Homepage | Collection | 繁体中文
Product
没有小类
没有小类
没有小类
没有小类
没有小类
没有小类
没有小类
没有小类
H3C
没有小类
没有小类
没有小类
没有小类
没有小类
没有小类
Contact Us


Company Name:Kino Technology Limited

Website:www.kino86.com

Address :Room 312, Honghua Building, No. 1 Guangyayuan Road, Bantian Street, Longgang District, Shenzhen city, Guangdong Province, China



Contact Person:kiki

Tel :+8613040881925 

E-mail:kiki@szkiki.com

Wechat:+8613040881925

Whatspp: +8613040881925

Teams:kiki@szkiki.com





Products
 Product >> Cisco >> ALL
 
Product_Id:
7171710516
ProductName:
3945
Specification:
Product Notes:
Product Category:
Cisco
 
   Product Description

Cisco 3945 Integrated Services Router (Flagship ISR G2 3900 Series) Full Product Description

1. Short Overview

TheCisco 3945is the flagship 3U rack-mount second-generation Integrated Services Router (ISR G2) within the Cisco 3900 Series, released October 13, 2009. It is designed for enterprise headquarters, large regional central branch offices, high-density PBX voice gateways, and carrier-grade high-capacity business CPE running heavy concurrent voice, data, video, zone firewall, IOS IPS, large-scale DMVPN IPsec, and virtualized SRE workloadsCisco. Equipped with a field-upgradeable SPE150 Services Performance Engine, four SM service module slots (supports double-wide SM-D modules), four EHWIC WAN slots, four onboard PVDM3 DSP slots, one internal ISM service module slot, three onboard Gigabit Ethernet plus two independent SFP fiber uplinks, dual hot-swappable internal redundant power supplies, dual symmetric DIMM memory architecture, and embedded hardware crypto acceleration. It fully backward-compatible with EHWIC/WIC/VIC/VWIC/SM/PVDM3 modules from ISR Gen1 and Gen2 families.
This platform reached End-of-Sale (EoS) December 9, 2017, and End-of-Life (EoL) December 31, 2022, with all official Cisco TAC hardware and software maintenance discontinuedCisco. Modern upgrade alternatives are Cisco ISR 4000 Series and Catalyst 8000 edge routers.

Naming & Variant Breakdown

  • CISCO3945/K9: Standard AC-powered base router with IP Base universal IOS image and embedded K9 AES/3DES crypto hardware
  • CISCO3945-AC-IP/K9: AC PoE variant with integrated inline power distribution for 802.3af IP phones via switch EHWICs
  • CISCO3945-DC/K9: 24–60V negative DC telecom-grade power model for central office cabinet deployments
  • -SEC/K9: Pre-bundled Advanced Security license with zone-based firewall, IOS IPS, full IPsec/SSL/DMVPN enabled
  • -VOICE/K9: Unified Communications bundle pre-licensed for CME/SRST embedded voice call processing
  • -VSEC/K9: All-in-one integrated Voice + Security converged branch bundle
  • -AX/K9: Advanced services bundle supporting SRE virtualization, WAAS wide-area optimization
  • -AXV/K9: AX + full UC voice bundle with PVDM DSP capacity pre-provisioned
  • -HSEC/K9: High-security bundle optimized for massive concurrent IPsec tunnels, FIPS 140-2 Level 2 compliant with optional security shield kit

Core Differentiators vs Cisco 3925

  1. 4 SM service module slots(only 2 SM slots on 3925), supports up to two double-wide SM-D high-density trunk/security/storage modules for multi-T1/E1 PRI deployments
  2. SPE150 performance engine vs SPE100 on base 3925, delivering 150 Mbps aggregate multi-service throughput vs 150 Mbps for SPE100 3925; SPE200 reserved for 3925E/3945E
  3. Larger chassis power budget (max ~900W fully loaded) to support four SM modules simultaneously
  4. Identical core internal resources: 4 onboard PVDM3 DSP slots, 1 internal ISM slot, four rear universal EHWIC slots, triple console ports, dual USB 2.0, single CompactFlash storage, dual DIMM DRAM max 2GB
  5. Same physical 3U rack chassis, three GE RJ45 + two independent SFP ports, native internal dual redundant power supplies, DC/PoE power options

2. Hardware Interface & Physical Specifications

Modular Expansion Architecture

  1. 4 × SM / SM-D Double-Wide Service Module slots (Flagship exclusive upgrade)
    Four rear high-density service slots that can operate as four single-wide SM or pair into two double-wide SM-D modules for high-bandwidth trunk, security, virtualization, and storage workloadsCisco:
  • SM-2T1/SM-4E1 multi-port channelized T1/E1 PRI voice trunk modules for large PBX interconnection
  • NM-CIDS-K9 dedicated inline intrusion detection modules
  • SRE900 virtualization modules for Windows/Linux hosting, WAAS bandwidth deduplication
  • SM-CUE storage modules for Unity Express voice mail and auto-attendant
  1. 4 × Rear Universal EHWIC/WIC/VIC/VWIC slots
    Each slot accepts single-wide EHWIC, double-wide EHWIC-D, legacy HWIC, analog VIC, multi-flex VWIC voice cards; two slots support double-wide high-bandwidth EHWIC-D modules:
  • EHWIC: ADSL2+, VDSL2, G.SHDSL, synchronous serial, 4-port GE switch EHWICs
  • WIC: ISDN BRI, synchronous/asynchronous serial, analog modem WICs for Dial-on-Demand Routing (DDR) backup failover
  • VIC/VWIC: FXS/FXO/E&M analog station/trunk cards, multi-port fractional T1/E1 multi-flex voice trunks
  1. 4 × Motherboard PVDM3 DSP slots
    Dedicated onboard Packet Voice Digital Signal Processor slots to handle VoIP codecs, G.168 echo cancellation, wideband G.722 audio, T.38 fax relay, and multi-party audio conferencing without consuming external expansion slots; quadruple DSP capacity supports up to 384 concurrent VoIP calls for large IP phone deployments.
  2. 1 × Internal ISM (Internal Service Module) auxiliary slot
    Auxiliary internal slot for supplementary storage, lightweight crypto acceleration, or auxiliary application offloading to complement SM service modules.

Fixed Built-in Rear Panel Ports

  1. 3 × Auto-MDI-X 10/100/1000BASE-T Gigabit Ethernet (GE0/0, GE0/1, GE0/2) + 2 independent SFP mini-GBIC fiber slots
    Two native SFP fiber uplinks without port sharing restriction; all Gigabit ports fully support IEEE 802.1Q VLAN trunking, inter-VLAN routing, LACP link aggregation to isolate corporate, finance, engineering, guest, and sensitive POS payment subnetsCisco.
  2. RJ45 Serial Console port (115.2 kbps max baud) – primary local out-of-band CLI management
  3. Mini-USB Type-B Console port – lightweight secondary local management without RJ45 cables
  4. RJ45 AUX port – remote emergency IT access via external PSTN analog modem
  5. 2 × USB 2.0 Type-A ports– high-speed offline configuration/log backup storage, two-factor crypto authentication tokens
  6. Removable external CompactFlash (CF) slot – primary persistent storage for IOS universal images, full running configurations, and persistent event logging
  7. Dual internal hot-swappable power supply bays (AC / DC / PoE variants available)
  8. Dedicated external RPS redundant power supply connector for extended fault tolerance
  9. Chassis ground lug + Kensington anti-theft lock slot for physical rack security

Memory & Performance Benchmarks

  • Processor: Multi-task PowerQUICC CPU integrated on field-replaceable SPE150 Services Performance Engine, with dedicated embedded hardware crypto FPGA acceleration
  • Default DRAM: 1024MB (1GB) symmetric dual 512MB ECC DIMMs; maximum expandable DRAM: 2048MB (2GB) via matching dual DIMM slotsCisco
  • Default Flash memory: 256MB CompactFlash; maximum supported Flash: 4GB CF card
  • Multi-service mixed voice/data/security throughput: Up to 150 Mbps aggregate wire-speed performance under full converged service loadCisco
  • Hardware crypto acceleration: Native AES-256, 3DES, DES IPsec, SSL/TLS, GRE VPN offloading; scalable via SM high-security modules for hundreds of concurrent site-to-site tunnels
  • Maximum concurrent site-to-site IPsec tunnels: Up to 400+, expandable with full 2GB DRAM and dual SM encryption hardware
  • Supported IOS releases: Cisco IOS 15.0(1)M through 15.7(3)M universal multi-service maintenance images; feature sets unlocked via permanent chassis-bound software licenses (SL-39-DATA-K9, SL-39-SEC-K9, SL-39-UC-K9)
  • Voice capacity: PVDM2/PVDM3 DSP modules support up to 384 concurrent VoIP calls; Cisco CME embedded call processing for up to 300 IP phones, SRST survivable remote branch telephony, Unity Express voice mail for up to 1000 mailboxes hosted via SM-CUE storage modules

Physical & Power Parameters

  • Form factor: 3U standard 19-inch rack-mount metal chassis with integrated rack ears
  • Standard AC power supply: 100–240V 47–63Hz universal autoranging internal power supply, dual hot-swappable internal PSUs for native redundancy
  • DC variant (C3945-DC): 24–60V negative DC telecom input for central office cabinet deployments
  • PoE variant (C3945-AC-IP): Integrated inline power distribution delivering up to 360W PoE budget, expandable with external PoE boost accessories
  • Typical chassis power consumption: ~900W under fully loaded four SM, four EHWIC, four PVDM, ISM module configuration
  • Front panel status LEDs: System power, dual PSU fault alarm, CompactFlash activity, dual USB port status, PVDM/ISM health indicators, four EHWIC slot link/activity, four SM slot status, three Gigabit Ethernet + dual SFP link/activity
  • Operating environment
    • Operating temperature: 0°C to +40°C below 1800m altitude; 0°C to +25°C above 1800m up to 3000m
    • Relative humidity: 5–85% RH non-condensing
  • Dimensions (H × W × D): 133.35 × 438.15 × 476.25 mm (5.25 × 17.25 × 18.75 inches)Cisco
  • Fully loaded weight: ~13.6 kg (30 lbs) with complete expansion modules
  • No native chassis PoE output except for dedicated -AC-IP power supply variant.

3. Cisco IOS Universal Image Multiservice Feature Suite

Core Routing & Multi-WAN Connectivity

  • Full dual-stack IPv4 / IPv6 routing suite: Static routes, RIP v1/v2, OSPF, EIGRP, BGP, IS-IS, PIM multicast suite, BFD bidirectional forwarding detection
  • WAN encapsulation support: PPP, HDLC, Frame Relay, ATM, ISDN, PPPoE/PPPoA for DSL, Dial-on-Demand Routing (DDR) for automatic backup failover, MPLS L2/L3 VPN, GETVPN
  • HSRP/VRRP for router high availability redundancy; NHRP DMVPN hub-spoke multi-site overlay VPN architecture
  • NAT services: Static NAT, dynamic NAT, PAT overloading, multi-address NAT pools, NAT64 IPv4-IPv6 transition support
  • IEEE 802.1Q VLAN trunking, inter-VLAN routing, storm control, LACP link aggregation across three onboard Gigabit Ethernet ports and dual independent SFP fiber uplinks.

Unified Communications Voice & Fax Integration (Flagship High-Density Voice Differentiator)

  1. VoIP signaling protocols: H.323, SIP, MGCP, SCCP native support for large-scale Cisco Unified IP Phone deployments
  2. Analog/digital telephony via VIC/VWIC + four PVDM DSPs + four SM voice trunk modules: FXS station ports, FXO PSTN trunk lines, E&M PBX tie connections, multi-port T1/E1 PRI channelized trunk interworking with third-party PBX platforms (Avaya, Siemens, Nortel)
  3. T.38 real-time fax relay over IP, fax passthrough, store-and-forward fax routing
  4. DSP-accelerated voice codecs: G.711, G.719, G.729a, G.726, wideband G.722 high-fidelity audio, video conferencing codec support
  5. Enterprise telephony tools: Scalable multi-site dial plans, voice hunt groups, toll bypass to eliminate expensive long-distance PSTN charges
  6. CME embedded call manager, SRST survivable remote telephony, Unity Express voice mail/auto-attendant hosted via SM-CUE storage modules.

Enterprise QoS & WAN Optimization

  • Base QoS tools: Weighted Fair Queuing (WFQ), CBWFQ, per-interface traffic shaping
  • Advanced QoS (Data/UC license): Low Latency Queuing (LLQ), Frame Relay Traffic Shaping (FRTS), WRED congestion avoidance, DSCP/802.1p traffic marking
  • Link Fragmentation and Interleaving (LFI), cRTP VoIP header compression to eliminate voice jitter on low-speed DSL/ISDN backup links
  • NBAR2 next-generation deep packet inspection for application-aware traffic prioritization of business-critical software; SRE WAAS module for end-to-end WAN bandwidth deduplication and optimization.

Integrated Self-Defending Network Security Suite

  1. Zone-Based Stateful Firewall (ZBFW): Deep application-layer inspection for HTTP, FTP, SIP, H.323 and all mainstream enterprise business protocols
  2. IOS IPS inline signature-based intrusion prevention with real-time threat detection and automated connection blocking
  3. Embedded hardware-accelerated VPN stack:
    • AES-256/3DES/DES IPsec site-to-site branch tunnels
    • Cisco Easy VPN Remote centralized security policy provisioning for remote branch locations
    • DMVPN scalable hub-spoke multi-site overlay networks
    • SSL VPN for browser-only remote worker access without client software
  4. AAA security framework: PAP/CHAP authentication, RADIUS/TACACS+ centralized access control and complete audit logging
  5. Standard/extended ACLs, dynamic ACLs, anti-DDoS traffic policing, security zone segmentation to isolate sensitive POS payment and finance subnets
  6. FIPS 140-2 Level 2 certified with optional physical security shield kit for government regulated deployments.

Management, Automation & Operations

  • Triple out-of-band management interfaces: RJ45 Serial Console, Mini-USB Console, and AUX modem port for emergency offline IT maintenance
  • Secure remote management: SSHv2, HTTPS, SNMP v1/v2c/v3, TR-069 automated remote provisioning
  • Graphical configuration utility: Cisco Configuration Professional (CCP) for simplified zero-touch mass branch deployment
  • AutoInstall automated remote IOS image and configuration download over WAN links for nationwide branch rollouts
  • Removable CompactFlash storage for easy IOS upgrades, configuration backup, and centralized log archiving
  • Persistent syslog event logging, NTP time synchronization for consistent audit timestamps
  • Dual USB 2.0 ports for offline config storage and two-factor authentication security tokens
  • Cisco EnergyWise power management for intelligent energy consumption control of attached network devices.

4. Typical Deployment Scenarios

  1. Large regional enterprise headquarters multi-service edge gateway: Four SM-D multi-T1/E1 PRI voice trunk modules connected to corporate PBX, dual fiber Metro Ethernet primary/secondary WAN uplinks via independent SFP slots, VDSL2 EHWIC copper backup link, four PVDM3 DSP modules supporting over 350 concurrent VoIP calls, three Gigabit Ethernet ports to segregate finance, engineering, staff, and guest VLANs, SRE900 virtualization module for local application hosting, high-volume DMVPN IPsec tunnels to corporate headquarters, integrated ZBFW/IPS security stack for enterprise compliance.
  2. National multi-chain retail headquarters voice gateway: ADSL2+ EHWIC primary broadband WAN, ISDN BRI WIC dial backup, CME embedded call processing for 200–300 on-site IP phones, SM-CIDS intrusion detection module for PCI DSS payment security, SM-CUE voice mail storage module for multi-location unified messaging.
  3. Global carrier managed high-capacity enterprise CPE: Universal dual-standard DSL EHWIC copper broadband access, DC power variant for central office rack deployment, dual SM storage/optimization modules for tenant log retention and bandwidth control, DMVPN overlay to carrier central service hub, integrated firewall/IPS for tenant threat isolation and network segmentation.
  4. Advanced enterprise networking flagship training lab core router: Universal four SM/EHWIC/WIC/VIC modularity to teach multi-port T1/E1 PRI voice trunking, dual independent fiber SFP uplinks, quadruple DSP VoIP gateway, hardware-accelerated high-volume IPsec VPN, and full unified communications gateway labs; full 2GB DRAM and large CF capacity fully support feature-rich IOS 15.xM images unavailable on lower-tier 2900/2911/3925 routers.

5. Standard Package Contents of CISCO3945 / 3945-DC / 3945-AC-IP

1 × Cisco 3945 3U rack-mount chassis (no SM/EHWIC/WIC/VIC/PVDM3/ISM modules or AC power cord included)
IEC AC power cord (DC variants exclude AC cord)
RJ45 console rollover cable
Hardware installation quick start guide
Global safety, EMC, RoHS, regional telecom regulatory compliance documentation

Separately Sold Optional Accessories

  • EHWIC/WIC/VIC/VWIC WAN and analog/digital voice interface cards
  • SM / SM-D double-wide service modules (multi-T1/E1 trunk, IDS, SRE virtualization, Unity Express storage)
  • PVDM2/PVDM3 DSP voice compression modules for VoIP, wideband audio and T.38 fax relay
  • ISM Internal Service Modules for auxiliary storage and lightweight application offloading
  • DRAM memory expansion DIMMs (512MB / 1GB / 2GB symmetric matched pairs)
  • CompactFlash memory upgrades (256MB / 1GB / 4GB)
  • CAT5e/CAT6 Gigabit Ethernet patch cords, RJ11 DSL/ISDN telephone cables
  • External PoE injectors for non-PoE IP phones and wireless access points
  • External redundant power supply units (RPS) for extended high-availability deployments
  • FIPS physical security shield kit for FIPS 140-2 Level 2 certification
  • Spare C3900-SPE150/K9 performance engine replacement

Software Licensing Information

The Cisco 3945 runs a single universal IOS image covering all feature tiers; three permanent chassis-bound software license sets unlock distinct functionality with no recurring subscription fees:
  1. SL-39-DATA-K9: Core routing, dual-stack IPv6, MPLS, advanced QoS, NBAR2 application classification, EnergyWise power management
  2. SL-39-SEC-K9: Zone-based stateful firewall, IOS inline IPS, full AES/3DES IPsec/SSL/DMVPN encryption, advanced threat mitigation, anti-DDoS policing
  3. SL-39-UC-K9: CME/SRST embedded voice call processing, Unity Express voice mail, full wideband VoIP codec support for PVDM3 DSP modules
    Embedded K9 crypto hardware complies with US ITAR export regulations for global shipments.

Short Commercial Catalog Summary

The Cisco 3945 is the flagship legacy 3U rack-mountable converged multiservice second-generation Integrated Services Router within the entire Cisco 3900 ISR G2 Series, engineered for large enterprise multi-subnet headquarters, national retail headquarters, and telecommunications carriers requiring four SM high-density service module slots, quadruple PVDM3 DSP voice capacity, and maximum expansion density superior to the mid-tier Cisco 3925. Key hardware upgrades over the 3925 include four SM/SM-D service module slots (double the 3925’s count), support for two double-wide SM-D high-density trunk modules, a larger power budget for fully loaded multi-module deployments, and SPE150 performance engine delivering 150 Mbps aggregate multi-service throughput. Built on a multi-core CPU with dedicated embedded crypto FPGA acceleration, it features four universal rear EHWIC/WIC/VIC expansion slots, four high-density SM service module slots, four internal PVDM3 DSP voice slots for massive VoIP deployments, one internal ISM auxiliary acceleration slot, three fixed 10/100/1000 Gigabit Ethernet onboard ports plus a shared SFP fiber uplink supporting IEEE 802.1Q VLAN trunking, removable high-capacity CompactFlash storage, dual USB 2.0 management ports, and triple out-of-band console access (RJ45 + Mini-USB + AUX). Running a single universal Cisco IOS 15.x image with modular permanent software licensing for Data, Advanced Security, and Unified Communications feature sets, it consolidates rack router, multi-Gigabit multi-VLAN switch, ultra-high-density multi-line VoIP voice gateway, zone-based stateful firewall, inline IPS intrusion prevention, high-volume hardware-accelerated multi-site VPN gateway, and enterprise-class QoS into one compact 3U rack unit, eliminating multiple standalone network appliances. Its core competitive advantage over all other 3900 series routers is the four-slot SM architecture enabling simultaneous multi-T1/E1 PRI trunking, dedicated IDS, and storage modules, making it ideal for enterprise headquarters and carrier-grade high-traffic CPE environments. As an end-of-life unsupported legacy platform, it is only suitable for lab environments, existing legacy network refresh replacements, and non-critical high-traffic production sites, with the Cisco ISR 4000 Series recommended as its modern performance, security, and voice-capable upgrade replacement. Limitations include single CompactFlash boot bank, USB 2.0 low-speed ports, and aging single-board multi-core architecture compared to next-generation ISR 4000 edge routing platforms. The router complies with UL, IEC, EN, EMC, and RoHS global indoor commercial wiring safety and electromagnetic compatibility standards, with optional FIPS 140-2 Level 2 certification for government regulated deployments.
Click:19 Entry Time:2026-07-17 【Print】 【Close
 © 2026 Kino Technology Limited. All Rights Reserved. | Hong Kong Registered · Shenzhen Operation | New & Genuine Used Network Equipment Supplier 
Links:   白云搜搜   |   未来互联   |   百度   |  
Kino Technology Limited   网站技术支持:未来互联