Yealink SIP-T23P Руководство администратора онлайн [589/841] 166941

Yealink SIP-T23P Руководство администратора онлайн [589/841] 166941
Configuring Advanced Features
573
VPN (Virtual Private Network) is a secured private network connection built on top of
public telecommunication infrastructure, such as the Internet. It has become more
prevalent due to benefits of scalability, reliability, convenience and security. VPN
provides remote offices or individual users with secure access to their organization's
network. There are two types of VPN access: remote-access VPN (connecting an
individual device to a network) and site-to-site VPN (connecting two networks together).
Remote-access VPN allows employees to access their company's intranet from home or
outside the office, and site-to-site VPN allows employees in geographically separated
offices to share one cohesive virtual network. VPN can be also classified by the
protocols used to tunnel the traffic. It provides security through tunneling protocols:
IPSec, SSL, L2TP and PPTP.
IP phones support SSL VPN, which provides remote-access VPN capabilities through SSL.
OpenVPN is a full featured SSL VPN software solution that creates secure connections in
remote access facilities, designed to work with the
TUN/TAP
virtual network interface.
TUN and TAP are virtual network kernel devices. TAP simulates a link layer device and
provides a virtual point-to-point connection, while TUN simulates a network layer device
and provides a virtual network segment. IP phones use OpenVPN to achieve VPN
feature. To prevent disclosure of private information, tunnel endpoints must authenticate
each other before secure VPN tunnel is established. After VPN feature is configured
properly on the IP phone, the IP phone acts as a VPN client and uses the certificates to
authenticate the VPN server.
To use VPN, the compressed package of VPN-related files should be uploaded to the IP
phone in advance. The file format of the compressed package must be *.tar. The
related VPN files are: certificates (ca.crt and client.crt), key (client.key) and the
configuration file (vpn.cnf) of the VPN client.
The following table lists the unified directories of the OpenVPN certificates and key in
the configuration file (vpn.cnf) for Yealink IP phones:
VPN files
Description
Unified Directories
ca.crt
CA certificate
/config/openvpn/keys/ca.crt
client.crt
Server certificate
/config/openvpn/keys/client.crt
client.key
Private key of the client
/config/openvpn/keys/client.key
For more information, refer to
OpenVPN Feature on Yealink IP Phones
.
Note
VPN is not applicable to SIP-T19(P) E2 IP phones.

Содержание

Скачать