Cisco ACE30 Application Control Engine Module

Similar documents
Cisco ACE Application Control Engine Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers

What is New in Cisco ACE 4710 Application Control Engine Software Release 3.1

Enhanced Performance, Versatility, High Availability, and Reliability at the Provider Edge.

CISCO Switch Catalyst 6500 Series Datasheet

Extending Performance, Versatility, and Reliability at the Provider Edge

Enhanced Performance, Versatility, High Availability, and Reliability at the Provider Edge

Cisco Firepower 9300 Security Appliance

Cisco Nexus 7000 Switches Second-Generation Supervisor Modules Data Sheet

Cisco SR 520-T1 Secure Router

Configuring Virtual Servers

Cisco RF Gateway 10 Supervisor Engine V-10GE

Cisco Mobility Services Engine: An Open, Appliance-Based Platform for Delivering Mobility Services

Cisco Nexus 7000 Series Supervisor Module

Cisco Nexus 7000 Series.

Cisco 3300 Series Mobility Services Engine. Open, Appliance-Based Platform for Delivering Mobility Services

Cisco ASA 5500 Series IPS Solution

Cisco UCS B460 M4 Blade Server

Cisco Nexus 9500 R-Series

Cisco UCS C210 M1 General-Purpose Rack-Mount Server

Cisco UCS B230 M2 Blade Server

Cisco UCS B440 M1High-Performance Blade Server

Cisco Nexus 7000 Series

Cisco SCE 2020 Service Control Engine

Cisco UCS C210 M2 General-Purpose Rack-Mount Server

Oracle E-Business Suite 11i with Cisco ACE Series Application Control Engine Deployment Guide, Version 1.0

CISCO CATALYST 6500 SERIES CONTENT SWITCHING MODULE

Cisco UCS C200 M2 High-Density Rack-Mount Server

Cisco 7600 Series Route Switch Processor 720

Cisco NAC Network Module for Integrated Services Routers

Cisco Nexus 9500 Platform Switches for Cisco Application Centric Infrastructure

Cisco 3900 Series Router Datasheet

Cisco Nexus 7000 F3-Series 6-Port 100 Gigabit Ethernet Module

Cisco ASR 9001 Router

CONNECTRIX MDS-9250I SWITCH

Cisco Nexus 7700 Switches Data Sheet

Cisco Secure Network Server

Cisco VPN Internal Service Module for Cisco ISR G2

CONNECTRIX MDS-9132T, MDS-9396S AND MDS-9148S SWITCHES

Cisco Catalyst 4500 Series Line Cards

Cisco Secure Network Server

The Cisco ASA 5500 Series Adaptive Security Appliances

Pulse Secure Application Delivery

Using the Cisco ACE Application Control Engine Application Switches with the Cisco ACE XML Gateway

Cisco Nexus 7000 Switches Supervisor Module

Cisco UCS C250 M2 Extended-Memory Rack-Mount Server

Cisco UCS C250 M2 Extended-Memory Rack-Mount Server

Cisco UCS C24 M3 Server

Cisco ASA 5500 Series Adaptive Security Appliances

Cisco Unified Messaging Gateway

Cisco UCS 6324 Fabric Interconnect

Cisco 2-Port and 4-Port OC-3c/STM-1c POS Shared Port Adapters

Cisco Nexus 9500 Platform Switches for Cisco Application Centric Infrastructure

Cisco 3300 Series Mobility Services Engine

Cisco Series Performance Routing Engine 4

Взято с сайта

Cisco Nexus 9500 Series Switches

Data Sheet Fujitsu ETERNUS DX500 S3 Disk Storage System

Cisco 2-, 5-, 8-, and 10-Port Gigabit Ethernet Shared Port Adapters, Version 2

Cisco UCS C240 M3 Server

4 PWR XL: Catalyst 3524 PWR XL Stackable 10/100 Ethernet

Cisco 2900 Series Router Datasheet

Cisco UCS 6100 Series Fabric Interconnects

Cisco Content Delivery Engine 280 for TV Streaming

SANGFOR AD Product Series

Cisco UCS C240 M3 Server

Cisco 3 Gbps Wideband Shared Port Adapter for the Cisco ubr10012 Universal Broadband Router

Brocade Virtual Traffic Manager and Parallels Remote Application Server

Cisco Catalyst 6500 Series VPN Services Port Adapter

Network Capacity Expansion System

Acme Packet Net-Net 14000

Oracle 10g Application Server Suite Deployment with Cisco Application Control Engine Deployment Guide, Version 1.0

McAfee Network Security Platform

McAfee Network Security Platform

LoadMaster Hardware. Scalable high-performance application delivery. Data Sheet

Cisco Nexus 7000 Series

Cisco UCS B200 M3 Blade Server

VIRTUAL EDGE PLATFORM 4600 Next Generation Access

Cisco Storage Media Encryption for Tape

White Paper. Citrix NetScaler Deployment Guide

Cisco MDS Port 10-Gbps Fibre Channel over Ethernet Module

Data Sheet Fujitsu ETERNUS DX200 S3 Disk Storage System

Cisco Wireless LAN Controller Module

Data Sheet Fujitsu ETERNUS DX400 S2 Series Disk Storage Systems

Data Sheet FUJITSU ETERNUS DX60 S3 Disk Storage System

ASA5525-FPWR-K9 Datasheet. Overview. Check its price: Click Here. Quick Specs

Datasheet Fujitsu ETERNUS DX90 S2 Disk Storage System

Data Sheet FUJITSU Storage ETERNUS DX100 S3 Disk System

Cisco 2-Port, 4-Port, and 8-Port OC-12c/STM-4 Packet over SONET Shared Port Adapters

Cisco CRS Forwarding Processor Cards

Appliance Comparison Chart

Cisco Nexus 7700 F3-Series 24-Port 40 Gigabit Ethernet Module

Data Sheet FUJITSU Storage ETERNUS DX200F All-Flash-Array

Cisco TelePresence MSE 8000

SANGFOR AD Product Series

Cisco 4-Port Clear Channel T1/E1 High-Speed WAN Interface Card

Cisco Nexus 9500 Platform Line Cards and Fabric Modules

Cisco Integrated Services Routers 1941 Series Datasheet

Data Sheet Fujitsu ETERNUS DX80 S2 Disk Storage System

Cisco Security Manager 4.1: Integrated Security Management for Cisco Firewalls, IPS, and VPN Solutions

Cisco UCS E-Series Servers

Transcription:

Data Sheet Cisco ACE30 Application Control Engine Module Product Overview The Cisco ACE30 Application Control Engine Module (Figure 1) belongs to the Cisco ACE family of application switches, which deliver availability, security, and consolidation of data center applications. The Cisco ACE product family consists of the Cisco ACE30 Module for the Cisco Catalyst 6500 Series Switches and the Cisco 7600 Series Routers, Cisco ACE 4710 Appliance, Cisco Global Site Selector (GSS) Appliance, and Cisco Application Networking Manager (ANM) management software. Figure 1. Cisco ACE30 Module The Cisco ACE30 allows enterprises to accomplish these important IT objectives for application delivery: Increase application availability and performance Secure the data center and applications Facilitate data center consolidation through the use of fewer servers, load balancers, and data center firewalls The Cisco ACE30 achieves these goals through a broad set of intelligent Layer 4 load-balancing and Layer 7 content-switching technologies that work with IPv4 and IPv6 traffic and are integrated with the latest virtualization and security capabilities. It supports translation between IPv4 and IPv6 traffic, enabling migration to IPv6 and allowing deployments in mixed networks. The Cisco ACE30 provides flexibility in managing application traffic, scaling up to 16 Gbps in a single-slot module form factor, upgradeable through software licenses, thus providing IT with long-term investment protection and scalability. Additionally, through virtualization and role-based access control (RBAC) capabilities, the Cisco ACE30 enables IT to provision and deliver a broad range of applications from a single Cisco ACE module, bringing increased scalability for application provisioning to the data center. This capability helps streamline and reduce the cost of operations involved in implementing, scaling, accelerating, and protecting applications. The Cisco ACE30 greatly improves server efficiency through highly flexible application traffic management and the offloading of CPU-intensive tasks such as SSL encryption and decryption processing, HTTP compression, and TCP session management. 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 1 of 5

The Cisco ACE platform is designed to serve as a last line of defense for servers and applications in data centers. An integrated firewall enables IT professionals to comprehensively secure high-value applications in the data center and facilitates data center consolidation (Figure 2). Figure 2. Cisco ACE Network Integration By combining high application performance with a comprehensive set of state-of-the-art application delivery features, the Cisco ACE30 promotes greater IT efficiency and reduces the total cost of ownership (TCO). s and Benefits Table 1 summarizes the features and benefits of the Cisco ACE30. Table 1. s and Benefits Availability Application switching Benefit The Cisco ACE30 provides load-balancing and content-switching functions with granular traffic control based on customizable Layer 4 through 7 rules with support for both IPv4 and IPv6 addresses, VIPs, and server farms. Cisco ACE can natively load-balance the following protocols in an IPv4 environment: HTTP/HTTPS, FTP, Domain Name System (DNS), Internet Control Message Protocol (ICMP), Session Initiation Protocol (SIP), Real-Time Streaming Protocol (RTSP), Extended RTSP, Lightweight Directory Access Protocol (LDAP), RADIUS, Skinny Client Control Protocol (SCCP) and Microsoft Remote Desktop Protocol (RDP). In an IPv6 environment, it can natively loadbalance HTTP, HTTPS, and SSL protocols. It has generic protocol parsing capabilities that enable the configuration of application switching and persistence policies based on any information in the traffic payload for custom and packaged applications without requiring any programming. The Cisco ACE30 supports translation and load balancing between IPv4 and IPv6 networks and provides flexibility to customers in planning their IPv6 migrations. 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 2 of 6

Benefit Predictors Persistence and stickiness Redundancy Predictors or load-balancing algorithms enable the Cisco ACE30 to select the best server to satisfy a client request. Stickiness allows the same client to maintain multiple simultaneous or subsequent TCP or IP connections with the same real server for the duration of a session. Stateful failover capabilities help ensure resilient network protection for enterprise network environments. The Cisco ACE30 integrates with Cisco GSS to provide a multiple data center scaling and failover system. Server health monitoring The Cisco ACE30 checks the health of application servers and server farms through configuration of health probes. Performance Compression SSL acceleration TCP offload Security Data center security Application security Virtualized Services Virtual contexts Role-based access control (RBAC) Deployment and Management The Cisco ACE30 delivers up to 6-Gbps hardware-accelerated data compression and provides fast application performance for application users. The Cisco ACE30 integrates SSL acceleration technology, which offloads the encryption and decryption of SSL traffic from external devices (servers, appliances, etc.), thereby allowing Cisco ACE to look more deeply into encrypted data and apply security and application switching policies and help ensure compliance with internal and external regulations. The Cisco ACE30 directs website traffic in the most efficient manner by analyzing and directing incoming traffic at the request level. These capabilities enable highly specific application-layer policy and offload TCP processing from the web servers, saving CPU cycles. The Cisco ACE30 protects the data center and critical applications from protocol and denial-of-service (DoS) attacks and encrypts mission-critical content. The Cisco ACE30 provides deep protocol inspection capabilities, which enables IT professionals to comprehensively secure high-value applications in the data center. It secures mission-critical applications and protects against identity theft, data theft, application disruption, and fraud and defends web-based applications and transactions against targeted attacks by professional hackers. Virtual contexts provide a means for creating resource segmentation and isolation, allowing the Cisco ACE30 to act as if it were several individual virtual appliances within a single physical appliance. Virtual contexts enable organizations to provide defined levels of service to up to 250 business departments, applications, or customers and partners from a single Cisco ACE appliance. RBAC allows organizations to specify administrative roles and restrict administrators to specific functions within the appliance or virtual contexts, allowing each administrator group to freely perform its tasks without affecting the other groups. Function consolidation Investment protection Cisco ANM Through consolidation of application switching, SSL acceleration, data center security, and other functions on one device, the Cisco ACE30 helps achieve better application performance, with fewer devices, simpler network designs, and easier management. By default, the Cisco ACE30 supports virtualization with one administrator context and 250 user contexts, 30,000 SSL transactions per second (TPS), and up to 6 Gbps of compression. The default throughput can be increased to up to 16 Gbps without the need for new equipment, through software license upgrades. Cisco ANM supports the management of virtual contexts and hierarchical management domains across multiple Cisco ACE30 modules. This server-based management suite discovers, provisions, monitors, and reports across many virtual contexts on multiple Cisco ACE30 Modules, making deployment transparent. Product Specifications Table 2 presents the performance specifications for the Cisco ACE30. Table 2. Product Performance Specifications Maximum Performance and Configuration Throughput 4, 8, or 16 Gbps Compression throughput 4 or 6 Gbps (using GZIP or Deflate) Virtual contexts 250 SSL throughput 6 Gbps SSL TPS Up to 30,000 TPS using 1024-bit keys 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 3 of 6

Maximum number of Layer 4 connections per second Maximum number of Layer 7 connections per second Concurrent connections Maximum Performance and Configuration 500,000 complete transactions sustained rate 200,000 complete transactions sustained rate 4 million Table 3 presents the product specifications for the Cisco ACE30. Table 3. Product Specifications Description Physical Specifications Chassis slots required Occupies 1 slot in the chassis Dimensions (H x W x D) 1.75 x 15.51 x 16.34 in. (44.45 x 394 x 415 mm) Weight 11 lb (4.98 kg) Operating Specifications Ambient operating temperature 32 to 104 F (0 to 40 C) Ambient nonoperating temperature -40 to 158 F (-40 to 70 C) Operating relative humidity 10 to 85% Nonoperating relative humidity 5 to 95% Operating Altitude Certified for operation 0 to 6500 ft (0 to 2000m) Designed and tested for operation -200 to 10000 ft (-60 to 3000m) NEBS SR-3580-NEBS: Criteria Levels (Level 3 compliant) GR-63-CORE-NEBS: Physical Protection GR-1089-CORE-NEBS: EMC and Safety Emissions FCC Part 15 (CFR 47) Class A or B ICES-003 Class A or B EN55022 Class A or B CISPR22 Class A or B AS/NZS CISPR22 Class A or B VCCI Class A or B CISPR24 EN55024 EN50082-1 EN61000-3-2 EN61000-3-3 EN61000-6-1 Safety UL 60950 Can/CSA-C22.2 No. 60950 EN 60950 IEC 60950 AS/NZS 60950 TS001 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 4 of 6

System Requirements Table 4 lists system requirements for the Cisco Catalyst 6500 Series Switches used with the Cisco ACE30, and Table 5 lists requirements for the Cisco 7600 Series Routers. Table 4. Cisco Catalyst 6500 Series System Requirements for the Cisco ACE30 Module Requirement Chassis Supervisor engine Chassis OS Chassis connectivity Chassis slots required Details Cisco Catalyst 6503E, 6504E, 6506E, 6509E, 6509-V-E, 6513, or 6513E Switch Cisco Catalyst Sup720-3B, Sup720-3BXL, Sup720-10G-3C, Sup720-10G-3CXL, Sup2T-10G, or Sup2T-10G-XL Cisco Catalyst 6500 Series running Cisco IOS Software Release 12.2(33)SXI4 (or later depending on supervisor) Functions as a fabric-enabled line card Occupies 1 slot in the chassis Table 5. Cisco 7600 Series System Requirements for the Cisco ACE30 Module Requirement Chassis Supervisor engine Chassis OS Chassis connectivity Chassis slots required Details Cisco 7603, 7604, 7609, 7613, 7603-S, 7604-S, 7606-S, or 7609-S Router Cisco Catalyst Sup720-3B, Sup720-3BXL, RSP720-3C-GE, RSP720-3CXL-GE, RSP720-3C-10GE, or RSP720-3CXL- 10GE Cisco 7600 Series running Cisco IOS Software Release 15.0(1)S (or later) Functions as a fabric-enabled line card Occupies 1 slot in the chassis Ordering Information Table 6 lists part numbers for ordering the Cisco ACE30 Module. Table 6. Ordering Information Product Number ACE30-MOD-K9= SC6K-A41-ACE SC6K-A51-ACE ACE30-BASE-04-K9 ACE30-MOD-04-K9 ACE30-MOD-08-K9 ACE30-MOD-16-K9 Product Description Application Control Engine 30 Hardware ACE A4(1) SW for ACE30 Module ACE SW (5.1) for ACE30 Module ACE30 Module with 4G, 1G Comp, 1K SSL TPS and 5VC ACE30 Module with 4G, 4G Comp, 30K SSL TPS and 250VC ACE30 Module with 8G, 6G Comp, 30K SSL TPS and 250VC ACE30 Module with 16G, 6G Comp, 30K SSL TPS and 250VC Additional Information For more information about the Cisco ACE product family, please visit the following sites or contact your local account representative: Cisco ACE Modules: http://www.cisco.com/go/ace Cisco ACE 4710 Appliance: http://www.cisco.com/go/ace Cisco GSS Appliance: http://www.cisco.com/go/gss Cisco ANM management software: http://www.cisco.com/go/anm 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 5 of 6

Printed in USA C78-632383-01 06/12 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 6 of 6