18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 9: Configuring Proxies<br />

Notes on selected proxy configurations<br />

264<br />

About the H.323 proxy<br />

H.323 is an International Telecommunications Union (ITU) standard that<br />

provides support for audio and video conferencing across a shared medium<br />

such as the Internet. The H.323 proxy provides for safe transfer <strong>of</strong> packets<br />

between burbs, standard functions such as filtering on source and destination<br />

hosts and burbs, and NAT and redirection. The H.323 proxy is a protocolaware,<br />

application layer proxy that examines H.323 packets for correctness<br />

and adherence to site security policy. In addition to the standard filtering<br />

mentioned above, the H.323 proxy provides a mechanism for allowing or<br />

disallowing certain codecs (audio or video encoding schemes) within the H.323<br />

protocol. (See the H.323 permissions discussion in “Creating proxy rules” on<br />

page 222.)<br />

Micros<strong>of</strong>t NetMeeting is a popular implementation <strong>of</strong> the H.323 protocol. The<br />

H.323 proxy enables you to use the audio and video features <strong>of</strong> data<br />

conferencing products, such as NetMeeting.<br />

Note: The standard data conferencing features, as well as the chat and<br />

application sharing features <strong>of</strong> NetMeeting are not supported by the H.323 proxy.<br />

To provide support for these features, you must also enable the T.120 proxy. You<br />

must also add the pre-configured NetMeeting proxy rule to the active proxy rule<br />

group. This will ensure that both proxies remain in synchronization with one<br />

another. See “Synchronizing the T.120 and H.323 proxies for use with NetMeeting”<br />

on page 265 for more information.<br />

The H.323 proxy can function between two endpoints (a single client<br />

implementation such as NetMeeting), or between one or more endpoints and a<br />

Multi-point Control Unit (MCU). The MCU enables two or more endpoints to<br />

simultaneously participate in a call. Each endpoint sends its audio and video<br />

signals through the <strong>Sidewinder</strong> <strong>G2</strong> to the MCU. The MCU then combines the<br />

audio signals and selects one or more video signals to return to each endpoint.<br />

Note: The H.323 proxy does not recognize any configuration difference between<br />

an endpoint and an MCU.<br />

At this time, the H.323 proxy will not communicate with an H.323 gatekeeper. A<br />

gatekeeper is an entity, not unlike a <strong>Sidewinder</strong> <strong>G2</strong>, which sits between the<br />

source and destination endpoints, and typically provides services such as<br />

authentication, authorization, alias resolution, billing, and call routing. If there is<br />

a gatekeeper between the <strong>Sidewinder</strong> <strong>G2</strong> and the source or destination<br />

endpoint, and the endpoint is configured to use the gatekeeper, the conference<br />

will not be possible.<br />

The H.323 proxy must examine the contents <strong>of</strong> the protocol packets for<br />

encoded addresses and port numbers. Therefore, any sort <strong>of</strong> encryption <strong>of</strong><br />

H.323 sessions is not possible in conjunction with the proxy. When<br />

implementing the H.323 protocol, you must disable NetMeeting's security<br />

features, or the security features <strong>of</strong> any other endpoint or MCU you may be<br />

using. Additionally, you must not route H.323 traffic through a VPN.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!