Manual Cisco Systems EDCS-154011

11 pages 0.44 mb
Download

Go to site of 11

Summary
  • Cisco Systems EDCS-154011 - page 1

    Copy right © 200 1 Cis co Sy stems , Inc. Page 1 of 11 Integrating Cisco Secure PIX Firewall and IP/VC Videoconferencing Networks An IP/V C A ppl icat ion No te Jonathan Roberts Network Consultant Engineer Enterprise Voice, Video Business Unit September 24, 2001 EDCS - 154011 ...

  • Cisco Systems EDCS-154011 - page 2

    Copy right © 200 1 Cis co Sy stems , Inc. Page 2 of 11 Table o f conten ts Tab le o f con ten ts ................................................................................................ ............................. 2 Intro duc tion ................................................................................................ ........... ...

  • Cisco Systems EDCS-154011 - page 3

    Copy right © 200 1 Cis co Sy stems , Inc. Page 3 of 11 Introduc tion This paper explains how to set up the Cisco Secure PIX firewall for use in Cisco IP/VC H.323 deployments. The configuration that will be shown below will be a two-interface PIX 515 running version 6.01 and utilizing NAT. The goals of this paper are: 1. Describe the issues with fi ...

  • Cisco Systems EDCS-154011 - page 4

    Copy right © 200 1 Cis co Sy stems , Inc. Page 4 of 11 Issues with Firewalls and H.323 What makes H.323 so cumbersome to run through a firewall is its use of multiple data ports for a single call. For an H.323 call to take place it must first open an H.225 connection on TCP port 1720, using Q.931 signaling. After this has taken place, the H.245 ma ...

  • Cisco Systems EDCS-154011 - page 5

    Copy right © 200 1 Cis co Sy stems , Inc. Page 5 of 11 What is NAT? Network Address Translation (NAT) is designed for IP address simplification and conservation, as it enables private IP internetworks that use nonregistered IP addresses to connect to the Internet. NAT can operate on the PIX or a router, usually connecting two networks together, an ...

  • Cisco Systems EDCS-154011 - page 6

    Copy right © 200 1 Cis co Sy stems , Inc. Page 6 of 11 How to configure the Cisco Secure PIX Firewall to allow H.323 traffic For this configuration we will assume the following, which is depicted in figure 1: • The Firewall is a PIX 515 with two interfaces. • A Gatekeeper with an internal IP address of 10.1.1.10 and an external IP address of 2 ...

  • Cisco Systems EDCS-154011 - page 7

    Copy right © 200 1 Cis co Sy stems , Inc. Page 7 of 11 Tabl e 1: Two Int erfac e PI X w ith N AT Con figu ratio n Con figu ratio n Des cript ion nameif ethern et0 ou tside s ecurity 0 nameif ethern et1 in side se curity1 00 interfa ce ethe rnet0 10base t interfa ce ethe rnet1 10base t PIX Fire wall pro vide s na mei f an d int erfa ce c omm and st ...

  • Cisco Systems EDCS-154011 - page 8

    Copy right © 200 1 Cis co Sy stems , Inc. Page 8 of 11 Breaking down the PIX configuration Fixup protocol Command The first thing that we will look at in the PIX configuration is the H.323 Fixup Protocol. The H.323 fixup on PIX enables users to allow H.323 traffic to pass though the PIX. The two major functions of the fixup are to: 1. NAT the nece ...

  • Cisco Systems EDCS-154011 - page 9

    Copy right © 200 1 Cis co Sy stems , Inc. Page 9 of 11 static [ ( internal_if_name , external_if_name ) ] global_ip local_ip [ netmask network_mask ] [ max_conns [ em_limit ]] [ norandomseq ] In the configuration from Table XX, the static command is implemented in this manner: static (inside,outside) 209.165.201.10 10.1.1.10 netmask 255.255.255.25 ...

  • Cisco Systems EDCS-154011 - page 10

    Copy right © 200 1 Cis co Sy stems , Inc. Page 10 of 11 IP/VC 3510 MCU with the IP address of 209.165.201.30, port 2720 will need to be opened. Use the following guidelines for specifying a source, local, or destination address: -Use a 32-bit quantity in four-part, dotted-decimal format. -Use the keyword any as an abbreviation for an address and m ...

  • Cisco Systems EDCS-154011 - page 11

    Copy right © 200 1 Cis co Sy stems , Inc. Page 11 of 11 deny option in an access-list command statement, PIX Firewall discards the packet and generates the following syslog message: %PIX-4-106019: IP packet from source_addr to destination_addr, protocol protocol received from interface interface_name deny by access-group acl_ID Always use the acce ...

Manufacturer Cisco Systems Category Home Theater Server

Documents that we receive from a manufacturer of a Cisco Systems EDCS-154011 can be divided into several groups. They are, among others:
- Cisco Systems technical drawings
- EDCS-154011 manuals
- Cisco Systems product data sheets
- information booklets
- or energy labels Cisco Systems EDCS-154011
All of them are important, but the most important information from the point of view of use of the device are in the user manual Cisco Systems EDCS-154011.

A group of documents referred to as user manuals is also divided into more specific types, such as: Installation manuals Cisco Systems EDCS-154011, service manual, brief instructions and user manuals Cisco Systems EDCS-154011. Depending on your needs, you should look for the document you need. In our website you can view the most popular manual of the product Cisco Systems EDCS-154011.

A complete manual for the device Cisco Systems EDCS-154011, how should it look like?
A manual, also referred to as a user manual, or simply "instructions" is a technical document designed to assist in the use Cisco Systems EDCS-154011 by users. Manuals are usually written by a technical writer, but in a language understandable to all users of Cisco Systems EDCS-154011.

A complete Cisco Systems manual, should contain several basic components. Some of them are less important, such as: cover / title page or copyright page. However, the remaining part should provide us with information that is important from the point of view of the user.

1. Preface and tips on how to use the manual Cisco Systems EDCS-154011 - At the beginning of each manual we should find clues about how to use the guidelines. It should include information about the location of the Contents of the Cisco Systems EDCS-154011, FAQ or common problems, i.e. places that are most often searched by users in each manual
2. Contents - index of all tips concerning the Cisco Systems EDCS-154011, that we can find in the current document
3. Tips how to use the basic functions of the device Cisco Systems EDCS-154011 - which should help us in our first steps of using Cisco Systems EDCS-154011
4. Troubleshooting - systematic sequence of activities that will help us diagnose and subsequently solve the most important problems with Cisco Systems EDCS-154011
5. FAQ - Frequently Asked Questions
6. Contact detailsInformation about where to look for contact to the manufacturer/service of Cisco Systems EDCS-154011 in a specific country, if it was not possible to solve the problem on our own.

Do you have a question concerning Cisco Systems EDCS-154011?

Use the form below

If you did not solve your problem by using a manual Cisco Systems EDCS-154011, ask a question using the form below. If a user had a similar problem with Cisco Systems EDCS-154011 it is likely that he will want to share the way to solve it.

Copy the text from the picture

Comments (0)