13.07.2015 Views

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Typical installations●4. Allowed ICMP from anyone to local tunnel endpoint -> Permit5. Default -> DenyEgress:1. IKE (UDP/500) from local tunnel endpoint to remote tunnel endpoint -> Permit2. Local GRE tunnel endpoint to remote GRE tunnel endpoint -> Permit3. All allowed services from any local subnet to anyone -> Permit4. Allowed ICMP from local tunnel endpoint to anyone -> Permit5. Default -> DenyPolicy Based Routing (PBR) is configured as follows, on VoIP VLAN and loopbackinterfaces:●●Destination IP = local subnets -> Route: DBRDSCP = bearer -> Route: WAN● DSCP = control -> Route: 1. WAN 2. DBR2. Configure <strong>the</strong> VPN Hub (Main Office) as follows:● The VPN policy portion for <strong>the</strong> branch is configured as a mirror image <strong>of</strong> <strong>the</strong> branch.● The ACL portion for <strong>the</strong> branch is a mirror image <strong>of</strong> <strong>the</strong> branch, with some minormodifications.●●●Static routing is configured as follows:Branch subnets -> Internet interface.Policy Based Routing (PBR) portion for <strong>the</strong> branch is configured as follows, on mostinterfaces:● Destination IP = branch VoIP subnet(s) or GW address (PMI), DSCP = bearer ->Route: WAN● Destination IP = branch VoIP subnet(s) or GW address (PMI), DSCP = control ->Route: 1. WAN 2. DBRACM is configured to route voice calls through PSTN when <strong>the</strong> main VoIP trunk is down.Issue 3 January 2005 247

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!