Oki BS1200 Application Notes Download Page 8

BS1200 and Network Access Security. 

 A Basic Network Primer

MCS v4.0   Firmware v2.0

8

ROUTER

PHONE LINKS

PBX OR KTS OR

ANALOG PHONES

EXTERNAL

IP ADDRESS

NNN.NNN.NNN.NNN

(PUBLIC)

LAN

HUB

BS1200

NIC IN

NIC OUT

PROXY

SERVER

fig 5b

SWITCH

A PROXY SERVER EXAMPLE

ADDING A SWITCH BEFORE THE PROXY SERVER

(PUBLIC)

DMZ

INTERNET

INTERNAL

IP ADDRESS

XXX.XXX.XXX.XXX

(PRIVATE)

Third a Network Address Translation (NAT) Router Situation:

  As the name implies a NAT Router translates network addresses, like a Proxy server does. A NAT
however lacks the higher end capabilities a SERVER has. You should already be somewhat familiar with
what a NAT Router does from the previous Proxy server solution. Consider a NAT Router the smaller
cousin to a Proxy Server.

  To install a BS1200 behind a NAT Router 

(See fig 6a)

 you must first check with the client on their

policies and procedures regarding the level of security they require. If allowable then disable the NAT
function on the Router, if the Router has only one port.

BS1200

PHONE LINKS

PBX OR KTS OR

ANALOG PHONES

NAT ROUTER

HUB

EXTERNAL

IP ADDRESS

NNN.NNN.NNN.NNN

(PUBLIC)

fig 6a

PORT 0

WITH NAT TURNED OFF

INTERNAL

IP ADDRESS

NNN.NNN.NNN.NNN

(PUBLIC)

A NAT ROUTER  EXAMPLE

NAT TURNED OFF

INTERNET

LAN

  If the Router has more than one port, 

(See fig 6b)

, and if the equipment allows for it, then turn the NAT

function off for that port and then connect the BS1200 to that port.

BS1200

PHONE LINKS

PBX OR KTS OR

ANALOG PHONES

NAT ROUTER

LAN

PORT 0

WITH NAT TURNED ON

PORT 1

WITH NAT TURNED OFF

HUB

EXTERNAL

IP ADDRESS

NNN.NNN.NNN.NNN

(PUBLIC)

fig 6b

INTERNET

(PUBLIC)

A NAT ROUTER  EXAMPLE

ADD / USE A SECOND PORT

INTERNAL

IP ADDRESS

XXX.XXX.XXX.XXX

(PRIVATE)

Summary of Contents for BS1200

Page 1: ...Application Note AN1001 BS1200 Internet Voice Gateway THE BS1200 AND NETWORK ACCESS SECURITY Oki Electric Industry Co Ltd...

Page 2: ...2...

Page 3: ...ch box to share the printer fig 1 A SIMPLE NETWORK The next step up in complexity is a peer to peer based network see fig 2 This is a network comprised typically of several computers linked together b...

Page 4: ...s schools and universities and other larger more structured environments than a simple or peer to peer network could service Although with the increased computing power on the desktop server based net...

Page 5: ...as there are places in society that must be guarded from ignorant or malicious tampering or outright theft Network administrators must do the same with their data All NAS solutions are designed like...

Page 6: ...public IP address and less systems administration with communication port assignments on the firewall The only thing that may be needed for the client to implement is another hub in front of the firew...

Page 7: ...ation A Proxy Server also changes the IP addresses of the devices inside its zone All IP addresses also remain private to the outside world Private IP addresses and non static IP addresses are other c...

Page 8: ...To install a BS1200 behind a NAT Router See fig 6a you must first check with the client on their policies and procedures regarding the level of security they require If allowable then disable the NAT...

Page 9: ...NN NNN NNN NNN PUBLIC PORT 0 WITH NAT TURNED OFF HUB ADD A FIREWALL Conclusion As you have seen the installation of the BS1200 VoIP Gateway into most existing Networks is fairly simple if you remember...

Page 10: ...BS1200 and Network Access Security A Basic Network Primer MCS v4 0 Firmware v2 0 10...

Reviews: