public or private vcs-e dns?

in my current setup my vcs-e uses local dns server, but I read there a public need, even if currently jabber works very well without any problem and mcu conferences work ok, my questions is do the need of vcs-e a public dns? and why? It would explain why I can't make calls outside my network when my video units are stored in the vcs - c?

For PT. 1 & 2, you establish a B2B call to the external endpoints.

# 3: Jabber Cisco will use a different area, which is the crossing area and if you say that it works if the area is in place.

You have a DNS Zone configured on your VCS-E?

DNS zone is used to find systems that are hosted on the outside (which are not locally, for example, a company). Destination alias are sought by a name using a DNS lookup.

# 4: After creating a DNS on VCS - E Zone, you must create a search rule that will target your DNS Zone. See the configuration guide on and go through the task of 11 to 13 on p. 24-28.

http://www.Cisco.com/c/dam/en/us/TD/docs/Telepresence/infrastructure/VCs/config_guide/x8-7/Cisco-VCs-basic-configuration-control-with-Expressway-deployment-guide-x8-7.PDF

For #5. For SIP using B2B calls, see VCS for Cisco IP using the Port for Firewall Traversal Deployment Guide on pages 8-11 for a list of ports.

http://www.Cisco.com/c/dam/en/us/TD/docs/Telepresence/infrastructure/VCs/config_guide/x8-7/Cisco-VCs-IP-port-usage-for-firewall-traversal-deployment-guide-x8-7.PDF

Also try to test call B2B with this test site:

[email protected] / * /.

This tool also allows you to check the records of services/SRV SIP for successful B2B calls. You can check the SIP endpoint domain name you call and your video network SIP domain name if these entries have been found: https://cway.cisco.com/tools/SrvRecord/

  • _sip._udp. Domain
  • _sip._tcp. Domain

Kind regards

Acevirgil

Tags: Cisco Support

Similar Questions

  • Telepresence Content Server: Dissemination to the Public and private users

    *****

    Infrastructure:

    TMS 14.5 (private network)

    VCS - C 8.5.1 (private network)

    VCS-E 8.5.1 (Public network)

    S5.3 TCS (private network)

    Codian: Supervisor 8500, MSE 8510, 8321 ISDN (private network)

    *****

    New to this, so I don't know what would be the best way to do this, but basically the goal is to broadcast videos of TCS to the users of the network internal as live audiences without security problems. Try to do this without an external broadcast service.

    It is the State that works very well for internal users, but is not available to public users because it's on a private network.

    Any help is greatly appreciated.

    Thank you
    Mike

    You will need to provide public access to your Cameras, you can consult the administration of CHT Guide for a list of ports. We have our TCS on a private network and have the lanes of traffic through the network load balancers that rely on the public network to provide all access public and private.

  • I need to create public and private keys for the security certificate and I can not find the certificate. Where is he?

    I bought a security certificate, and the site tells me that it has been installed successfully. I need to export the certificate so that I can create public and private keys, but I can't find the certificate to do so.

    Firefox (Firefox Orange) > Options > Options > advanced > Certificates > authorities > export

  • How to get the public and private keys to use recaptcha?

    I registered with google to get a recaptcha for my Web site. I've gotten has been the key to site and the secret key! If I need to get the public and private key for muse!

    Hello

    Please use the site as a 'public key'key key and Secret as "clΘ privΘe".

    Concerning

    Vivek

  • No saved reports - no Public Option / private

    I created a new application with several interactive reports.  However, when my users click on save report, there is no option to make the saved report, public or private, as indicated in the documentation.  I have it configured incorrectly?

    Thank you.

    Under the documentation:

    Tip:

    To save a public report, the developer must select Save Report Public must be selected under include in the Actions Menu on the report attributes page. Developers can also apply for authorization scheme to enable or disable save the Public report. See "Customizing the search report interactive bar".

    So, it is possible that you don't have this game in your configuration of application report...

    Thank you

    Tony Miller

    Software LuvMuffin

    Blog: https://apex1.revion.com/pls/apex/f?p=217:1:P1_ARTICLE:

  • Generate public and private keys within the smart card

    Hi all

    I use this code to generate public and private keys within the smart card.

    KeyPair kp = new pair of keys (KeyPair.ALG_RSA_CRT, KeyBuilder.LENGTH_RSA_512);
    kp.genKeyPair ();
    PrivateKey prikey = kp.getPrivate ();
    PublicKey pubkey = kp.getPublic ();

    This code runs without error.

    I need to obtain the public key of the smart card. So I need to get the public key to a byte array.
    But I can't get these keys in array of bytes of plain text.

    The methods I can get for pubkey object are

    pubkey.clearKey ();
    pubkey. Equals (obj);
    pubkey.getSize ();
    pubkey.getType ();
    pubkey.isInitialized (); only these.

    I use
    Eclipse Version: 3.4.1 (level of agreement of the compiler = 1.4)
    Jcop plugin (to connect with the real map and to test the java code in virtual card provided by JCOP)
    OmniKey5321 (characters without contact) card reader

    What is the reason to get those above methods pubkey object? Is it a version problem?
    How can I get the public key in ordinary byte array? Is this possible?
    If it is not possible, is there a way to get the public key as a certificate of export or something another solution?

    If my script is not a possible strategy, how can I use private public keys to send the applet-specific data? Is there a better way to do it?

    Published by: 863766 on June 6, 2011 12:16 AM
    RSAPublicKey pubkey = kp.getPublic();
    

    then

    pubkey.getExponent(...); pubkey.getModulus(...);
    
  • Oracle synonyms: public or private

    The LiveCycle installation instructions specify that for the creation and initial filling of the database THESAURUS 'CREATE' privilege is necessary. I presume this means LK who actually will use to create synonyms. The DBA is now whether these synonyms will be public or private, and I can't find in the documentation. Could someone advice?

    Can you share the URL where it is documented and the version of database you set up? In line with the preparation for installation , the Oracle user account must have the following privileges:

    • CREATE SEQUENCES
    • CREATE VIEW
    • UNLIMITED TABLESPACE
    • CREATE TABLE
    • CREATE THE CLUSTER
    • CREATE SESSION

    ~ Vishal

  • Public vs private

    When I publish my application through the creator of folio tools gives me the possibility of Public or private. Can someone explain exactly what they mean? If I put it to the private sector can I still share it with customers? They have to sign in their applications of Content Viewer with my login or can they still use their own? What about the Public? Who can see it then?

    I assume that these decisions have no impact when I eventually send the app to iTunes, or are they?

    When you publish a folio as private, the folio is published on the service of distribution (Akamai servers rather than acrobat.com servers), and it is available only in the viewer of the iPad. The private folio appears in the library without the blue band. When you publish a folio as Public, you make it available to all of you who have your custom Viewer.

  • CM500 and CM600 public or private IP assigned to the router?

    I would like to use my router port forwarding for remote access to devices on my local network such as IP cameras. I know that with a built-in modem/router, that this can be done - I have it working now.

    Will be working with a router and a separate modem transfer port? The reason I ask, is that, in my opinion, most modems assign a private attached router IP address and not the public IP address. What I want to know is:
    1 - CM500/600 modems have the ability to assign the public IP address to a router?
    2 - port forwarding will still work when a router has been assigned an IP address private? I'm not a network expert, but conceptually the modem converts public IP + port x private IP + port x?
    3. when a router is configured to send the WAN IP of a dynamic DNS service address to send it assigns a private IP address or does it have the ability to determine the public IP address and send it?

    Thank you

    If you are on the network from Time-warner, they should assign a public IP address and for example if you connect CM500 Cable modem with a router R7000, thr router will receive the public IP address and you won't have a double NAT situation.

    I didn't know what ISP you had service with. some ISPS in Asia provides private users IP addresses, and it will create double NAT situation.

    I have not seen any ISP so far providing US with private IP addresses, but I've only worked with Time Warner and Comcasts. Not sure about smaller players.

  • VCS Cluster DNS problems

    Hello

    I have created a DNS SRV to configure in the FULL of the VCS Cluster domain name.

    The problem is when devices try to enroll in the VCS Cluster; I put in the endpoints, in Gatekeeper registration DNS or IP address of the DNS SRV but the always end points will never reach the cluster of VCS.

    I check the logs in DNS SRV and I don't see any request from devices.

    I think I need to create a virtual IP address with DNS with load balancing, I mean: IP/DNS (FQDN) for the Cluster with load and balance when devices trying to connect to the cluster's IP/DNS it transmits the request to an IP or host name of a host in the cluster.

    DNS cLuster

    23.1.0.201 (vcs.xxx)

    The peer of the cluster:

    23.1.0.32 (vcscontroltc.xxx) Master

    23.1.0.33 (vcscontrolvag.xxx) slave

    XXX--> field

    Is this right?

    Thanks in advance.

    Best regards.

    Hello

    then 23.1.0.201 is the IP address of your DNS server?

    How you need to configure is:

    FULL of the cluster domain name: vcscluster.domain.local

    VCS counterpart A: vcscontroltc.domain.local

    VCS counterpart B: vcscontrolvag.domain.local

    With the above assumptions, that's what you create in DNS:

    -For the FULL domain name cluster, create two A records for vcscluster.domain.local one pointing to 23.1.0.32 and the other pointing to 23.1.0.33. With that, I recommend that you enable alternate on your DNS server.

    -For each peer, create a record, so vcscontroltc.domain.local points to the points 23.1.0.32 and vcscontrolvag.domain.local to 23.0.1.33.

    -Create SRV H323 and SIP records for vcscluster.domain.local. With that, I recommend that you create two SRV records for each service, pointing A Exchange and showing a B counterpart, with a weight and priority. For example:

    _sips._tcp.vcscluster.domain.local-> vcscontroltc.domain.local, priority 1, weight 50

    _sips._tcp.vcscluster.domain.local-> vcscontrolvag.domain.local, priority 1, weight 50

    If you follow the advice above, you should be able to configure all of your interior SIP and H323 endpoints with a h.323 gatekeeper address/SIP proxy address, of vcscluster.domain.local and endpoints must enroll in one of the peers, regardless of whether endpoints supports DNS SRV.

    If the domain that you use is public, you also want to add the SRV records for that domain name. These SRV records must point to your VCS Expressway, to ensure that incoming calls from URI function as it should. For example:

    _sips._tcp.domain.local-> vcse.domain.local, priority 1, weight 100

    If you have several VCS-E you can adjust the SRV records accordingly.

    Hope this helps,

    Andreas

  • Is Windows Live Photo Gallery PUBLIC or PRIVATE when you use?

    Hi, I hope you can help me please... Windows Live Photos LIVE allowing the public to see all your photos or is it private until you do public iy? IM really confused... I WLPG and recently I wanted to download to another computer and it put other peoples photos in my Gallery... which I did, can you please tell me? I don't want my public photos, I just need to use it as an editot and organize, thank you very much!

    Hi, I hope you can help me please... Windows Live Photos LIVE allowing the public to see all your photos or is it private until you do public iy? IM really confused... I WLPG and recently I wanted to download to another computer and it put other peoples photos in my Gallery... which I did, can you please tell me? I don't want my public photos, I just need to use it as an editot and organize, thank you very much!

    It is private until you want to not to share with others, but if you want to share with others or to the general public you can easily do so. You must sign in with your Windows Live id ID to share your photos in SkyDrive, Flickr, Facebook and YouTube.

  • VCS - C VCS-E DNS

    Dear,

    I have two VCS-E and VCS - C and I followed the VCS - C and E Deployment guide please help me with the following:

    1. in the SCV DNS deployment guide - area E string model ((?. * @% localdomains%.*$).*) what should I use instead of localdomain?) What is the domain DNS record?

    2 - I did everything as the guide suggested, but I do not understand the DNS part can anyone briefly explain it to me, or give me an example, because I want units to be able to call me from outside and im not a expert in DNS, please help

    If you have any SIP domains configured on your highway?  You can leave % localdomains % as it is, as that will match all SIP domains configured on your Expressway.  If you do not have any installation areas SIP, to replace it by whatever your field.

    Insofar as the DNS records, I guess you're talking about SRV records?  If so, see some of the discussions in the forums below.

    VCS-Expressway-and-Endpoint-DNS-Registration

    VCS-Expressway-cluster-DNS-SRV-Records

    DNS-SRV-record-issue-VCS-Expressway

    Essentially, you have an a record for your Expressway which will be that it is COMPLETE, and on your external domain, you create SRV records for each type of service that point to this FQDN Expressway.

  • 2600 NAT outside public to private inside addresses

    I would like to put servers with private addresses at disposal of guests (with public addresses) on the other side a router. Can someone give me a pointer?

    TIA

    you want to configure static NAT.

    Suppose that 10.10.1.5 is the server inside and 193.234.211.12 is your free external IP. Joanie configure this line:

    ' ip nat inside source static 10.10.1.5 193.234.211.12.

    And all those who will have access to the external IP address will go to internal (static nat)

    see you soon

    Robert

  • Public and private IPs on the same Interface by using NAT Exemption/policy NAT

    I'm looking for some feedback on whether my thoughts on the installation program will run.

    Equipment: PIX 515E 6.2 (2)

    Scenario:

    The inside interface of the PIX will host 3 blocks of addresses IP - 24 public 2 blocks and 1 private/16 block. (All IP addresses have been replaced by dummy blocks.)

    Blocks of audiences:

    * 192.168.10.0/24

    * 192.168.20.0/24

    Block of private:

    * 10.50.0.0/16

    Traffic from the public 2/24 blocks should go through the firewall without address translation.

    The two blocs of the public will be able to receive connections initiated from the Internet.

    Public blocks will need to be able to send and receive traffic on a static VPN tunnel to our headquarters without subject to address translation

    Traffic leaving the sector private/16 block should be subjected to PAT before passing through the firewall.

    Private/block 16 will not receive incoming traffic from the Internet (other than responses to outbound connections initiated from within the private block).

    However, the private block will also have to be able to send and receive traffic on a static VPN tunnel to our headquarters * without * subject to address translation (i.e. hosts on our corporate network must be able to initiate connections to the private block and vice versa).

    The inside interface of the PIX will be connected to a Catalyst 3xxx series layer 3 switch, which will be responsible for routing all internal (so the PIX will never be routing of traffic on the interface, it was received).

    My ideas on how to implement are:

    * Use the exemption of NAT to exempt public address translation blocks. This will allow incoming and outgoing connections through the firewall.

    * Use the exemption of NAT to exempt the block private NAT when connecting to our head office on the VPN tunnel.

    * Use policy NAT w / PAT to translate the block private connecting to all other hosts.

    I have translated these thoughts in the following configuration snippet.

    Because the NAT exemption is processed before policy NAT in the evaluation of the NAT rules, I believe that this should allow the public IP blocks treat incoming/outgoing traffic without translation, while submitting the private translation block (except during handling of incoming/outgoing connections to our network of corporate office).

    Can someone confirm my assumptions about this?

    # ----------------------------------------------------------------------

    traffic of # which should be exempted from translation

    permit ip 192.168.10.0 access list nat_exempt 255.255.255.0 any

    nat_exempt 192.168.20.0 ip access list allow 255.255.255.0 any

    nat_exempt ip 10.50.0.0 access list allow 255.255.0.0 10.100.0.0/16

    traffic of # which should be the subject of translation

    policy_nat ip 10.50.0.0 access list allow 255.255.0.0 any

    # Suppose 192.168.5.1 is the address to use for PAT

    Global (outside) 1 192.168.5.1

    NAT (inside) 0-list of access nat_exempt

    NAT (inside) 1 access-list policy_nat

    # assumes that 192.168.10.7 is the IP address of the inside layer 3 switch

    Route inside 192.168.10.0 255.255.255.0 192.168.10.7 1

    Route inside 192.168.20.0 255.255.255.0 192.168.10.7 1

    Route inside 10.50.0.0 255.255.0.0 192.168.10.7 1

    #assume the following configuration sections appear elsewhere: static tunnel VPN, ACL, ifconfig, etc..

    # ----------------------------------------------------------------------

    Yes, this will work, even if you don't need political NAT for the 10.50.0.0 network. For PAT the 10.50.0.0 network when to anywhere (except via VPN) just do:

    Global 1 192.168.15.1 (outside)

    NAT (inside) 1 10.50.0.0 255.255.0.0

    As I said, you have works perfectly, the above is just an easier way to do it.

  • Jabber VCS Expressway - DNS resolution internal Highway itself

    Much of community support.

    I am currently configuration solution VCS Expressway (Highway E both Expressway C servers). Due to some restrictions of firewall that I need to resolve the fqdn Expressway C directly from the highway E server which means that I need to Hwy E resolve C Expressway fqdn withoout using the DNS server. I was wondering if there is a way to edit the VCS Expressway hosts file (if such a thing exists in the VCS) as anyone can do in the operating systems such as linux. I make this question because I took a capture .pcap of VCS and there saw the DNS query process but option number one was 127.0.0.1, which is the highway itself. Perhaps this connection attempt is just the highway to research in its DNS cache, but I'm not sure.

    Best regards

    Roberto Lopez.

    Ah, this is the reason why I asked. You don't need DNS for it.

    The way it will work is when the Traversal (in your case Expressway-C) client tries to connect to the server of course (in your case Expressway-E), the Traversal server will look at the common name on the cert that was produced by the customer of the crossing. He sees if the highway E would be there with what is specified when you configure the zone crossing on the highway e.

    Basically, DNS is not necessary. You just need to make sure that the domain Highway C FULL name is what is specified in the "TLS check name of the topic." Also make sure that if the certificates are signed by a CA, root/intermediate certificates must be downloaded to the two C/E Expressway. also, make sure you put the FULL name of the motorway E in the crossing area on the fast track C, and not the IP address.

    HTH

Maybe you are looking for