Amer-networks E5Web GUI Bedienungsanleitung Seite 433

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 777
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 432
2. Now enter:
Name: H323In
Action: Allow
Service: H323-Gatekeeper
Source Interface: any
Destination Interface: core
Source Network: 0.0.0.0/0 (all-nets)
Destination Network: wan_ip (external IP of the security gateway)
Comment: Allow incoming communication with the Gatekeeper
3. Click OK
1. Go to: Policies > Add > IPRule
2. Now enter:
Name: H323In
Action: Allow
Service: H323-Gatekeeper
Source Interface: lan
Destination Interface: dmz
Source Network: lan_net
Destination Network: ip-gatekeeper (IP address of the gatekeeper)
Comment: Allow incoming communication with the Gatekeeper
3. Click OK
Note: Outgoing calls do not need a specific rule
There is no need to specify a specific rule for outgoing calls. cOS Core monitors the
communication between "external" phones and the Gatekeeper to make sure that it is
possible for internal phones to call the external phones that are registered with the
gatekeeper.
Example 6.10. H.323 with Gatekeeper and two Clavister Security Gateways
This scenario is quite similar to scenario 3, with the difference that the Clavister Security Gateway
is protecting the "external" phones. The Clavister Security Gateway with the Gatekeeper
connected to the DMZ should be configured exactly as in scenario 3. The other Clavister Security
Gateway should be configured as below. The rules need to be added to the rule listings, and it
Chapter 6: Security Mechanisms
433
Seitenansicht 432
1 2 ... 428 429 430 431 432 433 434 435 436 437 438 ... 776 777

Kommentare zu diesen Handbüchern

Keine Kommentare