69
D14049.07
March 2010
Grey Headline
(continued)
TANDBERG
VIDEO COMMUNICATION SERVER
ADMINISTRATOR GUIDE
Introduction
Overview and
status
System
configuration
VCS
configuration
Zones and
neighbors
Clustering and
peers
Call
processing
Bandwidth
control
Firewall
traversal
Appendices
Applications
Maintenance
Zones
Configuring traversal client zones
The following options are available (in addition
to the
Name
,
Type
and
Hop count
described in
the
Configuring zones
section) when configuring
a traversal client zone on the VCS. Traversal
client zones are used to enable a connection
from the local VCS to a traversal server.
For full details on how traversal client zones and
traversal server zones work together to achieve
firewall traversal, see the
Firewall traversal
section.
An
NTP server
must be configured for
traversal zones to work.
Authentication username and password
Traversal clients must always authenticate
with traversal servers by providing their
authentication credentials.
Each traversal client zone must specify an
Authentication username
and
Authentication
password
to be used for authentication with the
traversal server.
Multiple traversal client zones can be
configured on a VCS, each with distinct
credentials, to connect to one or more
service providers.
Note that the
outbound connection credentials
username and password are used for
connections to all other (non traversal server)
external systems.
H.323
Mode
Determines whether H.323 calls are allowed to
and from the traversal server.
Protocol
Determines which of the two firewall traversal
protocols (Assent or H.460.18) to use for
calls to the traversal server. (See the
H.323
firewall traversal protocols
section for more
information.)
Port
The port on the traversal server to use for
H.323 calls to and from the local VCS.
For firewall traversal to work via H.323,
the traversal server must have a
traversal server zone configured on it to
represent this VCS, using this same port
number.
SIP
Mode
Determines whether SIP calls are allowed to and
from the traversal server.
Port
The port on the traversal server to use for SIP
calls to and from the VCS.
Transport
The transport type to use for SIP calls to and
from the traversal server. The default is
TLS
.
For firewall traversal to work via SIP, the
traversal server must have a traversal
server zone configured on it to represent
this VCS, using this same transport type and
port number.
TLS verify mode
Controls X.509 certificate checking and mutual
authentication between this VCS and the
traversal server when communicating over TLS.
See
TLS certificate verification of neighbor
systems
for more information.
Accept proxied registrations
Controls whether proxied SIP registrations
routed through this zone are accepted.
This setting only applies to registration requests
for a domain for which the VCS is acting as a
Registrar. For requests for other domains the
SIP Registration Proxy Mode
setting applies
(see
Proxying registration requests
).
Poison mode
Determines if SIP requests sent to systems
located via this zone are "poisoned" such that if
they are received by this VCS again they will be
rejected.
Client settings
Retry interval
Specifies the interval in seconds with which a
failed attempt to establish a connection to the
traversal server should be retried.
Location
Peer 1 to Peer 6 address
The IP address or FQDN of the traversal server.
If the traversal server is a VCS Expressway
cluster, this should include all of its peers. See
the
Neighboring the local VCS to another VCS
cluster
section for more information.
If the traversal server is a TANDBERG Border
Controller, this should include all its Alternates.