4200 Series Converged Network Appliance User Manual Edgewater Networks, Inc. 2730 San Tomas Expressway Suite 200 Santa Clara, Ca. 95051 Phone: 408.351.7200 info@edgewaternetworks.
4200 User Manual Edgewater Networks, Inc. Copyright (c) 2004, Edgewater Networks, Inc. Edgewater Confidential, All Rights Reserved Part Number: 500-10000-001, v2.0, 8-22-03. This document is protected by copyright and distributed under licenses restricting its use, copying, distribution , and decompilation. No part of this document may be reproduced in any form by any means without prior written authorization of Edgewater Networks, Inc.
4200 User Manual Edgewater Networks, Inc. Table of Contents Chapter 1: Introduction ....................................................................................4 Features .......................................................................................................5 Front Panel LEDs ...........................................................................................5 Back Panel ....................................................................................................
200 User Manual Edgewater Networks, Inc. Chapter 1: Introduction Thank you for the purchase of your 4200converged network appliance. This User's Guide describes the 4200 converged network appliance. This document introduces the major features of the 4200 and describes how to perform physical installation and system configuration. This User's manual is intended for network installers, network operators, and security officers.
4200 User Manual Edgewater Networks, Inc. The 4200 Converged Network Appliance The 4200 is a new generation of edge device providing the demarcation point for real-time, interactive IP services. It is the ideal solution for connecting enterprise PCs and IP Phones to a private or public IP network. It replaces multiple standalone systems by integrating voice-over-IP (VoIP), network security, traffic management and voice call quality monitoring into a low-cost, easily managed device.
4200 User Manual Edgewater Networks, Inc. Back Panel The back panel of the 4200 contains the following: Power connector LAN Ethernet ports WAN Ethernet port Erase switch Serial console port Power Connector The 4200 comes with an AC power cord and 5vdc, 3.0 Amp power adapter for connecting to this port. LAN Ethernet port The 4200 series LAN interface is a 4-port switch that uses a single IP address.
4200 User Manual Edgewater Networks, Inc. Serial Console Port This port is used to establish a local console session with the 4200 using a VT100 terminal or emulation program. The baud rate is 9600. It is used for debug or local diagnostic purposes only. Primary configuration of the 4200 is performed from a web browser as covered in “Chapter 3: Configuring the 4200”. Chapter 2: Getting Started Physical Installation The 4200 is designed for either desktop or wall mount installation.
4200 User Manual Edgewater Networks, Inc. Connecting to the 4200 The 4200 is configured using a web browser such as Internet Explorer or Netscape Navigator. The 4200is shipped with a pre-configured IP address for its LAN port of 192.168.1.1. To connect to the 4200, do the following: A. Connect a PC using an IP address of 192.168.1.2 and subnet mask of 255.255.255.0 to one of the 4200 LAN ports. B. Launch a web browser on the PC and enter the URL string: 192.168.1.1. Press Return.
4200 User Manual Edgewater Networks, Inc. Chapter 3: Configuring the 4200 The 4200 is a flexible, easy to use converged network appliance that provides many critical networking functions for IP based voice and data.
4200 User Manual Edgewater Networks, Inc. same network resources to guarantee low latency and the highest call quality possible for VoIP traffic. At the same time they ensure the best utilization of WAN bandwidth by enabling data traffic to burst up to full line rate in the absence of voice calls. Precedence is given to traffic for the range of addresses reserved for the IP phones. NAT/PAT translation for IP phones and PC’s.
4200 User Manual Edgewater Networks, Inc. The installation of an 4200 on the station side of an enterprise IP PBX is very similar to the IP Centrex application above. The branch office is connected to the corporate network using VPNs or private T1 links terminated by a WAN router. The 4200is then connected directly to the WAN router and the LAN port of the 4200is connected to the enterprise ethernet local area network (typically a layer 2 switch).
4200 User Manual Edgewater Networks, Inc.
4200 User Manual Edgewater Networks, Inc.
4200 User Manual Edgewater Networks, Inc. System Configuration This section explains how to configure the 4200 to function in your IP network. You will configure the ethernet interfaces, network addresses, DNS settings, default gateway, SNMP settings and change the administrative password. Configure the WAN interface A. Select the Network link. B. Select Static IP address if you want to manually assign the IP address configuration to the WAN interface. 1. Enter the IP Address. 2.
4200 User Manual Edgewater Networks, Inc. B. Enter the IP Address. C. Enter the Subnet Mask (e.g. 255.255.255.0). D. Press Submit. WARNING: After pressing submit the 4200 will become unreachable until you use a PC with an address on the same subnet as entered in steps B and C above. Set Ethernet Link Rate WARNING: The vast majority of ethernet networking devices including the 4200 use “autonegotiate” as a default setting.
4200 User Manual Edgewater Networks, Inc. below 800 bytes. A. B. C. D. Select System. Select System Overview. Enter the WAN MTU size Press Submit. Configure the DHCP Server The 4200 can act as a DHCP server granting IP addresses to PCs, workstations, servers or voice devices (IP phones, IADs or softphones). DHCP is a protocol that enables IP devices to obtain temporary or permanent IP addresses (out of a pool) from centrally administered servers.
4200 User Manual Edgewater Networks, Inc. F. Enter the Time Offset (DHCP user option 2). Set the time offset in hours from UTC for your local location. G. Enter the NTP Server Address (DHCP user option 42). This is the IP address of your NTP server. H. Enter the WINS Address. PLEASE note: If you are not using WINS this field may be left blank.
4200 User Manual Edgewater Networks, Inc. E. Enter the Read-Only Community. This is the community string that the management station uses when accessing read-only objects from the 4200. The default is 'public'. F. Enter the System Location. This is a comment string that can be used to indicate the location of the 4200. By default, no value is set. G. Enter the System Contact. This is the administrative contact information for the 4200. By default, no value is set. H. Enter the SNMP Port.
4200 User Manual Edgewater Networks, Inc. We strongly recommend that you change the default password for the “root” administrative account using the following steps: A. Select System. B. Select changed in the Change Password section of the GUI. C. Enter the New Password. PLEASE note: the new password must be between 6 and 20 characters in length. Any combination of alpha and numeric characters is accepted. D.
4200 User Manual Edgewater Networks, Inc. VoIP Configuration The 4200 provides a VoIP application layer gateway (ALG) for the SIP, MGCP, H.323 and SCCP protocols. The ALG proxies the connection between the VoIP softswitch or IP PBX and voice devices such as IP phones, IADs or softphones. By acting as a proxy the 4200 is able to provide several important functions for IP based voice: Provide NAT/PAT services for voice traffic.
4200 User Manual Edgewater Networks, Inc. PLEASE note: It is not necessary to program in an FTP server address if your IP phones use the FTP protocol instead of TFTP to retrieve their images. A relay function is not needed for FTP as the 4200 will forward FTP traffic to the destination server as programmed in your IP phone. F. Press Submit. Configure VoIP Subnet Routing It is not necessary to configure VoIP subnet routing if all of your voice devices are installed on the same IP subnet as the 4200.
4200 User Manual Edgewater Networks, Inc. This is the IP address of the remote subnet containing the voice devices. E. Enter the Netmask (egg. 255.255.255.0). This is the mask of the IP address of the subnet containing the voice devices. F. Enter the Gateway (egg. 10.10.10.2) . This is the IP address of the intermediate router that knows the return path to the remote subnet from the 4200. G. Select the Delete Subnet checkbox. H. Press Submit.
4200 User Manual Edgewater Networks, Inc. Default Router = Default router for data on this subnet. This is usually the LAN ip address of the 4200. DHCP Enabled = No E. Save the settings. Note: To reboot your Cisco telephone, press and release the following three buttons simultaneously: "*" + "6" + Settings . Depending on the firmware version in the telephone you may need to “Unlock” the configuration to change a parameter.
4200 User Manual Edgewater Networks, Inc. Data Networking Configuration The 4200 provides static IP routing and two types of Network Address Translation (NAT) functions for data traffic. This chapter explains the use and configuration of these features. NAT for Data Traffic NAT allows hosts on a private internal network (the LAN side of the 4200) to anonymously communicate with devices on an external network (the WAN side of the 4200).
4200 User Manual Edgewater Networks, Inc. the public IP address of each server to the actual private IP address of the server. PLEASE note: In order for Static NAT to function dynamic NAT must be enabled. A. Select NAT. B. Enter the public and private IP addresses and ports to be mapped in Static NAT Client Entries using the following format: Protocol;PublicIPAddress/netmask-port>PrivateIPAddress-port For example the entry “tcp;198.66.203.19-80>192.168.1.
4200 User Manual Edgewater Networks, Inc. Delete the static route A. B. C. D. E. Select System. Select System Overview. Select Route. Remove the check in the Apply Route checkbox. Press Submit. Version 2.
4200 User Manual Edgewater Networks, Inc. Firewall Configuration The 4200 uses a Stateful Packet Inspection (SPI) firewall to protect data devices installed behind the LAN interface. The 4200 ALG as described in the “Configure the VoIP ALG” section of this manual protects voice devices. The firewall is enabled by default.
4200 User Manual Edgewater Networks, Inc. Configure Advanced Settings A comprehensive security policy can be created using the advanced settings of the 4200 firewall. The policy actions that can be taken on any packet processed by the 4200 are summarized in the following table: Action Allow TCP Port Description Allows traffic with the specified TCP port to terminate on the 4200. Allow UDP Port Allows traffic with the specified UDP port to terminate on the 4200.
4200 User Manual Edgewater Networks, Inc. Remove Advanced Setting Entries To remove an advanced firewall setting simply highlight the value in the entry box and delete it using the keyboard. A. Select Firewall. B. Highlight the entry to be deleted in the Advanced Settings list and press the Delete key on your keyboard. C. Press Submit. Version 2.
4200 User Manual Edgewater Networks, Inc. Traffic Management Configuration Traffic management is required to ensure high quality voice calls when both voice and data traffic share the same WAN link. Voice traffic must be prioritized for transmission over data traffic to meet the stringent jitter, latency and packet loss requirements for toll quality voice. The 4200: Automatically prioritizes voice traffic over data traffic to ensure toll quality voice calls.
4200 User Manual Edgewater Networks, Inc. your IT administrator or service provider can usually provide these values. Some typical examples are as follows: WAN Link T1 SDSL ADSL WAN Downstream Bandwidth 1.544Kbps 768Kbps Example 1 - 768Kbps Example 2 - 512Kbps WAN Upstream Bandwidth 1.544Kpbs 768Kbps Example 1 - 256Kbps Example 2 - 128Kbps Optionally enable priority IP addresses VoIP traffic from devices that use the VoIP ALG function (phones, video stations, softphones on Pcs, etc.
4200 User Manual Edgewater Networks, Inc. Determining the maximum number of concurrent calls The maximum number of concurrent calls that can be supported by the WAN access link is calculated using the following formula: Max calls = (Maximum WAN upstream bandwidth * .85)/VoIP codec rate where, Maximum WAN upstream bandwidth = value entered in step D above (in Kbps) VoIP codec rate = 85.6Kbps for G.711 voice devices or 29.6Kbps for G.729 voice devices. The maximum WAN upstream bandwidth is multiplied by .
4200 User Manual Edgewater Networks, Inc. A Closer Look at Traffic Management in the 4200 The traffic management mechanisms provided by the 4200 are designed to ensure high priority real time voice traffic is processed before lower priority data traffic. At the same time, bandwidth not in use by voice traffic is made available so that data traffic can burst up to full line rate making efficient use of WAN bandwidth.
4200 User Manual Edgewater Networks, Inc. if necessary) when sent to the LAN interface by the 4200 appliance. Similarly data traffic sent back to the 4200 for transmission to the WAN are also delayed. This results in the end stations slowing down their transmit rate. This technique is quite effective in practice as end stations usually reduce their transmit rate before VoIP signaling has completed for new call setup.
4200 User Manual Edgewater Networks, Inc. registration code enables the ALG and is pre-installed at the factory. If the registration code is inadvertently deleted you can re-enter the code using the following steps: Enter the Registration Code A. Select System. B. Select registration code. C. Select Edit Registration Code. D. Enter the Registration Code. The registration code can be found on the sticker located on the bottom of the 4200. E. Press Submit.
4200 User Manual Edgewater Networks, Inc. “autonegotiation". If the link rate is set manually, ensure that the device at the far end of the connection can communicate at the desired rate. Incompatible rates can cause a loss of communication with the 4200. Interface Information The specific status and configuration information for the system interfaces is displayed in the Interface Information section. The interface statistics can point to areas of congestion in the network.
4200 User Manual Edgewater Networks, Inc. completion. This information along with the IP addresses of the VoIP endpoints supporting the call are logged locally and optionally sent to an external syslog server (see Enable Remote System Logging for instructions on enabling logging to a remote syslog server). Additionally the 4200 will generate a real-time message for any MOS values calculated less than 2.5 (considered poor quality) during an active call.
4200 User Manual E. F. Edgewater Networks, Inc. Press Submit. Restart the VoIP ALG by following the instructions found in the Restarting Networking Process section of this manual. Performing a Ping Test A ping test is the most common test used to verify basic connectivity to a networking device. Successful ping test results indicate that both physical and virtual path connections exist between the 4200 and the test IP address.
4200 User Manual Edgewater Networks, Inc. by the console test application. The following steps configure the traffic simulation client: A. B. C. D. E. This is F. This is G. Select System. Select System Overview. Select Traffic Simulator. Select the Enable Endpoint checkbox. Enter the Endpoint IP Address. IP address of the remote test client. Enter the Console IP Address. the IP address of the workstation running the netiQ console. Press Submit.
4200 User Manual Edgewater Networks, Inc. WARNING: Rebooting the system will interrupt services for a few minutes. All voice and data sessions currently in progress will be interrupted. Chapter 5: Saving and Restoring the 4200 Configuration The 4200 stores all configuration information for the system in a series of individual files that reside in local flash memory. These files are read at boot time to determine the configuration identity of the 4200 and then stored in RAM as “running” state.
4200 User Manual Edgewater Networks, Inc. Once you are at the command prompt (bash#) you can create the backup file, store it to local flash, copy it to a remote TFTP server, copy it from a remote TFTP server, delete it, load it or list all available backup files. Create a Backup File and Save in Local Flash bash# ewn save Saves the current running configuration. Filename format (must use extension .conf1 or .conf2): .conf1 .
00 User Manual Edgewater Networks, Inc. bash# ewn load Loads the specified backup file into RAM and makes it the active running configuration. WARNING: Issuing this command will automatically restart the 4200 and therefore interrupt any active voice calls and data sessions. Chapter 6: Upgrading the 4200 This chapter describes how to upgrade your 4200 to the latest software release available from Edgewater Networks.
4200 User Manual Edgewater Networks, Inc. until the write is 100 percent complete. The 4200 may become unusable if the write is interrupted. The flash write can take up to 5 minutes depending on the speed of the download server. The system will automatically restart after the new image has been loaded. G. Verify that the upgrade was successful by checking the software revision number found on the System page Upgrade Procedure for Software Version 1.3.
4200 User Manual Edgewater Networks, Inc. You may see a "Restarting system" message or your SSH session will exit. This is an indication the system is rebooting. The system takes 1-2 minutes to reboot. G. Verify that the upgrade was successful by checking the software revision number found on the System page H. If you opened an SSH session you should logout of the 4200 and close the SSH session by entering exit in the command line. Version 2.
4200 User Manual Edgewater Networks, Inc. Appendix A: Troubleshooting Tips This section contains possible solutions to problems regarding the installation of the 4200. If you cannot find an answer here please visit our website at www.edgewaternetworks.com. I am having trouble reaching the Internet through the 4200. We recommend connecting a PC directly (or via a switch) to the LAN port of the 4200. The default LAN IP address of the 4200 is 192.168.1.
4200 User Manual Edgewater Networks, Inc. Appendix B: Contact Information Contact and Support Information Edgewater Networks, Inc. 2730 San Tomas Expressway Suite 200 www.edgewaternetworks.com Phone: 408.351.7200 General: info@edgwaternetworks.com Sales: sales @edgewaternetworks.com Edgewater Networks, Inc. - Technical Assistance Center Phone: 408.351.7200 ext. 2 support@edgewaternetworks.
4200 User Manual Edgewater Networks, Inc. Hardware Warranty For a period of one (1) year after shipment of the Product, Edgewater warrants that such Hardware will substantially conform to Edgewater’s published specifications for such Hardware on the date of order if properly used in accordance with procedures described in the documentation supplied by Edgewater.
4200 User Manual Edgewater Networks, Inc. (ii) replacing the Software with conforming software; or (iii) refunding of the license fee paid for the Software. EXCEPT AS EXPRESSLY PROVIDED, THE SOFTWARE IS PROVIDED TO YOU “AS IS” AND EDGEWATER NETWORKS AND ITS SUPPLIERS EXPRESSLY DISCLAIM ALL OTHER WARRANTIES AND CONDITIONS INCLUDING THE IMPLIED WARRANTIES OR CONDITIONS OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT.
4200 User Manual Edgewater Networks, Inc. "work based on the Program" means either the Program or any derivative work under copyright law: that is to say, a work containing the Program or a portion of it, either verbatim or with modifications and/or translated into another language. (Hereinafter, translation is included without limitation in the term "modification".) Each licensee is addressed as "you".
4200 User Manual Edgewater Networks, Inc. permissions for other licensees extend to the entire whole, and thus to each and every part regardless of who wrote it. Thus, it is not the intent of this section to claim rights or contest your rights to work written entirely by you; rather, the intent is to exercise the right to control the distribution of derivative or collective works based on the Program.
4200 User Manual Edgewater Networks, Inc. 5. You are not required to accept this License, since you have not signed it. However, nothing else grants you permission to modify or distribute the Program or its derivative works. These actions are prohibited by law if you do not accept this License.
4200 User Manual Edgewater Networks, Inc. Each version is given a distinguishing version number. If the Program specifies a version number of this License which applies to it and "any later version", you have the option of following the terms and conditions either of that version or of any later version published by the Free Software Foundation. If the Program does not specify a version number of this License, you may choose any version ever published by the Free Software Foundation. 10.
4200 User Manual Edgewater Networks, Inc. DES, etc., code; not just the SSL code. The SSL documentation included with this distribution is covered by the same copyright terms except that the holder is Tim Hudson (tjh@cryptsoft.com). * Copyright remains Eric Young's, and as such any Copyright notices in the code are not to be removed. If this package is used in a product, Eric Young should be given attribution as the author of the parts of the library used.