Opengear Technical Note

Similar documents
Opengear Application Note

Xceedium Xio Framework: Securing Remote Out-of-band Access

Truffle Broadband Bonding Network Appliance

Alcatel-Lucent OmniVista Cirrus Simple, secure cloud-based network management as a service

DS Series Solutions Integrated Solutions for Secure, Centralized Data Center Management

REMOTE IT MANAGEMENT SOLUTIONS: MANAGE REMOTE OFFICES WITHOUT LEAVING YOURS

Echidna Concepts Guide

Network Performance, Security and Reliability Assessment

Application Notes for Installing and Configuring Avaya Control Manager Enterprise Edition in a High Availability mode.

Cloud Services. Introduction

ForeScout CounterACT Resiliency Solutions

Connectivity 101 for Remote Monitoring Systems

DEPENDABLE CONNECTION. UNPARALLELED SERVICE. DIGI NETWORK FAILOVER SOLUTIONS

Barracuda Link Balancer

Neeco Global Mobile Solutions Suite M2M OOB. Neeco. Global Out Of Band Device Access. over 2G/3G/4G mobile M2M networks.

ExtremeWireless WiNG NX 9500

Xrio UBM Quick Start Guide

EVERYTHING YOU NEED TO KNOW ABOUT NETWORK FAILOVER

Accessing CharityMaster data from another location

Copyright 2011 Nomadix, Inc. All Rights Reserved Agoura Road Suite 102 Agoura Hills CA USA White Paper

6421A: Configuring and Troubleshooting a Windows Server 2008 Network Infrastructure

Cisco SP Wi-Fi Solution Support, Optimize, Assurance, and Operate Services

Cisco Prime Home 5.1 Technical

MANAGED WAN SERVICE GENERAL Service Definition Standard Service Features. Monitor and Notify Service Level Monitoring Notification

Cato Cloud. Software-defined and cloud-based secure enterprise network. Solution Brief

Alcatel-Lucent OmniVista Cirrus Simple, secure cloud-based network management as a service

When Seconds Count: Ensuring Business Continuity with 4G Failover

NX 9500 INTEGRATED SERVICES PLATFORM SERIES FOR THE PRIVATE CLOUD

Cisco Wide Area Application Services: Secure, Scalable, and Simple Central Management

Secure Industrial Automation Remote Access Connectivity. Using ewon and Talk2M Pro solutions

Exam Questions N10-006

The EXTender/PBXgateway Product Suite Simplified Voice Networking for Distributed Enterprises

Three ways to reduce operating costs of power generators with remote management

SAS SOLUTIONS ONDEMAND

Introducing Avaya SDN Fx with FatPipe Networks Next Generation SD-WAN

Securing Access to Network Devices

CommandCenter Secure Gateway

Step 3 - How to Configure Basic System Settings

Q: Do the Cooper InVision IFM/ICM, Wireless Mesh Router and Gateway radio signals leave the plant? And what information do the signals contain?

Atmosphere Fax Network Architecture Whitepaper

Information Security Policy

DISASTER RECOVERY- AS-A-SERVICE FOR VMWARE CLOUD PROVIDER PARTNERS WHITE PAPER - OCTOBER 2017

Hosted vs on-site IP-PBX A Guide for SMEs

R5: Configuring Windows Server 2008 R2 Network Infrastructure

Gigabit SSL VPN Security Router

Cisco ISR G2 Management Overview

HiveManager Local Cloud

Edge for All Business

NEWNET COMMUNICATION TECHNOLOGIES PRODUCT BRIEF

Virtual Server Service

The New Paradigm of Unified Data Center Management

Securely manage data center and network equipment from anywhere in the world.

INNOVATIVE SD-WAN TECHNOLOGY

Delivering the Wireless Software-Defined Branch

Meraki Z-Series Cloud Managed Teleworker Gateway

Server Remote Control External KVM over IP

Network Management Functions - Fault. Network Management

SOLUTION BRIEF EXTREMEWIRELESS WiNG AZARA AZARA. WiNG RISE TO THE CHALLENGE OF PROVIDING SUPERIOR CONNECTIVITY & WLAN MANAGEMENT

10 BEST PRACTICES TO STREAMLINE NETWORK MONITORING. By: Vinod Mohan

Reaping the Benefits of Managed Services

WHITE PAPER: IRONSHIELD BEST PRACTICES MANAGEMENT VLANS

How does your organization manage Privileged Users?

DATA SHEET HIGHTLIGHTS Deploying a Single System to Manage All Devices and Services Implementing Service Assurance

WHITE PAPER. Header Title. Side Bar Copy. Header Title 5 Reasons to Consider Disaster Recovery as a Service for IBM i WHITEPAPER

Page 2 Skype Connect Requirements Guide

Cisco Network Admission Control (NAC) Solution

Optimizing Pulse Secure Access Suite with Pulse Secure Virtual Application Delivery Controller solution

VeloCloud Cloud-Delivered WAN Fast. Simple. Secure. KUHN CONSULTING GmbH

A+ Guide to Hardware: Managing, Maintaining, and Troubleshooting, 5e. Chapter 10 Networking Essentials

SOLUTION OVERVIEW THE ARUBA MOBILE FIRST ARCHITECTURE

90 % of WAN decision makers cite their

Cisco 5921 Embedded Services Router

Cisco Data Center Network Manager 5.1

CounterACT 7.0. Quick Installation Guide for a Single Virtual CounterACT Appliance

The StrideLinx Remote Access Solution comprises the StrideLinx router, web-based platform, and VPN client.

MyCloud Computing Business computing in the cloud, ready to go in minutes

Cato Cloud. Solution Brief. Software-defined and Cloud-based Secure Enterprise Network NETWORK + SECURITY IS SIMPLE AGAIN

3050 Integrated Communications Platform

ForeScout CounterACT. Single CounterACT Appliance. Quick Installation Guide. Version 8.0

31M. Emergency Routing Service 24/7/365. Emergency Routing Service (ERS) provides organizations with E9-1-1

NetPro. from Wireless Logic. Available on a per SIM license basis. No CAPEX. Retain your Airtime Contracts with your existing providers

Portable Wireless Mesh Networks: Competitive Differentiation

Forescout. Quick Installation Guide. Single Appliance. Version 8.1

SD-WAN Deployment Guide (CVD)

10 QUESTIONS TO ASK BEFORE YOU SELECT A SIP TRUNKING PROVIDER

Added SerialNumber object to ECESSA-MIB Description Device serial number is readable via ECESSA-MIB::SerialNumber.0.

Managing Performance in Liferay DXP: An Overview of Liferay Connected Services

IFB No C032 Cloud Based VOIP System. December 28, 2016

Unifying the Distributed Enterprise with MPLS Mesh

Designing Windows Server 2008 Network and Applications Infrastructure

Voysis Cloud Implementation

Agile Controller-Campus V100R002C10. Permission Control Technical White Paper. Issue 01. Date HUAWEI TECHNOLOGIES CO., LTD.

WHG711 Wireless LAN Controller

VMware vsphere with ESX 4.1 and vcenter 4.1

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure

FAQ Guide. i-mo 310 & 540 Series Bonding Routers. FAQ Guide. for the i-mo 310 & 540 Series Appliances

Cloud Leased Line (CLL) for Enterprise to Branch Office Communications

Deploying Windows Server 2003 Internet Authentication Service (IAS) with Virtual Local Area Networks (VLANs)

Delivered the Way Yo u Want

X.25 Substitution. Maintaining X.25 services over a fully supported NGN/IP infrastructure. The Challenge. How it Works. Solution

Transcription:

) 0 FO U N D Y FastIron Workgroup X N E T WO R K S C o n s o le L in k 0 P o w e r F F F F 0 0 0 0 0 0 S Y T R P S S T A T D U P L X S P E E D M O D E 0 0 -Port Standard KVM Switch Model B00-00 0 0 C at al yst 0SERIES 0 / 0 0 / 0 0 0 T X U ID PowerEdge 0 H P P ro Lia n t D L G 0 p 0 0 - Solutions for Avaya Installations Opengear Technical Note Jared Mallett - Product Marketing Manager Opengear solutions deliver cost-effective universal access to Avaya equipment and converged devices installed at customer premise locations. Together, with AlarmTraq monitoring software These unique capabilities have helped Avaya partners greatly improve both the quality and availability of service they provide their customers while reducing overhead costs and eliminating monthly subscription services. Wireless Out-Of-Band Wired In-Band Branch Office Remote Sites Centralized Management and Monitoring Centralized Datacenter Legacy Avaya Devices Power Distribution Router Firewall PBX UPS Servers Environmental Monitoring

Overview Avaya is a global leader in enterprise communications systems. The company provides Unified Communications, Contact Centers, Data solutions and related services directly and through its Channel partners to leading businesses and organizations around the world. Through partnerships, Avaya has teamed up with other leading providers of core switching equipment including Force0 Networks. These convergence of technologies fuse Avaya s market-leading VoIP technology with Force0 high performance switches/routers. Current Challenges Customers and Partners of Avaya have been met with challenge to monitor and manage both Avaya equipment and converged devices installed remotely at premise locations. Converged devices are typically core switches and routers to provide the fabric for network connectivity. Many Avaya installations also rely on UPS systems for battery backup during power outages. If any of these components fail the disruption to productivity can be costly. The current Avaya solution to this problem is the SAL Secure Access Link, a hardware and software solution to manage Avaya devices remotely. This is a viable solution, however it does not scale to include connectivity to converged devices, UPS systems or out-of-band access. The Avaya solution requires customers to use corporate internet connections to communicate to the SAL Concentrator. Out-of-band access to distributed IT equipment has been crucial for enterprise customers to eliminate the need for onsite remote IT staff or service calls to handle outages. Not only does this save travel costs, but out-of-band access also reduces recovery time in the event of unplanned outages to ensure remote site productivity. For partners servicing enterprise customers, there is no substitute for secure out-of-band access. The Avaya SAL architecture will require customers to deploy and manage a server for remote access and expensive monthly subscription services to Avaya. This is both costly and limited in function. Avaya Partners require a reliable remote management solution that would: Minimize on-site service calls in response to service disruptions Provide a secure, flexible out-of-band solution to ensure uptime Management and control to all distributed Avaya and converged devices from one centralized location. Cost effective and scalable alternative to Avaya SAL Page

The Opengear Solution Working closely with Opengear, Avaya partners discovered they could optimize their service offering by deploying a next generation communication management solution that went beyond the offerings of the Avaya SAL solution. The Opengear solution allowed partners to scale service offerings to converged devices, battery backup units and secure out-of-band connectivity. The Opengear solution also includes SNMP monitoring and auto-remediation of Avaya systems similar to SAL. Having this type of solution in place would help both the IT staff and Avaya partner provide more proactive technical support, reduced on-site visits and enhance management of the communication infrastructure supporting the customer network while simultaneously reducing operational costs. Components Opengear - Advanced console servers for remote site management Opengear console servers monitor distributed IT infrastructure devices including core switching, routers, access points, firewalls, load balancers, servers, and provide a unique ability to automate power reboots and manage UPS systems. We provide IT experts secure access to all devices to perform in-depth diagnostics and troubleshooting within seconds of an incident, and before it affects productivity at the remote site. Opengear VCMS - Advanced console servers for remote site management Manage isolated devices that are located behind firewalls, remote console servers initiate outgoing secure SSH tunnels connections to the VCMS. This Call Home feature enables remote control of Avaya equipment and converged devices. Opengear VCMS provides a single pane of glass to access, authorization and factor RSA SecurID authentication to downstream console servers. Avaya partners and admin users simply point a browser to the VCMS and with a point-n-click they are securely connected to the downstream console server - or managed device - for maintenance, reconfiguration or power cycling. AlarmTraq - Expert remote alarm monitoring without monthly payments AlarmTraq is the leader in Proactive Remote Alarm Monitoring and Management for AVAYA Communications Systems. We go beyond alarm monitoring, we take corrective action. AlarmTraq will not only notify you of alarms it will attempt to remotely diagnose and resolve the problem, even before it becomes service affecting. These components deliver a flexible alternative to Avaya SAL Core Concentrator and SAL Gateways while expanding service offerings to converged devices and enabling out-of-band access for disaster recovery. Page

Physical Connectivity There are various ways to connect Avaya devices and converged equipment including RS serial, USB, and LAN interfaces. Opengear console servers connect to Avaya equipment using the Maintenance Services Port (LAN) and to legacy Avaya equipment using RS serial connections. Enhanced routing and firewall features included with the console server are used to tunnel access to the Maintenance Services Port on the allowed subnet provided by Avaya. Converged equipment such as Force0 switches utilize RS serial console interfaces for remote maintenance and UPS systems using SNMP, RS or USB interfaces. Opengear devices can also be ordered with digital I/O interfaces for connecting close contact sensors and triggering warning systems such as a warning strobe light. Device Connectivity RS TCP/IP USB Digital I/O Upstream Network SNMP Alerts SNMP Traps VPN IP Sec SSH / HTTPS Avaya Maintenance Services Port Converged Equipment: Force0 Switches Legacy Avaya Equipment UPS Systems Battery Backup Figure. Page

0 FO U N D R Y N E T WO R K S L in k 0 P o w e r F F F F 0 0 S Y S T R P S S T A T D U P L X S P E E D M O D E FastIron Workgroup X C o n s o le 0 0 0 0 0 0 -Port Standard KVM Switch Model B00-00 0 0 C at al yst 0SERIES 0 / 0 0 / 0 0 0 T X U ID PowerEdge 0 H P P ro Lia n t D L G0 p 0 0 - Solutions for Avaya Installations Out-Of-Band Connectivity Traditionally, out-of-band access to remote sites during unplanned network outages has been accomplished using analog modem connections. This solution is secure, robust and still widely deployed throughout the world. As technology changes, the overhead for maintaining analog modem banks at a central location has become an issue for IT management. In addition, most modern laptops lack internal modems to allow for IT staff on the road or working from home to connect easily to remote sites. Opengear has met this challenge with embedded cellular modules that provide high speed data services without wires. The Opengear solution offers over 00 different products configured with a variety of interfaces to meet any demand. Opengear offers units with internal V. modems, redundant LAN, VLAN switch, Wifi and G Cellular interfaces. These out-of-band interfaces can be configured as alternate connections during a primary network outage, or the primary source of management from Avaya partners. This solution isolates rd party management devices from customer broadband connections when security policy requires physical separation. ) Remote Site Centralized Datacenter WWW Primary Wired In-Band Connection Wireless Cellular Out-Of-Band Connection Broadband Out-Of-Band Connection Dial-Up Modem Out-Of-Band Connection Remote IT Staff Figure. Automatic Failover The Opengear devices can automatically establish a cellular out-of-band connection, trigger a dial-out modem call or failover to redundant path. The mechanism to trigger a failover connection is activated when both the primary and secondary probe addresses fail to respond. The Opengear devices will automatically connect out bound in a failover scenario and automatically fail back to the primary link once service has been restored. Page

) 0 FO U N D R Y FastIron Workgroup X N E T WO R K S C o n s o le L in k 0 P o w e r F F F F 0 0 0 0 0 0 0 0 S Y T R P S S T A T D U P L X S P E E D M O D E -Port Standard KVM Switch Model B00-00 0 0 C at al yst 0 SERIES 0 / 0 0 / 0 0 0 T X U ID PowerEdge 0 H P P ro Lia n t D L G 0 p 0 0 - Solutions for Avaya Installations Secure Centralized Remote Management Secure two factor authentication through integration with RSA SecurID is a good example of Opengear's support for the industry s most stringent security, encryption and AAA (Authentication, Authorization and Accounting) requirements. To ensure that security and management policies are enforced even during a network outage, Opengear's console server solution: Eliminates common cellular and landline modem security issues with "dial-out" and "call back" connectivity. So if the main network goes down the console server initiates an outgoing call to restore connectivity out-of-band Enables audit and compliance reporting by logging all accesses and changes to the console server and managed devices Supports IPsec, openvpn, SSH and SSL encryption in all devices Maintains and enforces AAA regardless of the state of the network. Under normal circumstances remote TACACS+ or Radius authentication prevails. However if connectivity is lost, the console server falls back to local authentication to maintain authorized access. Provides additional security precautions such as restricting access to specific IP addresses, using encrypted "shadow passwords", providing multiple subscriber accounts and passwords Wireless Out-Of-Band Wired In-Band Customer NOC Existing NMS Opengear VCMS AlarmTraq Software Centralized Monitoring, Authentication and Authorization SNMP Traps & Alarms VPN, SSH, HTTPS Internet Branch Office Remote Sites Remote Administrators and Avaya Partners Power Distribution Legacy Avaya Devices Router Firewall PBX UPS Servers Environmental Monitoring Page

AlarmTraq and Opengear AlarmTraq and Opengear have partnered to develop a cost-effective alternative to Avaya SAL Concentrator and Gateway solutions. The new integrated AlarmTraq solution uses the Opengear CM00 and the Opengear ACM00-M. With this integration, support organizations can securely manage and monitor Avaya Communications Manager servers from a remote location over a dial-up secure SSH tunnel for administration and maintenance. AlarmTraq goes beyond alarm monitoring, it takes corrective action. AlarmTraq will not only notify you of alarms it will attempt to remotely diagnose and resolve the problem, even before it becomes service affecting. AlarmTraq is sold as a stand-alone server application that runs on your server, so there are no monthly recurring fees for the service. Why Choose AlarmTraq? An organization that purchased AlarmTraq back in late 0 was looking to save money by providing their own remote alarm monitoring for about 00 locations with Avaya Definity systems, with an average size of about 00 ports (lines and trunks) per location. To support these 00 locations this organization was paying about $,00.00/month or $0,000.00/year for remote alarm monitoring from Avaya. This is based on the typical.0 cents per-port/per month remote-only plan. They installed a -port AlarmTraq server and modems at a cost of about $,000.00 one-time, then took advantage of a support plan for AlarmTraq every year since then at an additional cost of $,00.00/year. The return on investment was measured in hours instead of months or years. This organization saved over $0,000.00 the past years because of their decision to go with AlarmTraq. Who is this organization? The United States Navy. Conclusion Together, Opengear and AlarmTraq provide a cost-effective alternative to Avaya SAL solutions while simultaneously extending monitoring and management features to converged equipment located in Avaya installs. By leveraging out-of-band capabilities, Avaya partners and customers are always able to manage remote sites even when the main broadband link is down or degraded. These unique capabilities have helped Avaya partners greatly improve both the quality and availability of service they provide their customers while reducing costs. Page