Jamvee Unified Communications

Similar documents
Microsoft Skype for Business (aka Lync ) Federation

Lync Federation Guide

Quick Start Guide: Software

Unified Communications in RealPresence Access Director System Environments

Lync Federation Guide

Ref LAN & Firewall Guidelines All Rights Reserved 2010 Claranet. Claranet Hosted Voice. LAN and Firewall Guidelines for Internet- Only Customers

Virtual Communications Express. Customer Firewall Requirements

Pexip Reverse Proxy and TURN Server Deployment Guide

Cisco Expressway Options with Cisco Meeting Server and/or Microsoft Infrastructure

Cisco Meeting Server. Cisco Meeting Server Release 2.4. Single Split Server Deployment Guide. January 16, 2019

Configure Proxy WebRTC With CMS over Expressway with Dual Domain

Dialling Access to the PGi Virtual Meeting Room Service (All Methods)

Implementing, Configuring and Managing Cisco Meeting Server (ICMCMS-CT)

Cisco Expressway Session Classification

Cisco Meeting Server. Cisco Meeting Server Release 2.3. Scalability & Resilience Server Deployment Guide. March 20, 2018

Cisco Expressway Web Proxy for Cisco Meeting Server

Federating Cisco Jabber

Pexip Reverse Proxy and TURN Server Deployment Guide

UC Office for Smart Phone - iphone Edition

Cisco Expressway with Jabber Guest

Configuring Cisco TelePresence MSE 8000 Series

Cisco Meeting Server. Cisco Meeting Server Release 2.2. Scalability & Resilience Server Deployment Guide. January 24,

Deploying the BIG-IP LTM with Microsoft Skype for Business

Cisco TelePresence Integration Guide Documentation for integrating Cisco CTS/TX TelePresence Systems with BlueJeans

Core Solutions of Microsoft Skype for Business 2015

Deploy Avi Vantage with Microsoft Lync 2013

The Common Microsoft Communications Silos Offering

Polycom RealPresence Access Director System

Application Note 3Com VCX Connect with SIP Trunking - Configuration Guide

IP Office Platform R11.0

Pexip Reverse Proxy and TURN Server. Deployment Guide

Pexip Infinity v17.2 Release Notes

Polycom RealPresence Access Director System

How to open ports in the DSL router firmware version 2.xx and above

Yealink VCS Network Deployment Solution

EXAM Core Solutions of Microsoft Lync Server Buy Full Product.

Acano solution. Acano Server & VM Release R1.9. Single Split Server Deployment Guide. 06 September E

Breaking News CloudAXIS Suite 1.0

Polycom RealPresence Access Director System

Interdomain Federation Guide for IM and Presence Service on Cisco Unified Communications Manager, Release 11.5(1)SU2

Multiparty Conferencing for Audio, Video and Web Collaboration using Cisco Meeting Server

Deploying BIG-IP LTM with Microsoft Lync Server 2010 and 2013

Designing Workspace of the Future for the Mobile Worker

Cisco WebEx Administration Tool

DHCP Option 66 Auto Provisioning Guide

Cisco TelePresence Conductor with Cisco VCS (Policy Service)

For the current product documentation for LifeSize UVC Transit and LifeSize UVC Platform, refer to lifesize.com/support.

Polycom RealConnect for Office 365

CALLN HOSTED CALL RECORDING CISCO CUCM SETUP GUIDE

Cisco TelePresence Video Communication Server Basic Configuration (Control with Expressway)

Cloud Video Interop for Microsoft Teams Why you must care

SBC Site Survey Questionnaire Forms

Microsoft Lync 2013 Depth Support Engineer

Pexip Infinity v11.1 Release Notes

APP NOTES Onsight Connect Network Requirements

Pexip Infinity v10.2 Release Notes

Cisco Meeting Server. Cisco Meeting Server Release 2.3. Single Combined Server Deployment Guide. July 03, 2018

Overview of this Integration

Polycom RealConnect for Microsoft Teams

Cisco Meeting Server. Cisco Meeting Server Release 2.2. Single Combined Server Deployment Guide. January 25, Cisco Systems, Inc.

Microsoft Exam Core Solutions of Microsoft Skype for Business 2015 Version: 7.0 [ Total Questions: 50 ]

Avaya Session Border Controller Enterprise Implementation and Maintenance Exam

Pexip Infinity. Microsoft Lync / Skype for Business Deployment Guide

Yealink VCS Network Deployment Solution

Quick Start Guide. AudioCodes One Voice for Microsoft Skype for Business. CloudBond 365. Pro / Enterprise Box Edition. Version 7.0

MiCollab Client Engineering Guidelines FEBRUARY 2016 RELEASE 7.1

IT Certification Exams Provider! Weofferfreeupdateserviceforoneyear! h ps://

Pexip Infinity. Microsoft Lync / Skype for Business Deployment Guide

MiCollab Client Engineering Guidelines MARCH 2018 RELEASE 8.0 SP2

Unified Communications Mobile and Remote Access via Cisco Expressway

Course 55070A: Microsoft Lync 2013 Depth Support Engineer

Cisco Meeting Server. Cisco Meeting Server Release 2.0. Single Split Server Deployment Guide. December 15, Cisco Systems, Inc.

Deploy Webex Video Mesh

A. On the VCS, navigate to Configuration, Protocols, H.323, and set Auto Discover to off.

Network Requirements

while the LAN interface is in the DMZ. You can control access to the WAN port using either ACLs on the upstream router, or the built-in netfilter

Infinity Connect Guide for Administrators

OR /2017-E. White Paper KARL STORZ OR1 FUSION IP. Unified Communication and Virtual Meeting Rooms WHITE PAPER

CMR Cloud Product Update

Yealink VCS Network Deployment Solution

UCS Advanced and P3500M. User Guide and Instructions v2.1

Load Balancing Microsoft Skype For Business. Deployment Guide v Copyright Loadbalancer.org, Inc

Port Utilization in Unified CVP

Installing Lync 2013 Edge Server

Cisco TelePresence Conductor with Cisco Unified Communications Manager

Lync 2013 Depth Support Engineer Course. Day(s): 5. Overview

Deploying Voice Workloads for Skype for Business Online and Server 2015

Skype for Business Server 2015

MiCollab Engineering Guidelines

Requirements. System Requirements

Cisco TelePresence Conductor with Cisco Unified Communications Manager

TECHNICAL NOTE HOW TO CONFIGURE ALLOYVOICE SIP TRUNKS ON GRANDSTREAM UCM 6XXX SERIES. 1. Introduction. Author: Adam Wells Date: June 6th, 2018

Cisco Meeting Server. Cisco Meeting Server Release 2.0. Single Combined Server Deployment Guide. February 02, Cisco Systems, Inc.

Pexip Infinity v17.3 Release Notes

Microsoft Selftestengine Exam Questions & Answers

Cloud UC. Program Downloads I WOULD LIKE TO... DOWNLOADING THE CLIENT SOFTWARE

Configure Mobile and Remote Access

Customer Network to Cisco WebEx Cloud IP Ranges for Firewall Settings

CloudBond 365 Standard / Standard+ Box Editions

Cisco Expressway-E and Expressway-C - Basic Configuration

Transcription:

Jamvee Unified Communications Enterprise Firewall/ Proxy Server Guidelines

Jamvee Unified Communications Enterprise Firewall/Proxy Server Guidelines This guide provides information required to provision the corporate Internet firewall and proxy servers to ensure the enterprise network has been properly configured to allow internal endpoints/devices within the enterprise network to access the jamvee Unified Communications Service. Contents: TCP/UDP Port configuration needed for jamvee UC service... 4 Jamvee UC Desktop (PC/Mac), Mobile (ios) and Guest (PC/Mac) app... 4 WebRTC app (Google Chrome browser access)... 5 Video Conferencing (VC) endpoints... 6 Federated Microsoft Skype for Business* connections... 7 Proxy Server Domain Enablement... 8 Proxy server configuration... 8 12

Figure 1: Jamvee Unified Communications: Firewall settings 13

TCP/UDP Port configuration needed for the jamvee UC service In order to properly prepare for providing internal enterprise users with access to the jamvee Unified Communications Service, your organization will need to open the following ports on the corporate network firewall dependent on the access methods and clients you require. Jamvee UC Desktop (PC/Mac), Mobile (ios) and Guest (PC/Mac) app The following ports need to be allowed for OUTGOING & on the corporate firewall: Jamvee Services XMPP Service access to jamvee Edge Server for jamvee UC Apps TURN Service used to locate nearest jamvee Edge Server 5222 TCP - XMPP Client 3478 UDP - STUN Signalling + Tunnelled Media Media 50,000-51,000 Jamvee UC Services Jamvee UC Signalling and Media IP Address Ranges Jamvee Signalling & Media IP Addresses New York: 64.86.68.0/23 Singapore:180.87.138.0/23 London: 195.219.126.0/23 Sydney: 180.87.117.0/24 Figure 1: jamvee UC icon Figure 2: jamvee UC login screen Figure 3: Example of jamvee UC app in operation 14

WebRTC app (Google Chrome browser access) There are two methods available to enable jamvee UC communications using the Google Chrome browser-based WebRTC app in an enterprise environment UDP-based and TCP-based. UDP Access Method: The following ports need to be allowed for OUTGOING & on the corporate firewall: Jamvee Services Web Service access to jamvee Edge Server for jamvee UC Apps 80 TCP - HTTP (non-secure conferences) 443 TCP- HTTPS (secure conferences) 5222 TCP For User sign-in support, not Guest access TURN Service used to locate closest jamvee Edge Server 3478 UDP - STUN Signalling + Tunnelled Media Media 50,000-51,000 The jamvee Signalling and Media IP addresses must be used. Please see Signalling and Media IP address table below. TCP Access Method: The following ports need to be allowed for OUTGOING & on the corporate firewall: Jamvee Services Firewall Ports 80 TCP - HTTP (non-secure conferences) 443 TCP- HTTPS (secure conferences) 5222 TCP For User sign-in support, not Guest access The jamvee Signalling and Media IP addresses must be used. Please see Signalling and Media IP address table below. Signalling and Media IP addresses (required for both methods) Jamvee UC Services Jamvee UC Signalling and Media IP Address Ranges Jamvee Signalling & Media IP Addresses New York: 64.86.68.0/23 Singapore:180.87.138.0/23 London: 195.219.126.0/23 Sydney:180.87.117.0/24 Figure 4: Runs within Chrome browser 15

Video Conferencing (VC) endpoints In order to provide internal enterprise users with access to the jamvee Unified Communications service using the VC endpoints and without a SBC, the following ports need to be opened on the corporate network firewall 1. Note: The below does not apply for Non VC endpoints (ie Jamvee UC Desktop, Mobile, Guest APP Clients, WebRTC app Clients Google Chrome Browser, MS Lync) Jamvee UC Services VC H.323 Gateway Service using H.323 endpoints to access the service Signalling Ports UDP 1719 H323ls TCP 1720 H323cs TCP 15,000 to 19,999 (H.225/Q.931/H.245) Media Ports UDP 1024 65,535 RTP/RTCP (SIP or SIP & H323) UDP 50,000 52,399 RTP (H323 Only) VC/TP SIP Gateway Service using SIP endpoints to access the service Signalling Ports TCP 5060 (SIP) UDP 5060 (SIP) TCP 5061 (SIP/TLS) Media Ports UDP 1024-65535 RTP/RTCP (SIP or SIP & H323) Jamvee Signalling & Media IP Addresses New York: 64.86.68.0/23 Mumbai: 115.114.63.0/24 Singapore:180.87.138.0/23 London: 195.219.126.0/23 Sydney: 180.87.117.0/24 Some examples of supported VC endpoints Latest compatibility list available at: https://enterprise.jamvee.com/partners/enterprise.jamvee.com/resources/jamveeuc_compatibility_list.pdf 1 Please note in most cases these ports would already be open if your organization already provides outbound Internet dialing for the VC estate. 16

Federated Microsoft Skype for Business* connections The jamvee Unified Communications service leverages and requires standard Microsoft Skype for Business(SfB)/Lync federation with an external enterprise Skype for Business/Lync Edge Server. Once you have provisioned and integrated the SfB/Lync Edge Server with the internal Lync deployment, all the necessary firewall/proxy server setting are part of that architecture. Provisioning and setting the federation architecture within the enterprise perimeter network (DMZ) is the responsibility of the customer. There is nothing additional that is required for federated Lync access to jamvee, other than provisioning the SfB/Lync Edge Server to federate with the jamvee Unified Communications service (if required). Please note that a separate document is available that covers Microsoft SfB/Lync federation to the jamvee Unified Communications platform. Jamvee Signalling & Media IP Addresses New York: 64.86.68.0/23 Singapore:180.87.138.0/23 London: 195.219.126.0/23 Sydney: 180.87.117.0/24 Signalling Ports TCP 5061 TCP 443 UDP 3478 Media Ports** RTP (TCP & UDP) 50,000-59,999 ** Required range by Microsoft for Lync Federated traffic For more details on Microsoft Lync federation please read the separate guide available: https://enterprise.jamvee.com/partners/enterprise.jamvee.com/resources/jamveeuc_lync_federation.pdf 17

Proxy Server Domain Enablement If the enterprise is using a proxy server to block internet access for internal users, in addition to opening the required firewall ports in the IP ports tables, the following DNS Domains must be enabled in the proxy server: Jamvee Access Gateways Domain DNS Domains list of DNS domains/subdomain used to access the jamvee Unified Communications Service jamvee.com standard jamvee domain for access with a specified Call-ID (i.e. with a URI or URL) join.jamvee.com access with prompted Call-ID lyncfed.jamvee.com access edge service (FQDN) for Lync federation (only for Lync federation provisioning) Proxy server configuration The PC, ios and Mac Clients use standard XMPP for the connection, while the associated media utilises a TURN server. Therefore, if the proxy server supports XMPP, your IT department will need to determine what settings need to be configured on the proxy server to support this arrangement. 18