Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

4610sw vpn remote phone

Status
Not open for further replies.

phneguy

Technical User
Dec 7, 2005
119
US
hey guys,

just wondering if someone has ever used a SSL type connection to try and get a remote phone to work on an IP OFFICE? we get our equipment from Voda One and they told us to use and shipped us the NETGEAR SSL312 vpn router. im trying to get them to help us out without any luck.

we have a little NETGEAR FVS114 vpn firewall in which i have made a rule when any HTTPS traffic comes through, it needs to go to the SSL312 router. i have no ideal if this is right or wrong? i then have the SSL312 set up when it receives any HTTPS (remote phone i hope) that it sends it to the IP OFFICE? again, dont know if this is right or wrong? probably wrong! as it doesnt work.

was just wondering if there is anything else out there that might work better or something out there that we can use thats cost effective?

thanks guys!
 
Don't know much about Netgear, but I'm sure there's a way to get it to work.

My experience has been with a Kentrox Q2300 router, around $500-$600, and it works great. Very easy to setup for the IP VPN phones and Avaya even has a tech bulletin documenting exactly how to set it up. It also has QoS ready to go out of the box. (Although QoS isn't guaranteed on public internet)

The Kentrox has the ability to have dynamic VPN connections/tunnels which are created on the fly. It makes the configuration process even easier. I don't think Voda One is a Kentrox reseller though.

I think it took me a whole 15 mintues for me to configure the VPN router and phone the first time. Now it takes me 2 minutes to configure any additional VPN phones.

Very cool when you can take your IP VPN Phone to a customer's site and plug into their network and show them how it works live.
 
what version of software are you running?

i was told that you dont need any licenses with 3.2, but you DO NEED vpn remote phone licenses with 4.1

i have the vpnremote phone software running on the phone with no luck in activating the phone via vpn connection. tech support said that you need a vpn remote phone license for each phone?????

i do have a little FVS114 netgear VPN ROUTER that we use as are firewall. im wondering if this is our problem?

the SSL312 is supposed to connect to the network behind the firewall. i dont know if im supposed to set user accounts or what?

i really dont know what im doing! this is all a new learning experince for me. SORRY!!!!
 
this is how i have set up the IKE Policy

GENERAL
Policy Name: vpnremote
Direction type: Remote Access
Exchange Mode: Aggressive Mode

LOCAL
Local ID Type: FQDN
Local ID Data: fvs_remote


REMOTE
Remote ID Type: FQDN
Remote ID Data: fvs_remote

IKE SA PARAMETERS
Encryption Algorithm: 3DES
Authentication Algorithm: SHA-1
Authentication Method: PreShared Key (12345678)
Diffie-Hellman (DH) Group: Group 1(768 Bit)
SA Life Time: 28800 (secs)

is this right?


VPN-AUTO POLICY

Policy Name: vpnphone
IKE Policy: vpnphone
Remote VPN Endpoint: address type (ip address)Ad
Address Data: 0.0.0.0
PFS Key Group: Group 1 (768 bit)
NetBIOS Enable is ticked

TRAFFIC SELECTOR
Local IP: start IP is 192.168.1.0
Local Subnet: 255.255.255.0

Remote IP: Any

ESP CONFIGURATION
Enable Encryption is ticked
Encryption Algorithm: 3DES

Enable Authentication is ticked
Authentication Algorithm: SHA-1

is this right????


 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top