11-30-2022 07:54 AM - edited 11-30-2022 11:49 AM
My client is buying a new router and has provided me with the following info, please suggest me a new router.
• Support Centralized control through the SDWAN Controller whenever needed. The solution must support the existing SDWAN technology used by public Security
• Must include Essential license for covering at least 20M link throughout (50M Aggregation throughput) for 3 Years
• The device must include SMART NET 8/5/NBD covering 3 Years of support
• Must have 8G DRAM Memory and must have 8GB Flash
• Interfaces: • Must have 8 switch ports • 2 ports (1 X Combo RJ45/SFP+and 1 X RJ45) • Micro USB for console port access • Either 4 POE or 2 POE+Ports must be supported and included • Must support Wi-Fi (802.11 AC WAVE 2), and must support 2x2 MU-MIMO, with 2 Spatial Streams • 2 internal Wi-Fi antennas
• For Wireless and Security the solution must support: • AES for Wi-Fi Protected Access 2 (WPA2). • 802.1X, RADIUS AAA. • 802.11r and 802.11i
• Support Optional internal adapter for inline PoE on 4 switch ports for IP phones or external wireless access points; 802.3af-compliant PoE or 802.3at-compliant PoE+
• Must Support LTE (4G Pluggable LTE (CAT 4) and pluggable LTE Advanced (CAT 6) with carrier aggregation)
• Quad Core CPU Architecture • Dedicated cores for Data Plane and Control Plane
• A separate Crypto Engine for ciphering and hashing operation
• The maximum Throughput of IPSec encryption should be at least 350 Mbps.
• Support Snort IPS
• The maximum Throughput of the model should be at least 1.7Gbps CEF performance.
• NAT throughput up to 959 Mbps
• Support IPsec (AES256) IMIX of 335 Mbps
• Support Encryption: DES, 3DES, AES-128 or AES-256 (in CBC and GCM modes).
• Support Dynamic routing: OSPF, BGP with the functionality that the controller feature support.
• Support VRRP Gateway Redundancy
• Support Forward Error Correction (FEC) both packet parity and packet duplication and support NA
• Support multicast functionality Auto-RP or Static RP and IGMPv1 and IGMPv2
• Support TACAC+, Radius for authentication to the device.
• Support 802.1Q Encapsulation
• Support IPv6 both LAN and WAN interface
• QoS functionality support. Application Control, Shaping, And policing, DSCP Marking, Rewrite with 16K queues.
03-09-2023 12:48 AM
Hello.
I think the Catalyst 8200 Series will fill most of your needs.
Cisco Catalyst 8200 Series Edge Platforms Data Sheet - Cisco
- C8200-1N-4T
- PWR-CC1-150WAC
- NIM-ES2-8-P
- Wireless WAN (LTE) module
For Wi-Fi, select an access point separately. I believe AP 2800 will suffice, but 9105 is recommended since it has been on sale for some time.
- AIR-AP2802I-x-K9
Cisco Aironet 2800 Series Access Points Data Sheet - Cisco
- C9105AXI-x
Cisco Catalyst 9105 Series Access Points Data Sheet - Cisco
Regard,
03-14-2023 04:56 PM
Hi Team,
From my experience the 8200's will struggle with the below figure:
NAT throughput up to 959 Mbps
Also, throughput on these devices in 'SDWAN' mode is heavily reliant on the version OS you run.
Ciao
have fun!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide