《ciscoACS5.1产品介绍.ppt》由会员分享,可在线阅读,更多相关《ciscoACS5.1产品介绍.ppt(14页珍藏版)》请在淘文阁 - 分享文档赚钱的网站上搜索。
1、2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 1CiscoSecureACS5.1产品介绍马旻 系统工程师思科战略客户部2009年12月11日2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 2Hardware/Software Platform ACSimplementsidentitymanagementandAAA services CD-ROMversionforVMwareESXserver
2、 ApplianceversiondeliveredonhardenedLinuxOS Highlyscalable(100,000+users,thousandsofRADIUS/TACACS+devices)andfeature-rich2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 3ACS Appliance 的优点 Security:Theneedtocreateaturnkeysecurity-hardenedservicefocusedonexclusivelyrunningtheC
3、iscoSecureACSservice.Theapplianceprovidesanabilitytoremoveallextraneousservices,blockallunusedports,andotherwisepreventallotheraccesstotheCiscoSecureACSsystem-allofwhichservetodramaticallyincreaseitssecurityposture.Manageability:TheCiscoSecureACSSolutionEngineisadedicated,exclusiveserviceforAAAwithn
4、oabilitytoinstallorrunotherservicesorapplications.Thisgreatlyimprovesthesupportandday-to-daymanagementoftheCiscoSecureACSsystem.Reliability:BytargetingonlytheOSservicesrequiredbyCiscoSecureACS,theSolutionEngineapplianceoffersgreateroperationalreliabilityandsecurityoftheCiscoSecureACSsystem.SNMPSuppo
5、rt:TheCiscoSecureACSSolutionEnginesupportsSimpleNetworkManagementProtocol(SNMP)v1andv2c(readonly),sothatexternalsystemscanmonitortheappliance.SNMPsupportincludessupportforMIB-IIandHOST-RESOURCES-MIB.PlugandPlay:TheCiscoSecureACSSolutionEngineisshippedpre-installedwithCiscoSecureACSapplicationsoftwar
6、e,greatlyreducingthetimeittakestosetupanddeployaCiscoSecureACSsolutionintoyournetwork.2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 4ACS Appliance 5.1 配置说明产品名称 产品描述数量单价CSACS-1121-K9 ACS 1121 Appliance With 5.1 SW And Base license 1$31,490 CAB-ACA AC Power Cord(China/Austra
7、lia),C13,AS 3112,2.5m 1$0 CSACS-5-ADV-LIC ACS 5 TrustSec Access Control Add-on License 1$21,000 CSACS-5-LRG-LIC ACS 5 Large Deployment Add-on License 1$21,000 CSACS-5-BASE-LIC Cisco Secure ACS 5 Base License 1$0 CSACS-5.1-SW-K9 Config Option:ACS 5.1 Software Loaded On 1121 1$0 总计$73,490 Licenses 类型解
8、释:CSACS-5-ADV-LIC 主要用于6500 交换机和Nexus7K 交换机使能TrustSec 特性CiscoCatalyst6500runningCiscoIOS12.2(33)SXIandNexus7000NX-OS4.0.3devicessupportTrustSecCSACS-5-LRG-LIC 主要用于支持超过500 个网络设备的环境Baselicense 主要用于支持小于500 个网络设备的环境2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 5Cisco1121SecureA
9、ccessControlSystem设备介绍highxwidexdeep(44.5mmx440.0mmx559.0mm).重量11.0kg 到12.7kg 之间CPU:IntelCore2Duo2.4-GHzprocessorwithan800-MHzfrontsidebus(FSB)and2MBofLayer2cache.FoursynchronousdynamicRAM(SDRAM)slotsthatareinstalledwith4GB.Two250-GBSATAharddrivesinstalled.AfixedRJ-4510BASE-T/100BASE-TX/1000BASE-Tne
10、tworkinterfaceconnector(locatedontherearpanel).OneDVD-ROMdrive(locatedonthefrontpanel).2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 6 ACS5.1 只能安装在VMwareESX3.5 或ESX4.0 上ACS 5.1 软件配置说明产品名称 产品描述数量单价CSACS-5.1-VM-K9 ACS 5.1 VMWare Software And Base License 1$25,190 CSACS-5-ADV
11、-LIC ACS 5 TrustSec Access Control Add-on License 1$21,000 CSACS-5-LRG-LIC ACS 5 Large Deployment Add-on License 1$21,000 CSACS-5-BASE-LIC Cisco Secure ACS 5 Base License 1$0 总价$67,190 硬件要求 最低指标CPU IntelCore2;2.13GHzMemory 4GBRAMHardDisks 500GBofdiskstorageNIC 1GBNICinterfaceESX ESX3.5Serverinstalle
12、d2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 7Features Unique to the ACS Appliance Security-hardenedunderlyingOS.Port-basedpacketfiltering,allowingconnectionsonlytotheportsnecessaryforCiscoSecureACSoperation.Serialconsoleinterfaceforinitialconfiguration,subsequentmanagem
13、entofIPconnections,Webinterface,andapplicationofupgradesandremotereboots.TheserialconsoleinterfacesupportsbothseriallineandTelnetconnections.SNMPread-onlysupporttomonitortheappliancefromexternalsystems.Backup/restoreoftheCiscoSecureACSdataviaFTP.Recoveryprocedures.NetworkTimingProtocol(NTP)supportfo
14、rmaintainingnetworktimeconsistencywithotherappliancesornetworkdevices.2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 8ACS 5.1 新增特性 TACACS+Enhancements IdentityStoreEnhancements SupportforAdditionalProtocols AdministratorAccessFeatureEnhancements PolicyConditionEnhancements
15、MonitoringandTroubleshootingEnhancements OtherFeatureEnhancements2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 9最基本部署方式2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 10 负载分担部署模式2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 11大规模部署方式2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 12多站点分布部署2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 13计算需要ACS 服务器数量的经验公式2006CiscoSystems,Inc.Allrightsreserved.CiscoConfidential Presentation_ID 14
限制150内