Cisco AIR-CT5760-25-K9 Full English Product Description
1. Short Official Part Label
AIR-CT5760-25-K9: Cisco 5760 IOS-XE Wireless LAN Controller, 1U Rack-Mount Converged Access WLC, Factory Licensed for Max 25 Lightweight Aironet APs, 6×10G SFP+ Uplink Ports, Hardware-Backed 60 Gbps Total Throughput, UADP ASIC Architecture, IOS-XE OS, Supports Central & Converged Access Modes, CleanAir RF, FlexConnect, AVC NBAR2, AP SSO HA, Multi-Controller Mobility, End-of-Sale Legacy Enterprise Wireless Controller
2. Full Product Overview
The Cisco AIR-CT5760-25-K9 is an entry baseline model of the discontinued Cisco 5700 Series wireless LAN controller, the first WLC platform built on native Cisco IOS-XE operating system and powered by Unified Access Data Plane (UADP) ASIC hardware accelerationCisco. Designed for medium enterprise campus core gateways, multi-building satellite sites, large regional branch offices, and mid-tier MSSP deployments requiring high 10G uplink bandwidth and expandable AP capacity, it serves as a key component of Cisco Next-Gen Converged Access Wireless Architecture.
This unit ships with a permanent built-in license supporting up to 25 lightweight APs; incremental AP adder licenses can expand capacity all the way up to the hardware maximum of 1000 APs without hardware replacementCisco. It terminates DTLS encrypted CAPWAP tunnels from all joined Aironet thin APs, unifying centralized RF management, enterprise wireless security, seamless Layer2/3 client mobility, VoWLAN voice QoS, VideoStream multicast optimization, embedded wireless intrusion prevention (wIPS), and native SD-WAN application-aware routing.
The 5760 platform delivers hardware-accelerated 60 Gbps total non-blocking throughput via UADP ASIC, equipped with six SFP+ 10-Gigabit uplink slots for flexible copper/short/long-range fiber uplink media selection. It features hot-swappable redundant fans and optional redundant power supplies to eliminate single points of hardware failure for mission-critical wireless networks. Standout enterprise resiliency feature: AP Stateful Switchover (AP SSO) HA with full AP registration sync between redundant controllers, while client SSO is not supported on this platform. It fully supports Cisco CleanAir spectrum intelligence, FlexConnect remote branch local switching, and NBAR2 Application Visibility and Control (AVC).
Cisco marked the entire 5760 Series End-of-Sale (EoS) April 14, 2017 and End-of-Support (EoL) April 30, 2022; all available inventory consists of surplus, used, or certified refurbished hardware. Administrators can manage standalone instances via local HTTPS web GUI, serial/SSH CLI, or centrally orchestrate multi-controller fleets through Cisco Prime Infrastructure. It interoperates with all Aironet 802.11n / 802.11ac Wave 1/2 lightweight access points.
3. Complete Hardware Physical & Interface Specifications
Form Factor & Mechanical
-
Rack Form Factor: Standard 1U 19-inch rack-mount chassis
-
Dimensions: 44.45 mm (H) × 444.5 mm (W) × 449.58 mm (D) / 1.75 × 17.5 × 17.7 inches
-
Unit Weight: 11 lbs (5 kg) single PSU; 13 lbs (5.9 kg) with dual redundant PSUs
-
Cooling: Multiple hot-swappable redundant internal cooling fans
-
Power Supply: Single AC PSU standard; optional second redundant PSU for fault tolerance
Rear Panel Interface Layout
-
6× 10G SFP+ uplink slots (supports SFP+ copper, SR, LR fiber transceivers, LAG EtherChannel aggregation)
-
1× 10/100/1000BASE-T RJ45 dedicated out-of-band Service Port
-
Dual console ports: RJ45 RS-232 serial console + mini-USB console for local CLI configuration
-
USB port for local config backup, restore and firmware upload
-
Dual AC power supply input slots (primary + optional redundant PSU)
-
Physical security lock slot for anti-theft cable attachment
Front Panel LED Indicators
Global status LEDs: Power 1, Power 2, System Health, Critical Fault, Fan Status
Per-port Link/Activity LEDs for all six 10G SFP+ uplinks and service port
Power & Environmental Parameters
-
Input AC Range: 100–240 VAC, 50/60 Hz universal power input
-
Max Power Consumption: 350 W total with dual PSUs installed
-
Operating Temperature: 0°C to 40°C (32°F to 104°F)
-
Storage Temperature: -25°C to 70°C (-13°F to 158°F)
-
Humidity: 10%–95% non-condensing (operation & storage)
-
Regulatory Certifications: UL 60950-1 safety, CE, FCC Class A EMC, ICES-003, VCCI, basic NEBS compliance
Official Capacity & Performance Benchmarks (1024B packet size)
-
Factory Licensed AP Count: 25 lightweight APs (expandable up to hardware maximum 1000 APs via incremental AP licenses)
-
Maximum Concurrent Active Stateful Wireless Clients: 12,000 total across all managed APs
-
System Hardware-Bound FW+AVC+NGIPS Throughput: Up to 60 Gbps with UADP ASIC acceleration
-
IPsec VPN Encrypted Throughput (AES-256 Fastpath): Up to 20 Gbps
-
New Connections Per Second: Up to 180,000
-
Max Site-to-Site IPsec VPN Peer Tunnels: 5,000
-
Max Concurrent AnyConnect SSL Remote Access VPN Sessions: 10,000
-
TLS/SSL Decryption Throughput: Up to 8 Gbps via UADP hardware offload
-
Supported Unique WLAN SSIDs: Up to 512 broadcast/hidden SSIDs
-
Maximum 802.1Q VLAN Interfaces: Up to 4,000 VLANs
-
Max AP Groups for Segmented Policy Control: 500 independent AP groups
-
Max FlexConnect Remote Branch Groups: 100 groups (max 25 APs per group)
-
Roaming Capabilities: Intra-controller Layer 2 seamless roaming, Layer 3 inter-VLAN mobility, 802.11r fast secure roaming
-
Supported Wireless Standards: 802.11a/b/g/n/ac Wave1/2, WMM, 802.11k/r/u/w/h
-
Max Detected Rogue APs: 5,000; Max Rogue Wireless Clients: 10,000
-
Max RFID Location Tags Tracking: 10,000 tags for wireless location services
4. Complete Unified Wireless & Security Feature Suite
1. Centralized Lightweight AP Lifecycle Management
DTLS encrypted CAPWAP tunnel termination for all joined APs; zero-touch AP auto-discovery via DHCP Option 43; bulk AP firmware upgrades, unified RF configuration and global policy deployment across all managed access points. Supports FlexConnect local switching to reduce expensive WAN backhaul bandwidth consumption, enterprise wireless mesh networks, and OfficeExtend teleworker APs for secure remote home office wireless connectivity. Operates in two primary deployment modes: Central Local Mode and Converged Access distributed data-plane mode with Catalyst 3850/3650 switches.
2. Cisco CleanAir Intelligent RF Spectrum Management
Continuous real-time 2.4GHz/5GHz RF interference monitoring, dynamic transmit power & auto-channel assignment, wireless coverage hole detection, rogue AP detection, classification and active wireless containment, persistent historical RF reporting for capacity planning and wireless troubleshooting.
3. Enterprise-Grade Wireless Security Stack
-
Authentication: IEEE 802.1X EAP-TLS/PEAP/EAP-FAST, local internal user database, external RADIUS/TACACS+ AAA integration
-
Encryption Protocols: WEP, WPA2-PSK/Enterprise (802.11i RSN), AES-CCMP, TKIP
-
Threat Mitigation: Built-in wIPS wireless intrusion prevention, rogue AP containment, wireless client isolation, MAC address filtering, dynamic per-SSID VLAN assignment, downloadable ACLs for per-user policy enforcement
-
Compliance: PCI DSS validated architecture for retail wireless POS payment deployments
4. Mobility, Voice & Video QoS
Wi-Fi Multimedia (WMM) traffic prioritization, Call Admission Control (CAC) for VoWLAN VoIP handsets, Cisco VideoStream multicast optimization for wireless IPTV, configurable bidirectional per-client bandwidth policing, fast secure roaming via 802.11r to eliminate voice call drops during client movement.
5. Application Visibility and Control (AVC)
Layer 7 deep application identification powered by NBAR2 for thousands of enterprise, SaaS, social media and cloud applications; application-based traffic filtering, QoS marking, rate limiting and Flexible NetFlow v9 reporting for granular policy optimization.
6. Integrated SD-WAN & Full VPN Services
Dynamic SD-WAN multi-path selection for hybrid broadband/MPLS WAN aggregation with application-aware routing; site-to-site IPsec IKEv1/IKEv2 tunnels with AES-256 encryption; AnyConnect SSL remote access VPN with split tunneling, clientless web portal and secure mobility for distributed global workforce.
7. High Availability & Scalability
-
Active/Standby AP Stateful Switchover (AP SSO): Full AP registration and CAPWAP tunnel sync between redundant controllers; client sessions not synchronized (no client SSO)
-
Multi-controller mobility groups for cross-controller Layer 3 roaming and guest anchor tunneling
-
LAG EtherChannel link aggregation supported on all six 10G SFP+ uplink ports for bandwidth aggregation and link redundancy
-
Optional dual redundant power supplies and hot-swappable cooling fans eliminate single points of hardware failure
8. Traffic Visibility, Logging & Compliance
Real-time traffic monitoring via local HTTPS web GUI; secure syslog, SNMP v3 and Flexible NetFlow v9 export to third-party SIEM platforms. Persistent audit logging meets strict regulatory compliance requirements for medium enterprise PCI DSS, HIPAA and GDPR audit frameworks.
9. DevOps Automation & Centralized Orchestration
Local IOS-XE CLI console and lightweight FDM web GUI for standalone single-instance administration; RESTful API for automated controller provisioning, policy deployment and lifecycle management; unified cross-platform policy distribution, centralized logging and cross-device reporting via Cisco Prime Infrastructure; centralized license entitlement tracking via Cisco Smart License Manager.
5. Typical Deployment Scenarios
-
Medium enterprise remote campus core wireless gateway supporting up to 25 APs, expandable to full 1000 AP capacity
-
Multi-building K-12 and higher education satellite campus unified wireless consolidation
-
Mid-tier retail chain headquarters wireless hubs with PCI DSS wireless POS compliance
-
Medium-density SDDC north-south perimeter and east-west virtual server workload segmentation
-
Lab, training and pre-production wireless testing environments with expandable AP scale
-
Converged Access deployments paired with Catalyst 3850/3650 access switches for distributed data-plane traffic offloading
-
Consolidation of mid-tier legacy 5500 Series WLC hardware into high-throughput 10G uplink IOS-XE wireless infrastructure
6. Short Sales Listing Tagline
Cisco AIR-CT5760-25-K9 Legacy 1U Rackmount IOS-XE Converged Access Wireless LAN Controller, Factory Licensed for Max 25 Lightweight Aironet APs (Expandable to 1000 APs), 6×10G SFP+ Uplink Ports, 60Gbps UADP ASIC Hardware-Accelerated Throughput, Redundant Fans & Optional Dual PSU Support, CleanAir RF Spectrum Intelligence, FlexConnect Local Switching, NBAR2 AVC Layer7 Application Control, AP SSO Stateful HA & Multi-Controller Mobility Groups, Managed via Local Web GUI/SSH/IOS-XE CLI/Cisco Prime Infrastructure, EoS Mid-Tier Next-Gen CUWN WLC for Medium Enterprise Campuses & Regional Retail Deployments
|