Enabling Trusted Unified Communications Steven J. Johnson President, Ingate Systems Inc.
Welcome Ingate s SIP Trunking Workshop 2
Ingate Systems Founded in 2001 SIP aware firewall HW & SW technology Headquarters in Stockholm, Sweden Ingate Systems Inc. subsidiary in Hollis, NH and Ottawa, Canada Focused development of SIP enabling security technology World leading Enterprise Session Border Controller the Ingate SIParator Driving SIP Trunking education 3
Global Customer Base Over 5,000 units installed Products covering 5-10,000 seats SIParator 19 SIParator 50, 55 & 65 SIParator 95 Ingate Products are the choice of a broad range of customers 4
What is SIP Trunking? SIP trunking is the IP connection between an IP-PBX and a service provider IP Network Service Provider PSTN IP-PBX PSTN gateway Firewall Ingate SIParator 5
SIP Trunking is Hot SIP Trunking is currently the fastestgrowing segment of VoIP services. It s expected to have an 89 percent CAGR from 2008 to 2013. Infonetics Research 6
SIP Trunking is only the Beginning To date, SIP trunking has been largely focused on recreating current TDM voice services ( trunks ) over IP. While useful, that s only one possible use. We see the true market potential of SIP trunking in its ability to act as a hosted services conduit and to carry media other than standard PSTN quality voice capabilities impossible with TDM. - Broadsoft 7
NAT/Firewall Traversal Problem when SIP Trunking over the Internet Public Internet SIP Trunking Provider SIP System GW PSTN SIP Trunking does not pass a SIP unaware NAT/firewall! IP-PBX Firewall and the firewall cannot be opened enough to make it work because of NAT. 8
With a SIP Trunk over the Internet, it is not really an option to just connect it to a VoIP LAN. Public Internet SIP Trunking Provider SIP System GW PSTN IP-PBX Firewall SIP Trunk Over the Internet Severe Security Warning! No one wants the whole Voice LAN exposed to the Internet. Any extra firewall here needs to be SIP aware or widely open. Who will issue a public white IP Sept. addresses 2009 to every Phone? Data LAN VoIP LAN No Soft or Multimedia Clients!?? UC? 9
Ingate Firewall Creating a Common Data and VoIP LAN for SIP-Trunking over the Internet Public Internet SIP Trunking Provider SIP System GW PSTN Service Provider Remote Users SIP Trunk over Internet IP PBX Firewall Ingate Firewall Demarcation point and bringing SIP communication to the LAN Data LAN Data & VoIP LAN with QoS Soft Clients and Multimedia Terminals 10
Ingate SIParator Used with Existing Firewall for SIP Trunking Service over Internet Public Internet SIP Trunking Provider SIP System GW PSTN Service Provider IP-PBX Remote Users Firewall SIP Trunk over Internet Data LAN Data & VoIP LAN Ingate SIParator Demarcation point and bringing SIP communication to the LAN Soft Clients and Multimedia Terminals 11
Managed SIP Trunk Connected to Separate Enterprise VoIP LAN in Operator s Space Public Internet SIP Trunking Provider Network GW PSTN SIP System No Remote Users! Managed SIP Trunk Provider: Security Warning! IP-PBX Will Service Provider issue IP Sept. addresses 2009 to every Phone? Firewall Data LAN VoIP LAN Enterprise: Security Warning! No Soft or Multimedia Clients!?? UC? 12
Ingate Firewall Creating a Common Data and VoIP LAN for Managed SIP Trunking Service Public Internet SIP Trunking Provider Network GW PSTN SIP System Service Provider Remote Users IP-PBX Managed SIP Trunk Data & VoIP LAN Ingate Firewall Demarcation point and SIP communication via both WAN pipes. Soft Clients and Multimedia Terminals 13
Ingate SIParator Used with Existing Firewall for Managed SIP Trunking Service Public Internet SIP Trunking Provider Network GW PSTN SIP System Service Provider Remote Users IP-PBX Firewall Managed SIP Trunk Data & VoIP LAN Ingate SIParator Demarcation point and SIP communication via both WAN pipes. Soft Clients and Multimedia Terminals 14
The SIP Trunking Challenge "Interoperability is a challenge facing SIP trunking. There are organizations such as the SIP Forum looking to solve such problems, but at the end of the day, realized end-to-end solutions for customers with multiple vendor and service provider solutions will continue to be an obstacle," (Rebecca Swensen, Research Analyst, IDC) Solution: Ingate 15
Confirmed Interoperability Service providers 360 Networks AGN Networks AT&T BandTel Bandwidth.com Broadvox Cbeyond Cellip Cordia Corporation Deltacom Excel Switching Gamma Global Crossing IP-Only Level 3 Carrier Equipment Acme Packet Broadsoft Sept. NexTone 2009 Sonus Netlogic NetSolutions Nexvortex Nuvox One Comm. Paetec Primus TDC Tele2 Toplink Verizon VoEX VoIP Unlimited Voxbone More in pipeline... Ingate SIParator -or- Ingate Firewall SIP Trunk Compliant with See: www.siptrunk.org IP-PBXs 3Com Aastra Digium / Asterisk Avaya Cisco Call Manager Ericsson MX-One Fonality Innovaphone Interactive Intelligence Iwatsu Microsoft Mitel NEC / Sphere Nortel Objectworld Pingtel SER Shoretel Siemens SIP-Gear Swyx More in pipeline... 16
SIP Trunking and Beyond Ingate contributes with 10 years of experience and SIP product development Products based on ICSA Lab Certified firewall Built for integrated VoIP and IP LAN traffic including: NAT/Firewall traversal Interoperability between PBX and Service Providers Quality of Service (QoS) Security Demarcation point of Service Connecting remote users to the PBX Unified Communications ready 17
Enabling Technologies for Secure SIP Communications Ingate Systems Steven J. Johnson 603-883-6569 steve@ingate.com www.ingate.com 18