Cisco Systems and the ASA Services Module Manual De Usuario

Descargar
Página de 712
 
20-6
Cisco ASA Series Firewall CLI Configuration Guide
 
Chapter 20      Configuring Cisco Intercompany Media Engine Proxy
  Information About Cisco Intercompany Media Engine Proxy
Figure 20-2
Cisco Intercompany Media Engine Architecture in a Basic Deployment
Basic Deployment
In a basic deployment, the Cisco Intercompany Media Engine Proxy sits in-line with the Internet firewall 
such that all Internet traffic traverses the adaptive security appliance. In this deployment, a single Cisco 
UCM or a Cisco UCM cluster is centrally deployed within the enterprise, along with a Cisco 
Intercompany Media Engine server (and perhaps a backup). 
As shown in 
, the adaptive security appliance sits on the edge of the enterprise and inspects 
SIP signaling by creating dynamic SIP trunks between enterprises.
Figure 20-3
Basic Deployment Scenario
SRTP
Peer-to-peer
Validation
Outside Enterprise
Inside Enterprise
UC-IME 
Bootstrap Server 
RTP/SRTP
UC-IME Server
P
e
rm
iter Secur
ity
SIP/SCCP
ASA Enabled with
UC-IME Proxy 
DMZ
248760
 Cisco UCM Cluster
M
M
M
M
M
UC-IME
Access Protocol
SIP/TLS
TCP/TLS
IP
IP
IP
Enterprise A
Cisco UCM
M
ASA Enabled 
with UC-IME Proxy 
Internet
SIP Trunk
Enterprise B
IP
IP
Cisco UCM
M
ASA Enabled 
with UC-IME Proxy 
248762
UC-IME 
Bootstrap Server 
UC-IME 
Server
PSTN Gateway
PSTN Gateway
PSTN
IP
IP
UC-IME 
Server
V
V