cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1685
Views
0
Helpful
3
Replies

Telepresence DX80 remote connection design info....

fdetoma
Level 1
Level 1
Hi,
we would to implement some Cisco DX80 Telepresence to remote site.
This using their integrate Anyconnect vpn client to central site, so to the centralized UCM 10.5 version.
 
So, reading the DX series admin guide, It mentioned that, to use "remote" AnyConnect,
on the UCM configuration, we must create also the VPN profile ....

Now, the remote access vpn created from Anyconnect on DX80 and the remote ASA firewall outside public network (before UCM LAN segment),
could be established in this way:
DX80 < tunnel> ASA<->and, then get inside LAN to UCM.
 
Why we neet to create also another "vpn config" into UCM...?
Can't Dx 80 reach UCM through vpn remote access directly?
 
thanks!
3 Replies 3

Manish Gogna
Cisco Employee
Cisco Employee

Hi,

One of the requirements for VPN configuration on cucm is related to certificates. You must download the certificate that is assigned to the ASA SSL interface and upload it as a Phone-VPN-Trust Certificate in the CUCM. This is defined on VPN gateway config on CUCM as well and the information is pushed to the phone configuration file.

http://www.cisco.com/c/en/us/support/docs/unified-communications/unified-communications-manager-callmanager/115785-anyconnect-vpn-00.html

HTH

Manish

Ok,

 

I'm reading this doc.

 

if I understand correctly, certificate config on the end-point (phone or DX80),

must be done locally, at UCM LAN, before these devices are installed in the remote site....

Correct?

 

Thansk!

Correct.

Manish