Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

SV8100 - Branch Office DT700 via VPN

Status
Not open for further replies.

Wad4iPad

IS-IT--Management
Oct 27, 2011
1
US
Helping a friend, who inherited the configuration.

Main office: SV8100 @ 10.x.x.x
3 branch offices. Each with its own separate subnet 192.168.3.x, 192.168.4.x, 192.168.5.x

Branch office VPN for each routes only VOIP traffic through tunnel. Other traffic travels out through local ISP.

The DT700 users experience different issues. Call quality and other. This may be a QoS issue.

Interestingly the BOVPN DT700 users can not call each other’s extension.

I'm turning through the manual - but wonder about the Using Router option? Should it specify the default gw or the external branch office bovpn router.

Any help is greatly appreciated.

Thanks in advance




 
We have a client with a similar setup. We had to create VPN tunnels between each office. This allowed the voice traffic to reach the IP phones.

Good Luck
 
As Ernie stated the reason the branches can't call each other is because the VPN is not fully meshed. Each office needs to have a VPN connection to every other office, so at every site you will have 3 separate tunnels.

With regards to Quality . . . You say that only voice goes through the VPN, and the other data goes out the ISP? I question your understanding of this config and have a few questions

How many internet connections do you have at each site, and what type?

Are the connections with the same carrier?

What is the brand of router used for the VPN?


Just my 2 cents, but depending on your answers to the above the quality you get over VPN through the internet will be at a minimum "slightly problematic". Obviously, YMMV but on any VPN implementation I have done there will always be at least momentary quality issues. I also would assume that they DO IN FACT have other interoffice traffic going through the VPN, so proper QOS config in the routers is the first step after fixing the "mesh" topology. If they have even a single file share, sharepoint, domain controller, email server or the like they probably already are (OR NEED TO BE) going through the VPN tunnel.

Bottom line . . . This customer needs an MPLS network and this application should probably not have been sold without it. We also don't know what they are using for trunking, but going to an MPLS or similar could allow them to offset a lot if not all of the costs by changing this config. Also, I don't know who does their IT in general, but if you are right in saying nothing goes through the VPN but voice they may also need a competent IT consultant as well.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top