Meraki MX95 Kenya

 

Meraki MX95 Kenya

The Cisco Meraki MX95 Kenya is an enterprise security appliance designed for distributed deployments that require remote administration across Medium branch environments. It is ideal for network administrators who demand both ease of deployment and a state-of-the-art feature set.

Description

Meraki MX95 Enterprise Security Appliance Kenya

The Cisco Meraki MX95 Kenya is an enterprise security appliance designed for distributed deployments that require remote administration across Medium branch environments. It is ideal for network administrators who demand both ease of deployment and a state-of-the-art feature set. The Meraki Dashboard allows for simple and easy deployment of the MX95 with minimal pre-configuration in almost any location.  Providing 4 x dedicated WAN uplinks, 2 x 10G SFP+ ports and 2 x RJ45 2.5G mGig ports. The LAN ports include 4 x RJ45 1GbE ports, and 2 x SFP+ 10G ports, the MX95 is ready for deployment in a variety of enterprise environments.

The Cisco Meraki MX95 Kenya is a multifunctional security and SD-WAN enterprise appliances with a wide set of capabilities to address multiple use cases–from an all-in-one device. Organizations of all sizes and across all industries rely on the MX to deliver secure connectivity to hub locations or multi-cloud environments, as well as application quality of experience (QoE), through advanced analytics with machine learning.

The MX is 100% cloud-managed, so installation and remote management is truly zero touch, making it ideal for distributed branches, campuses, and data center locations. Natively integrated with a comprehensive suite of secure network and assurance capabilities, the MX eliminates the need for multiple appliances. These capabilities include application-based firewalling, content filtering, web search filtering, SNORT®-based intrusion detection and prevention, Cisco Advanced Malware Protection (AMP), site-to-site Auto VPN, client VPN, WAN and cellular failover, dynamic path selection, web application health, VoIP health, and more. SD-WAN can be easily be extended to deliver optimized access to resources in public and private cloud environments with virtual MX appliances (vMX). Public clouds supported with vMX include Am

MX95 Features

  • Stateful firewall throughput : 2 Gbps
  • Recommended for up to 500 users
  • Managed centrally over the web
  • Classifies applications, users and devices
  • Zero-touch, self-provisioning deployments
  • Stateful firewall
  • Auto VPN self-configuring site-to-site VPN
  • Active Directory integration
  • Identity-based policies
  • Client VPN (IPsec)
  • 3G / 4G failover via USB modemLayer 7 application visibility and traffic shaping
  • Application prioritization
  • Content filtering
  • Google SafeSearch and YouTube for Schools
  • Intrusion detection & prevention (IDS/IPS)
  • Advanced Malware Protection (AMP)
  • Cisco Threat Grid2

Advanced quality of experience (QoE) analytics

  • End-to-end health of web applications at-a-glance across the LAN, WAN, and application server
  • Machine-learned smart application thresholds autonomously applied to identify true anomalies based on past behavioral patterns
  • Monitor the health of all MX WAN links, including cellular, across your entire organization
  • Detailed hop-by-hop VoIP performance analysis across all uplinks

Agile on-premises and cloud security capabilities informed by Cisco Talos

  • Next-gen layer 7 firewall for identity-based security policies and application management
  • Advanced Malware Protection with sandboxing; file reputation based protection engine powered by Cisco AMP
  • Intrusion prevention: PCI-compliant IPS sensor using industry-leading SNORT® signature database from Cisco
  • Granular and automatically updated category-based content filtering
  • Other capabilities: SSL decryption/inspection, data loss prevention (DLP), cloud access security broker (CASB), SaaS tenant restrictions, granular app control, file type control

Branch gateway services

  • Built-in DHCP, NAT, QoS, and VLAN management services
  • Web caching: accelerates frequently accessed content
  • Load balancing: combines multiple WAN links into a single high-speed interface, with policies for QoS, traffic shaping, and failover
  • Smart connection monitoring provides automatic detection of layer 2 and layer 3 outages and fast failover, including the option of integrated LTE Advanced or 3G/4G modems

Industry-leading cloud management

  • Unified firewall, switching, wireless LAN, and mobile device management through an intuitive web-based dashboard
  • Template-based settings scale easily from small deployments to tens of thousands of devices
  • Role-based administration, configurable email alerts for a variety of important events, and easily auditable change logs
  • Summary reports with user, device, and application usage details archived in the cloud

Intelligent site-to-site VPN with Cisco SD-WAN powered by Meraki

  • Auto VPN allows automatic VPN route generation using IKE/ IKEv2/IPsec setup; runs on physical MX appliances and as a virtual instance in public and private clouds
  • SD-WAN with active / active VPN, policy-based-routing, dynamic VPN path selection, and support for application-layer performance profiles to ensure prioritization of applications types that matter
  • Interoperates with all IPsec VPN devices and services
  • Automated MPLS to VPN failover within seconds of a connection failure
  • L2TP IPsec remote client VPN included at no extra cost with support for native Windows, Mac OS X, iPad, and Android clients
  • Support for Cisco AnyConnect remote client VPN (AnyConnect license required)

Highly Security

The MX platform has an extensive suite of security features, including IDS/IPS, content filtering, web search filtering, anti-malware, geo-IP-based firewalling, IPsec VPN connectivity, and Cisco Advanced Malware Protection, while providing the performance required for modern, bandwidth-intensive networks. Layer 7 fingerprinting technology lets administrators identify unwanted content and applications, and prevents recreational apps like BitTorrent from wasting precious bandwidth.

The integrated Cisco SNORT® engine delivers superior intrusion prevention coverage, a key requirement for PCI 3.2 compliance. The MX also uses the Webroot BrightCloud® URL categorization database for CIPA/IWF-compliant content filtering, Cisco Advanced Malware Protection (AMP) engine for anti-malware, AMP Threat Grid Cloud, and MaxMind for geo-IP-based security rules. Best of all, these industry-leading layer 7 security engines and signatures are always kept up-to-date via the cloud, simplifying network security management and providing peace of mind to IT administrators.

Cloud Managed Architecture

Built on Cisco Meraki’s award-winning cloud architecture, the MX is the industry’s only 100% cloud-managed solution for unified threat management (UTM) and SD-WAN in a single appliance. MX appliances self-provision, automatically pulling policies and configuration settings from the cloud. Powerful remote-management tools provide network-wide visibility and control, and enable administration without the need for on-site networking expertise. Cloud services deliver seamless firmware and security signature updates, automatically establish site-to-site VPN tunnels, and provide 24×7 network monitoring. Moreover, the MX’s intuitive browser-based management interface removes the need for expensive and time consuming training. For customers moving IT services to a public cloud service, Meraki o ffers a virtual MX for use in Amazon Web Services and Microsoft Azure, enabling Auto VPN peering and SD-WAN for dynamic path selection.

meraki mx95 kenya

meraki mx95 kenya

MX95 Specifications

Network and Security Services

  • Stateful firewall, 1:1 NAT, DHCP, DMZ, static routing
  • Identity-based policies
  • Auto VPN self-configuring site-to-site VPN
  • Client VPN (IPsec)
  • User and device quarantine
  • VLAN support and DHCP services

Advanced Security Services

  • Content filtering (Webroot BrightCloud CIPA-compliant URL database)
  • Web search filtering (including Google and Bing SafeSearch)
  • YouTube for Schools
  • Intrusion prevention (SourceFire Snort based)
  • Cisco Advanced Malware Protection (AMP)
  • Requires Advanced Security License

WAN Performance Management

  • WAN link aggregation
  • Application level (Layer 7) traffic analysis and shaping
  • Automatic Layer 3 failover (including VPN connections)
  • WAN uplink selection based on traffic type

Monitoring and Management

  • Web based management and configuration
  • Throughput, connectivity monitoring and alerts
  • Network asset discovery and user identification
  • Built-in network-wide reporting, monitoring and alerts
  • Centralized policy management
  • Real-time diagnostic and troubleshooting over the web
  • Automatic firmware upgrades and security patches
  • Searchable network-wide event logs

Interfaces

  • WAN: 2x 10GbE SFP+, 2x 2.5GbE RJ45 (1x PoE+)
  • LAN: 4x GbE RJ45, 2x 10GbE SFP+
  • USB: 1 × USB 2.0 for 3G/4G failover (supported devices)

Performance

  • Stateful firewall throughput: 2 Gbps
  • VPN throughput: 800 Mbps
  • Recommended for medium branches with up to 500 users

Power

  • Single 100W power supply

Environment

  • Operating temperature : 32°F to 113°F (0°C to 45°C)
  • Humidity : 5 to 95% non-condensing