Basic deployment – Cisco ASA 5505 User Manual

Page 1094

Advertising
background image

52-6

Cisco ASA 5500 Series Configuration Guide using the CLI

Chapter 52 Configuring Cisco Intercompany Media Engine Proxy

Information About Cisco Intercompany Media Engine Proxy

Cisco Intercompany Media Engine (UC-IME) Bootstrap server—Provides a certificate required
admission onto the public peer-to-peer network for Cisco Intercompany Media Engine.

Figure 52-3

illustrates the components of the Cisco Intercompany Media Engine in a basic deployment.

Figure 52-3

Cisco Intercompany Media Engine Architecture in a Basic Deployment

Basic Deployment

In a basic deployment, the Cisco Intercompany Media Engine Proxy sits in-line with the Internet firewall
such that all Internet traffic traverses the adaptive security appliance. In this deployment, a single Cisco
UCM or a Cisco UCM cluster is centrally deployed within the enterprise, along with a Cisco
Intercompany Media Engine server (and perhaps a backup).

As shown in

Figure 52-4

, the adaptive security appliance sits on the edge of the enterprise and inspects

SIP signaling by creating dynamic SIP trunks between enterprises.

SRTP

Peer-to-peer

Validation

Outside Enterprise

Inside Enterprise

UC-IME

Bootstrap Server

RTP/SRTP

UC-IME Server

P

e

rm

iter

S

ec

u

ri

ty

SIP/SCCP

ASA Enabled with

UC-IME Proxy

DMZ

24

8

760

Cisco UCM Cluster

M

M

M

M

M

UC-IME

Access Protocol

SIP/TLS

TCP/TLS

IP

IP

IP

Advertising