139
D14049.05
February 2009
Grey Headline
(continued)
TANDBERG
VIDEO COMMUNICATIONS SERVER
ADMINISTRATOR GUIDE
Introduction
Getting started
Overview and
status
System
configuration
VCS
configuration
Zones and
neighbors
Call
processing
Bandwidth
control
Firewall
traversal
Appendices
Applications
Maintenance
Configuring the VCS as a traversal server
Overview
The VCS Expressway can act as a firewall
traversal server. This feature means you can:
Allow your VCS to act as a traversal server
•
for other VCSs and TANDBERG Gatekeepers.
You do this by adding a new traversal server
zone on the VCS, and configuring it with
details of the traversal client.
Provide firewall traversal for any traversal-
•
enabled endpoints (i.e. TANDBERG MXP
endpoints and any other endpoints that
support the ITU H.460.18 and H.460.19
standards) registered directly with it. You
can configure the protocols and ports that
will be used.
Enable and configure STUN services.
•
Configure the ports used specifically for
•
firewall traversal services.
The following sections describe how to
configure each of the above options.
To enable your VCS Expressway to act as a
traversal server for a traversal client (e.g. a
TANDBERG VCS Control or Gatekeeper) you
must create a connection between it and the
client system.
You do this by adding a new traversal server
zone on the VCS server and configuring it with
the details of the traversal client.
To add a new traversal server zone:
VCS configuration > Zones
•
.
You will be taken to the
Zones
page.
Select
New
.
You will be taken to the
Create zone
page.
xCommand ZoneAd
•
d
To edit an existing new traversal server zone:
VCS configuration > Zones
•
.
You will be taken to the
Zones
page.
Click on the name of the zone you wish to
configure.
You will be taken to the
Edit zones
page.
xConfiguration Zones Zon
•
e
xConfiguration Zones Zone [1..200]
•
TraversalServe
r
For details on the configuration options
available for traversal server zones, see the
section
Configuring traversal server zone
s
.
Adding and configuring a traversal
server zone
Configuring traversal for endpoints
Overview
Traversal-enabled H.323 endpoints can register
directly with the VCS Expressway and use it for
firewall traversal.
To configure the options for these endpoints:
VCS configuration > Expressway> Locally
•
Registered Endpoints
You will be taken to the
Locally Registered
Endpoints
page.
xConfiguration Zones LocalZone
•
Traversal H323
The options available are:
H.323 Assent mode
Determines whether or not H.323 calls using
Assent mode for firewall traversal will be
allowed.
H.460.18 mode
Determines whether or not H.323 calls using
H.460.18/19 mode for firewall traversal will be
allowed.
H.460.19 demux mode
Determines whether the VCS Expressway will
operate in Demultiplexing mode for calls from
locally registered endpoints.
On
: allows use of the same two ports for all
calls.
Off
: Each call will use a separate pair of ports
for media.
H.323 preference
If an endpoint supports both Assent and
H.460.18 protocols, this setting determines
which the VCS Expressway uses.
UDP probe retry interval
Sets the frequency (in seconds) with which
locally registered endpoints will send a UDP
probe to the VCS Expressway.
UDP probe retry count
Sets the number of times locally registered
endpoints will attempt to send a UDP probe to
the VCS Expressway.
UDP probe keep alive interval
Sets the interval (in seconds) with which locally
registered endpoints will send a UDP probe to
the VCS Expressway once a call is established,
in order to keep the firewall’s NAT bindings
open.
TCP probe retry interval
Sets the frequency (in seconds) with which
locally registered endpoints will send a TCP
probe to the VCS Expressway.
TCP probe retry count
Sets the number of times locally registered
endpoints will attempt to send a TCP probe to
the VCS Expressway.
TCP probe keep alive interval
Sets the interval (in seconds) with which locally
registered endpoints will send a TCP probe to
the VCS Expressway once a call is established,
in order to keep the firewall’s NAT bindings
open.