Transcript Document
Meraki (Cloud Managed Network) Solution Overview Affordable. Managed. Scalable. Clay Ostlund Sr. Systems Engineer June - 2014 Who is Meraki? Meraki Overview Who is Meraki? Meraki Sales in 2012: ~100M About Meraki Leader in cloud networking: 20,000+ customer networks deployed Founded in 2006 at MIT - tradition of innovation and R&D 350 employees worldwide 100% Cloud-managed edge and branch networking portfolio Complete line of wireless, switching, security, WAN optimization, and mobile device management products Now part of Cisco Increasing R&D investment in Meraki products Leveraging Cisco’s reach to bring Meraki to new markets No near-term changes planned to pricing, licenses, product roadmap, etc. Meraki did ~94M in revenue in 2012, Cisco purchased Meraki for 1.2B in 2013. How Meraki Works Step 1: Pick Hardware Step 2: Cloud Subscription & Warranty Support Step 3: Install Cloud License 1yr, 3yr, 5yr Install Warranty Step 4: Dashboard Management Hardware Meraki “MR” Wireless LAN Meraki “MS“ Ethernet Switches Meraki “MX “ Security Appliances Meraki “SM” Mobile Device Management Spatial Stream / Antenna Design Fundamentals of Spatial Streams Spatial streaming is primarily observed in wireless communications where multiple-input-multiple-output (MIMO) is being used. When wireless signals are being transmitted or received simultaneously in a MIMO environment, the signals being transmitted by the various antennae are multiplexed by using different spaces within the same spectral channel. These spaces are known as spatial streams. Transmit (x) Receive : Spatial Streams (3x3:2) Hardware – “MR” MR 34 MR 26 MR 18 MR 12 Max Data Rate 1.75 Gbps 900 Mbps 600 Mbps 300 Mbps Radio Design MIMO:Spatial Stream 3x3:3 3x3:3 2X2:2 2X2:2 2.4 Ghz – 802.11b/g/n 5.0 Ghz – 802.11a/n WIDS/WIPS Radio 2.4 Ghz – 802.11b/g/n 5.0 Ghz – 802.11a/n WIDS/WIPS Radio 2.4 Ghz – 802.11b/g/n Radio 2.4 Ghz – 802.11ac/n 5.0 Ghz – 802.11ac/n WIDS/WIPS Radio Air Marshal (WIPS) ✔ ✔ ✔ ✔ Secure Guest Wifi ✔ ✔ ✔ ✔ Layer 7 Application Controls ✔ ✔ ✔ ✔ BandSelect ✔ ✔ ✔ ✔ BYOD Support ✔ ✔ ✔ ✔ Mesh Routing ✔ ✔ ✔ ✔ RF Optimization ✔ ✔ ✔ ✔ Data Uplink (Mbps) 10/100/1000 10/100/1000 10/100/1000 10/100/1000 Hardware – “MR” MR 66 MR 62 Max Data Rate 600 Mbps 300 Mbps Radio Design MIMO:Spatial Stream 2x2:2 2x2:2 Radio 2.4 Ghz – 802.11ac/n 5.0 Ghz – 802.11ac/n 2.4 Ghz – 802.11b/g/n Air Marshal (WIPS) ✔ ✔ Secure Guest Wifi ✔ ✔ Layer 7 Application Controls ✔ ✔ BandSelect ✔ ✔ BYOD Support ✔ ✔ Mesh Routing ✔ ✔ RF Optimization ✔ ✔ Data Uplink (Mbps) 10/100/1000 10/100/1000 Features – “MR” o Automated RF Optimization: Performance Monitoring Interference detection Adaptive configuration for optimal performance o Application QOS: Deep packet inspection Traffic shaping policies Cloud-based Application Signatures o Air Marshal: o Real-time detection and containment o Heuristic threat classification engine o Intuitive remediation with customizable alarms o Bonjour Gatekeeper: o Integrated Bonjour Support Presence Analytics: Intelligent Aps collect probe statistics Location-based insights drive revenue Presence API gives unlimited flexibility Mesh Routing: Auto-configuring mesh network Multi-channel routing protocols Self-healing network with per-flow optimization Seamless Mobility: Seamless roaming Fast roaming for voice and high speed mobility Inter-subnet mobility CMX Location Analytics HeatMap Hardware Meraki “MR” Wireless LAN Meraki “MS“ Ethernet Switches Meraki “MX “ Security Appliances Meraki “SM” Mobile Device Management Hardware – “MS” – Layer 2 Access MS220-48 MS220-24 MS220-8 Number of Ports 48 Port - 10/100/1000 24 Port - 10/100/1000 8 Port - 10/100/1000 Available POE(+) Budget 370W / 740W 370W 124W Layer 7 Application Controls ✔ ✔ ✔ Uplinks 4 x SFP (1 GIG) 4 x SFP (1 GIG) 2 x SFP (1 GIG) Layer 2 Support ✔ ✔ ✔ Remote Live Tools ✔ ✔ ✔ Quality Of Service ✔ ✔ ✔ Enterprise Security (802.1X) ✔ ✔ ✔ Limited Lifetime Warranty ✔ ✔ ✔ Layer 3 Support Hardware – “MS” – Layer 3 Access MS320-48 MS320-24 Number of Ports 48 Port - 10/100/1000 24 Port - 10/100/1000 Available POE(+) Budget 370W / 720W 370W Layer 7 Application Controls ✔ ✔ Uplinks 4 x SFP+ (10 GIG) 4 x SFP+ (10 GIG) Layer 2 Support ✔ ✔ Layer 3 Support ✔ ✔ Remote Live Tools ✔ ✔ Quality Of Service ✔ ✔ Enterprise Security (802.1X) ✔ ✔ Limited Lifetime Warranty ✔ ✔ Hardware – “MS” - Aggregation MS420-24 MS420-48 Number of Ports 24 Port SFP/SFP+ 48 Port SFP/SFP Available POE(+) Budget N/A N/A Layer 7 Application Controls ✔ ✔ Uplinks N/A N/A Layer 2 Support ✔ ✔ Layer 3 Support ✔ ✔ Remote Live Tools ✔ ✔ Quality Of Service ✔ ✔ Enterprise Security (802.1X) ✔ ✔ Limited Lifetime Warranty ✔ ✔ Features – “MS” o Virtual Stacking: Scalable Management Architecture Stack without proprietary cables Zero-Touch Deployments o Voice Optimization: Performance for Voice and Video Intelligent Power management Optimized for rapid VoIP deployment o Layer 7 Visibility: Packet processing engine Deep packet inspection Cloud-based application signatures Hardware Meraki “MR” Wireless LAN Meraki “MS“ Ethernet Switches Meraki “MX “ Security Appliances Meraki “SM” Mobile Device Management Hardware – “MX” MX400 MX100 MX80 MX60W MX60 Z1 (Teleworker) Stateful Firewall Throughput 1 Gbps 500 Mbps 250 Mbps 100 Mbps 100 Mbps 50 Mbps VPN Throughput 325 Mbps 225 Mbps 125 Mbps 50 Mbps 50 Mbps 10 Mbps WAN Optimization Cache 1 TB SATA 1 TB SATA 1 TB SATA 100 MB 100 MB N/A Interfaces 8 x GbE 8 x GbE (SFP) 4 x 10 GbE (SFP+) 8 x GbE 2 x GbE (SFP) 5 x GbE 5 × GbE 1 × 802.11n 5 x GbE 1 x GbE WAN 4 x GbE LAN • • • • • • Integrated Intrusion Detection (IDS) Device Aware Access Controls (BYOD) (Layer 7) Category-based content filtering Load Balance WAN connections 3G/4G backup WAN connectivity WAN Acceleration/Optimization Hardware – “MX” o Next Generation Firewall: Layer 7 traffic classification and control Intrusion detection engine Identity based and device-aware security o Auto VPN: Auto-provisioning IPSec VPN Automatically configured VPN parameters Flexible tunneling, topology and security policies o 3G / 4G Failover: Cellular support for maximum uptime Seamless, automatic failover with traffic prioritization o WAN Optimization: Universal data store with de-duplication WAN link compression o Content Filtering: Identity-based filtering policies Subscription/License – “MX” Hardware Meraki “MR” Wireless LAN Meraki “MS“ Ethernet Switches Meraki “MX “ Security Appliances Meraki “SM” Mobile Device Management Systems Manager – “SM” • Systems Manager lets you configure, monitor, and support devices in your organization. 100% cloud based, Systems Manager eliminates costly, complex management appliances and software. Mobile Device Management (MDM) Systems Manager – “SM” o Application Deployment: o Integration to Apple and Google App Stores o Deploy MSI and PKG for PC/MAC o Enterprise Security Enforce Restrictions Deploy Network Settings o Asset Management o Locate and track laptops and mobile devices anywhere in the world o Rapid Provisioning: 1:1 BYOD initiatives Deploy network settings and policies o Remote Live Tools: Universal data store with de-duplication WAN link compression o Platform Support: Cloud Value Proposition o Maintenance & Upgrades (Quarterly Releases): Automatic firmware maintenance New feature implementation Automatic implementation of performance improvements and enhancements o Monitoring: Application level (layer 7) monitoring & reporting Performance monitoring o Technology and Configuration: Extremely easy configuration Fully featured Cloud Managed Warranty & Maintenance: Case-based support viewable in dashboard Firmware and Software updates/upgrades 24x7 telephone support Management – Cloud Dashboard • Self-provisioning for rapid deployment and expansions • Scalable network-wide monitoring and management tools • Integrated Wireless, LAN, and WAN management, as well as Mobile Device management • Seamless over-the-web maintenance, upgrades, monitoring, etc. Layer 7 - Complete visibility and control Out of band cloud management Scalable • Unlimited throughput, no bottlenecks • Add devices or sites in minutes Reliable WAN Management data (1 kb/s) • Highly available cloud with multiple datacenters • Network functions even if connection to cloud is interrupted • 99.99% uptime SLA Secure LAN • No user traffic passes through cloud • Fully HIPAA / PCI compliant (level 1 certified) • 3rd party security audits, daily penetration test Reliability and security information at meraki.com/trust Live Demo