Using the h.323 alg in a corporate environment – Amer Networks E5Web GUI User Manual
Page 435

possible for internal phones to call the external phones that are registered with the
gatekeeper.
Example 6.11. Using the H.323 ALG in a Corporate Environment
This scenario is an example of a more complex network that shows how the H.323 ALG can be
deployed in a corporate environment. At the head office DMZ a H.323 Gatekeeper is placed that
can handle all H.323 clients in the head-, branch- and remote offices. This will allow the whole
corporation to use the network for both voice communication and application sharing. It is
assumed that the VPN tunnels are correctly configured and that all offices use private IP-ranges
on their local networks. All outside calls are done over the existing telephone network using the
gateway (ip-gateway) connected to the ordinary telephone network.
The head office has placed a H.323 Gatekeeper in the DMZ of the corporate Clavister Security
Gateway. This security gateway should be configured as follows:
InControl
Follow the same steps used for the Web Interface below.
Web Interface
1.
Go to: Policies > Add > IPRule
2.
Now enter:
Chapter 6: Security Mechanisms
435