Professional Documents
Culture Documents
E-series M-series
BRAS (DSL, Cable, FTTx, 802.11) High Speed DA & Business Ethernet
M7i:
Enhanced provider edge services
Integrated IP security: NAT, stateful firewall, J-Flow, IPSec
Carrier class to customer premise for managed services
M10i
Enhanced provider edge services
Juniper’s most compact fully redundant platform
Forwarding Control
Plane Plane
Services
Plane
Hardware accelerated
160
NOS
40 JU M160
20 M40e
New M20
10
J-Flow accounting
• High speed accounting
Leverages 3
1 Existing Release New Release
• Graceful RE Switchover
• Graceful Restart Protocol Extensions
Delivers 2
• Non-disruptive software upgrades Graceful RE Switchover
RE
• Preserves Forwarding RE0 1
CLI CLI
• Particularly useful for time critical
situations (e.g. security patch)
Caveats
• Minor releases only
• Upgrades to major release requires reboot
Packet Forwarding Engine
• Can in-service update jbundle
(including jroute & jkernel, but not jpfe)
• Check release notes for target version
caveats
Side-to-side
cooling
5U high
18” deep
Redundant AC or DC
Redundant Routing Engine Boards (REB) Power Supplies
• PCMCIA expandable memory
• 2 serial aux ports
• Ethernet craft interface
L2 VPN
L2 VPN L2 Virtual Circuit
ATM FE
L2 Virtual Circuit
T1
L3 2547 L3 2547
FR M10i
M7i
ASx ASy
GE GE
VPLS VPLS
DS3 DS3
IPSec IPSec
L2.5 VPN (TCC) Mixed network of ATM/FR & P2P Ethernet, point-to- √
point, control own routing, with QoS
VPLS Ethernet multipoint-multipoint connectivity, control √
own routing, with QoS
IPSec over Premium security over access link √
private IP/MPLS or end-to-end path of MPLS VPN, with QoS
IPSec over Low cost internet based VPNs √
public IP performed on managed CPE, without QoS
ATM ATM
Virtual Circuits
ATM IQ PIC
ATM IQ PIC
IP/MPLS
Ethernet Ethernet
GE GE
IQ PIC IQ PIC
Frame Frame
L2 VPN
Relay Channelized Channelized Relay
IQ PIC w/FRR IQ PIC
Inbound Private
traffic Addresses
Firewalled NAT’d
Internet
M7i w/ASM
M-series + ASP
Juniper M7i
High Performance
IP/MPLS PE
Cisco 7304
Basic
Aggregation
Cisco 7600
Low High
Packet processing performance
Problem users
Software FW
• Existing software firewalls faltering w/increase in
traffic and attacks (e.g. DOS attack, Sobig)
• Example: Checkpoint1 is the number one FW, runs
on a Sun Server
• Enterprise networks are vulnerable to attack users 7200
• Existing 7200s
• Cannot provide any help as IOS FW is software only
• Vulnerable control plane because no separation of Internet
control and forwarding plane
1 Infonetics Research, User plans for WAN and Internet Access, US/Canada 2002, May 2002, pg 64
2 2003 VoIP state of the market report, Steve Taylor Distributed Networking Associates
Juniper M7i
Transformed
IP Enterprise
Security Performance: Network
Filtering
DOS prevention
Basic
Firewall/NAT
multiprotocol
connectivity
Cisco 7304
Cisco 7204/6
Low High
QoS performance for RT apps:
VoIP, Video, latency sensitive ERP apps
M7i Overview
The Enterprise Opportunity
The Edge Opportunity
Competitive Positioning
Launch & Ordering Info
Summary
7304 with NPE-G100 offers the same performance as 7200 (after 7 years!)
• NPE-G100 offers 1 Mpps and around 450Kpps with features
• NSE-100 option claims 3.5 Mpps, but this has just EOL’d for the 7200 & has limited features due
to reliance on PXF, NPE-G100 is only customer option
• No channelized interfaces, discrete T1/E1, OC-12 ATM, modular GEs
• 7200-->7300 interface support is very limited, no investment protection
• Redundancy requires 2 interface slots, leaving only 2 slots for interfaces
• IPv6 and multicast slow path switched
• There is NO hardware acceleration of features like IPSEC,
Firewall features and other process intensive services on 7300
7600 OSR
• Tremendously unstable/complex due to a switch being “frankensteined” into a router
• Runs 2 different versions of IOS – one on MFSC and one on SUP
• Service cards (e.g. BRAS) run a third IOS image!
• Currently unsupported PE features
• IPv6, Hitless Failover, Fast Reroute, VRRP,L2 VPNs for ATM/FR, Strict mode uRPF,
MPLS CoS, RSVP, MPLS TE
• Recent SUP720 for catalyst only, we surmise that it will not be available on 7600 for another
year
• Note: All GE interfaces included on OSM line cards are switch ports and cannot provide VLAN
QoS nor WAN functionality – do not be fooled into pricing that takes this into account
M7i Overview
The Enterprise Opportunity
The Edge Opportunity
Competitive Positioning
Launch & Ordering Info
Summary
Base unit, AC, 4 PIC slot chassis, FIC w/1 built-in Gigabit Ethernet port (optics M7iBASE-AC-1GE
Fixed 1 GE port sold separately), cooling, midplane, 1 AC power supply, 1 CFEB,
1 Routing Engine, JUNOS
Base unit, DC, 4 PIC slot chassis, FIC w/1 built-in Gigabit Ethernet port (optics M7iBASE-DC-1GE
Fixed 1 GE port sold separately), cooling, midplane, 1 DC power supply, 1
CFEB, 1 Routing Engine, JUNOS
Base unit, AC, 4 PIC slot chassis, FIC w/2 built-in Fast Ethernet ports, cooling, M7iBASE-AC-2FETX
Fixed 2 FE ports midplane, 1 AC power supply, 1 CFEB,
1 Routing Engine, JUNOS
Base unit, DC, 4 PIC slot chassis, FIC w/2 built-in Fast Ethernet ports, cooling, M7iBASE-DC-2FETX
Fixed 2 FE ports midplane, 1 DC power supply, 1 CFEB,
1 Routing Engine, JUNOS
M7i and M10i for Service Provider Edge Services in smaller PoPs
• Industry’s richest set of VPNs
• Enhanced VPN services for incremental revenue
• Full Hardware Redundancy for M10i
Server FW FW
ASP