Cisco ASA Series Cli Configuration Manual page 1274

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Information about the Cisco Mobility Advantage Proxy Feature
Figure 1-2
Mobility Advantage Proxy Using NAT/PAT
In both scenarios
UMA servers.
In scenario 2
firewall does not have to open up a wildcard pinhole for inbound traffic.
hostname(config)# access-list cumc extended permit tcp any host 172.16.27.41 eq 5443
versus
hostname(config)# access-list cumc extended permit tcp host 192.0.2.183 host 172.16.27.41
eq 5443
Cisco ASA Series CLI Configuration Guide
1-4
Cisco UMC/Cisco UMA Architecture – Scenario 2: Security Appliance as Mobility Advantage
Proxy Only
Client connects to
cuma.example.com
(192.0.2.41)
DMZ
192.0.2.41/24
192.0.2.182/24
outside
inside
ASA with
TLS Proxy
(Figure 1-1
and
(Figure
1-2), PAT can be used to converge all client traffic into one source IP, so that the
Chapter 1
Cisco UMC Client
Internet
ISP
Gateway
Internal Network
IP Address:
172.16.27.41
(DMZ routable)
Active
Directory
Exchange
Cisco Unified
Enterprise Network
Figure
1-2), NAT can be used to hide the private address of the Cisco
Configuring Cisco Mobility Advantage
Corporate
Firewall
eth0
Cisco UMA
Cisco UCM
Conference
Voice mail
Presence
M
MP

Advertisement

Table of Contents
loading

Table of Contents