Cisco SPA501G Administration Guide - Page 151

Configuring SSL VPN on the Cisco SPA525G or Cisco SPA525G2

Page 151 highlights

Configuring Security, Quality, and Network Features Configuring SSL VPN on the Cisco SPA525G or Cisco SPA525G2 5 Configuring SSL VPN on the Cisco SPA525G or Cisco SPA525G2 The Cisco SPA525G or Cisco SPA525G2 can be used in a virtual private network (VPN) to allow users secure access to the office phone network from remote locations or to connect the Internet and use VPN to access the company phone network. This feature works on the Cisco SPA525G or Cisco SPA525G2 using either SIP or SPCP. The phone works with the Cisco AnyConnect VPN client and the following VPN devices: • Cisco 500 Series Secure Router • Cisco 5500 Series Adaptive Security Appliance • Cisco Unified Communications 520 Series You must configure the SSL VPN device to ensure proper routing of voice data by using VLAN and QoS at the end of the SSL VPN server. The following restrictions apply: • HTTP proxy is not supported. • SSL client certificate verification is not supported. • CDP and VLAN tagging and QoS for the voice and PC port are not supported on the SSL VPN tunnel. Because using VPN requires internal phone resources, performance can suffer if using memory-intensive applications or configurations on the phone when the phone is connected to the VPN. The following restrictions apply: • Only the G.711 Audio Codec is supported. • SRTP for secured audio is not supported. • Video monitoring is not supported. To configure and use the Cisco SPA525G or Cisco SPA525G2 on a VPN, you must do the following: 1. Configure the VPN on the VPN server by using Cisco AnyConnect VPN client software. 2. Configure the VPN administrative settings on the IP phone by using the phone web user interface. Cisco Small Business SPA300 Series, SPA500 Series, and WIP310 IP Phone Administration Guide 150

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325

Configuring Security, Quality, and Network Features
Configuring SSL VPN on the Cisco SPA525G or Cisco SPA525G2
Cisco Small Business SPA300 Series, SPA500 Series, and WIP310 IP Phone Administration Guide
150
5
Configuring SSL VPN on the Cisco SPA525G or
Cisco SPA525G2
The Cisco SPA525G or Cisco SPA525G2 can be used in a virtual private network
(VPN) to allow users secure access to the office phone network from remote
locations or to connect the Internet and use VPN to access the company phone
network. This feature works on the Cisco SPA525G or Cisco SPA525G2 using
either SIP or SPCP.
The phone works with the Cisco AnyConnect VPN client and the following VPN
devices:
Cisco 500 Series Secure Router
Cisco 5500 Series Adaptive Security Appliance
Cisco Unified Communications 520 Series
You must configure the SSL VPN device to ensure proper routing of voice data by
using VLAN and QoS at the end of the SSL VPN server. The following restrictions
apply:
HTTP proxy is not supported.
SSL client certificate verification is not supported.
CDP and VLAN tagging and QoS for the voice and PC port are not
supported on the SSL VPN tunnel.
Because using VPN requires internal phone resources, performance can suffer if
using memory-intensive applications or configurations on the phone when the
phone is connected to the VPN. The following restrictions apply:
Only the G.711 Audio Codec is supported.
SRTP for secured audio is not supported.
Video monitoring is not supported.
To configure and use the Cisco SPA525G or Cisco SPA525G2 on a VPN, you must
do the following:
1.
Configure the VPN on the VPN server by using Cisco AnyConnect VPN client
software.
2.
Configure the VPN administrative settings on the IP phone by using the phone
web user interface.