Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Avaya IP Hardphones using Cisco VPN and Cisco Router

Status
Not open for further replies.
Jan 27, 2005
68
US
We are expeiencing a NAT problem using 4610s behind a Cisco Model 800 or 831 router that is handling the Cisco VPN session.

Has anyone found a way to get their Avaya IP Hardphones working on a DSL / Cable connection behind a Router which handles the Cisco VPN session up and is using NAT?

I can get the phone registered but when I pick up the handset I get no dialtone. I can make a call and ring another phone. When I answer the call and status the station I see an IP mismatch in the Set-end IP addr. fields of the Audio channel and Call Control Signaling screens.

I hear the IP Hardphones work well with the Avaya VPN solution but that is not an option at this point.

Thanks.
 
Do you have NAT support turned on in the network regions???

Whats the vpn server at the headend?

BuckWeet
 
I have tried N, Y, Translated(NAT), and Native in the IP-IP Direct Audio fields of the Network-Region form. Still get the same 100% packet loss and mis-matched Set End Ip addresses between the Call Control and Audio Path.

The VPN server is a Cisco VPN Concentrator Model 3030.
 
from the remote side, can you ping the clan and medpro board across the tunnel??


I've done what you're doing many of times, and NAT should not come into play, since you should not be NAT'ing that traffic...


Can you post the config on your remote router, minus any public IP's and/or passwords..

BuckWeet
 
We can ping the CLAN and MedPros from behind the router.

Here are the Router configs:



Current configuration : 1467 bytes
!
version 12.2
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname *********
!
logging queue-limit 100
enable secret 5 **************
!
clock timezone PST -8
ip subnet-zero
ip name-server 199.21.57.20
ip name-server 199.21.56.57
ip dhcp excluded-address 10.1.200.1
!
ip dhcp pool CLIENT
network 10.1.200.0 255.255.255.0
default-router 10.1.200.1
dns-server 199.21.57.20
netbios-name-server 199.21.57.20
domain-name ********.com
netbios-node-type h-node
lease 0 2
!
!
ip audit notify log
ip audit po max-events 100
no ftp-server write-enable
!
!
!
!
!
!
!
!
crypto ipsec client ezvpn JACKVOIP
connect auto
group ******* key ********
mode client
peer 209.180.28.87
username ****** password *******
!
!
!
!
interface Ethernet0
ip address 10.1.200.1 255.255.255.0
no cdp enable
crypto ipsec client ezvpn ****** inside
hold-queue 100 out
!
interface Ethernet1
ip address dhcp client-id Ethernet1
duplex auto
no cdp enable
crypto ipsec client ezvpn *******
!
ip classless
no ip http server
no ip http secure-server
!
access-list 23 permit 10.1.200.0 0.0.0.255
no cdp run
!
line con 0
exec-timeout 120 0
password *****
no modem enable
stopbits 1
line aux 0
stopbits 1
line vty 0 4
access-class 23 in
exec-timeout 120 0
password ******
login local
length 0
!
!
end

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top