Data Sheet Compact Switches
Data Sheet Compact Switches
● Extend a highly secure, intelligent, managed Cisco Catalyst infrastructure with a single Ethernet cable or
fiber from the wiring closet
● Support for advanced security and services, including voice, video, and Cisco Borderless Network services,
to remote endpoints
● Power over Ethernet (PoE) pass-through enables the compact switch to draw power from the wiring closet
and pass it to end devices (selected models)
● Attractive, small form factor and fanless operation fit in confined spaces where multiple cable runs could be
challenging
● Easy to deploy, manage and extend the network loop free
● Enhanced limited lifetime hardware warranty
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 1 of 17
Switch Configurations
Table 1 compares switch models.
Cisco Catalyst 2960-C switches deliver advanced Layer 2 switching with intelligent Layer 2 through 4 services for
the network edge, such as voice, video, and wireless LAN services. The IP Base feature set on Cisco Catalyst
®
3560-C switches adds baseline enterprise services, including support for routed access, Cisco TrustSec , media
access control security (MACsec), and other Cisco Borderless Network services.
The LAN Base feature set offers enhanced intelligent services that include comprehensive Layer 2 features. The
IP Base feature set provides baseline enterprise services in addition to all LAN Base features. IP Base also
includes the support for routed access, MACsec, and Open Shortest Path First (OSPF).
1
Using both uplinks as PoE+
2
Using both uplinks as PoE+
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 2 of 17
Applications
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 3 of 17
● Cisco EnergyWise is an innovative architecture, added to the Cisco Catalyst 3560-C and 2960-C Series
compact switches, that enables the measurement of power consumption in the network infrastructure and
network-attached devices. EnergyWise encompasses a highly intelligent network-based approach to
communicate messages that measure and control energy between network devices and endpoints. The
network discovers Cisco EnergyWise-manageable devices, monitors their power consumption, and takes
action based on business rules to reduce power consumption.
● Efficient switch operation: Cisco Catalyst 3560-C and 2960-C Series compact switches use hardware
components created by Cisco providing optimum power saving, low-power operations for industry best-in-
class power management, and power consumption capabilities. The Cisco Catalyst 3560-C ports are
capable of reduced power modes so that ports not in use can move into a lower power utilization state.
● IEEE 802.3at or PoE+: Available on the Cisco Catalyst 3560-C is the latest in PoE technology, allowing
capable devices to be powered with power output up to 30W per port. Table 2 outlines switch models and
power capacity for the Cisco Catalyst 3560-C and 2960-C Series compact switches.
2 PoE Uplinks 7W
1 PoE+ Uplinks 7W
WS-C3560CPD-8PT-S 1 PoE+ 0W
2 PoE+ 15.4W
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 4 of 17
◦ Cisco Auto SmartPorts provides automatic configuration as devices connect to the switch port,
allowing autodetection and plug and play of the device onto the network. It configures the port with
predefined configurations encapsulating years of Cisco networking expertise, including security, IP
telephony, availability, QoS, and manageability features with minimal effort and expertise.
◦ USB file storage and console for file backup, distribution, and simplified operations allow the user to
back up and boot from a USB device and allow for Mini USB console access along with traditional
RS-232 console connectivity.
◦ Cisco Smart Troubleshooting is an extensive array of debug diagnostic commands and system health
checks within the switch, including Generic Online Diagnostics (GOLD).
● Easy-to-Use Deployment and Control Features
◦ Automatic QoS (AutoQoS) simplifies QoS configuration in voice over IP (VoIP) networks by issuing
interface and global switch commands to detect Cisco IP phones, classify traffic, and help enable egress
queue configuration.
◦ Dynamic Host Configuration Protocol (DHCP) autoconfiguration of multiple switches through a boot
server eases switch deployment.
◦ Auto-Negotiation on all ports automatically selects half- or full-duplex transmission mode to optimize
bandwidth.
◦ Dynamic Trunking Protocol (DTP) facilitates dynamic trunk configuration across all switch ports.
◦ Port Aggregation Protocol (PAgP) automates the creation of Cisco Fast EtherChannel groups or
Gigabit EtherChannel groups to link to another switch, router, or server.
◦ Link Aggregation Control Protocol (LACP) allows the creation of Ethernet channeling with devices
that conform to IEEE 802.3ad. This feature is similar to Cisco EtherChannel technology and PAgP.
◦ Automatic Media-Dependent Interface Crossover (MDIX) automatically adjusts transmit and receive
pairs if an incorrect cable type (crossover or straight-through) is installed.
◦ Unidirectional Link Detection Protocol (UDLD) and Aggressive UDLD allow unidirectional links
caused by incorrect fiber-optic wiring or port faults to be detected and disabled on fiber-optic interfaces.
◦ Switching Database Manager (SDM) templates for access, routing, and VLAN deployment allow the
administrator to easily maximize memory allocation to the desired features based on deployment-
specific requirements.
◦ Local Proxy Address Resolution Protocol (ARP) works in conjunction with Private VLAN Edge to
minimize broadcasts and maximize available bandwidth.
◦ Internet Group Management Protocol (IGMP) Snooping for IPv4 and IPv6 MLD v1 and v2 Snooping
provide fast client joins and leaves of multicast streams and limit bandwidth-intensive video traffic to only
the requestors.
◦ Multicast VLAN Registration (MVR) continuously sends multicast streams in a multicast VLAN while
isolating the streams from subscriber VLANs for bandwidth and security reasons.
◦ Per-port Broadcast, Multicast, and Unicast Storm Control prevents faulty end stations from
degrading overall systems performance.
◦ Voice VLAN simplifies telephony installations by keeping voice traffic on a separate VLAN for easier
administration and troubleshooting.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 5 of 17
◦ Cisco VLAN Trunking Protocol (VTP) supports dynamic VLANs and dynamic trunk configuration
across all switches.
◦ Remote Switch Port Analyzer (RSPAN) allows administrators to remotely monitor ports in a Layer 2
switch network from any other switch in the same network.
◦ For enhanced traffic management, monitoring, and analysis, the Embedded Remote Monitoring
(RMON) software agent supports four RMON groups (history, statistics, alarms, and events).
◦ Layer 2 Traceroute eases troubleshooting by identifying the physical path that a packet takes from
source to destination.
◦ Trivial File Transfer Protocol (TFTP) reduces the cost of administering software upgrades by
downloading from a centralized location.
◦ Network Timing Protocol (NTP) provides an accurate and consistent timestamp to all intranet
switches.
● Support for new technologies and services from initial deployment to day-to-day administration and
management, such as EnergyWise, Identity, Cisco Auto Smartports, Cisco Smart Install, and much more
● Configuration management tools built from Cisco experience and Cisco Validated Design
recommendations
● Monitoring and troubleshooting capabilities that incorporate Cisco hardware best practices and diagnostics
features
● Automation in managing hardware inventories, security vulnerabilities (PSIRTS), and platform end-of-life
and support cycles
For detailed information about CiscoWorks LMS, go to http://www.cisco.com/go/lms.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 6 of 17
Enhanced Work Space Experience for End Users
Borderless Security
The Cisco Catalyst compact switches provide superior Layer 2 threat defense capabilities for mitigating man-in-
the-middle attacks (such as MAC, IP, and ARP spoofing). TrustSec, a primary element of Borderless Security
Architecture, helps enterprise customers secure their networks, data and resources with policy-based access
control, identity and role-aware networking, pervasive integrity, and confidentiality.
The borderless security is enabled by the following feature sets in the Cisco Catalyst 3560-C and 2960-C Series
compact switches:
● Threat defense
● Cisco TrustSec
● Other advanced security features
Threat Defense
Cisco Integrated Security Features are an industry-leading solution available on Cisco Catalyst switches that
proactively protects your critical network infrastructure. Delivering powerful, easy-to-use tools to effectively prevent
the most common and potentially damaging Layer 2 security threats, Cisco Integrated Security Features provide
robust security throughout the network. Cisco Integrated Security Features include Port Security, DHCP Snooping,
Dynamic ARP Inspection, and IP Source guard.
● Port Security secures the access to an access or trunk port based on MAC address. It limits the number of
learned MAC addresses to deny MAC address flooding.
● DHCP Snooping prevents malicious users from spoofing a DHCP server and sending out bogus
addresses. This feature is used by other primary security features to prevent a number of other attacks
such as ARP poisoning.
● Dynamic ARP Inspection (DAI) helps ensure user integrity by preventing malicious users from exploiting
the insecure nature of the ARP protocol.
● IP source guard prevents a malicious user from spoofing or taking over another user's IP address by
creating a binding table between the client's IP and MAC address, port, and VLAN.
Cisco TrustSec
TrustSec secures access to the network, enforces security policies, and delivers standard-based security solutions
such as 802.1X enabling secure collaboration and policy compliance. TrustSec capabilities reflect Cisco thought
leadership, innovations, and commitment to customer success. These new capabilities include:
● IEEE 802.1AE MACsec with prestandard 802.1X-REV Key management: industry's first fixed switches with
prestandard 802.1X-Rev key management. Available on Cisco Catalyst 3560-C Series Switches, MACsec
provides Layer 2, line rate Ethernet data confidentiality and integrity on host facing ports, protecting against
man-in-the-middle attacks (snooping, tampering, and replay).
● Flexible authentication that supports multiple authentication mechanisms including 802.1X, MAC
Authentication Bypass, and web authentication using a single, consistent configuration.
● Open mode that creates a user friendly environment for 802.1X operations.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 7 of 17
● Integration of device profiling technology and guest access handling with Cisco switching to
significantly improve security while reducing deployment and operational challenges.
● RADIUS Change of Authorization and Downloadable ACLs for comprehensive policy management
capabilities.
● 802.1X Supplicant with Network Edge Access Transport (NEAT) enables extended secure access
where compact switches in the conference rooms have the same level of security as switches inside the
locked wiring closet.
● Private VLAN Edge provides security and isolation between switch ports, which helps ensure that users
cannot snoop on other users' traffic.
● Multidomain Authentication allows an IP phone and a PC to authenticate on the same switch port while
placing them on appropriate voice and data VLAN.
● Port-Based ACLs for Layer 2 interfaces allow security policies to be applied on individual switch ports.
● Secure Shell (SSH) Protocol, Kerberos, and Simple Network Management Protocol Version 3
(SNMPv3) provide network security by encrypting administrator traffic during Telnet and SNMP sessions.
SSH Protocol, Kerberos, and the cryptographic version of SNMPv3 require a special cryptographic
software image because of U.S. export restrictions.
● Bidirectional data support on the Switched Port Analyzer (SPAN) port allows Cisco Intrusion Detection
System (IDS) to take action when an intruder is detected.
● TACACS+ and RADIUS Authentication facilitates centralized control of the switch and restricts
unauthorized users from altering the configuration.
● MAC Address Notification allows administrators to be notified of users added to or removed from the
network.
● Multilevel Security on Console Access prevents unauthorized users from altering the switch
configuration.
● Bridge Protocol Data Unit (BPDU) Guard shuts down Spanning Tree PortFast-enabled interfaces when
BPDUs are received to avoid accidental topology loops.
● Spanning Tree Root Guard (STRG) prevents edge devices not in the network administrator's control from
becoming Spanning Tree Protocol root nodes.
● IGMP Filtering provides multicast authentication by filtering out nonsubscribers and limits the number of
concurrent multicast streams available per port.
● Dynamic VLAN Assignment is supported through implementation of VLAN Membership Policy Server
client capability to provide flexibility in assigning ports to VLANs. Dynamic VLAN facilitates the fast
assignment of IP addresses.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 8 of 17
Table 3 shows switch hardware information.
Table 3. Cisco Catalyst 3560-C and 2960-C Series Compact Switch Hardware
Description Specification
Flash memory 64 MB 64 MB
Please see the release notes for the SDM Templates for 3560-C and 2960-C.
● 2960-C:
http://www.cisco.com/en/US/docs/switches/lan/catalyst2960c_3560c/software/release/12.2_55_ex/release/notes/ol23942.ht
ml.
● 3560-C:
http://www.cisco.com/en/US/docs/switches/lan/catalyst2960c_3560c/software/release/12.2_55_ex/release/notes/ol24071.ht
ml.
Connectors and Cisco Catalyst 3560-C and 2960-C with SFP-based ports:
cabling ● 10BASE-T ports: RJ-45 connectors, 2-pair Category 3, 4, or 5 unshielded twisted-pair (UTP) cabling
● 100BASE-TX ports: RJ-45 connectors, 2-pair Category 5 UTP cabling
● 1000BASE-T ports: RJ-45 connectors, 4-pair Category 5 UTP cabling
● 1000BASE-T SFP-based ports: RJ-45 connectors, 4-pair Category 5 UTP cabling
● 1000BASE-SX -LX/LH, -ZX, -BX, -T*, -FX*, and CWDM SFP-based ports: LC fiber connectors (single/multimode fiber)
● 100BASE-LX, -BX, -FX: SFP-based ports: LC fiber connectors (single/multimode fiber)
*
GLC-T and GLC-GE-100FX are not supported
For the complete list of SFPs supported, see
http://www.cisco.com/en/US/docs/interfaces_modules/transceiver_modules/compatibility/matrix/OL_6981.html.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 9 of 17
Description Specification
Power ● Customers can provide power to a switch by using the internal power supply. The connector is located at the back of the
connectors switch. The internal power supply is an autoranging unit (3560CPD-8PT-S, 2960CPD-8TT-L, 2960CPD-8PT-L do not
require a power supply).
● The internal power supply supports input voltages between 100 and 240VAC.
● Use the supplied AC power cord to connect the AC power connector to an AC power outlet.
Note: The Cisco Catalyst 3560CPD-8PT-S, 2960CPD-8PT-L and 2960CPD-8TT-L have an option for an external power
adapter if desired.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 10 of 17
Description Specification
Storage temperature up to -25°C to +70°C -13°F to +158°F -25°C to +70°C -13°F to +158°F
15,000 ft (4572 m)
Acoustic noise ISO 7779 and ISO 9296: Bystander positions operating to an ambient temperature of 25°C.
Cisco Catalyst 3560-C 0dB (fanless) Cisco Catalyst 2960-C 0dB (fanless)
Mean time Cisco Catalyst 3560-C MTBF Cisco Catalyst 2960-C MTBF
between failure
(MTBF) 3560CG-8PC-S 355,830 2960CPD-8PT-L 346,590
2960C-8PC-L 373,635
2960C-12PC-L 357,027
*
The 2960-C LAN Lite only supports 64 VLANs.
Table 4. Power Specifications for Cisco Catalyst 3560-C and 2960-C Series Compact Switch
Description Specification
Measured 100% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput power Consumption Watts Consumption Watts
consumption 1 1
3560CPD-8PT-S Single Uplink = 21W 2960CPD-8PT-L Single Uplink = 12W
1 1
Dual Uplink = 22W Dual Uplink = 15W
1
3560CG-8PC-S 24W 2960CPD-8TT-L Single Uplink = 12W
1
Dual Uplink = 15W
2960C-8PC-L 17W
2960C-12PC-L 19W
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 11 of 17
Description Specification
Measured 5% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput power Consumption Watts Consumption Watts
consumption
3560CPD-8PT-S Single Uplink = 20W 1 2960CPD-8PT-L Single Uplink = 12W 1
1 1
Dual Uplink = 21W Dual Uplink = 15W
1
3560CG-8PC-S 24W 2960CPD-8TT-L Single Uplink = 12W
1
Dual Uplink = 15W
2960C-8PC-L 17W
2960C-12PC-L 18W
Measured 100% Cisco Catalyst 3560-C Switch Power Cisco Catalyst 2960-C Switch Power
throughput power Consumption Watts Consumption Watts
consumption (with
maximum possible 3560CPD-8PC-S 40W 2960CPD-8PT-L 43W
PoE loads)
3560CG-8PC-S 165W 2960C-8PC-L 157W
3560C-12PC-S 159W
Note: For the AC values of the 3560CPD and 2960CPD SKUs see Hardware Installation Guide.
PoE and PoE+ ● Maximum power supplied per Port for PoE+ is 30W
● Maximum power supplied per port for PoE: 15.4W
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 12 of 17
Table 5 shows switch management and standards support.
Table 5. Management and Standards Support for Cisco Catalyst 3560-C and 2960-C Series Compact Switch
Description Specification
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 13 of 17
Description Specification
Description Specification
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 14 of 17
Safety Compliance and Product Approval Status
For further information on safety and compliance documentation, visit the Product Approval Status tool at
http://tools.cisco.com/cse/prdapp/jsp/externalsearch.do?action=externalsearch&page=EXTERNAL_SEARCH.
Your formal warranty statement, including the warranty applicable to Cisco software, appears in the Cisco
information packet that accompanies your Cisco product. We encourage you to review carefully the warranty
statement shipped with your specific product before use. Cisco reserves the right to refund the purchase price as
its exclusive warranty remedy. For additional information on warranty terms, visit
http://www.cisco.com/go/warranty.
Adding a Cisco technical services contract to your device coverage provides access to the Cisco TAC beyond the
90-day period allowed by the E-LLW. It also can provide a variety of hardware replacement options to meet critical
business needs, as well as updates for licensed premium Cisco IOS Software, and registered access to the
extensive Cisco.com knowledge base and support tools.
Footnotes
1
. Cisco operating system updates include the following: maintenance releases, minor updates, and major updates within the
licensed feature set.
2
. Advance hardware replacement is available in various service-level combinations. For example, 8x5xNBD indicates that
shipment will be initiated during the standard 8-hour business day, 5 days a week (the generally accepted business days within
the relevant region), with next business day (NBD) delivery. Where NBD is not available, same day ship is provided. Restrictions
apply; review the appropriate service descriptions for details.
Device covered Applies to Cisco Catalyst 2960-C and 3560-C Series compact switches.
Warranty duration As long as the original end user continues to own or use the product, provided that and power supply warranty is
limited to 5 years.
EoL policy In the event of discontinuance of product manufacture, Cisco warranty support is limited to 5 years from the
announcement of discontinuance.
Hardware replacement Cisco or its service center will use commercially reasonable efforts to ship a replacement for next business day
delivery, where available. Otherwise, a replacement will be shipped within 10 working days after receipt of the RMA
request. Actual delivery times might vary depending on customer location.
Effective date Hardware warranty commences from the date of shipment to customer (and in case of resale by a Cisco reseller, not
more than 90 days after original shipment by Cisco).
TAC support Cisco will provide during business hours, 8 hours per day, 5 days per week basic configuration, diagnosis, and
troubleshooting of device-level problems for up to a 90-day period from the date of shipment of the originally purchased
Cisco Catalyst 2960 and 3560 product. This support does not include solution or network-level support beyond the
specific device under consideration.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 15 of 17
Software Policy for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
Customers with Cisco Catalyst LAN Base and IP Base software feature sets will be provided with updates and bug
fixes designed to maintain the compliance of the software with published specifications, release notes, and
industry standards compliance as long as the original end user continues to own or use the product or up to one
year from the end-of-sale date for this product, whichever occurs earlier. This policy supersedes any previous
warranty or software statement and is subject to change without notice.
Cisco and Partner Services for Next-Generation Cisco Catalyst Compact Switches
Enable the innovative, secure, intelligent edge in the Borderless Network Architecture using personalized services
from Cisco and our partners. Through a discovery process that begins with understanding your business
objectives, we help you integrate the next-generation Cisco Catalyst fixed switches into your architecture and
incorporate network services onto that platform. Sharing knowledge and leading practices, we support your
success every step of the way as you deploy, absorb, manage, and scale new technology. Choose from a flexible
suite of support services designed to meet your business needs and help you maintain high-quality network
performance while controlling operational costs. (See Table 8.)
Table 8. Technical Services Available for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
Technical Services
®
Cisco SMARTnet Service
● Around-the-clock, global access to the Cisco Technical Assistance Center (TAC)
● Unrestricted access to the extensive Cisco.com knowledge base and tools
● Next-business-day, 8x5x4, 24x7x4, and 24x7x2 advance hardware replacement and onsite parts replacement and installation available
● Ongoing operating system software updates within the licensed feature set
● Proactive diagnostics and real-time alerts on Smart Call Home enabled devices
Ordering Information
Tables 9 and 10 give ordering information for the Cisco Catalyst 3560-C and 2960-C Series compact switches and
accessories.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 16 of 17
Table 9. Ordering Information for Cisco Catalyst 3560-C and 2960-C Series Compact Switches
WS-C2960C-8PC-L 2960C PoE Switch 8 FE PoE, 2 x Dual Purpose Uplink, LAN Base
WS-C2960C-12PC-L 2960C PoE Switch 12 FE PoE, 2 x Dual Purpose Uplink, LAN Base
Table 10. Ordering Information for Cisco Catalyst 3560-C and 2960-C Series Compact Switch Accessories
CMP-CBLE-GRD= Cable guard for the 3560-C and 2960-C compact switches
CMP-MGNT-TRAY = Magnet and Mounting Tray for 3560-C and 2960-C compact switches
PWR-ADPT= Power Adapter for the 3560-C and 2960-C compact switches
PWR-CLIP Power Clip for the 3560-C and 2960-C compact switches
There is an optional rack mount kit for the compact switch - part number RCKMNT-19-CMPCT=.
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 17 of 17