MX67-HW
cisco
factory new
1 year
Availability: | |
---|---|
Quantity: | |
Product | MX67-HW |
Product Description | Meraki MX67 Router/Security Appliance |
Small-branch security and SD-WAN appliance for up to 50 users
Product overview
Granting and denying network access has evolved beyond simple username and password verifications. Today, additional attributes related to users and their devices are used as decision criteria in determining authorized network access. Additionally, network service provisioning can be based on data such as the type of device accessing the network, including whether it is a corporate or personal device.
The Cisco® Secure Network Server is a scalable solution that helps network administrators meet complex network access control demands by managing the many different operations that can place heavy loads on applications and servers, including:
● Authorization and authentication requests
● Queries to identity stores such as Active Directory (on-premise or Azure), LDAP, and other databases
◦ API queries to fetch attributes from third-party systems (such as ServiceNow)
● Device profiling and compliance checking
● Enforcement actions to remove devices from the network
● Reporting
The Cisco Secure Network Server is based on the Cisco UCS® C220 Rack Server and is configured specifically to support the Cisco Identity Services Engine (ISE) security application. The Cisco Secure Network Server supports these applications in three versions. The Cisco Secure Network Server 3715 is designed for small deployments. The Cisco Secure Network Server 3755 and 3795 have several redundant components such as hard disks and power supplies, making it suitable for larger deployments that require highly reliable system configurations.
Figure 1 shows the Cisco Secure Network Server.
Figure 1.
Cisco Secure Network Server
Table 1 lists specifications of the Cisco Secure Network Server.
Table 1.
Product name | Cisco SNS-3715 | Cisco SNS-3755 | Cisco SNS-3795 |
Processor | Intel 4310 2.1GHz | Intel 4316 2.3GHz | Intel 4316 2.3GHz |
Cores per processor | 12 Cores and 24 Threads | 20 Cores and 40 Threads | 20 Cores and 40 Threads |
Memory | 32GB 2 X 16GB | 96GB 6 X 16GB | 256GB 8 X 32GB |
Hard disk | 1 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) | 4 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) | 8 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) |
Hardware RAID | Level 0 | Level 10 Cisco 12G SAS Modular RAID Controller | Level 10 Cisco 12G SAS Modular RAID Controller |
Network interface | 2 X 10Gbase-T 4 X 10GE SFP | 2 X 10Gbase-T 4 X 10GE SFP | 2 X 10Gbase-T 4 X 10GE SFP |
Power supplies | 1 X 1050W | 2 X 1050W | 2 X 1050W |
TPM chip | Yes | Yes | Yes |
The Cisco Secure Network Server supports Cisco’s powerful network access and control security applications:
Cisco Identity Services Engine
As the industry’s only complete Network Access Control (NAC) solution, the Cisco Identity Services Engine (ISE) is a revolutionary product that extends the network access and admission control capabilities and is the bedrock of a zero trust solution. Teams gain agility with zero trust provisioning and flexibility in automating their environment through the entire life cycle of managing Cisco ISE. With Cisco ISE as the centerpiece for zero trust access to the workplace (self managed infrastructure), organizations are lowering risk, protecting the integrity of their business, and accelerating secure network access across the distributed network.
Looking beyond username and password, Cisco ISE delivers unprecedented abilities to acquire user and device identity and context information to forge flexible and powerful policies that govern authorized network access. Cisco ISE is an all-in-one enterprise policy control platform that can reliably provide secure access for wired, wireless, VPN, and Private 5G networks. Cisco ISE can also help IT with secure BYOD on-boarding and allow IT to provide differentiated Guest Access. Cisco ISE provides enforcement actions that allow administrators to restrict devices from the network that are violating access and policies.
Table 2 lists Cisco ISE endpoint scalability metrics for the Secure Network Servers.
Table 2. Identity Services Engine deployment scalability (ISE 3.1 P6 and later)
Cisco Secure Network Server 3715 | Cisco Secure Network Server 3755 | Cisco Secure Network Server 3795 | |
Concurrent active endpoints supported by a dedicated PSN (Cisco ISE node only has PSN persona.) | 50,000 | 100,000 | 100,000 |
Concurrent active endpoints supported by a shared PSN (Cisco ISE node has multiple personas.) | 25,000 | 50,000 | 50,000 |
Note: Cisco SNS-3795 is equipped with better RAM, Disk R/W performance. It is best suited for dedicated PAN, dedicated MnT or dedicated PAN/MnT personas.
Table 3 lists ordering information for the Cisco Secure Network Servers.
Each Cisco SNS server can be ordered with HDD, SSD or SED as a configuration option.
Table 3. Product ordering information
Server part numbers | Server description |
SNS-3715-K9 | Secure Network Server for ISE applications (small) |
SNS-3755-K9 | Secure Network Server for ISE applications (medium) |
SNS-3795-K9 | Secure Network Server for ISE applications (large) |
SSD offers improved performance in disk read/write operations and other Cisco ISE operations like reboot, installation, upgrades, database intensive tasks like backup and restore, reports generation, and so on.
Performance improvements vary between an average of 15% in fresh installation, 40% in upgrades, and 80% in exporting extensive reports with tens of millions of records.
Table 4 lists the Cisco Secure Network Server component spares that can be used as Field Replaceable Units (FRUs).
Table 4. Spare components for the Cisco Secure Network Server
Secure network server | Component part number | Component description |
3715/3755/3795 | UCS-HD600G10K12N= | 600-GB 12-Gb SAS 10K RPM SFF hard disk; hot pluggable; drive sled mounted |
3715/3755/3795 | UCS-SD800GK3XEP= | 800GB 2.5 in Enterprise Performance 12G SAS SSD (3X endurance) |
3715/3755/3795 | UCS-SD960GM2NK9= | 960GB Enterprise value SATA SSD (1X , SED) |
UCSC-PSU1-1050W= | 1050W power supply | |
3715/3755/3795 | UCSC-PSU1-1050ELV= | UCSC-PSU1-1050ELV is required for Low Line Voltage 110VAC and below (e.g., Japan) |
3715/3755/3795 | N20-BKVM= | KVM cable |
3715/3755/3795 | UCSC-RAIL-M6= | Rail kit |
Copper PID:
GLC-TE - 1000BASE-T SFP transceiver module for Category 5 copper wire
Fiber PIDs: UCS M6 10G NIC Interoperability with Cisco Cables/Optics
The Cisco Secure Network Server 37xx supports Cisco ISE 3.1 P6 and later versions only. Upon receiving the SNS-37xx, it is recommended to install the latest patch of the Cisco ISE suggested release.
Table 5 lists Connectors and LEDs on the Cisco SNS-3715, SNS-3755, and SNS-3795.
Table 5. Cisco SNS-3715, SNS-3755, and SNS-3795 Connectors and LEDs
LED Name | States | |
1 | Power LED | Off - There is no AC power to the server. Amber - The server is in standby power mode. Power is supplied only to the Cisco IMC and some motherboard functions. Green - The server is in main power mode. Power is supplied to all server components. |
2 | Unit Identification | Off - The unit identification function is not in use. Blue, blinking - The unit identification function is activated. |
3 | System Health | Green - The server is running in normal operating condition. Green, blinking - The server is performing system initialization and memory check. Amber, steady - The server is in a degraded operational state (minor fault). For example: ● Power supply redundancy is lost.● CPUs are mismatched.● At least one CPU is faulty.● At least one DIMM is faulty.● At least one drive in a RAID configuration failed.Amber, 2 blinks - There is a major fault with the system board. Amber, 3 blinks - There is a major fault with the memory DIMMs. Amber, 4 blinks - There is a major fault with the CPUs. |
4 | Power Supply Status | Green - All power supplies are operating normally. Amber, steady - One or more power supplies are in a degraded operational state. Amber, blinking - One or more power supplies are in a critical fault state. |
5 | Fan Status | Green - All fan modules are operating properly. Amber, blinking - One or more fan modules breached the nonrecoverable threshold. |
6 | Network Link Activity | Off - The Ethernet LOM port link is idle. Green - One or more Ethernet LOM ports are link-active, but there is no activity. Green, blinking - One or more Ethernet LOM ports are link-active, with activity. |
7 | Temperature Status | Green - The server is operating at normal temperature. Amber, steady - One or more temperature sensors breached the critical threshold. Amber, blinking - One or more temperature sensors breached the |
Physical dimensions (H x W x D) 1RU: 1.7 x 16.9 x 29.8 in. (4.32 x 43 x 75.6 cm).
WAN: 2 GbE (1 for WAN or LAN use)
LAN: 4 GbE (1 for WAN or LAN use)
700 Mbps firewall throughput
300 Mbps site-to-site VPN throughput
Supports up to 50 users
Product | MX67-HW |
Product Description | Meraki MX67 Router/Security Appliance |
Small-branch security and SD-WAN appliance for up to 50 users
Product overview
Granting and denying network access has evolved beyond simple username and password verifications. Today, additional attributes related to users and their devices are used as decision criteria in determining authorized network access. Additionally, network service provisioning can be based on data such as the type of device accessing the network, including whether it is a corporate or personal device.
The Cisco® Secure Network Server is a scalable solution that helps network administrators meet complex network access control demands by managing the many different operations that can place heavy loads on applications and servers, including:
● Authorization and authentication requests
● Queries to identity stores such as Active Directory (on-premise or Azure), LDAP, and other databases
◦ API queries to fetch attributes from third-party systems (such as ServiceNow)
● Device profiling and compliance checking
● Enforcement actions to remove devices from the network
● Reporting
The Cisco Secure Network Server is based on the Cisco UCS® C220 Rack Server and is configured specifically to support the Cisco Identity Services Engine (ISE) security application. The Cisco Secure Network Server supports these applications in three versions. The Cisco Secure Network Server 3715 is designed for small deployments. The Cisco Secure Network Server 3755 and 3795 have several redundant components such as hard disks and power supplies, making it suitable for larger deployments that require highly reliable system configurations.
Figure 1 shows the Cisco Secure Network Server.
Figure 1.
Cisco Secure Network Server
Table 1 lists specifications of the Cisco Secure Network Server.
Table 1.
Product name | Cisco SNS-3715 | Cisco SNS-3755 | Cisco SNS-3795 |
Processor | Intel 4310 2.1GHz | Intel 4316 2.3GHz | Intel 4316 2.3GHz |
Cores per processor | 12 Cores and 24 Threads | 20 Cores and 40 Threads | 20 Cores and 40 Threads |
Memory | 32GB 2 X 16GB | 96GB 6 X 16GB | 256GB 8 X 32GB |
Hard disk | 1 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) | 4 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) | 8 60012G SAS 10K RPM SFF HDD Or 800GB 2.5in Enterprise Performance 12G SAS SSD (3X endurance) Or 960GB 2.5 in Enterprise value SATA SSD Self Encrypted Drive (1X, SED) |
Hardware RAID | Level 0 | Level 10 Cisco 12G SAS Modular RAID Controller | Level 10 Cisco 12G SAS Modular RAID Controller |
Network interface | 2 X 10Gbase-T 4 X 10GE SFP | 2 X 10Gbase-T 4 X 10GE SFP | 2 X 10Gbase-T 4 X 10GE SFP |
Power supplies | 1 X 1050W | 2 X 1050W | 2 X 1050W |
TPM chip | Yes | Yes | Yes |
The Cisco Secure Network Server supports Cisco’s powerful network access and control security applications:
Cisco Identity Services Engine
As the industry’s only complete Network Access Control (NAC) solution, the Cisco Identity Services Engine (ISE) is a revolutionary product that extends the network access and admission control capabilities and is the bedrock of a zero trust solution. Teams gain agility with zero trust provisioning and flexibility in automating their environment through the entire life cycle of managing Cisco ISE. With Cisco ISE as the centerpiece for zero trust access to the workplace (self managed infrastructure), organizations are lowering risk, protecting the integrity of their business, and accelerating secure network access across the distributed network.
Looking beyond username and password, Cisco ISE delivers unprecedented abilities to acquire user and device identity and context information to forge flexible and powerful policies that govern authorized network access. Cisco ISE is an all-in-one enterprise policy control platform that can reliably provide secure access for wired, wireless, VPN, and Private 5G networks. Cisco ISE can also help IT with secure BYOD on-boarding and allow IT to provide differentiated Guest Access. Cisco ISE provides enforcement actions that allow administrators to restrict devices from the network that are violating access and policies.
Table 2 lists Cisco ISE endpoint scalability metrics for the Secure Network Servers.
Table 2. Identity Services Engine deployment scalability (ISE 3.1 P6 and later)
Cisco Secure Network Server 3715 | Cisco Secure Network Server 3755 | Cisco Secure Network Server 3795 | |
Concurrent active endpoints supported by a dedicated PSN (Cisco ISE node only has PSN persona.) | 50,000 | 100,000 | 100,000 |
Concurrent active endpoints supported by a shared PSN (Cisco ISE node has multiple personas.) | 25,000 | 50,000 | 50,000 |
Note: Cisco SNS-3795 is equipped with better RAM, Disk R/W performance. It is best suited for dedicated PAN, dedicated MnT or dedicated PAN/MnT personas.
Table 3 lists ordering information for the Cisco Secure Network Servers.
Each Cisco SNS server can be ordered with HDD, SSD or SED as a configuration option.
Table 3. Product ordering information
Server part numbers | Server description |
SNS-3715-K9 | Secure Network Server for ISE applications (small) |
SNS-3755-K9 | Secure Network Server for ISE applications (medium) |
SNS-3795-K9 | Secure Network Server for ISE applications (large) |
SSD offers improved performance in disk read/write operations and other Cisco ISE operations like reboot, installation, upgrades, database intensive tasks like backup and restore, reports generation, and so on.
Performance improvements vary between an average of 15% in fresh installation, 40% in upgrades, and 80% in exporting extensive reports with tens of millions of records.
Table 4 lists the Cisco Secure Network Server component spares that can be used as Field Replaceable Units (FRUs).
Table 4. Spare components for the Cisco Secure Network Server
Secure network server | Component part number | Component description |
3715/3755/3795 | UCS-HD600G10K12N= | 600-GB 12-Gb SAS 10K RPM SFF hard disk; hot pluggable; drive sled mounted |
3715/3755/3795 | UCS-SD800GK3XEP= | 800GB 2.5 in Enterprise Performance 12G SAS SSD (3X endurance) |
3715/3755/3795 | UCS-SD960GM2NK9= | 960GB Enterprise value SATA SSD (1X , SED) |
UCSC-PSU1-1050W= | 1050W power supply | |
3715/3755/3795 | UCSC-PSU1-1050ELV= | UCSC-PSU1-1050ELV is required for Low Line Voltage 110VAC and below (e.g., Japan) |
3715/3755/3795 | N20-BKVM= | KVM cable |
3715/3755/3795 | UCSC-RAIL-M6= | Rail kit |
Copper PID:
GLC-TE - 1000BASE-T SFP transceiver module for Category 5 copper wire
Fiber PIDs: UCS M6 10G NIC Interoperability with Cisco Cables/Optics
The Cisco Secure Network Server 37xx supports Cisco ISE 3.1 P6 and later versions only. Upon receiving the SNS-37xx, it is recommended to install the latest patch of the Cisco ISE suggested release.
Table 5 lists Connectors and LEDs on the Cisco SNS-3715, SNS-3755, and SNS-3795.
Table 5. Cisco SNS-3715, SNS-3755, and SNS-3795 Connectors and LEDs
LED Name | States | |
1 | Power LED | Off - There is no AC power to the server. Amber - The server is in standby power mode. Power is supplied only to the Cisco IMC and some motherboard functions. Green - The server is in main power mode. Power is supplied to all server components. |
2 | Unit Identification | Off - The unit identification function is not in use. Blue, blinking - The unit identification function is activated. |
3 | System Health | Green - The server is running in normal operating condition. Green, blinking - The server is performing system initialization and memory check. Amber, steady - The server is in a degraded operational state (minor fault). For example: ● Power supply redundancy is lost.● CPUs are mismatched.● At least one CPU is faulty.● At least one DIMM is faulty.● At least one drive in a RAID configuration failed.Amber, 2 blinks - There is a major fault with the system board. Amber, 3 blinks - There is a major fault with the memory DIMMs. Amber, 4 blinks - There is a major fault with the CPUs. |
4 | Power Supply Status | Green - All power supplies are operating normally. Amber, steady - One or more power supplies are in a degraded operational state. Amber, blinking - One or more power supplies are in a critical fault state. |
5 | Fan Status | Green - All fan modules are operating properly. Amber, blinking - One or more fan modules breached the nonrecoverable threshold. |
6 | Network Link Activity | Off - The Ethernet LOM port link is idle. Green - One or more Ethernet LOM ports are link-active, but there is no activity. Green, blinking - One or more Ethernet LOM ports are link-active, with activity. |
7 | Temperature Status | Green - The server is operating at normal temperature. Amber, steady - One or more temperature sensors breached the critical threshold. Amber, blinking - One or more temperature sensors breached the |
Physical dimensions (H x W x D) 1RU: 1.7 x 16.9 x 29.8 in. (4.32 x 43 x 75.6 cm).
WAN: 2 GbE (1 for WAN or LAN use)
LAN: 4 GbE (1 for WAN or LAN use)
700 Mbps firewall throughput
300 Mbps site-to-site VPN throughput
Supports up to 50 users
Shenzhen Importgm Technology Co., Ltd.
Shenzhen Importgm Technology Co., Ltd. has been operating in the I T services market since 2010,focusing on the R&D, design and sales of core equipment and general accessories in the field of network communications, we are distributors and resellers of worldwide brands of communication equipment, general accessories and system solutions for global customers.We offer a wide range of products, including networking routers, switches, firewalls, servers, I P phones, video conferencing equipment, wireless A P, P D U and modules. We are located in Shenzhen with convenient transportation access. Over the years we have developed a team of highly skilled staff that delivers quality and effective solutions and services. Based on our rich experience, we can supply products with stable packages, reliable delivery, competitive prices and on-time support. Our products are exported to customers in such regions as the Middle East, Africa, America,Europe and Asia. We also welcome O E M and O D M orders.Whether selecting current products from our inventory or seeking engineering assistance for your project bid, you can consult our business staff at any time. Our service does not end when the invoice is printed but begins as soon as you have received your order. Any customers' business visit and negotiation is warmly welcomed. Let's work together and win-win together.
Shenzhen Importgm Technology Co., Ltd.
Shenzhen Importgm Technology Co., Ltd. has been operating in the I T services market since 2010,focusing on the R&D, design and sales of core equipment and general accessories in the field of network communications, we are distributors and resellers of worldwide brands of communication equipment, general accessories and system solutions for global customers.We offer a wide range of products, including networking routers, switches, firewalls, servers, I P phones, video conferencing equipment, wireless A P, P D U and modules. We are located in Shenzhen with convenient transportation access. Over the years we have developed a team of highly skilled staff that delivers quality and effective solutions and services. Based on our rich experience, we can supply products with stable packages, reliable delivery, competitive prices and on-time support. Our products are exported to customers in such regions as the Middle East, Africa, America,Europe and Asia. We also welcome O E M and O D M orders.Whether selecting current products from our inventory or seeking engineering assistance for your project bid, you can consult our business staff at any time. Our service does not end when the invoice is printed but begins as soon as you have received your order. Any customers' business visit and negotiation is warmly welcomed. Let's work together and win-win together.
1. who are we?
We are based in Shenzhen,Guangdong, China, start from 2010,sell to Africa(15.00%),Mid East(15.00%),Southeast Asia(10.00%),Eastern Europe(10.00%),South America(9.00%),Northern Europe(5.00%),Central America(5.00%),Western Europe(5.00%),Domestic Market(5.00%),North America(5.00%),Oceania(5.00%),South Asia(3.00%),Southern Europe(3.00%),Eastern Asia(2.00%). There are total about 11-50 people in our office.
2. how can we guarantee quality?
Original brand new products; always pre-final Inspection before shipment;
3.what can you buy from us?
Switches, Routers, Firewalls, IP phones, Servers,Video Conference,AP, PDU,etc.
4. why should you buy from us not from other suppliers?
IMPORTGM has been operating in China for about 15 years. We are one of the largest and complete distributors and resellers of worldwide brands of communication equipment.
5. what services can we provide?
Accepted Delivery Terms: FOB,CFR,CIF,EXW,Express Delivery;
Accepted Payment Currency:USD,EUR,JPY,CAD,AUD,HKD,GBP,CNY,CHF;
Accepted Payment Type: T/T,L/C,MoneyGram,Credit Card,PayPal,Western Union,Cash,Escrow;
Language Spoken:English,Chinese,Spanish,Japanese,Portuguese,German,Arabic,French,Russian,etc.
1. who are we?
We are based in Shenzhen,Guangdong, China, start from 2010,sell to Africa(15.00%),Mid East(15.00%),Southeast Asia(10.00%),Eastern Europe(10.00%),South America(9.00%),Northern Europe(5.00%),Central America(5.00%),Western Europe(5.00%),Domestic Market(5.00%),North America(5.00%),Oceania(5.00%),South Asia(3.00%),Southern Europe(3.00%),Eastern Asia(2.00%). There are total about 11-50 people in our office.
2. how can we guarantee quality?
Original brand new products; always pre-final Inspection before shipment;
3.what can you buy from us?
Switches, Routers, Firewalls, IP phones, Servers,Video Conference,AP, PDU,etc.
4. why should you buy from us not from other suppliers?
IMPORTGM has been operating in China for about 15 years. We are one of the largest and complete distributors and resellers of worldwide brands of communication equipment.
5. what services can we provide?
Accepted Delivery Terms: FOB,CFR,CIF,EXW,Express Delivery;
Accepted Payment Currency:USD,EUR,JPY,CAD,AUD,HKD,GBP,CNY,CHF;
Accepted Payment Type: T/T,L/C,MoneyGram,Credit Card,PayPal,Western Union,Cash,Escrow;
Language Spoken:English,Chinese,Spanish,Japanese,Portuguese,German,Arabic,French,Russian,etc.