Cisco ISR4331/K9 Product Data Sheet

4 (1)

Data Sheet

Cisco 4000 Family Integrated

Services Router

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 1 of 26

Table of Contents

Product Overview

3

Features and Benefits

3

Product Specifications

8

ISR 4000 Interfaces and Modules Support

19

Ordering Information

25

Warranty Information

25

Document History

26

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 2 of 26

Cisco® 4000 Family Integrated Services Routers (ISRs) form an Software Defined WAN platform that delivers the performance, security, and convergence capabilities that today’s branch offices need.

Product Overview

The Cisco 4000 Family Integrated Services Router (ISR) revolutionizes WAN communications in the enterprise branch. With new levels of built-in intelligent network capabilities and convergence, it specifically addresses the growing need for application-aware networking in distributed enterprise sites. These locations tend to have lean IT resources. But they often also have a growing need for direct communication with both private data centers and public clouds across diverse links, including Multiprotocol Label Switching (MPLS) VPNs and the Internet.

The Cisco 4000 Family contains the following platforms: the 4461, 4451, 4431, 4351, 4331, 4321 and 4221 ISRs.

Figure 1.

Cisco 4000 Series Integrated Services Routers

Features and Benefits

Cisco 4000 Family ISRs provide you with Cisco® Software Defined WAN (SDWAN) software features and a converged branch infrastructure. Along with superior throughput, these capabilities form the building blocks of next-generation branch-office WAN solutions.

Cisco Software Defined WAN

Cisco SDWAN is a set of intelligent software services that allow you to reliably and securely connect users, devices, and branch office locations across a diverse set of WAN transport links. SDWAN-enabled routers like the ISR 4000 dynamically route traffic across the “best” link based on up-to-the-minute application and network conditions for great application experiences. You get tight control over application performance, bandwidth usage, data privacy, and availability of your WAN links - control that you need as your branches conduct greater volumes of mission-critical business.

Cisco Converged Branch Infrastructure

The Cisco 4000 Series ISRs consolidate many must-have IT functions, including network, compute, and storage resources. The high-performance, integrated routers run multiple concurrent services, including encryption, traffic management, and WAN optimization, without slowing your data throughput. And you can activate new services on demand through a simple licensing change.

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 3 of 26

Cisco ISR4331/K9 Product Data Sheet

Cisco Intent Based Networking and Digital Network Architecture (Cisco DNA)

The last few years has seen a rapid transformation and adoption of digital technologies. This puts pressure on the on the Network teams supporting this changing infrastructure - especially when provisioning, managing, monitoring and troubleshooting these diverse devices. Additionally innovations such as Software Defined WAN (SDWAN), Network Function Virtualization (NFV), Open APIs and Cloud Management show great promise in transforming Organizations IT networks. This transformation raises further questions and challenges for the IT teams.

The Cisco Digital Network Architecture (Cisco DNA) is an open, extensible, software-driven architecture that provides for faster innovation, helping to generate deeper insights, and deliver exceptional experiences across many different applications. Cisco DNA relies on intent-based networking, a revolutionary approach in networking that helps organizations automate, simplify, and secure the network.

The intent-based Cisco DNA network is:

Informed by Context: Interprets every byte of data that flows across it, resulting in better security, more customized experiences, and faster operations.

Powered by Intent: Translates your intent into the right network configuration, making it possible to manage and provision multiple devices and things in minutes.

Driven by Intuition: Continually learns from the massive amounts of data flowing through it and turns that data into actionable insight. Helps you solve issues before they become problems and learn from every incident.

Cisco DNA Center provides a centralized management dashboard across your entire network — the branch, campus, data center, and cloud. Rather than relying on box-by-box management, you can design, provision, and set policy end-to-end from the single Cisco DNA Center interface. This allows you to respond to organizational needs faster and to simplify day- to-day operations. Cisco DNA Analytics and Assurance and Cisco Network Data Platform (NDP) help you get the most from your network by continuously collecting and putting insights into action. Cisco DNA is open, extensible, and programmable at every layer. It integrates Cisco and third-party technology, open APIs, and a developer platform, to support a rich ecosystem of network-enabled applications.

Table 1 breaks out many of the features and benefits of the Cisco 4000 Family that create a Software Define WAN (SDWAN) and a converged branch infrastructure.

Table 1. Cisco 4000 Family ISR General Feature Highlights

Business Requirement(s)

Feature/Solution

 

 

Performance

Concurrent software services at speeds up to 2 Gbps. Backplane architecture supports high-

bandwidth module-to-module communication at speeds up to 10 Gbps.

 

Throughput

A distributed multicore architecture with the industry’s first internal services plane.

 

Service reliability

Remote installation of application-aware services, which run identically to their counterparts in

 

 

dedicated appliances.

 

 

Lower WAN expenditures

Embedded SDWAN solution for creating lower-cost, business-class Internet connections.

 

 

 

Pay-as-you-grow

Router capacity can be increased with a remote performance-on-demand license upgrade (no

hardware upgrade) for exceptional savings.

 

Performance upgrade model

Investment protection

CapEx budget management

Superior and secure user application

ISR-AX “Application Experience” software bundle with advanced routing and network monitoring

services.

experiences

Dynamic Multipoint VPN (DMVPN), zone-based firewalls, Intrusion Prevention (Snort & Umbrella

 

 

 

Branch) and Content Management using Cisco Cloud Web security & OpenDNS protecting data,

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 4 of 26

 

 

 

 

 

 

 

 

 

Business Requirement(s)

Feature/Solution

 

 

 

 

 

 

 

providing authentication credentials, and transmissions not backhauled through the data center.

 

 

 

Secure boot feature performs hardware-based authentication of the bootloader software to prevent

 

 

 

malicious or unintended software from booting on the system.

 

 

 

Code signing verifies digital signatures of executables prior to loading to prevent execution of

 

 

 

altered or corrupted code.

 

 

 

Hardware authentication protects against hardware counterfeiting by using an on-board tamper-

 

 

 

proof silicon, including field replaceable modules. If authentication fails, the module is not allowed

 

 

 

to boot.

 

 

 

 

 

 

IT consolidation, space savings, and

Single converged branch platform integrates routing, switching, virtual server, storage, security,

 

 

unified communications, WAN optimization, and performance management tools.

 

 

improved Total Cost of Ownership (TCO)

 

 

 

 

 

 

 

 

 

Business continuity and increased

ISR 4400 Series models (4461, 4451, and 4431 ISRs) support dual integrated power supplies

 

 

for backup. The entire ISR 4000 Family supports optional power supply capable of

 

 

resiliency

 

 

delivering additional PoE power to endpoints.

 

 

 

 

 

 

Modular network interfaces with diverse connection options for load-balancing and network

 

 

 

 

 

 

resiliency.

 

 

 

Modular interfaces with online removal and insertion (OIR) for module upgrades without network

 

 

 

disruption.

 

 

 

Cisco Unified Survivable Remote Site Telephony (SRST), which serves as a resiliency complement to

 

 

 

Cisco Hosted Collaboration Solution (HCS), a Cisco cloud-based UC service.

 

 

 

Support for multiple, diverse access links: T1/E1, T3/E3, Serial, xDSL, Gigabit and Ten-Gigabit

 

 

 

Ethernet.

 

 

 

 

 

 

Lower telephony costs with VoIP and rich

High-performance analog/digital gateway, allowing VoIP over less expensive Session Initiation

 

 

Protocol (SIP) trunks.

 

 

media experiences

 

 

Integrated IP PBX (Cisco Unified Communications Express) and Session Border Controller (Cisco

 

 

 

 

 

 

Unified Border Element, or CUBE).

 

 

 

 

 

 

Easier manageability and support

Single, universal software image for all features and performance-on-demand licensing flexibility.

 

 

 

 

 

 

No additional services and support needed for compute and storage.

 

 

 

 

 

 

Supported by Cisco and third-party management tools, with programmability and automation.

 

 

 

 

 

Platform Architecture

Table 2 lists the primary hardware architectural features and benefits of the Cisco 4000 Family. The routers run modular

Cisco IOS XE Software, widely deployed in the world’s most demanding networks. The software’s comprehensive portfolio of services spans multiple technology areas, including security, WAN optimization, app and network Quality of Service (QoS), and embedded management.

Table 2.

Architectural Highlights

 

 

 

Architectural Features

Benefits/Description

 

 

 

Multicore processors

High-performance multicore processors support high-speed WAN connections. The data plane uses an

emulated Flow Processor (FP) that delivers Application-Specific Integrated Circuit (ASIC)-like performance

 

 

 

 

that does not degrade as services are added.

 

 

 

Embedded IP Security (IPsec) VPN

Increases scalability. When combined with an optional Cisco IOS XE Software Security license, enables WAN

link security and VPN services.

hardware acceleration

 

 

 

 

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 5 of 26

 

 

 

 

 

 

 

 

 

Architectural Features

Benefits/Description

 

 

 

 

 

 

Integrated Gigabit Ethernet ports

The Cisco 4000 Family provides up to four built-in 10/100/1000 Ethernet ports for WAN or LAN.

 

 

 

 

 

 

Based on the platform, some of the 10/100/1000 Ethernet ports can support Small Form-Factor Pluggable

 

 

 

(SFP)-based connectivity in addition to RJ-45 connections, enabling fiber or copper connectivity.

 

 

 

Optionally, depending on the platform, up to 30W PoE+ can be enabled on two of the built-in front panel

 

 

 

Gigabit Ethernet interfaces to provide power to external devices such as fourth-generation (4G) LTE routers.

 

 

 

An additional dedicated Gigabit Ethernet port is provided for device management1.

 

 

 

 

 

 

USB-based console access

A mini type-B USB console port1 supports management connectivity when traditional serial ports are not

 

 

available.

 

 

 

 

 

 

Traditional console and auxiliary ports are also available2.

 

 

 

 

 

 

Optional integrated power supply

An optional upgrade to the internal power supply provides inline power (802.3af-compliant PoE or 802.3at-

 

 

compliant PoE+) to optional integrated switch modules.

 

 

for distribution of PoE

 

 

Redundant PoE conversion modules provide an additional layer of fault tolerance.

 

 

 

 

 

 

 

 

 

Optional integrated Redundant

For the ISR 4400 Series, power redundancy is available by installing an optional integrated RPS for

 

 

decreasing network downtime and protecting the network from power failures.

 

 

Power Supply (RPS)

 

 

Optional PoE boost mode increases total PoE capacity to up to 1000W.

 

 

 

 

 

 

 

 

 

 

 

Cisco Enhanced Services Module

Each service-module slot offers high data-throughput capability of up to 10 Gbps toward the system and up

 

 

to 1 Gbps to other module slots.

 

 

(SM-X)

 

 

Support for both singleand double-wide service modules provides flexibility in deployment options.

 

 

 

 

 

 

An SM-X slot can be converted into a Network Interface Module (NIM) slot using an optional carrier card.

 

 

 

Service modules support Online Insertion and Removal (OIR), avoiding network disruption when installing

 

 

 

new or replacement modules1.

 

 

 

 

 

 

Cisco Network Interface Modules

Up to three integrated NIM slots on the Cisco 4000 Family allow for flexible configurations.

 

 

 

 

 

(NIMs)3

Each NIM slot offers options of up to two 2Gbps connections. One towards the route processor and one for

 

 

 

direct module to module communication. The ISR 4221 has only one 1Gbps connection to the Route

 

 

 

 

 

Processor

 

 

 

NIMs support OIR.

 

 

 

Special NIMs add support Solid-State Drives (SSDs) and Hard Disk Drives (HDDs)1.

 

 

 

 

 

 

Cisco Integrated Services Card (ISC)

Integrated Services Card natively supports the new Cisco High-Density Packet Voice Digital Signal Processor

 

 

Modules (PVDM4s), providing greater-density rich-media voice.

 

 

slot on motherboard

 

 

Each Integrated Services Card slot connects to the system architecture through an up-to 2-Gbps link.

 

 

 

 

 

 

Future modules can be hosted on the Integrated Services Card slot, improving system functions.

 

 

 

 

 

 

Flash memory support

A single flash memory slot is available to support high-speed storage densities, upgradable to up to 32 GB.

 

 

The ISR4221 ships with a fixed 8GB Flash

 

 

 

 

 

 

Two USB type A 2.0 ports provide capabilities for convenient storage1.

 

 

 

 

 

1Not supported on ISR4221

2ISR4221 supports shared Console & Auxiliary ports

3Unified Communications (UC) and UC based NIM’s are not supported

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 6 of 26

 

 

 

 

 

 

 

 

 

Architectural Features

Benefits/Description

 

 

 

 

 

 

DRAM

For the ISR 4400 Series, the default control-plane memory is 4 GB, upgradable to 16 GB to provide

 

 

additional scalability for control-plane features. The default data-plane memory is 2 GB.

 

 

 

 

 

 

For the ISR 4300 Series, the default memory is 4 GB, upgradable to 16 GB (only 8GB for 4321) to provide

 

 

 

additional scalability.

 

 

 

The ISR 4200 Series comes with 4GB Fixed DRAM

 

 

 

 

 

Managing your Cisco ISR 4000 Family ISRs

The Cisco network management applications listed at the top of Table 3 are standalone products that can be purchased or downloaded to manage your Cisco network devices. The applications are built specifically for the different operational phases; select those that best fit your needs. Those management capabilities listed under the “Cisco IOS Software XE Embedded Management” heading are directly integrated into the routers’ software operating system.

Table 3.

Cisco DNA Center

 

 

 

 

 

 

 

Operational Phase

Application

Description

 

 

 

 

 

Device staging and configuration

WebUI

 

A GUI-based device-management tool for Cisco IOS and Cisco IOS XE Software-based

 

 

access routers. This tool simplifies routing, firewall, VPN, unified communications,

 

 

 

 

 

 

 

 

and WAN and LAN configuration through easy-to-use wizards.

 

 

 

 

 

Network-wide deployment,

Cisco Prime

Offers comprehensive lifecycle management of wired and wireless access, campus,

Infrastructure

and branch-office networks, rich visibility into end-user connectivity, and application

configuration, monitoring, and

performance assurance.

troubleshooting

 

 

 

 

Provides wired lifecycle functions such as inventory, configuration, and image

 

 

 

 

 

 

 

 

management; automated deployment; compliance reporting; integrated best

 

 

 

 

 

 

 

 

practices; and reporting.

Staging, deployment, and changes

Cisco

 

A secure network management product that provides zero-touch image and

 

configuration distribution through centralized, template-based management.

to configuration and image files

Configuration

 

 

 

Engine

 

 

 

 

 

 

 

Context-aware security

Cisco Prime

Management tool for configuring and managing context-aware security. The

Security Manager

application supports both singleand multi-device manager form factors.

configuration and monitoring

Provides the ability to write and enforce the granular context-aware security policies.

 

 

 

 

Cisco Wide Area Application

Cisco WAAS

The management tool for the WAAS1 4,(WAN optimization and application

 

 

acceleration) integrated service. It provides a centralized mechanism for configuring

Service (WAAS) management

Central Manager

WAAS features, reporting, and monitoring.

 

 

 

 

 

 

 

 

 

 

Cisco IOS XE Software Embedded Management Capabilities

 

 

 

 

Feature

 

 

Description

 

 

 

 

Cisco IOS Embedded Event Manager (EEM)

A distributed and customized approach to event detection and recovery.

 

 

 

 

 

Offers the ability to monitor events and take informational, corrective, or any desired EEM action

 

 

 

when the monitored events occur or when a threshold is reached.

 

 

 

 

Cisco IOS XE IP Service-Level Agreements

Helps assure the performance of new business-critical IP applications as well as IP services that use

data and voice in an IP network.

(IP SLAs)

 

 

 

 

 

 

 

 

 

 

 

SNMP, Remote Monitoring (RMON), syslog,

Network monitoring and accounting tools.

 

 

NetFlow, IP Flow Information Export (IPFix)

 

 

 

 

 

 

 

4 It is suggested to use AppNav with an External WAAS device for the ISR4221

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 7 of 26

Product Specifications

Table 4 lists the general product specifications for the Cisco 4000 Family routers.

Table 4.

Specifications of Cisco 4000 Family Integrated Services Routers

 

 

 

 

 

 

 

 

 

 

 

 

Technical

 

Cisco 4461

Cisco 4451

Cisco 4431

Cisco 4351

Cisco 4331

Cisco 4321

Cisco 4221

Specifications

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Aggregate

 

1.5Gbps

1 Gbps

500 Mbps

200 Mbps

100 Mbps

50 Mbps

35Mbps

 

 

 

 

 

 

 

 

Throughput

 

 

 

 

 

 

 

 

(Default)

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Aggregate

 

3Gbps

2 Gbps

1 Gbps

400 Mbps

300 Mbps

100 Mbps

75 Mbps

 

 

 

 

 

 

 

 

Throughput

 

 

 

 

 

 

 

 

(Performance

 

 

 

 

 

 

 

License)

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Aggregate CEF

Over 7Gbps

Over 4Gbps

Over 4Gbps

Over 2Gbps

Over 2Gbps

1.5Gbps

1.2Gbps

Only5

 

 

 

 

 

 

 

 

Throughput

 

 

 

 

 

 

 

 

(Boost License)

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Total onboard

4

4

4

3

3

2

2

 

 

 

 

 

 

 

WAN or LAN

 

 

 

 

 

 

 

10/100/1000 ports

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Total onboard

2

-

-

-

-

-

-

 

 

 

 

 

 

 

WAN or LAN

 

 

 

 

 

 

 

10Gbps ports

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

RJ-45-based

 

4

4

4

3

2

2

2

 

 

 

 

 

 

 

 

ports

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

SFP-based ports

4

4

4

3

2

1

1

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

5 Using onboard Gigabit Ethernet Interfaces

© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

Page 8 of 26

Loading...
+ 18 hidden pages