2960 y 3560 PDF
2960 y 3560 PDF
2960 y 3560 PDF
Extend a highly secure, intelligent, managed Cisco Catalyst infrastructure with a single Ethernet cable or
fiber from the wiring closet
Support for advanced security and services, including voice, video, and Cisco Borderless Network services,
to remote endpoints
Power over Ethernet (PoE) pass-through enables the compact switch to draw power from the wiring closet
and pass it to end devices (selected models)
Attractive, small form factor and fanless operation fit in confined spaces where multiple cable runs could be
challenging
Easy to deploy, manage and extend the network loop free
Enhanced limited lifetime hardware warranty
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 1 of 17
Switch Configurations
Table 1 compares switch models.
Cisco Catalyst 2960-C switches deliver advanced Layer 2 switching with intelligent Layer 2 through 4 services for
the network edge, such as voice, video, and wireless LAN services. The IP Base feature set on Cisco Catalyst
3560-C switches adds baseline enterprise services, including support for routed access, Cisco TrustSec, media
access control security (MACsec), and other Cisco Borderless Network services.
The LAN Base feature set offers enhanced intelligent services that include comprehensive Layer 2 features. The IP
Base feature set provides baseline enterprise services in addition to all LAN Base features. IP Base also includes
the support for routed access, MACsec, and Open Shortest Path First (OSPF).
1
Using UPOE uplinks.
2
Using UPOE uplinks.
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 2 of 17
Applications
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 3 of 17
Cisco EnergyWise is an innovative architecture, added to the Cisco Catalyst 3560-C and 2960-C Series
compact switches, that enables the measurement of power consumption in the network infrastructure and
network-attached devices. EnergyWise encompasses a highly intelligent network-based approach to
communicate messages that measure and control energy between network devices and endpoints. The
network discovers Cisco EnergyWise-manageable devices, monitors their power consumption, and takes
action based on business rules to reduce power consumption.
Efficient switch operation: Cisco Catalyst 3560-C and 2960-C Series compact switches use hardware
components created by Cisco providing optimum power saving, low-power operations for industry best-in-
class power management, and power consumption capabilities. The Cisco Catalyst 3560-C ports are
capable of reduced power modes so that ports not in use can move into a lower power utilization state.
IEEE 802.3at or PoE+: Available on the Cisco Catalyst 3560-C is the latest in PoE technology, allowing
capable devices to be powered with power output up to 30W per port. Table 2 outlines switch models and
power capacity for the Cisco Catalyst 3560-C and 2960-C Series compact switches.
2 PoE Uplinks 7W
1 PoE+ Uplinks 7W
WS-C3560CPD-8PT-S 1 PoE+ 0W
2 PoE+ 15.4W
(*) When the Auxiliary AC input is used as a backup to a Cisco UPOE powered switch
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 4 of 17
Cisco Smart Configuration provides a single point of management for a group of switches and in
addition adds the ability to archive and back up configuration files to a file server or switch. A group of
switches can be upgraded or configured from a single point in the network.
Cisco Auto SmartPorts provides automatic configuration as devices connect to the switch port, allowing
autodetection and plug and play of the device onto the network. It configures the port with predefined
configurations encapsulating years of Cisco networking expertise, including security, IP telephony,
availability, QoS, and manageability features with minimal effort and expertise.
USB file storage and console for file backup, distribution, and simplified operations allow the user to
back up and boot from a USB device and allow for Mini USB console access along with traditional
RS-232 console connectivity.
Cisco Smart Troubleshooting is an extensive array of debug diagnostic commands and system health
checks within the switch, including Generic Online Diagnostics (GOLD).
Easy-to-Use Deployment and Control Features
Automatic QoS (AutoQoS) simplifies QoS configuration in voice over IP (VoIP) networks by issuing
interface and global switch commands to detect Cisco IP phones, classify traffic, and help enable egress
queue configuration.
Dynamic Host Configuration Protocol (DHCP) autoconfiguration of multiple switches through a boot
server eases switch deployment.
Auto-Negotiation on all ports automatically selects half- or full-duplex transmission mode to optimize
bandwidth.
Dynamic Trunking Protocol (DTP) facilitates dynamic trunk configuration across all switch ports.
Port Aggregation Protocol (PAgP) automates the creation of Cisco Fast EtherChannel groups or
Gigabit EtherChannel groups to link to another switch, router, or server.
Link Aggregation Control Protocol (LACP) allows the creation of Ethernet channeling with devices that
conform to IEEE 802.3ad. This feature is similar to Cisco EtherChannel technology and PAgP.
Automatic Media-Dependent Interface Crossover (MDIX) automatically adjusts transmit and receive
pairs if an incorrect cable type (crossover or straight-through) is installed.
Unidirectional Link Detection Protocol (UDLD) and Aggressive UDLD allow unidirectional links
caused by incorrect fiber-optic wiring or port faults to be detected and disabled on fiber-optic interfaces.
Switching Database Manager (SDM) templates for access, routing, and VLAN deployment allow the
administrator to easily maximize memory allocation to the desired features based on deployment-specific
requirements.
Local Proxy Address Resolution Protocol (ARP) works in conjunction with Private VLAN Edge to
minimize broadcasts and maximize available bandwidth.
Internet Group Management Protocol (IGMP) Snooping for IPv4 and IPv6 MLD v1 and v2 Snooping
provide fast client joins and leaves of multicast streams and limit bandwidth-intensive video traffic to only
the requestors.
Multicast VLAN Registration (MVR) continuously sends multicast streams in a multicast VLAN while
isolating the streams from subscriber VLANs for bandwidth and security reasons.
Per-port Broadcast, Multicast, and Unicast Storm Control prevents faulty end stations from
degrading overall systems performance.
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 5 of 17
Voice VLAN simplifies telephony installations by keeping voice traffic on a separate VLAN for easier
administration and troubleshooting.
Cisco VLAN Trunking Protocol (VTP) supports dynamic VLANs and dynamic trunk configuration
across all switches.
Remote Switch Port Analyzer (RSPAN) allows administrators to remotely monitor ports in a Layer 2
switch network from any other switch in the same network.
For enhanced traffic management, monitoring, and analysis, the Embedded Remote Monitoring
(RMON) software agent supports four RMON groups (history, statistics, alarms, and events).
Layer 2 Traceroute eases troubleshooting by identifying the physical path that a packet takes from
source to destination.
Trivial File Transfer Protocol (TFTP) reduces the cost of administering software upgrades by
downloading from a centralized location.
Network Timing Protocol (NTP) provides an accurate and consistent timestamp to all intranet switches.
Network Management
The Cisco Catalyst 3560-C and 2960-C Series Switches offer a superior CLI for detailed configuration and
administration. These switches are also supported in the full range of Cisco network management solutions.
Support for new technologies and services from initial deployment to day-to-day administration and
management, such as EnergyWise, identity, Cisco Auto Smartports, Cisco Smart Install, and much more
Configuration management tools built from Cisco experience and Cisco Validated Design recommendations
Monitoring and troubleshooting capabilities that incorporate Cisco hardware best practices and diagnostics
features
Automation in managing hardware inventories, security vulnerabilities (PSIRTS), and platform end-of-life
and support cycles
For detailed information about Cisco Prime, visit http://www.cisco.com/go/prime.
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 6 of 17
Enhanced Work Space Experience for End Users
Borderless Security
The Cisco Catalyst compact switches provide superior Layer 2 threat defense capabilities for mitigating man-in-the-
middle attacks (such as MAC, IP, and ARP spoofing). TrustSec, a primary element of Borderless Security
Architecture, helps enterprise customers secure their networks, data and resources with policy-based access
control, identity and role-aware networking, pervasive integrity, and confidentiality.
The borderless security is enabled by the following feature sets in the Cisco Catalyst 3560-C and 2960-C Series
compact switches:
Threat defense
Cisco TrustSec
Other advanced security features
Threat Defense
Cisco Integrated Security Features are an industry-leading solution available on Cisco Catalyst switches that
proactively protects your critical network infrastructure. Delivering powerful, easy-to-use tools to effectively prevent
the most common and potentially damaging Layer 2 security threats, Cisco Integrated Security Features provide
robust security throughout the network. Cisco Integrated Security Features include Port Security, DHCP Snooping,
Dynamic ARP Inspection, and IP Source guard.
Port Security secures the access to an access or trunk port based on MAC address. It limits the number of
learned MAC addresses to deny MAC address flooding.
DHCP Snooping prevents malicious users from spoofing a DHCP server and sending out bogus
addresses. This feature is used by other primary security features to prevent a number of other attacks such
as ARP poisoning.
Dynamic ARP Inspection (DAI) helps ensure user integrity by preventing malicious users from exploiting
the insecure nature of the ARP protocol.
IP source guard prevents a malicious user from spoofing or taking over another user's IP address by
creating a binding table between the client's IP and MAC address, port, and VLAN.
Cisco TrustSec
TrustSec secures access to the network, enforces security policies, and delivers standard-based security solutions
such as 802.1X enabling secure collaboration and policy compliance. TrustSec capabilities reflect Cisco thought
leadership, innovations, and commitment to customer success. These new capabilities include:
IEEE 802.1AE MACsec with prestandard 802.1X-REV Key management: industry's first fixed switches with
prestandard 802.1X-Rev key management. Available on Cisco Catalyst 3560-C Series Switches, MACsec
provides Layer 2, line rate Ethernet data confidentiality and integrity on host facing ports, protecting against
man-in-the-middle attacks (snooping, tampering, and replay).
Flexible authentication that supports multiple authentication mechanisms including 802.1X, MAC
Authentication Bypass, and web authentication using a single, consistent configuration.
Open mode that creates a user friendly environment for 802.1X operations.
Integration of device profiling technology and guest access handling with Cisco switching to
significantly improve security while reducing deployment and operational challenges.
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 7 of 17
RADIUS Change of Authorization and Downloadable ACLs for comprehensive policy management
capabilities.
802.1X Supplicant with Network Edge Access Transport (NEAT) enables extended secure access
where compact switches in the conference rooms have the same level of security as switches inside the
locked wiring closet.
Private VLAN Edge provides security and isolation between switch ports, which helps ensure that users
cannot snoop on other users' traffic.
Multidomain Authentication allows an IP phone and a PC to authenticate on the same switch port while
placing them on appropriate voice and data VLAN.
Port-Based ACLs for Layer 2 interfaces allow security policies to be applied on individual switch ports.
Secure Shell (SSH) Protocol, Kerberos, and Simple Network Management Protocol Version 3
(SNMPv3) provide network security by encrypting administrator traffic during Telnet and SNMP sessions.
SSH Protocol, Kerberos, and the cryptographic version of SNMPv3 require a special cryptographic software
image because of U.S. export restrictions.
Bidirectional data support on the Switched Port Analyzer (SPAN) port allows Cisco Intrusion Detection
System (IDS) to take action when an intruder is detected.
TACACS+ and RADIUS Authentication facilitates centralized control of the switch and restricts
unauthorized users from altering the configuration.
MAC Address Notification allows administrators to be notified of users added to or removed from the
network.
Multilevel Security on Console Access prevents unauthorized users from altering the switch
configuration.
Bridge Protocol Data Unit (BPDU) Guard shuts down Spanning Tree PortFast-enabled interfaces when
BPDUs are received to avoid accidental topology loops.
Spanning Tree Root Guard (STRG) prevents edge devices not in the network administrator's control from
becoming Spanning Tree Protocol root nodes.
IGMP Filtering provides multicast authentication by filtering out nonsubscribers and limits the number of
concurrent multicast streams available per port.
Dynamic VLAN Assignment is supported through implementation of VLAN Membership Policy Server
client capability to provide flexibility in assigning ports to VLANs. Dynamic VLAN facilitates the fast
assignment of IP addresses.
Table 3 shows switch hardware information.
Table 3. Cisco Catalyst 3560-C and 2960-C Series Compact Switch Hardware
Description Specification
Performance Cisco Catalyst 3560-C Cisco Catalyst 2960-C
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 8 of 17
Description Specification
Max VLANs 1005 255*
VLAN IDs 4000 4000
Maximum transmission unit (MTU) Up to 9000 bytes Up to 9000 bytes
Jumbo frames 9018 bytes 9018 bytes
Forwarding rate 64 Byte Packet Cisco Catalyst 3560-C
WS-C3560CG-8PC-S 14.9 mpps
WS-C3560CPD-8PT-S 14.9 mpps
WS-C3560CG-8TC-S 14.9 mpps
WS-C3560C-8PC-S 4.2 mpps
WS-C3560C-12PC-S 4.8 mpps
Forwarding rate 64 Byte Packet Cisco Catalyst 2960-C
WS-C2960CG-8TC-L 14.9 mpps
Power Customers can provide power to a switch by using the internal power supply. The connector is located at the back of the
connectors switch. The internal power supply is an autoranging unit (3560CPD-8PT-S, 2960CPD-8TT-L, 2960CPD-8PT-L do not
require a power supply).
The internal power supply supports input voltages between 100 and 240VAC.
Use the supplied AC power cord to connect the AC power connector to an AC power outlet.
Note: The Cisco Catalyst 3560CPD-8PT-S, 2960CPD-8PT-L and 2960CPD-8TT-L have an option for an external power
adapter if desired.
Indicators Per-port status: Link integrity, disabled, activity, speed, full-duplex
System status: System, RPS, link status, link duplex, link speed
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 9 of 17
Description Specification
Acoustic noise ISO 7779 and ISO 9296: Bystander positions operating to an ambient temperature of 25C.
Mean time Cisco Catalyst 3560-C MTBF Cisco Catalyst 2960-C MTBF
between
failure (MTBF) 3560CG-8PC-S 355,830 2960CPD-8PT-L 346,590
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 10 of 17
Description Specification
3560C-12PC-S 357,027 2960C-8TC-S 516,980
2960C-8PC-L 373,635
2960C-12PC-L 357,027
*
The 2960-C LAN Lite only supports 64 VLANs.
Table 4. Power Specifications for Cisco Catalyst 3560-C and 2960-C Series Compact Switch
Description Specification
Measured 100% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput Consumption Watts Consumption Watts
power
consumption 3560CPD-8PT-S Single Uplink = 21W1 2960CPD-8PT-L Single Uplink = 12W1
1
Dual Uplink = 22W Dual Uplink = 15W1
2960C-8PC-L 17W
2960C-12PC-L 19W
Measured 5% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput Consumption Watts Consumption Watts
power
consumption 3560CPD-8PT-S Single Uplink = 20W1 2960CPD-8PT-L Single Uplink = 12W1
1
Dual Uplink = 21W Dual Uplink = 15W1
2960C-8PC-L 17W
2960C-12PC-L 18W
Measured 100% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput Consumption Watts Consumption Watts
power
consumption 3560CPD-8PC-S 40W 2960CPD-8PT-L 43W
(with maximum
possible PoE 3560CG-8PC-S 165W 2960C-8PC-L 157W
loads) 3560C-8PC-S 158W 2960C-12PC-L 158W
3560C-12PC-S 159W
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 11 of 17
Description Specification
Note: For the AC values of the 3560CPD and 2960CPD SKUs see Hardware Installation Guide.
Table 5. Management and Standards Support for Cisco Catalyst 3560-C and 2960-C Series Compact Switch
Description Specification
Management BRIDGE-MIB CISCO-TC-MIB
CISCO-CABLE-DIAG-MIB CISCO-TCP-MIB
CISCO-CDP-MIB CISCO-UDLDP-MIB
CISCO-CLUSTER-MIB CISCO-VLAN-IFTABLE
CISCO-CONFIG-COPY-MIB RELATIONSHIP-MIB
CISCO-CONFIG-MAN-MIB CISCO-VLAN-MEMBERSHIP-MIB
CISCO-DHCP-SNOOPING-MIB CISCO-VTP-MIB
CISCO-ENTITY-VENDORTYPE-OID-MIB ENTITY-MIB
CISCO-ENVMON-MIB ETHERLIKE-MIB
CISCO-ERR-DISABLE-MIB IEEE8021-PAE-MIB
CISCO-FLASH-MIB IEEE8023-LAG-MIB
CISCO-FTP-CLIENT-MIB IF-MIB
CISCO-IGMP-FILTER-MIB INET-ADDRESS-MIB
CISCO-IMAGE-MIB OLD-CISCO-CHASSIS-MIB
CISCO-IP-STAT-MIB OLD-CISCO-FLASH-MIB
CISCO-LAG-MIB OLD-CISCO-INTERFACES-MIB
CISCO-MAC-NOTIFICATION-MIB OLD-CISCO-IP-MIB
CISCO-MEMORY-POOL-MIB OLD-CISCO-SYS-MIB
CISCO-PAGP-MIB OLD-CISCO-TCP-MIB
CISCO-PING-MIB OLD-CISCO-TS-MIB
CISCO-POE-EXTENSIONS-MIB RFC1213-MIB
CISCO-PORT-QOS-MIB RMON-MIB
CISCO-PORT-SECURITY-MIB RMON2-MIB
CISCO-PORT-STORM-CONTROL-MIB SNMP-FRAMEWORK-MIB
CISCO-PRODUCTS-MIB SNMP-MPD-MIB
CISCO-PROCESS-MIB SNMP-NOTIFICATION-MIB
CISCO-RTTMON-MIB SNMP-TARGET-MIB
CISCO-SMI-MIB SNMPv2-MIB
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 12 of 17
Description Specification
CISCO-STP-EXTENSIONS-MIB TCP-MIB
CISCO-SYSLOG-MIB UDP-MIB
ePM MIB
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 13 of 17
Description Specification
Safety standards UL 60950-1
CAN/CSA 22.2 No. 60950-1
EN 60950-1
IEC 60950-1
CE Marking
GB 4943
IEC 60825
Your formal warranty statement, including the warranty applicable to Cisco software, appears in the Cisco
information packet that accompanies your Cisco product. We encourage you to review carefully the warranty
statement shipped with your specific product before use. Cisco reserves the right to refund the purchase price as
its exclusive warranty remedy. For additional information on warranty terms, visit
http://www.cisco.com/go/warranty.
Adding a Cisco technical services contract to your device coverage provides access to the Cisco TAC beyond the
90-day period allowed by the E-LLW. It also can provide a variety of hardware replacement options to meet critical
business needs, as well as updates for licensed premium Cisco IOS Software, and registered access to the
extensive Cisco.com knowledge base and support tools.
Footnotes
1
. Cisco operating system updates include the following: maintenance releases, minor updates, and major updates within the
licensed feature set.
2
. Advance hardware replacement is available in various service-level combinations. For example, 8x5xNBD indicates that
shipment will be initiated during the standard 8-hour business day, 5 days a week (the generally accepted business days within
the relevant region), with next business day (NBD) delivery. Where NBD is not available, same day ship is provided.
Restrictions apply; review the appropriate service descriptions for details.
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 14 of 17
EoL policy In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the
announcement of discontinuance.
Hardware replacement Cisco or its service center will use commercially reasonable efforts to ship a replacement for next business day
delivery, where available. Otherwise, a replacement will be shipped within 10 working days after receipt of the RMA
request. Actual delivery times might vary depending on customer location.
Effective date Hardware warranty commences from the date of shipment to customer (and in case of resale by a Cisco reseller, not
more than 90 days after original shipment by Cisco).
TAC support Cisco will provide during business hours, 8 hours per day, 5 days per week basic configuration, diagnosis, and
troubleshooting of device-level problems for up to a 90-day period from the date of shipment of the originally
purchased Cisco Catalyst 2960 and 3560 product. This support does not include solution or network-level support
beyond the specific device under consideration.
Cisco.com access Warranty allows guest access only to Cisco.com.
Software Policy for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
Customers with Cisco Catalyst LAN Base and IP Base software feature sets will be provided with updates and bug
fixes designed to maintain the compliance of the software with published specifications, release notes, and industry
standards compliance as long as the original end user continues to own or use the product or up to one year from
the end-of-sale date for this product, whichever occurs earlier. This policy supersedes any previous warranty or
software statement and is subject to change without notice.
Cisco and Partner Services for Next-Generation Cisco Catalyst Compact Switches
Enable the innovative, secure, intelligent edge in the Borderless Network Architecture using personalized services
from Cisco and our partners. Through a discovery process that begins with understanding your business
objectives, we help you integrate the next-generation Cisco Catalyst fixed switches into your architecture and
incorporate network services onto that platform. Sharing knowledge and leading practices, we support your
success every step of the way as you deploy, absorb, manage, and scale new technology. Choose from a flexible
suite of support services designed to meet your business needs and help you maintain high-quality network
performance while controlling operational costs. (See Table 8.)
Table 8. Technical Services Available for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
Technical Services
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 15 of 17
Technical Services
Cisco Focused Technical Support Services
3 levels of premium, high-touch services are available:
Cisco High-Touch Operations Management Service
Cisco High-Touch Technical Support Service
Cisco High-Touch Engineering Service
Valid Cisco SMARTnet or SP Base contracts on all network equipment are required
Ordering Information
Tables 9 and 10 give ordering information for the Cisco Catalyst 3560-C and 2960-C Series compact switches and
accessories.
Table 9. Ordering Information for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
WS-C2960C-8PC-L 2960C PoE Switch 8 FE PoE, 2 x Dual Purpose Uplink, LAN Base
WS-C2960C-12PC-L 2960C PoE Switch 12 FE PoE, 2 x Dual Purpose Uplink, LAN Base
Table 10. Ordering Information for Cisco Catalyst 3560-C and 2960-C Series Compact Switch Accessories
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 16 of 17
For more information about Cisco products, contact:
2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 17 of 17