BSGX4eBusiness GatewayUser GuideRelease 01.01
10 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Line Impedance Settings...243Electr
100 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 The possible Flow Ctrl values are:None No flow control by either the BSGX4e or its p
BSGX4e Business Gateway User Guide 101 Release 01.01 NN47928-102LAN Switch ConfigurationDetailed Port StatisticsTo show the detailed statistics that a
102 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01LAN Interface (eth1)This section describes how to configure the IP interface to the LA
BSGX4e Business Gateway User Guide 103 Release 01.01 NN47928-102LAN Switch ConfigurationEnter the following commands:> config interface ip eth1 ip
104 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01ARL ConfigurationAddress Resolution Logic (ARL) maps Media Access Control (MAC) addres
BSGX4e Business Gateway User Guide 105 Release 01.01 NN47928-102LAN Switch ConfigurationAdd Static Entry ExampleThe following example adds a static AR
106 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Remove an ARL EntryTo remove an entry from the ARL table, specify its index on the del
BSGX4e Business Gateway User Guide 107 Release 01.01 NN47928-102LAN Switch ConfigurationPriority QueuesLayer 2 QoS provides four queues to classify an
108 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Selecting Layer 2 QoS SettingsTo select a layer 2 QoS type setting, enter the followin
BSGX4e Business Gateway User Guide 109 Release 01.01 NN47928-102LAN Switch ConfigurationIEEE 802.1p Tag Mapping ExampleThe following example selects I
BSGX4e Business Gateway User Guide 11 Release 01.01 NN47928-102Endpoint Status Handling (ESH) ... 277SIP Ga
110 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Switch QoS:Port Priority-------------------------------------------------0-1 LOWEST
7VLAN CONFIGURATIONThis chapter describes how to configure virtual LANs (VLANs) for the BSGX4e device.NOTE: VLAN configuration is optional. Initially,
112 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Packet TaggingPackets can be tagged with the VLAN ID to enable switching on the VLAN.
BSGX4e Business Gateway User Guide 113 Release 01.01 NN47928-102VLAN Configuration> config switch vlan 3 name v3 p1 u*> saveExample 2The followi
114 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NOTE: You must delete the security policies and virtual interface for the VLAN before
BSGX4e Business Gateway User Guide 115 Release 01.01 NN47928-102VLAN ConfigurationShow Virtual InterfaceTo see the virtual interfaces that are assigne
116 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show IP Address AssignmentTo see the IP address assignment for a virtual interface, sp
BSGX4e Business Gateway User Guide 117 Release 01.01 NN47928-102VLAN Configuration MTU 1500 DHCP off MAC Address
118 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Change the IP address subnet that is assigned to the virtual interface.For example,
BSGX4e Business Gateway User Guide 119 Release 01.01 NN47928-102VLAN Configuration5.Delete the virtual interface for VLAN 1 by using the following com
12 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TFTP Cache Command ...318Specifyi
120 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
8ROUTING CONFIGURATIONThis chapter describes the configuration options for routing in the BSGX4e device, including: Adding static entries to the Addr
122 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Configuring ARPThis section describes the Address Resolution Protocol (ARP) in the BSG
BSGX4e Business Gateway User Guide 123 Release 01.01 NN47928-102Routing ConfigurationARP entries:Host MAC Type-----------
124 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Usually, traffic is classified for quality group protection by using the firewall (as
BSGX4e Business Gateway User Guide 125 Release 01.01 NN47928-102Routing Configuration> config route tableTable 38 describes the configuration param
126 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01192.168.134.0 66.206.164.194 255.255.255.0 eth0Notice that the default route i
BSGX4e Business Gateway User Guide 127 Release 01.01 NN47928-102Routing ConfigurationRIP Daemon ExampleThis example starts the daemon for RIP version
128 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
9SECURITY CONFIGURATIONThis chapter describes how to configure the BSGX4e security features, including: Firewall security policies Network Address T
BSGX4e Business Gateway User Guide 13 Release 01.01 NN47928-102Netflow Configuration Example... 345Show Net
130 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013. If the firewall accepts a packet, then the IDS checks if the packet format is norma
BSGX4e Business Gateway User Guide 131 Release 01.01 NN47928-102Security ConfigurationPolicy sequence numbers are always evenly spaced. Thus, when a n
132 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Firewall Security Policy ExampleThis command configures a security policy that allows
BSGX4e Business Gateway User Guide 133 Release 01.01 NN47928-102Security ConfigurationTo show the system log, enter the following command:> show lo
134 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NAT/ALGNetwork Address Translation (NAT) provides security by hiding the internal addr
BSGX4e Business Gateway User Guide 135 Release 01.01 NN47928-102Security ConfigurationEnable NAT on the WAN InterfaceNOTE: NAT is initially enabled on
136 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NOTE: You must enable NAT on the WAN interface.To configure a NAT policy, enter the fo
BSGX4e Business Gateway User Guide 137 Release 01.01 NN47928-102Security Configuration192.168.134.199Port ForwardingNAT port forwarding requires the f
138 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*> config security policy new from eth0 to self dport 9000 proto udp nat 23. Save t
BSGX4e Business Gateway User Guide 139 Release 01.01 NN47928-102Security ConfigurationFor example, the following commands enable translation of a priv
14 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Help Icons ...382O
140 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Notice that the NAT field in the security policy list references the Id of a NAT polic
BSGX4e Business Gateway User Guide 141 Release 01.01 NN47928-102Security ConfigurationThis section describes the attack types against which IDS provid
142 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Protection for two packet anomalies can be enabled or disabled. The two anomalies are:
BSGX4e Business Gateway User Guide 143 Release 01.01 NN47928-102Security ConfigurationExample Activating Fragment Anomaly ProtectionThese commands act
144 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01In an ARP flood, an unauthorized attempt is made to change the ARP table, which can re
BSGX4e Business Gateway User Guide 145 Release 01.01 NN47928-102Security ConfigurationShow Flood Detection ActivationTo see the status of IDS protecti
146 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01To see the current threshold values for IDS flood protection, enter the following comm
BSGX4e Business Gateway User Guide 147 Release 01.01 NN47928-102Security Configuration tcpsynscanA TCP SYN scan is a series of messages sent with the
148 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 IDS assumes that spoof attacks arrive from the WAN, and so, by default, it assigns u
BSGX4e Business Gateway User Guide 149 Release 01.01 NN47928-102Security ConfigurationShow IDS Spoof StatusTo see the interfaces on which IDS checks f
BSGX4e Business Gateway User Guide 15 Release 01.01 NN47928-102FCC Telecom Statement... 419Declara
150 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TCP FIN with no ACK 0 TCP SYN + IP MF 0 Large ICMP (>1024) 0 FIREWALLTCP Flags not
BSGX4e Business Gateway User Guide 151 Release 01.01 NN47928-102Security ConfigurationNOTE: To avoid filling the log and the resulting denial of servi
152 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
10VPN CONFIGURATIONThis chapter describes how to configure Virtual Private Networks (VPN).VPN SupportA VPN provides a secure connection through an ins
154 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01After IPsec SAs are established, the VPN becomes operational; secure gateways use IPse
BSGX4e Business Gateway User Guide 155 Release 01.01 NN47928-102VPN ConfigurationIKE PoliciesAn IKE policy is a set of security parameters used when n
156 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show IKE ParametersTo show the IKE parameter settings, enter the following command:>
BSGX4e Business Gateway User Guide 157 Release 01.01 NN47928-102VPN ConfigurationIKE Preshared Key Record ExamplesThis example configures an IKE presh
158 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01After successful negotiation, the display is similar to the following:IKE SAs:LocalAdd
BSGX4e Business Gateway User Guide 159 Release 01.01 NN47928-102VPN ConfigurationAn IPsec configuration uses: IPsec parameter settings (config ipsec
16 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
160 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01IPsec ProposalsAn IPsec proposal is a set of security parameters used when negotiating
BSGX4e Business Gateway User Guide 161 Release 01.01 NN47928-102VPN ConfigurationThe configuration of an IPsec policy also configures an IP interface
162 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Policy Configuration ExampleThe following command configures a policy that secures tra
BSGX4e Business Gateway User Guide 163 Release 01.01 NN47928-102VPN ConfigurationNOTE: A tunnel can be up only if security associations are shown for
164 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Main office LAN subnet: 192.168.1.0/24Branch office IP addresses: Branch office gat
BSGX4e Business Gateway User Guide 165 Release 01.01 NN47928-102VPN Configuration11.Assign an IP subnet to the IP interface of the tunnel (vpn0) by us
166 BSGX4e Business Gateway User Guide NN47928-102 Release 01.0123.Configure the VPN IP interface.24.Assign an IP subnet to the IP interface of the tu
BSGX4e Business Gateway User Guide 167 Release 01.01 NN47928-102VPN Configuration*> config interface ip vpn0 ip 192.168.100.16. Enable NAT on the t
168 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*> show ipsec policyIPSEC Policy Settings:Name Local
BSGX4e Business Gateway User Guide 169 Release 01.01 NN47928-102VPN ConfigurationConfiguring a VPN This section describes the steps for setting up VPN
TABLES1 User Guide Organization... 232 Text Conventions ...
170 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 The SIP Session Controller (SIP SC) controls VoIP telephones are installed in the LA
BSGX4e Business Gateway User Guide 171 Release 01.01 NN47928-102VPN Configurationpackets, even if QoS operates after VPN. If packets that must be sent
172 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Encryption and decryption work based on the routing table. They do not work based on t
BSGX4e Business Gateway User Guide 173 Release 01.01 NN47928-102VPN ConfigurationIf NAT is enabled, the processes work as below:Figure 6 VPN operation
174 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Three flow types can be distinguished: Internal host traffic: this is the traffic ter
BSGX4e Business Gateway User Guide 175 Release 01.01 NN47928-102VPN ConfigurationSetting up a VPN requires that you configure both IKE and IPSec.Packe
176 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012. Configuring IPSec.Configure IPSec encryption and authentications algorithms, 3DES/S
BSGX4e Business Gateway User Guide 177 Release 01.01 NN47928-102VPN ConfigurationConfigure a symmetrical IPSec policy. cisco> access-list 101 permi
178 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012. Is IPSec SA successfully negotiated? The command show ipsec sa reports the status o
BSGX4e Business Gateway User Guide 179 Release 01.01 NN47928-102VPN ConfigurationTable 63. ESP StatisticsCounter DefinitionInbound Receivednumber of
18 BSGX4e Business Gateway User Guide NN47928-102 Release 01.0141 Security Policy Parameters ... 13142 Co
180 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
11GOS CONFIGURATIONThis chapter describes how to configure the advanced Quality of Service (QoS) feature in the BSGX4e. This feature is called Guarant
182 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01GoS can provide: Guaranteed bandwidths with enforced bandwidth limits and reuse of un
BSGX4e Business Gateway User Guide 183 Release 01.01 NN47928-102GoS ConfigurationFigure 9. GoS Classes A—C represents the range of packet loss; typica
184 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Figure 10. Strict PolicingFigure 10 also shows three regions as the input rate increas
BSGX4e Business Gateway User Guide 185 Release 01.01 NN47928-102GoS ConfigurationThe two limits used by CAR policing (the committed rate and the burst
186 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01A security policy defines an outgoing traffic stream and assigns it to a quality group
BSGX4e Business Gateway User Guide 187 Release 01.01 NN47928-102GoS ConfigurationInterface Max Comment------------------------------------
188 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Traffic can be discarded even when the average theoretical throughput of the flow is
BSGX4e Business Gateway User Guide 189 Release 01.01 NN47928-102GoS ConfigurationQuality Group ExamplesThe following examples illustrate the configura
BSGX4e Business Gateway User Guide 19 Release 01.01 NN47928-10283 AC Impedance Register Values ... 26184 SIP S
190 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Quality group class: A3 (maximum delay, minimum loss)Type of policer: CARCommitted rat
BSGX4e Business Gateway User Guide 191 Release 01.01 NN47928-102GoS ConfigurationVoIP Traffic ProtectionTo protect VoIP traffic, two quality group set
192 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Table 41 describes the parameters for config security policy. Use the same command to
BSGX4e Business Gateway User Guide 193 Release 01.01 NN47928-102GoS ConfigurationShow GoS Security PoliciesThe command to show the GoS security polici
194 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Bytes out 209556913319 bytesBytes dropped 0 bytesQuality Group StatisticsTo display cu
BSGX4e Business Gateway User Guide 195 Release 01.01 NN47928-102GoS ConfigurationClearing GoS Cumulative StatisticsAs needed, you can clear the GoS st
196 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Table 67 describes the statistics of stats qos group. Byte counts include the Ethernet
BSGX4e Business Gateway User Guide 197 Release 01.01 NN47928-102GoS ConfigurationConfiguring QoSThis section describes the steps for setting up QoS in
198 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 The SIP Session Controller (SIP SC) controls VoIP telephones installed in the Local
BSGX4e Business Gateway User Guide 199 Release 01.01 NN47928-102GoS ConfigurationFigure 13. Hardware pathTraffic to the WAN suffers from two bottlenec
2 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TrademarksNortel, the Nortel logo, and the Globemark are trademarks of Nortel Networks.A
20 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01125 IKE Security ... 412
200 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01The routing engine runs Layer 3 QoS. Guarantee of Service (GoS) is implemented. For mo
BSGX4e Business Gateway User Guide 201 Release 01.01 NN47928-102GoS Configuration Management: SNMP polling does not require a very high bandwidth, 64
202 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013.Configuring the mapping between the DiffServ/ToS byte value and the priority queue (
BSGX4e Business Gateway User Guide 203 Release 01.01 NN47928-102GoS Configuration38 HIGHQ39 LOWESTQ40 LOWESTQ41 LOWESTQ42 LOW
204 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Deferred 0 InDiscards 879Out Octets 978
BSGX4e Business Gateway User Guide 205 Release 01.01 NN47928-102GoS Configuration7. Configuring the classifier.The SIP Session Controller detects VoIP
206 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Id Seq From Source IP Dest IP Source Dest Proto NAT QoS To
BSGX4e Business Gateway User Guide 207 Release 01.01 NN47928-102GoS Configuration Packets in 2211704 Packets out 2211704 Downgr
208 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
12MGCP CONFIGURATIONThis chapter describes the configuration of the MGCP session controller and the integrated MGCP gateway. You can configure the BSG
FIGURES1 BSGX4e Connectivity... 302 Connect to the Console Port ...
210 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Figure 14. MGCP Network LayoutMGCP Session ControllerAll VoIP traffic is directed thro
BSGX4e Business Gateway User Guide 211 Release 01.01 NN47928-102MGCP Configurationn If the call server requires Keep-alive messages, but a LAN endpoin
212 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01MGCP Call ServersThis section describes how to configure a server profile, which deter
BSGX4e Business Gateway User Guide 213 Release 01.01 NN47928-102MGCP Configuration> config mgcp server settingsTable 70 describes the parameters fo
214 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Blacklist duration: 300 seconds> config mgcp server settings Sylantro_FailOverMode
BSGX4e Business Gateway User Guide 215 Release 01.01 NN47928-102MGCP ConfigurationMGCP Server "Sylantro_FailOverMode": Name Sylan
216 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01MGCP Signaling Proxy (MSP)The MGCP Signaling Proxy (MSP) relays MGCP messages between
BSGX4e Business Gateway User Guide 217 Release 01.01 NN47928-102MGCP ConfigurationMGCP Session Controller Setting ExampleThis example configures the M
218 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 My Wan IpAddr 192.168.134.217 Wan Rx Port 2427 Lan Rx Port
BSGX4e Business Gateway User Guide 219 Release 01.01 NN47928-102MGCP Configuration LanCmdDropDataErr 0 LanRspDropDataErr
22 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
220 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NOTE: A local call from a LAN endpoint to another LAN endpoint is shown twice in the s
BSGX4e Business Gateway User Guide 221 Release 01.01 NN47928-102MGCP ConfigurationChanging the Endpoint TimeoutThe following example specifies the ser
222 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01This value represents the number of seconds before the registration expires. The initi
BSGX4e Business Gateway User Guide 223 Release 01.01 NN47928-102MGCP ConfigurationMGCP Gateway Settings CommandTo configure the MGCP protocol settings
224 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Configuration Restraints Before you configure the gateway, you must configure the MGC
BSGX4e Business Gateway User Guide 225 Release 01.01 NN47928-102MGCP ConfigurationMGCP Gateway ExampleThis example configures the MGCP gateway to prov
226 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01-------------------------------------------------------------0-1 uap1 PCMU_20
BSGX4e Business Gateway User Guide 227 Release 01.01 NN47928-102MGCP Configuration0 30008 G711u 127.0.0.1:14376 5
228 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01> show mgcp sc endpointsMGCP Session Controller endpoints:Endpoint ID
13VOIP CONFIGURATIONThis chapter and the next chapter cover topics common to VoIP configuration for both MGCP and SIP, including: Media connections c
ABOUT THIS GUIDEThis preface describes the intended audience for this guide, how this guide is organized, its conventions, and access to customer supp
230 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Media Settings ExampleThis example configures the Media Bridge as follows:Direct media
BSGX4e Business Gateway User Guide 231 Release 01.01 NN47928-102VoIP ConfigurationMedia status: Max. cap (max_conn/AudioQos): 500/890000 Port
232 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Wan CallID [email protected] Lan ToTag 3-25-85680f
BSGX4e Business Gateway User Guide 233 Release 01.01 NN47928-102VoIP Configuration Platform Software versionNOTE: The ACL does not require CDP infor
234 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01IP address: 10.0.1.100Signaling type: MGCPDevice ID: MGC000F8F073088Action: deny> c
BSGX4e Business Gateway User Guide 235 Release 01.01 NN47928-102VoIP ConfigurationCDP Entry:Device ID: SIP00152B1775EDEntry Address: 192.1
236 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01n S: switchn H: hostn I: IGMP capable deviceShow CDP StatisticsTo view the statistics
BSGX4e Business Gateway User Guide 237 Release 01.01 NN47928-102VoIP ConfigurationThe bandwidth allocated for VoIP signaling traffic can administrativ
238 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01> show mgcp sc statusMGCP Session Controller status: MSC Started Yes M
BSGX4e Business Gateway User Guide 239 Release 01.01 NN47928-102VoIP ConfigurationCountry Code and Unit Name SettingCountries have defined separate te
24 BSGX4e Business Gateway User Guide NN47928-102 Release 01.018 Routing ConfigurationHow to manage an Address Resolution Protocol (ARP) table, config
240 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01The display shows the country code as CN for China.Jitter Buffer SettingsTo configure
BSGX4e Business Gateway User Guide 241 Release 01.01 NN47928-102VoIP ConfigurationJitter Buffer Stats:Port RxFrames CurrJitter CurrDelay M
242 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Tone Type On-1 Off-1 On-2 Off-2 Freq1 Level1 Freq2 Level2---------------------------
BSGX4e Business Gateway User Guide 243 Release 01.01 NN47928-102VoIP Configuration*> config voice tones congestion on1 150 off1 150 on2 0 off2 0 fr
244 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01This commands parameter is as follows:Show Impedance SettingsTo show the impedance set
BSGX4e Business Gateway User Guide 245 Release 01.01 NN47928-102VoIP ConfigurationLine Fault TestingYou can test the electrical status of the FXS port
246 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01FXS GR909 foreign voltages (* is a failure)Port dcVtip dcVring dcVloop acVtip a
BSGX4e Business Gateway User Guide 247 Release 01.01 NN47928-102VoIP ConfigurationFor example, the following command runs the off-hook test for FXS po
248 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01n Excessive bursting R-factor (low quality R-factor lasting a certain period of time)
BSGX4e Business Gateway User Guide 249 Release 01.01 NN47928-102VoIP ConfigurationThe VQM analyser reports statistics for the following CODECs: G.711
BSGX4e Business Gateway User Guide 25 Release 01.01 NN47928-102About This GuideConventionsThe following conventions are used throughout the guide.Comm
250 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01VQM Analyser ExampleThis example configures the VQM analyser as follows:Jitter Buffer
BSGX4e Business Gateway User Guide 251 Release 01.01 NN47928-102VoIP Configuration--------------------------------------------------------------------
252 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Alarm Log EntriesWhen a triggering threshold is reached, an alarm entry is sent to the
BSGX4e Business Gateway User Guide 253 Release 01.01 NN47928-102VoIP ConfigurationCall RecordsThis section describes commands to list the calls in pro
254 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show Call HistoryA call history is kept; it can show the last 250 calls. Filled in Fir
14LOCAL CALL ROUTINGThis chapter describes the telephone service that the BSGX4e device can provide without the use of a VoIP call server on the WAN.
256 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Local Call Routing (LCR) ModeLocal call routing (LCR) mode describes the telephone ser
BSGX4e Business Gateway User Guide 257 Release 01.01 NN47928-102Local Call RoutingLCR Account CommandTo configure an LCR account, enter the following
258 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Note: MGCP gateways are not supported. The emergency call number. Calls to this numbe
BSGX4e Business Gateway User Guide 259 Release 01.01 NN47928-102Local Call RoutingExample: Local Numbering PlanThe following example defines the local
26 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01DocumentationThe documentation for the unit is on the CD-ROM, titled Nortel BSGX4e Docu
260 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01This commands parameters are as follows:Show Gain SettingsTo show the DSP gain setting
BSGX4e Business Gateway User Guide 261 Release 01.01 NN47928-102Local Call RoutingShow FxO Impedance SettingsTo show the impedance settings, enter the
262 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 HYB2 0 HYB3 0 HYB4 0 HYB5 0 HYB6
15SIP CONFIGURATIONThis chapter describes the configuration of the SIP session controller and the SIP gateway. You can configure the BSGX4e device to
264 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Figure 17. SIP Network LayoutSIP Session ControllerAll VoIP traffic is directed throug
BSGX4e Business Gateway User Guide 265 Release 01.01 NN47928-102SIP Configuration Monitors the registration status of the SIP endpoints on its LAN an
266 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SIP Call Server AccessThis section describes how to configure a server profile, which
BSGX4e Business Gateway User Guide 267 Release 01.01 NN47928-102SIP ConfigurationThe firewall is automatically updated to accept SIP messages from the
268 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Example Using DNS to Locate the ServerThe SIP session controller uses DNS to locate a
BSGX4e Business Gateway User Guide 269 Release 01.01 NN47928-102SIP Configuration> config sip server settings EMM_FailOverMode domain emm.live.eric
BSGX4e Business Gateway User Guide 27 Release 01.01 NN47928-102About This GuideGetting Help from a specialist by using an Express Routing CodeTo acces
270 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Port3 5060 IBServer1 IBServer2 IBServer3 Retries
BSGX4e Business Gateway User Guide 271 Release 01.01 NN47928-102SIP Configuration> show sip server statusSIP Server "Example": Name
272 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SIP Signaling Proxy (SSP)The SIP Signaling Proxy (SSP) relays SIP messages between SIP
BSGX4e Business Gateway User Guide 273 Release 01.01 NN47928-102SIP ConfigurationSIP Session Controller Setting ExampleThis example configures the SIP
274 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Server EMM Local Domain Wan Rx Port 5060 Lan Rx
BSGX4e Business Gateway User Guide 275 Release 01.01 NN47928-102SIP Configuration WanMsgRecvCount 100 WanMsgProcCount
276 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 - Called dest busy: 0 - Others causes:
BSGX4e Business Gateway User Guide 277 Release 01.01 NN47928-102SIP Configuration> show sip sc endpointsSIP Session Controller endpoints:Endpoint I
278 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SIP GatewayThe SIP gateway (also known as the user agent, or UA) is the software that
BSGX4e Business Gateway User Guide 279 Release 01.01 NN47928-102SIP ConfigurationNOTE: The SIP gateway attempts to register with the SIP server as soo
28 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
280 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01MIN-SE timer: 500 secondsSession expire timer: 600 seconds> config sip ua settings
BSGX4e Business Gateway User Guide 281 Release 01.01 NN47928-102SIP Configuration A codec parameter that is specified as notused acts as a terminator
282 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SIP Gateway ExampleThis example configures the SIP gateway for an analog telephone as
BSGX4e Business Gateway User Guide 283 Release 01.01 NN47928-102SIP Configuration-------------------------------------------------------------------0-
284 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Chan LocalNumber CodecType LocalConn RtcpTx RtpTxPort RemoteNumber
BSGX4e Business Gateway User Guide 285 Release 01.01 NN47928-102SIP ConfigurationNumbering Plan Entry ExamplesThe following are numbering plan entry e
286 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NOTE: The hash character (#) is required to activate a service entry.Assuming these co
BSGX4e Business Gateway User Guide 287 Release 01.01 NN47928-102SIP ConfigurationThis example configures two numbering plan entries to enable the use
288 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*78 Service SDND 0 0*79 Service CDND 0
BSGX4e Business Gateway User Guide 289 Release 01.01 NN47928-102SIP Configuration domain: LAN IP address of the BSGX4e device Verify Endpoint Registr
1CONNECTING TO THE DEVICEThis chapter describes the features of the BSGX4e device and its role in an IP network. It also describes how to connect to t
290 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Configuring SIPThis section describes the steps for setting up the SIP Session Control
BSGX4e Business Gateway User Guide 291 Release 01.01 NN47928-102SIP ConfigurationTable 89 describes network information, and Table 90 describes server
292 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012.Upgrade their firmware if necessary.3.Download a configuration file.4.Get the clock
BSGX4e Business Gateway User Guide 293 Release 01.01 NN47928-102SIP Configuration3.Configuring the default IP gateway.The default IP gateway is automa
294 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Ping the SIP server.*BSG*> ping sipserver.isp.comPinging sipserver.isp.com (66.19.9
BSGX4e Business Gateway User Guide 295 Release 01.01 NN47928-102SIP Configuration Server 1 ntpserver.isp.com Server 2 0.0.0.0
296 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*BSG*> show qos groupQoS Quality Groups:Name Link QG Type Comm
BSGX4e Business Gateway User Guide 297 Release 01.01 NN47928-102SIP Configuration TFTP 10.0.1.1 Filename Domain
298 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*BSG*> config sip server settings SipProxy domain sip.net*BSG*> show sip server
BSGX4e Business Gateway User Guide 299 Release 01.01 NN47928-102SIP Configuration Lan Rx Port 5060 Timer T1 500 msec
CONTENTSABOUT THIS GUIDEAudience ... 23Organization...
30 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Figure 1. BSGX4e ConnectivityDevice FeaturesAn BSGX4e unit provides the following servi
300 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01--------------------------------------------------------------------------0-1 Fax
BSGX4e Business Gateway User Guide 301 Release 01.01 NN47928-102SIP Configuration3.Connecting the VoIP phone to a LAN port of the BSGX4e. The VoIP pho
302 BSGX4e Business Gateway User Guide NN47928-102 Release 01.014.Checking the status of the SIP SC.Check that the SIP SC reports the SIP endpoints re
BSGX4e Business Gateway User Guide 303 Release 01.01 NN47928-102SIP ConfigurationAnnex A-Configuration example for Cisco 7960 SIP phone# SIP Default C
304 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01# TOS bits in media stream [0-5] (Default - 5)tos_media: 5# Inband DTMF Settings (0-di
BSGX4e Business Gateway User Guide 305 Release 01.01 NN47928-102SIP Configurationdst_auto_adjust: 1; Enable(1-Default)/Disable(0) DST automatic adjust
306 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01outbound_proxy_port: 5060; default is 5060# Allow for the bridge on a 3way call to joi
BSGX4e Business Gateway User Guide 307 Release 01.01 NN47928-102SIP Configuration2.When the 200 OK is received (assuming use of the G.729a CODEC), the
308 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
16VOIP SERVICES AND RELAYSThis chapter describes services that the BSGX4e device can provide for the VoIP phones and other devices on its LAN.Each use
BSGX4e Business Gateway User Guide 31 Release 01.01 NN47928-102Connecting to the DeviceAn BSGX4e unit provides two telephony interfaces: one FXS port
310 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01DNS2 0.0.0.0TFTPFilenameDomainNTP1 0.0.0.0NTP2 0.0.0.0Timezone GMT Offset 0 [hh:mm]150
BSGX4e Business Gateway User Guide 311 Release 01.01 NN47928-102VoIP Services and RelaysDHCP Server Configuration ExampleThis example configures the D
312 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 151 10.0.1.1 160 10.0.1.1 161 1
BSGX4e Business Gateway User Guide 313 Release 01.01 NN47928-102VoIP Services and RelaysDHCP Relay ExampleThe following example enables the DHCP relay
314 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01DNS Relay ExampleThe following example enables the DNS relay function and specifies th
BSGX4e Business Gateway User Guide 315 Release 01.01 NN47928-102VoIP Services and Relays> show relay dns cacheDNS Relay Cache:Index Name
316 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show SNTP SettingsTo verify the SNTP settings, enter the following command:> show r
BSGX4e Business Gateway User Guide 317 Release 01.01 NN47928-102VoIP Services and RelaysTFTP Relay Settings ExampleThe following example enables the T
318 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TFTP File CacheThe TFTP cache feature allows copies of frequently requested files to b
BSGX4e Business Gateway User Guide 319 Release 01.01 NN47928-102VoIP Services and RelaysNOTE: Only files that are specified by this command are cached
32 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Connecting to the UnitThis user guide assumes that the BSGX4e unit is installed in a wo
320 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Delete Files to be CachedTo delete an entry from the list of files to be cached, speci
17MONITORINGThis chapter describes the information that the BSGX4e device collects so that the system can be monitored.The BSGX4e device provides the
322 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show Hardware InformationWhen reporting a problem, it is important to provide both sys
BSGX4e Business Gateway User Guide 323 Release 01.01 NN47928-102MonitoringBootcode Ver 1.10.00010App. Ver BSG T2 2.02.0138System Type BSGX4eMemory 89/
324 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 IDS Attacks: 4340719 NAT: EnabledInterfaces: eth0
BSGX4e Business Gateway User Guide 325 Release 01.01 NN47928-102MonitoringAudit Log: Enabled noShow Audit Log EntriesTo see the entries currentl
326 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01n Consolen UDP servern Syslog serverTable 99 lists the severity and default destinatio
BSGX4e Business Gateway User Guide 327 Release 01.01 NN47928-102MonitoringLogging Level ExampleThe following example specifies that debug and trace me
328 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01NOTE: To include a specific destination in the map for a message type, use a plus (+)
BSGX4e Business Gateway User Guide 329 Release 01.01 NN47928-102Monitoring Alert Map internal Critical Map internal Error Map
BSGX4e Business Gateway User Guide 33 Release 01.01 NN47928-102Connecting to the Device3. Enter the password for the user account. Password:The initia
330 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Log Server Configuration ExamplesThe following example configures a UDP server:Server:
BSGX4e Business Gateway User Guide 331 Release 01.01 NN47928-102Monitoring LogRxCount 96 Errors 0Ethernet Interface Statisti
332 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01IP StatisticsIP statistics report counters about the traffic routed through the IP sta
BSGX4e Business Gateway User Guide 333 Release 01.01 NN47928-102MonitoringICMP StatisticsICMP statistics report counters about ICMP traffic that termi
334 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Table 104. ICMP StatisticsCounter DescriptionEcho Reply Out ICMP Echo Reply messages
BSGX4e Business Gateway User Guide 335 Release 01.01 NN47928-102MonitoringUDP StatisticsUDP statistics report counters about UDP traffic that terminat
336 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TCP Stats:Connections Accepted 1 Connections Attempted 0Connections Dropped 0 Connect
BSGX4e Business Gateway User Guide 337 Release 01.01 NN47928-102MonitoringTimeout Drop Connections dropped in retransmit timeout.Delayed Acks
338 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Unsent Data Ack Packets Total ack packets received for unsent data.Window Update Total
18MONITORING TOOLSThis chapter describes the tools provided for monitoring the operations of the BSGX4e device.The BSGX4e device supports the followin
34 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01The Telnet server in the unit is initially disabled, you must open a connection to the
340 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Mirroring Configuration ExampleThis example configures mirroring so that both incoming
BSGX4e Business Gateway User Guide 341 Release 01.01 NN47928-102Monitoring Tools Packet rate Bit ratePMON creates traces by applying filters to the
342 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01PMON Configuration ExampleThe following example starts the PMON agent and then configu
BSGX4e Business Gateway User Guide 343 Release 01.01 NN47928-102Monitoring Tools Source IP ANY Dest IP ANY ToS 248 V
344 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01To classify traffic into the flow to be monitored, the Netflow exporter applies filter
BSGX4e Business Gateway User Guide 345 Release 01.01 NN47928-102Monitoring ToolsNetflow Filter CommandTo configure the Netflow filters, enter the foll
346 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01*> saveShow Netflow StatusTo show the configuration and status of the Netflow agent
BSGX4e Business Gateway User Guide 347 Release 01.01 NN47928-102Monitoring Tools> clear netflow agentSNMP AgentThe BSGX4e device implements an SNMP
348 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SNMP Community CommandTo configure an SNMP community, enter the following command:>
BSGX4e Business Gateway User Guide 349 Release 01.01 NN47928-102Monitoring ToolsShow SNMP Agent ConfigurationTo show the configuration of the SNMP age
BSGX4e Business Gateway User Guide 35 Release 01.01 NN47928-102Connecting to the DeviceTelnet Configuration ExampleThe following example disables the
350 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01In TotalSetVars 0 In TotalReqVars 402277In GetNexts
BSGX4e Business Gateway User Guide 351 Release 01.01 NN47928-102Monitoring ToolsClear SNMP StatisticsTo clear the counters kept for SNMP statistics, e
352 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show SNMP Trap ConfigurationTo show the configuration of the SNMP traps, enter the fol
BSGX4e Business Gateway User Guide 353 Release 01.01 NN47928-102Monitoring ToolsTable 116. TCPDump OptionsOption Description-c Number of packets to d
354 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Limited Capture ExampleThe following example limits the packet captures to 10 packets
BSGX4e Business Gateway User Guide 355 Release 01.01 NN47928-102Monitoring ToolsUnlimited Capture ExampleIf the capture is not limited by a packet cou
356 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Ping ExampleThe following example launches a ping to determine if 192.168.134.1 can be
BSGX4e Business Gateway User Guide 357 Release 01.01 NN47928-102Monitoring ToolsTraceroute ExampleThe following example launches a traceroute to deter
358 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
19 SOFTWARE UPGRADESThis chapter provides information for upgrading the BSGX4e software. It describes: the file system and its navigation commands.
36 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SSH ServerThis section describes how to configure the Secure Shell (SSH) server. The SS
360 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Both absolute and relative paths are supported.To list the contents of a directory, en
BSGX4e Business Gateway User Guide 361 Release 01.01 NN47928-102Software UpgradesTo make one or more directories, specify one or more names on the fol
362 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01- # of hidden sectors: 0 - first cluster is in sector # 381 - directory struct
BSGX4e Business Gateway User Guide 363 Release 01.01 NN47928-102Software UpgradesWeb UI Upgrade ProcedureThis section describes how to upgrade the app
364 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013. On the System Configuration screen, select the Save/Restore tab and then click Down
BSGX4e Business Gateway User Guide 365 Release 01.01 NN47928-102Software Upgrades4. The browser displays a window from which you can save the configur
366 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013. In the upper half of the Software tab, select the software to be upgraded:n Slot 1
BSGX4e Business Gateway User Guide 367 Release 01.01 NN47928-102Software Upgrades6. When the upgrade is complete, a message directs you to reload the
368 BSGX4e Business Gateway User Guide NN47928-102 Release 01.0110.On the lower half of the Software Upgrade screen under Application image to boot fr
BSGX4e Business Gateway User Guide 369 Release 01.01 NN47928-102Software Upgrades2. On the lower half of the screen under the heading Application imag
BSGX4e Business Gateway User Guide 37 Release 01.01 NN47928-102Connecting to the Device SSH ExampleThe following example disables SSH service. > co
370 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013. From the System Configuration screen, select the Save/Restore tab.4. Click the Brow
BSGX4e Business Gateway User Guide 371 Release 01.01 NN47928-102Software Upgrades7. To reload the system, in the Operations Menu in the lower left cor
372 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012. Click Yes to accept the SSH certificate.
BSGX4e Business Gateway User Guide 373 Release 01.01 NN47928-102Software Upgrades3. The SFTP server is now connected.4. Browse the server and go to /c
374 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Listing the ConfigurationTo see the current configuration settings for a unit, do eith
BSGX4e Business Gateway User Guide 375 Release 01.01 NN47928-102Software UpgradesThe following is an example of a configuration listing:
376 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
BSGX4e Business Gateway User Guide 377 Release 01.01 NN47928-102Software Upgrades
378 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
AWEB USER INTERFACEThis appendix introduces the Web User Interface (Web UI) for the BSGX4e device.The Web UI is a graphic, full-screen interactive int
38 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 HostKeys generating... AuthMethods keyboard + password + publickey Se
380 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Web UI FeaturesThis section summarizes the features of the Web UI. Browser SupportThe
BSGX4e Business Gateway User Guide 381 Release 01.01 NN47928-102Web User InterfaceAccess RequirementsA Web UI log on has these requirements: A workst
382 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Web UI Screen StructureThis section describes the structure of the Web UI screens, inc
BSGX4e Business Gateway User Guide 383 Release 01.01 NN47928-102Web User Interface Information: Clicking on the i icon opens a second web page to an
384 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Note: After the default configuration is reloaded, all IP addresses are reset to their
BSGX4e Business Gateway User Guide 385 Release 01.01 NN47928-102Web User InterfaceTable 121. Web UI Menus SystemSystem operations, including service
386 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 QualityFeatures to ensure quality service, including Call Quality Monitoring, and co
BSGX4e Business Gateway User Guide 387 Release 01.01 NN47928-102Web User Interface MonitorPerformance and activity information: the PMon (Protocol Mo
388 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Configuration ExampleThe following section shows an example of configuration using the
BSGX4e Business Gateway User Guide 389 Release 01.01 NN47928-102Web User Interface6.Select the appropriate options for the new user. (Pull-down menus
BSGX4e Business Gateway User Guide 39 Release 01.01 NN47928-102Connecting to the Device The workstation on the WAN or LAN must provide a Web browser
390 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Monitoring ExampleThe following example shows how to monitor IP statistics from the We
BSGX4e Business Gateway User Guide 391 Release 01.01 NN47928-102Web User InterfaceWizards ExampleThis section shows an example of using a Wizard to co
392 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01.3.The next window offers a choice of interfaces. For this example, select the LAN but
BSGX4e Business Gateway User Guide 393 Release 01.01 NN47928-102Web User Interface5.Enter the IP address information and then press Next.n DHCP: If a
394 BSGX4e Business Gateway User Guide NN47928-102 Release 01.018.If the configuration is correct and should take place, select Apply. Otherwise: n Se
BSGX4e Business Gateway User Guide 395 Release 01.01 NN47928-102Web User Interface
396 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Exit Web UITo ensure a secure system, log out of the Web UI when your work is complete
BSGX4e Business Gateway User Guide 397 Release 01.01 NN47928-102Web User Interface3.Close the Web browser and logout is complete.
398 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
BTHIRD PARTY SOFTWAREThis appendix provides information about third-party software that you can use with the device. This software can be useful for i
4 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012 INITIAL SETUPSetting the Time ...
40 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 HTTP Port 80 HTTPS Port 443Show Web Server StatisticsTo display the stati
400 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Used for local software installation.WinSCP is an open source SFTP client for Windows.
CSSH FUNCTIONALITYThis chapter provides information about the SSH server, SFTP, and the subsystems SSH-TRANS, SSH-AUTH, and SSH-CONNECT.IntroductionSS
402 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 You cannot set the SSH server to run on a port in use by another TCP service, such a
BSGX4e Business Gateway User Guide 403 Release 01.01 NN47928-102SSH FunctionalityAfter the user is authenticated, the SSH client requests the desired
404 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SFTP ServiceSFTP service can be enabled or disabled. When SFTP service is enabled, aut
BSGX4e Business Gateway User Guide 405 Release 01.01 NN47928-102SSH FunctionalityDuring key exchange, the SSH-TRANS subsystem identifies the SSH serve
406 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
DTCPDUMP EXPRESSIONSThis appendix provides information about expression options for the tcpdump command. The command is described in “TCPdump Command
408 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 More complex filter expressions are built up by combing primitives with the followin
BSGX4e Business Gateway User Guide 409 Release 01.01 NN47928-102TCPdump ExpressionsTrue if the packet has a source port value of port. port port True
BSGX4e Business Gateway User Guide 41 Release 01.01 NN47928-102Connecting to the DeviceNOTE: If the SSL key is deleted, new SSL connections cannot be
410 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01tcp, udp, icmp Abbreviations for ip proto p where p is one of the above protocols. exp
ESTANDARDS COMPLIANCEThis appendix lists the standards to which the BSGX4e device complies.Data StandardsSwitchingRoutingTable 122. SwitchingStandard
412 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SecurityQuality of ServiceTable 124. NAT SecurityIETF RFC Description1631 The IP Netw
BSGX4e Business Gateway User Guide 413 Release 01.01 NN47928-102Standards ComplianceServicesMonitoring Table 128. ServicesService IETF RFC Desc
414 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Voice StandardsSIP Session ControllerSNMP 1215 Convention for defining traps for use w
BSGX4e Business Gateway User Guide 415 Release 01.01 NN47928-102Standards ComplianceMGCP Session ControllerSIP User Agent (Integrated Gateway)IETF RFC
416 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01MGCP User Agent (Integrated Gateway)IETF RFC 3262 Reliability of Provisional Response
BSGX4e Business Gateway User Guide 417 Release 01.01 NN47928-102Standards ComplianceITU G.711 aLaw/uLaw Pulse code modulation (PCM) of voice frequenci
418 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
FRULE COMPLIANCEThis appendix lists telecommunication rule compliance information for the BSGX4e device.FCC Compliance (U.S.)This device complies with
42 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Upload SSL CSRUse SFTP to upload an SSL CSR. The recommended directory for the uploaded
420 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 The Facility Interface Codes (FIC) and the Service Order Codes (SOC) for this device
BSGX4e Business Gateway User Guide 421 Release 01.01 NN47928-102Rule ComplianceEquipment Attachment Regulations (Canada)NOTICE: The industry Canada la
422 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
GCOPYRIGHT INFORMATIONThis appendix lists important copyright Information and acknowledgments.GoAhead Software, Inc.Copyright © 2005 GoAhead Software,
424 BSGX4e Business Gateway User Guide NN47928-102 Release 01.012.Redistributions in binary form must reproduce the above copyright notice, this list
BSGX4e Business Gateway User Guide 425 Release 01.01 NN47928-102Copyright InformationPermission to use, copy, modify, and distribute this software for
426 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01License to copy and use this software is granted provided that it is identified as the
BSGX4e Business Gateway User Guide 427 Release 01.01 NN47928-102Copyright Information2.Redistributions in binary form must reproduce the above copyrig
428 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01THIS SOFTWARE IS PROVIDED ``AS IS'' AND THE AUTHOR DISCLAIMS ALL WARRANTIES
HGLOSSARY3PCC 3rd Party Call Control.ALGApplication Layer Gateway.ARLAddress Resolution Logic.CACCall Admission Control.CAS Channel Associated Signali
BSGX4e Business Gateway User Guide 43 Release 01.01 NN47928-102Connecting to the DeviceA single X509 certificate can be generated. When self-signed, t
430 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01FXS Foreign Exchange Station. Device interface that connects to an analog device such
BSGX4e Business Gateway User Guide 431 Release 01.01 NN47928-102GlossarySIP UA SIP User Agent.SLIC Subscriber Line Interface Circuit.SNTPSimple Networ
432 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
INDEXAAC impedance register for FxO port 260Access Control List 232access method limitation 58access rightsinheritance62access rights settings 61accou
434 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01entry configuration 122flood protection 144tableflushing123listing 122traffic protecti
BSGX4e Business Gateway User Guide 435 Release 01.01 NN47928-102IndexCall Admission Control 236call limitMGCP217SIP 273call progress tone configuratio
436 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01debug commands 88keywordsall85no 84maintenance commands 86parameter values 84committed
BSGX4e Business Gateway User Guide 437 Release 01.01 NN47928-102Indexdevice features 30device name change 239DH group 159DHCPeth0 interface92flood pro
438 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01MGCP configuration 227MGCP ID 224phone numbers 256SIP registration expiration 277SIP r
BSGX4e Business Gateway User Guide 439 Release 01.01 NN47928-102Indexflood protection 143flood thresholds 145flow control 98disabled for layer 2 QoS 9
44 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Bits 768Status ok(While key generation occurs, the Status field displays gene
440 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Hhardware information 322hazardous voltage test 245helpCLI commands81debug commands 88
BSGX4e Business Gateway User Guide 441 Release 01.01 NN47928-102IndexNAT enabling 135VLAN 114Internet Key Exchange 154Internet Protocol. See IPIntrusi
442 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01layer 2 QoS 106packet classification 107port mapping 108priority queues 107queuing mec
BSGX4e Business Gateway User Guide 443 Release 01.01 NN47928-102IndexMMAC addressARL mapping104device interfaces 323priority queues 104main mode IKE n
444 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01mii0WAN port91mirroring traffic 339mob.cfg.cpy filerestoring configuration369saving co
BSGX4e Business Gateway User Guide 445 Release 01.01 NN47928-102Indexno keyword 84Oobject access 61off-hook test 246On Hold timer 279online comand hel
446 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01IKE 155IPsec 160NAT 135listing 139policing methods 183pools, DHCP 309portFxS configura
BSGX4e Business Gateway User Guide 447 Release 01.01 NN47928-102Indexconfiguration 187default (best effort) 188definition 182GoS security policy 192li
448 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01route listing 127RIP daemonstarting126route configuration 124route table listing 125ro
BSGX4e Business Gateway User Guide 449 Release 01.01 NN47928-102Indexself-signed certificate 43serial number 323serverDHCP309log destination 329MGCP c
BSGX4e Business Gateway User Guide 45 Release 01.01 NN47928-102Connecting to the DeviceStatus okThe Sha1FingerPrint field displays the Se
450 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01user agent 265SIP Signalling Proxy. See SSPSIP/PSTN gateway256SNMPcommunity configurat
BSGX4e Business Gateway User Guide 451 Release 01.01 NN47928-102Indexeth0 interface 94Ethernet interfaces 331GoS 193cumulative 193instantaneous 195ICM
452 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TTACACS+client74taggingVLAN ID112TCPattack protection141connection timeout 133statisti
BSGX4e Business Gateway User Guide 453 Release 01.01 NN47928-102IndexICMP 333IP stack 332mirroring 339security processing 129TCP 335trace 340traffic f
454 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01SIP 225, 282variable-length subnet masks 126vidVLAN112vif interface 114virtual LAN. Se
BSGX4e Business Gateway User Guide 455 Release 01.01 NN47928-102IndexWinSCP3 399wire speed 97XX509 CSR 41
456 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
46 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
2INITIAL SETUPThis chapter describes the initial setup of the BSGX4e device, including: system time and SNTP server configuration watchdog reset tim
48 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Setting the Time through an SNTP ServerThe unit can automatically synchronize its inter
BSGX4e Business Gateway User Guide 49 Release 01.01 NN47928-102Initial SetupSNTP: Enabled on Server 1 ntpserver.wan.com Serve
BSGX4e Business Gateway User Guide 5 Release 01.01 NN47928-102TACACS+ Authentication Records ... 72Example of
50 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Watchdog Timer ExampleThe following example enables the watchdog and sets its refresh i
BSGX4e Business Gateway User Guide 51 Release 01.01 NN47928-102Initial SetupDNS Client Configuration ExampleThis example shows how the configuration u
52 BSGX4e Business Gateway User Guide NN47928-102 Release 01.013.Change the source parameter to user and the previously entered, user-provided config
BSGX4e Business Gateway User Guide 53 Release 01.01 NN47928-102Initial SetupTable 14 lists the initial settings of the unit when it is shipped. It als
54 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Security Poli-ciesTraffic from WAN to LAN is rejected.Traffic from WAN terminating at t
BSGX4e Business Gateway User Guide 55 Release 01.01 NN47928-102Initial SetupSSH server Enabled.AuthMethods: keyboard + password + publickeyServices:
56 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01VLAN Disabled. “VLAN Configuration” (page 111)Netflow agent Disabled. “Netflow Exporter
3USER MANAGEMENTThis chapter describes how to control access to the BSGX4e unit: password entry adding and removing users setting up groups assign
58 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01n Authenticates the entered password by using either strong password hashing (SHA) or e
BSGX4e Business Gateway User Guide 59 Release 01.01 NN47928-102User ManagementAll invalid log on attempts are recorded in the audit log. For more info
6 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show Port Configuration ...99Show Po
60 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Showing Active UsersTo see which users are currently logged in to the unit, use the mai
BSGX4e Business Gateway User Guide 61 Release 01.01 NN47928-102User ManagementUser Accounts, Groups and RightsUser access to an BSGX4e unit is managed
62 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Table 16 describes the parameters for config user account.Table 16. User Account Confi
BSGX4e Business Gateway User Guide 63 Release 01.01 NN47928-102User Management Add User Account ExampleThis example assumes that the user is given rea
64 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01> del user account user1*> saveUser GroupsBefore you add a new user group or chan
BSGX4e Business Gateway User Guide 65 Release 01.01 NN47928-102User ManagementAdd User Group ExampleThis example adds a new user group as follows:name
66 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01User RightsThis section describes how to configure a record that defines the access of
BSGX4e Business Gateway User Guide 67 Release 01.01 NN47928-102User Managementdeemed necessary and only when the effects of authority and object owner
68 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Enter the following commands:> config user rights user access read gname users objec
BSGX4e Business Gateway User Guide 69 Release 01.01 NN47928-102User Management provides legacy authentication, which enables the BSGX4e to function a
BSGX4e Business Gateway User Guide 7 Release 01.01 NN47928-102Delete a Static Route ... 126Star
70 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 the name or address of the Radius server (authserver) the secret that the client sha
BSGX4e Business Gateway User Guide 71 Release 01.01 NN47928-102User Management> conf radius client RadiusUserEntering interactive mode: ctrl^z | &a
72 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01One external authentication method uses the TACACS+ protocol. This protocol provides au
BSGX4e Business Gateway User Guide 73 Release 01.01 NN47928-102User ManagementExample of Configuring a TACACS+ Authentication RecordThis example creat
74 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01TACACS+ Activity LogsTACACS+ client activity is reported in the system log. Log entries
BSGX4e Business Gateway User Guide 75 Release 01.01 NN47928-102User Management3. The user account and its password must be defined on the external TAC
76 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01> show user account TACuserUsers:Name Access Auth Group1 Gr
4COMMAND INTERFACEThis chapter describes the Command Line Interface (CLI) for the BSGX4e device. The CLI provides commands for every function of the
78 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01For more information about the authority granted to user accounts, see “User Accounts,
BSGX4e Business Gateway User Guide 79 Release 01.01 NN47928-102Command Interface line width (initially, 80 characters) command prompt session timeo
8 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Show IKE Security Associations ...157Show IK
80 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01To remind you that configuration changes are pending, the command prompt changes so it
BSGX4e Business Gateway User Guide 81 Release 01.01 NN47928-102Command InterfaceFor example, the following commands cause the unit to display its syst
82 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01An example follows: For information about the command to configure an IP interface, en
BSGX4e Business Gateway User Guide 83 Release 01.01 NN47928-102Command InterfaceNOTE: The command prompt changes while in the interactive mode. NOTE:
84 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Notice that the first parameter, [name], is bracketed, indicating that it is a primary
BSGX4e Business Gateway User Guide 85 Release 01.01 NN47928-102Command InterfaceFor example, the following command turns off the Netflow agent by turn
86 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Maintenance CommandsTo see a list of available maintenance commands, enter the help com
BSGX4e Business Gateway User Guide 87 Release 01.01 NN47928-102Command InterfaceCommands that Require Only Users AuthorityCommandPurposearp Show or fl
88 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Debug CommandsA set of debug commands provides access to additional information for deb
BSGX4e Business Gateway User Guide 89 Release 01.01 NN47928-102Command Interfaceapgos Debugging information about AP GoSapids Display information abou
BSGX4e Business Gateway User Guide 9 Release 01.01 NN47928-102Configuring Layer 2 QoS... 201Config
90 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
5 WAN INTERFACECONFIGURATIONThis chapter describes how to configure the data interface that connects the BSGX4e unit to an external network, or WAN. T
92 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Its duplex mode can be half duplex, full duplex, or autonegotiated. The default is au
BSGX4e Business Gateway User Guide 93 Release 01.01 NN47928-102WAN Interface ConfigurationConfigure eth0 ExampleThis section provides configuration ex
94 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01 Lease expires N/A MAC Address 00:19:09:74:00:00 Speed FULL100
BSGX4e Business Gateway User Guide 95 Release 01.01 NN47928-102WAN Interface ConfigurationOutPause 0 InPause 0OutMulticasts 0 InMulticasts 19908Tx err
96 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01
6LAN SWITCH CONFIGURATIONThis chapter describes how to configure the following features of the BSGX4e device: the ports of the LAN switch the Ethern
98 BSGX4e Business Gateway User Guide NN47928-102 Release 01.01Flow ControlYou can disable or configure flow control for a port to provide either back
BSGX4e Business Gateway User Guide 99 Release 01.01 NN47928-102LAN Switch Configuration> config switch port 3 speed 100full flow yes enabled yes*&g
Komentarze do niniejszej Instrukcji