Enterasys Secure Networks™ for VoIP
Deploy, Optimize and Secure Voice over IP in Any Network
Deploying VoIP is among the top concerns of IT organizations today. But operating networks to support voice can be a daunting task. Network administrators must optimize and secure voice in the converged network in order to ensure service quality and reliability. Rather than approaching VoIP deployments in a haphazard fashion, Enterasys recommends a simple, yet highly effective integrated approach to enable, optimize and secure wired and wireless voice communications.
Enterasys enables and secures IP Telephony solutions from 3Com, Alcatel, Aastra, Avaya, Cisco, Mitel, NEC (Sphere), Nortel, Panasonic, Polycom, ShoreTel, Siemens and others. Enterprises worldwide want to ensure the same reliability, quality, manageability, mobility and security of the traditional PBX with new Voice-over-IP (VoIP) and unified communications solutions. The Enterasys solution for VoIP delivers an easy and effective way to optimize voice communications through automatic VoIP traffic prioritization. In addition, the Enterasys solution will sense and automatically respond to security threats against the IP telephony system; enforce network access control policies; and comply with regulations for monitoring and safety. You can learn more about the open-architecture, standards-based approach to supporting any convergence application from any vendor by reading the Enterasys whitepaper.
The Enterasys Solution
The Enterasys Secure Networks™ architecture is a unique approach to networking and security that integrates intelligent switching, routing and wireless products; network configuration and management software applications; and intrusion prevention and Network Access Control. With these three fully integrated components, Enterasys Secure Networks™ delivers important capabilities required to deploy, optimize and secure a VoIP solution.
Choice
Enterasys maintains a 25-year commitment to standards-based technologies and open-architecture systems. Leveraging this commitment, Enterasys offers a solution that will support any VoIP application from any vendor. An Enterasys solution can identify and control any voice application running on the network and ensure it is secured and prioritized based on the business requirements.
The open architecture approach gives organizations the choice necessary to deploy the right business application at the right time, for the right reasons. There is no dependency in the network architecture restricting the converged applications that can be deployed.
Reliability
An Enterasys solution assures customers of the ability to meet capacity and Power over Ethernet (PoE) requirements to support IP phones connecting to the converged network. A single Matrix® N-Series switch can accommodate over 500 PoE ports with fault-tolerant power management to keep voice services working to every connected endpoint. Enterasys products support all of the standard technologies necessary to ensure full redundancy and communications resiliency (technologies such as 802.1w, 802.1s, 802.3ad, OSPF, VRRP). Beyond the standard technology features, Enterasys embeds innovative broadcast flooding protection and communication flow overrun protection in switches to ensure that dangerous network traffic patterns do not result in communication failures for critical voice services.
Quality
An Enterasys solution can discover and classify an IP phone the moment it connects to the network. Once the IP phone is detected, the Enterasys solution can enforce appropriate security and communication policies in the network to ensure the quality of the voice service. Convergence End Point (CEP) detection methods include LLDP-MED, destination IP address and Layer 4 Port, SIP, H.323, H.245, Cisco Discovery Protocol, and Siemens CoreNet. Enterasys switches also support multi-user, multi-method authentication to identify and classify more than one device on a single Ethernet connection. Once an IP phone is detected, Enterasys switches will automatically enforce VoIP communication policy rules for prioritization, rate shaping and security of voice traffic.
Manageability
An Enterasys solution provides centralized visibility and control of specific network features important to voice communications in a converged network environment. IP phones can be quickly and easily located, voice communication policy rules are centrally established and globally distributed, and responsive action to security threats is automated. Management software provides IT administrators with a single central location for establishing communication and security policy rules for voice services, and an easy distribution method for getting the policy rules out to the entire network infrastructure.
Mobility
An Enterasys solution can provide wireless communications with performance levels sufficient to accommodate the low-latency requirements of VoIP. Enterasys Wireless Controllers and Access Points support innovative Direct Path Forwarding which allows forwarding of traffic to occur at the AP and not through the controller. This is an important capability for VoIP because the WLAN controller can introduce latency into the communication path.
Security
An Enterasys solution includes the ability to centrally manage a set of communication policy rules which can restrict the type and amount of network traffic directed at specific voice related servers. Also, policy rules can be enforced to ensure that critical services are not “spoofed” causing disruption or theft of critical communications. In addition to proactive security of VoIP resources, events occurring on the network that can compromise the voice service can be detected, and ultimately mitigated in order to preserve the voice system continuity. Security appliances have the ability to detect specific threats against voice communications by using a strong set of VoIP attack signatures – including decoders for H.323, H.245, SIP and MGCP. Once threats against voice services are detected, automated services can be used to locate the exact source of the threat and take appropriate action eliminating the threat.
The Enterasys Secure Networks for VoIP solution was recently named a 2007 Product of the Year award winner by Communications Solutions magazine.
For more information, call Enterasys Networks toll free at 1-877-801-7082 or visit them on the Web at enterasys.com. |