

C2960 S3100-EI
FE

CE500 S3100-SI

Cisco HP-3COM
3Com’s Enterprise Core to Edge Portfolio

Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


H3C Defense in Depth Security Firewall Portfolio

IMC / Comware
Basic Resource User Service Security Configuration
Management Management Management Management Management Management

Access
Management
EAD IMC UAM

SecBlade
Integrated
I PS
Security
FW IPS SSL VPN NetStream Load Balance

SecPath
Firewall/VPN

F100-A F1000-S F1000-A F1000-E F5000-A


H3C SecPath Firewall Series

ISP / IDC
SecPath F1000 - E : up to SecBlade FW for
6Gbps S7500E / S9500

Large HQ
SecPath F1000 - A : up to
1 . 5Gbps

Large Branch
/ Medium Enterprise
SecPath F1000 - S : up to
1Gbps

Medium Branch
/ Small Enterprise
/ SOHO / Small Branch SecPath F100 - A : up to
200Mbps
SecPath F1000-E (Intranet Firewall)

Product Name : H3C SecPath F1000 - E


Target Market : Large enterprises and service provides
Performance : Throughput 6Gbps
Concurrent session 2 , 000 , 000
VPN performance 1Gbps
Interfaces : 4 GE
2HIM
Interface module includes 4GBE / 8GBE / 4GFE
Key Features :
nAdvanced NP Hardware Architecture and High-Performance Processing Capability
nHigh reliability and Zero-Down maintenance design
nRich and Flexible Maintenance and Management
nHigh Scalability
SecPath F1000-S (Internet Firewall)

üProduct Name : H3C SecPath F1000 - S


üTarget Market : Medium / large enterprises
üPerformance : Throughput 1Gbps ,
Concurrent sessions
1 , 000 , 000
VPN performance 600Mbps
üInterfaces : 4 GE
2 MIM slots
Interface module includes
2FE / 4FE / 1GBE / 1GEF / 2GBE / 2GEF
üKey Features:
nRobust multi-service firewall
nComplete QoS features
nSite-to-Site and Remote Access VPN with advanced encryption technology
nHigh reliability design
nFlexible and ease to use management solution
Security of Intranet and Data Center

Intranet Intranet Intranet Intranet


Server Server Server Server

Two SecBlade
Redundancy
Backup / Load
Balance

Two
SecPathF1000 - E HQs ’ s
Redundancy Data
Backup / Load Center
Balance

WAN
WAN Edge Security

Intranet Intranet Intranet Intranet


Server Server Server Server

HQs ’ s
Data
Center

Two SecPathF1000 -
E
Redundancy
Backup / Load
Balance
WAN Edge

WAN
Site to Site VPN (SSL/IPSEC)

üExcellent Cost - Performance ratio


üFlexible networking
üGood expandability Branch1

Branch2

Branch3

HQs

VPN Tunnel
Key Features—Overview

Basic Functions of Firewalls:


üDivision of security domain
ü4-layer attacks prevention 4-layer
Security
Zones attacks
Other Functions : Partition prevention

üIntelligent address conversion Intelligent Diverse

üIdentity authentication address


conversion
VPN features

üContent depth identification S e cP a th


SecPath

üTraffic QoS assurance Identity


authenticatio
Content
depth
identificatio
üPowerful routing capability n n

ü Traffic
Powerful
routing
QoS
capabilit
assurance
y
Key Features—Division of Security Domain
Division of Security Domain :
üImplementing network security policies in zones with different
security levels, and controlling accesses

Communications between Trust zone


and Untrust zone are prohibited .
Firewall
Trust Untrust
Zone Zone

DMZ Zone ü
üTrust zone - > DMZ zone , Untrust zone - > DMZ zone ,
accessible to POP3 and SMTP accessible to POP3 and
services SMTP services
üDMZ zone - > Trust zone , üDMZ zone - > Untrust zone ,
Switch accessible to all
inaccessible to all services
services
Application
Server
Key Features—4-layer attacks prevention
Providing multiple build - in attack preventionOutst andin
functions , g
DoS -
removing most threats to network
üICMP Flood Prevention security : preve
üLand Prevention
ntion
üUDP Flood Prevention
üSmurf Prevention üARP Spoofing Prevention funct
üFraggle Prevention üARP Automatic Reverse Lookup ion !
üWinNuke Prevention üTCP Message Bit Exception Attack
üPing of Death Prevention Prevention
üTear Drop Prevention üSuper-large ICMP Message Attack
üIP Spoofing Prevention Prevention
üSYN Flood Prevention üIP Address Scan Prevention
üPort Scan Prevention
Trust Zone ü Untrust Zone
Blocked by Hacker
Security
Policy DoS Attack
Firewall
Unauthorize
d Access
Authorized Authorized
Access
Accepted by Users
Security
Policy
Key Features— Content depth identification
Traffic
comes from
eDonke P2P files
y
BT
now is
the
largest
HTTP
single
traffic
over the
Internet !
Source : European Tier I ISP Feb ‘ 04

üDisabling P2P applications completely

üEnabling P2P bandwidth limit

üEnabling P2P bandwidth limit by time

üEnabling P2P bandwidth limit by user


Competitive Analysis
Cisco ASA Firewall Juniper NS Firewall H3C SecPath Firewall

Firewall ASA5580-40 10Gbps NS5400 30Gbps


ASA5580-20 5Gbps NS5200 12Gbps SecPath F1000-E 6Gbps
Throughput
ASA5550 1.2Gbps SecPath F1000-A 1.5Gbps
SecPath F1000-S 1Gbps
NS500 700Mbps

NS208/204 375Mbps SecPath F100-A 200Mbps


ASA5505 150M NS50 175Mbps
NS25 100Mbps
NS5 75Mbps

3DES Encryption ASA5580-40 1Gbps NS5400 15Gbps


ASA5580-20 1Gbps NS5200 5Gbps SecPath F1000-E 1Gbps
ASA5550 360Mbps SecPath F1000-A 600Mbps
SecPath F1000-S 600Mbps
NS500 250Mbps

ASA5505 100Mbps NS208/204 175Mbps SecPath F100-A 60Mbps(Hardware)


NS50 45Mbps
NS25 20Mbps
NS5 20Mbps
Maximum ASA5580-40 1,000,000 NS5400 1,000,000
ASA5580-20 1,000,000 NS5200 1,000,000 SecPath F1000-E 2,000,000
Connection
ASA5550 650,000 SecPath F1000-A 1,000,000
SecPath F1000-S 1,000,000
NS500 250,000

NS208/204 128,000 SecPath F100-A 500,000


ASA5505 25,000 NS50 64,000
NS25 32,000
NS5 32,000
Tipping Point - IPS
• Customer Pain
– Leading Network Security Concerns
– Security Gap
• TippingPoint Overview
• Critical IPS Appliance Requirements
– Key In-Band Requirements
– Where to Deploy
– Security Technology
• Dispelling the ‘IDS is IPS’ Myth
• DVLabs & Digital Vaccine – The Real
Differentiation
• Product Line Overview
• Solution Service & Support
• Summary
Gartner Magic Quadrant for Network Intrusion Prevention
Systems Appliances 1H09
“This Magic Quadrant graphic was published by

Gartner, Inc. as part of a larger research note and


should be evaluated in the context of the entire
report. The Gartner report is available upon
request from TippingPoint.”

* Magic Quadrant Disclaimer


The Magic Quadrant is copyrighted April 14, 2009
by Gartner, Inc. and is reused with permission.
The Magic Quadrant is a graphical representation
of a marketplace at and for a specific time period.
It depicts Gartner’s analysis of how certain
vendors measure against criteria for that
marketplace, as defined by Gartner. Gartner does
not endorse any vendor, product or service
depicted in the Magic Quadrant, and does not
advise technology users to select only those
vendors placed in the “Leaders” quadrant. The
Magic Quadrant is intended solely as a research
tool, and is not meant to be a specific guide to
action. Gartner disclaims all warranties, express
or implied, with respect to this research, including
any warranties of merchantability or fitness for a
particular purpose.

Source: Gartner (April 2009)

The “Magic Quadrant for Network Intrusion Prevention Systems Appliances, 1H09” was authored by Greg Young and John Pescatore April 14, 2009.
Proactive Defense Through Intelligence and Power

Attacks are detected and


blocked at full network
speed

TippingPoint IPS
functions as a “network
patch” or “virtual
software patch”

Attacks are stopped before they


can cause damage to your
infrastructure
IPS - Security Accuracy

Vulnerability “Fingerprint”
False Positive
Term Definition (coarse signature)

Simple
Vulnerability A security flaw in a software
program “Exploit A”
Filter

Exploit A program that takes advantage of a


vulnerability to gain unauthorized
“Exploit A”
Fingerprint
access or block access to a network
element, compute element, O/S, or
application

Exploit Filter 


Written only to a specific exploit
Filter developers are often forced to
“Exploit B”
basic filter design due to engine Fingerprint
performance limitations (missed by
Impact: Missed attacks, false
coarse
positives and continued Exploit A
signature)
vulnerability risk

Virtual Software Patch

Vulnerability Vulnerability filter covers all


possible exploits associated with a


TippingPoint’s vulnerability filter acts
Filter particular vulnerability as a Virtual Software Patch,
accurately covering the entire vulnerability
TippingPoint IPS Product Line

TippingPoint TippingPoint TippingPoint TippingPoint 1200E TippingPoint 2400E TippingPoint 5000E


10 210E 600E
Performance
• Inspected 20 megabits per second 200 megabits per 600 megabits per 1.2 gigabits per second 2.0 gigabits per second 5.0 gigabits per second
Throughput second second
< 500 microseconds < 84 microseconds < 84 microseconds < 84 microseconds
• Typical < 1 millisecond < 84 microseconds
Latency 250,000 2,000,000 2,000,000 2,000,000
1,000,000 2,000,000
• Total Sessions 3,600+ 215,000 350,000 350,000
7,500+ 92,000
• Connections
Per Second n/a 2,344,000 3,000,000 3,000,000
150,000 1,170,000
• Invalid
SYNs/Second Under
SYN Flood
Four 10/100/1000 Eight 10/100/1000 Eight 10/100/1000 Eight 10/100/1000
Ethernet Ports Ten 10/100/1000 Eight 10/100/1000 Ethernet Ports Ethernet Ports Ethernet Ports
Scalability Copper Only Ethernet Ports Ethernet Ports Fiber and Copper Fiber and Copper Fiber and Copper
Total Segments - 2 Copper Only Fiber and Copper Total Segments - 4 Total Segments - 4 Total Segments - 4
Total Segments - 5 Total Segments - 4
Centrally Managed, Distributed Deployment

• Security
Management
Server Appliance

• Easy Installation

• Scalable/Fault
Tolerant

• High Availability

• Enterprise-wide
policy
management
– Per segment 89
policy
DVLabs – Industry Leading Security Accuracy, Coverage
and Speed

Most comprehensive, accurate


and automatic protection
service available

• 30 security researchers
• 5 QA engineers
• 100% focused on IPS filter
development
• Unparalleled security and
networking expertise
• Digital Vaccine® group monitors
cyber threats
• Writes the SANS@ Risk
newsletter – prioritizing critical
malicious threats
Digital Vaccine® – Speed of Coverage

2007 Microsoft Vulnerability Coverage


2006 YTD Microsoft Vulnerability Coverage

98%

81%

73%

62%

55%

45%

Unparalleled Security Coverage Average response times were calculated only on the vulnerabilities
that the vendor covered. If a vendor provided protection before a
•Greatest number of vulnerabilities covered vulnerability was disclosed, this created a negative response
number of days. For instance, TippingPoint received a response
•Fastest to protect customers time of -8 days for the MS06-016 Outlook Express vulnerability
•Leader in Microsoft coverage discovered through the Zero Day Initiative since customers were
protected 8 days before the Microsoft advisory went public.
•TP Research Team + ZDI = Best of Breed
TippingPoint UnityOne™ – Best of Class

NSS Gold Standard


• Achieved 100% score on every test
• Ease of use, management capabilities
• Significant unique selling points
• Outstanding value for money
• Near perfect user experience

“ The NSS Gold Award is a standard


that we carefully reserve for
products that we deem near Bob Walder
perfect.” President, NSS Group

92
NSS IPS Test

 750+ tests performed in areas of performance, security, and


usability
 One year developing test methodology and lab set-up
 Dedicated two weeks per product
 Performance
– Tested under a broad range of traffic types and loads up to a gigabit/second
– Detection/blocking
– Latency and user response times
– Stability and reliability
 Security Effectiveness
– Detection accuracy and breadth
– Resistance to evasion
– Stateful operation up to a million sessions
 Usability 93
TippingPoint NSS Summary

Switch-Like Latency
or Wire-Speed
performance = <200
microseconds

94
Closing the Gap with TippingPoint Intrusion Prevention

PROTECTS: FROM:
•Worms/Walk-in Worms
•Microsoft Applications
•Viruses
& Operating Systems
•Trojans
•Oracle Applications
•DDoS Attacks
HighO/S
§•Linux Performance
Custom Hardware
•Internal Attacks
•VoIP
§Highly Advanced Prevention
•UnauthorizedFilters
Access
§Constant Update Protection
•Spyware Service
§
5 Gbps Throughput FROM:
§PROTECTS:
Switch-Like
§•Routers Latency•Worms/Walk-in
(e.g. Cisco Worms
IOS) •Viruses
2M Sessions
§•Switches •Trojans
250K Sessions/Second
§•Firewalls (e.g. •DDoS Attacks
Netscreen, •SYN Floods
§Total Flow Inspection
•Traffic Anomalies
CheckPoint FW1)
64K Rate Shaping Queues
§•VoIP
§10K Parallel Filters
PROTECTS: FROM:
•Bandwidth •Peer-to-Peer Apps
•Server Capacity •Unauthorized Instant
•Missions-Critical Messaging
Traffic •Unauthorized Applications
•DDoS Attacks

95
3Com’s Enterprise Core to Edge Portfolio

Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


Enterprise Wireless Secure Mobility Portfolio

Remote offices and SMBs Complete Enterprise Wireless Intrusion Prevention and WLAN Management
WIPS
and
Mgmt
AirProtect Sentry AirProtect Enterprise AirProtect Planner &
3WXM Wireless Mgmt

All WX Wireless Controllers are 802.11n Ready Bridge

WLAN
Mgmt Bldg to Bldg Bridge
WXR100 WX1200 •Outdoor Bridge/AP
•1 10/100 & •2 10/100 & 6 PoE WX2200 •Dual Radio, 802.11a
•2 10/100/1000 GbE and
1 PoE 10/100 10/100 •2.0 Gbps Throughput
•Max 3 MAPs •Expandable 120 MAPs b/g
•Max 12 MAPs •Weatherproof

N
AP2750
•Managed AP
•One 802.11abg radio AP3150 AP3950
•Flexible 1 x 11bg or 1 x 11a •Dual radio 802.11a •Managed AP

e
Access •Sentry sweep capability and 802.11b/g •Dual radio 802.11n/a +
Points 802.11n/g
AP3850 •Simultaneous 2.4GHz
AP3750

w
•Dual radio 802.11a and 802.11b/g AND 5GHz
•Managed AP
•2 802.11abg radios •Local switching, bridging and mesh
•Flexible 1 x 11bg and 1 x 11a •
•Sentry sweep device capability

!
Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


A radically simple suite of
multi-service platforms
delivering an open community
of services into the network via
Performance and Capacity

OSN

›Simplicity through:
―Common
architecture
50 Series ―Single software
30 Series level
20 Series ―Uncomplicated
module
160kpps 600kpps
choices
2SIC Slots 4SIC + 6FIC Slots

Enterprise Large Enterprise Regional Office


Branch Branch Regional Branch
Small Enterprise HQ
MSR Family: Flexible Architecture

Application Services
Data, Voice, Security, Management
Multiple Services Concurrently

Software Architecture
3Com Version 5 Software Platform
Powerful, Fully Featured, Versatile platform

Hardware Architecture
High Speed Modules & Interfaces
Powerful CPU & Memory
Embedded Encryption Module
Voice Processing Module
MSR- All-In-Wonder

d PBX, not only saving on network equipment investment but also simplifying the networking scheme and decreasing the O&M cost of t

industry-leading application software vendors. The standard externally-open interfaces, through secondary cooperation and developmen

ardware acceleration and application layer QoS. It has an advanced N-Bus architecture design, ensuring the wire-speed capability for m

H3Cand
firewall performance, with a maximum of 1.5 Gbps, supports antivirus, attack-defending MSR Multi-service
anti-worm. It supports the USB hardware ba
b
Open Router
MSR 201X Series
• Base upon Comware v5 platform, provides
more features

– IPv6
MSR 20 - 10
– MPLS TE

– Voice

– Wireless Access
MSR 20 - 11
• Base upon new hardware platform, provides
better performance

– Fixed 4 switch fast Ethernet ports &


MSR 20 - 12
1 fixed L3 fast Ethernet interface

– 1SIC/DSIC slot, satisfy requirements


of interface neatly
MSR 20 - 13
– All MSR 201X series routers include
wireless supported/not-
supported machine
MSR 20 - 15
– Special machine for voice VE1/VT1

– 201X has lock against theft


MSR201X Basic Attribute Overview

Item MSR2010 MSR2011 MSR2012 MSR2013 MSR2015

Fixed Con/Aux 1 1 1 1 1
interface
USB 1 1 1 1 1

FE interface 1 1 1 1 1

FE SW port 4 4 4 4 4
SA 0 1 0 0 0
ADSL 0 0 0 0 1
G.SHDSL 0 0 0 1 0
ISDN S/T 0 0 0 1 1
AM 0 0 0 0 1

E1/T1 0 0 1 0 0

External SIC 1 1 1 1 1
module
Internal VPM N/A N/A N/A N/A 1
Module
MSR20 Series
MSR20 Series Basic Attribute Overview

Item MSR 2020 MSR 2021 MSR 2040


Fixed Console 1 1 1
interface AUX 1 1 1
USB 1 1 1
FE L3 2 Copper 2 Copper 2 Copper
Interface
FE switching 0 8 0
port
External SIC 2 Sics 2 SICs 4 SICs or 2 DSICs
module
Internal ESM 1 1 2
module VCPM 0 0 1
VPM 0 0 2
MSR30XX Series

MSR 30 - 11

MSR 30 - 16
MSR30XX Basic Attribute Overview

Item MSR3011 MSR3016 MSR3020 MSR3040 MSR3060

Fixed Console 1 1 1 1 1
interface
AUX 1 1 1 1 1

USB 0 1 2 2 2

GE 0 0 2 Copper 2 Combo 2 Combo


FE 2 2 0 0 0
SA 1 0 0 0 0
External SIC 2 4 4 4 4
module DSIC 0 2 2 2 2
MIM 1 1 2 4 6
XMIM 1 0 0 0 0
DMIM 0 0 0 1 2

Internal ESM 1 2 2 2 2
Module VCPM 0 1 1 1 1
VPM 0 2 2 3 3
MSR50 Series

MPUF MSCA
MSR50 Basic Attribute Overview

Item MSR 50-40 MSR 50-60


SIC module 4 4
FIC module 4 6
MSCA module 1 1
Fixed Console 1 1
interfac AUX 1 1
e
USB 2 2
GE 2 GE Combo interfaces 2 GE Combo interfaces

Expandable slots of 50 series Quantity


MSCA modules
VPM slot 4
VCPM slot 1
ESM slot 2
Market Position of Router Products ( Quick Reference )
Carrier’s Internet
egress C7600+Sup720 SR8800

SR6608+FIP 200
Enterprise Core ASR1000 - ESP10
SR6604+FIP 200
and Egress, ASR1000 - ESP5
Carriers

SR6602
Cisco 7302/04+PXF

Enterprise Core Cisco 7200 MSR50-40/60+MPU G2


SR6604 with FIP
Cisco 7301 100

ISR3845 MSR50-60+MPUF

ISR3825 MSR50-40+MPUF
Enterprise Regional
Office , SMB HQ

ISR2851 MSR 30-60


MSR 30-11
Run Rate, MSR 30-40
ISR2821
Resell, and ISR2811 MSR 30-20 MSR 30-16
Branch
ISR2801 MSR 20-40
ISR1841 MSR 20-21
ISR800 MSR20-1x AR18

Cisco HP-3COM
Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


Built-in Applications

 ACD, Unified Messaging


Easy to maintain and administer

 10 minutes to dial tone


Cost competitive

 IP Telephony benefits at a key


system price

The Standard for IP-PBX


Differentiated attributes for small, medium and large businesses

VCX Connect 100 VCX Connect 200 VCX Enterprise / IBM System i IPT

Ideal owner: Ideal owner: Ideal owner:


Small business that needs Medium business that needs an Medium or large multisite business that
an easy-to-manage, easy-to- manage, resilient needs a resilient communications solution
integrated communications communications solution with with remote site survivability and support
solution with high resilience support for rich media and for rich media and enhanced applications
enhanced applications

Offering attributes: Offering attributes: Offering attributes:


 Cost-effective  Cost-effective  Highly scaleable
 Integrated solution  Integrated applications  Flexible application/server
 Redundancy options  Redundant server option deployment
 Open-standard application
integration
Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


Today’s Enterprise Customer Scenario
Single Function Hardware, Multiple Platforms, Limited Flexibility

Application Layer
WANation
m iz
Opti •Discrete products / platforms
rity:
Secu C, UTM •Cost inefficiency: CAPEX,
NA
IPS, administration, power
N
WLA
E
C er
- rity IP-P
BX
n BordBC)
R Secu i o
Sesstroller (
S
S m Con
M
Co C a N
re WLA
M i rity
BX Secu
Ag l IP-P
gr
eg SBC
ati
on

Ed
ge
Connectivity Layer
•5500G at Edge, 8800 at Core
•Distributed VCX Voice
•Comprehensive Security
3Com Open Services Networking (OSN)
Open Platforms, Simplified Management, Scaleable Services

Power of OSN Is the Applications


Policy-based provisioning service for routers, firewall and VPN
E-mail Information Leak Protection
W
A E Security Information/Event Management (SIEM) and Network
N C Behavior Analysis
/ -
R Voice call processing and voice services (VM)
S In m
te M Wireless LAN
Co
re C rn a Application Acceleration over the WAN
M et i Open Source Services Monitoring Bundle:
l MRTG, NTOP, TShark, Nagios tools

Ag Video Management Delivery for


gr VoD and streaming content
eg
ati
on

Ed
ge
3Com’s Enterprise Core to Edge Portfolio

Management OSN
Platforms Open Services
Networking

Security Wireless Convergence Applications /


IP Telephony

Ethernet Switches - Stackables Ethernet Switches - Modular Routers


H3C IMC (Intelligent Management Center)

 Innovative Single Pane Management


• Fully integrated, comprehensive Management platform
– Based on a Resources, Service and Users model
– Delivers full FCAPS solution
– Designed to support ITIL initiatives
• SOA based modular design
– Highly integrated modules to deliver new functionality
• Supports 3Com, H3C and 3rd party devices
• Rich Enterprise class functionality
– Topology, Alarm, Performance and Configuration Management
– User Access Management (UAM) & Endpoint Admission Defence (EAD)
– MPLS VPN, Wireless Management
• Single pane management for the entire global enterprise network

119
3Com iMC Platform – Integrated Resource, Service and
User Management

User

Home User
Overview of network, user and Unified management of user access and
service information user security

Service
Integrated management of network Process-based service flow
resource, fault and performance
information management

Network Service

Resource

120
iMC Platform and Modular Components

EPON Management
Intelligent Configuration ……
Service Components

Center Wireless Management


Security Management
Device Manager User Access Management Component
Network Traffic Analysis
QoS Audit Component
IPSec VPN Manager
Endpoint Access Defense
Behavior Audit Component
Branch Intelligent Mgt ACL Manager
System
MPLS VPN Manager

Platform
iMC Platform

121
Problems Solved by Management

• “I have too many tools”


– Every vendor, every technology is requiring its own management interface
– The need to “Do more … with less”

• “My network is unstable due to changing configurations”


– Role base mgmt controls who can change network configuration
– Lock down network Configuration
• Baselining / Configuration change / role back etc....
– Audit trails – who changed it and when ?

• “I’ve no visibility or control of what's happening on my network”


– Network Traffic Analysis = Who is doing what on my network
– ACL Mgmt = Take control
– Leverages Flow data in Routers / Modular via module / 4800 sFlow (5800)

• “I need to control who has access to what”


– Network Access Management

122
Strong Presence in US Government
Worldwide Customers By Vertical
3Com Customers - India
CASE STUDY - INDIA

SEBI – End Point Security enabled SCN


3Com VCX™ IP
3Com® Router 5642 TippingPoint™ IPS 3Com Switch 8807 Telephony Solution 3Com VCX Gateway

WAN
Server Farm
3Com
Router
5642 3Com Enterprise
3Com Wireless LAN Management Suite
Controller WX4400
Connectivity to
3Com Switch 3Com Switch Public Phone
5500-EI 5500-EIs Systems

3Com Wireless LAN


Managed Access
Point 3750

3Com IP Phones and


Desktop PCs 3Com IP Phones and Desktop PCs
SEBI
Remote Headquarters
Branches
64 Wireless LAN Managed Access
2 Switch 8814 Point 3750s
1000 Mbps 40 Switch 5500G-EIs
100 Mbps TippingPoint Intrusion
6 Router 5642s Prevention System
WAN connection VCX IP Telephony Solution
Enterprise Management Suite
1000 3Com IP Phones Global Services
2 Wireless LAN Controller WX4400s
Network Solutions Messaging
The ‘No Compromise Network’

Critical Requirements for a “No Compromise Network”

Green IT Open Standards Operational Efficiency


Business Continuity Defense In Depth

How We Deliver the ‘No Compromise Network’

TCO by Innovative
Design Future-Proof Architecture
Defense in Depth

3Com Confidential

127
Thank You
Demand Exceptional TCO by Design

Critical Requirements for


a “No Compromise
Network” Operational Integrated
Open Business
Green IT
Standards Continuity Efficiency Security

Critical Solution Enablers Merchant R&D Future Proof Management Embedded


Silicon Innovation Design Automation Applications

$$ Exceptional TCO by Design $$


End Result
Aggregation
Campus Access Remote
Data Center / Building
Core Layer Office
Core
3Com: Meeting the Needs of
Today’s CIO/IT Management

• Long-term investment protection


– Built on open standards to future-proof networks
– Flexible enough to interoperate with existing networks and add new
applications as needed
• Lower total cost of ownership (TCO)
33%
33%
– Faster deployment, ease-of use and lower maintenance cost
Deep
Lowe Custome
• Energy efficient platforms
r r
– Increased speeds (35% higher with new silicon), lower energy Intimacy
consumption (60% decrease in active power needs) TCO
• Reliable, cost-effective, end-to-end solutions Innovati
– Data, voice and security ve
Future-
proof
Architec
ture
Case Studies- H3C Enterprise Networking
Increasingly Proven Around the World

Transportation Education Finance Government

Manufacturing Telecommunications Utilities

132
Inspira-3Com
Services
Global Services & Support Center

 Our Mission
 The health of your business is tied to the efficiency and security of your
network, and 3Com understands this.

 Our Services
 3Com takes a passionate approach to service delivery; based on a
wealth of experience that crosses a broad range of industries,
business models, and network configurations.

3Com Confidential

134
Maintenance Services Overview (Contracts)

Onsite Advance Technical Software Web


Engineering Hardware Telephone Upgrades Services
Maintenance Assistance Replacement Support

Guardian
    
Express
   
Software
Upgrades  
Software
Application   
Support

SLAs
9x6xNBDS  24x7xNBDS 3Com Confidential

135
3Com Warranty
3COM WARRANTY SUMMARY

New Product Warranty and Other Services Provided


with the Purchase of Genuine 3Com Product


ØLimited Lifetime Hardware Warranty


ØThree (3) Years Limited Hardware Warranty
ØTwo (2) Years Limited Hardware Warranty
ØOne (1) Years Limited Hardware Warranty
ØNinety (90) Days Limited Software Warranty
Ø
Ø Services are effective at Warranty start date, and are
enabled with Product registration. Customers receive a
User ID with eSupport registration.
3Com Confidential

137
Drop Zones in India

Drop Zones
Mumbai

Delhi

Chennai

Bangalore

Hyderabad

3Com
Confidential
Three Support Levels

Escalation Support Team


Includes a 3Com product specialist, escalation
engineer, and design center engineer
They isolate product defects, configuration or
L3 environmental issues and create solutions
Do site visits when required

Technical Support Product Specialist


Fault isolation based on problem, operation and
configuration analysis
Replicates the problem in the lab
Recommends solutions or workarounds
L2 Publishes new solutions in Knowledgebase

 Non-Technical
 Call screening and information gathering
Service contract entitlement
L1

 Incident creation
 Live call routing based on product and service level
3Com Confidential

139
Inspira 3Com Support Centre

• Direct L1 Support
• Co-ordination for L2 and L3 Support
• Single point contact for support for 3Com products
in India
• Toll-Free Access : 1-800-209-9909
• Landline : +91-22-66929909
• Email-id : support@inspira.co.in
• Toll-Free (3Com):000-800-4401193
Thank you
Thank you!

You might also like