Cisco JabberGuest

Download as pdf or txt
Download as pdf or txt
You are on page 1of 58

Cisco Jabber Guest

By: Sam Wang


([email protected])
April-2014

© 2012
2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1
JabberGuest Setup
This session will cover
•Jabber Guest Intro

•Minimal/detailed steps to setup Jabber Guest with Expressway

This session is NOT about


•A best practice doc, instead, a working configuration.

Global Field Operations Cisco Confidential 3


© 2011 Cisco and/or its affiliates. All rights reserved.
http://jabberc-dev.cisco.com/call/email_signature.html

Global Field Operations Cisco Confidential 4


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 5
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 6
© 2011 Cisco and/or its affiliates. All rights reserved.
•You may hear about;
•Jabber for Windows/MAC
•Jabber for Mobile (iPhone, Android etc.)
•Jabber Video
•Jabber IM
•Jabber Voice
•Jabber Guest or JabberCall Me
•Jabber Movi
•CUCI-blah
•CE/Remote Access

Global Field Operations Cisco Confidential 7


© 2011 Cisco and/or its affiliates. All rights reserved.
It is a communication solution/product for a new market of “C2B
(consumer to business)” or “P2E(public to enterprise)”

It allows outside users (typical not part of enterprise, but maybe


customers, partners etc) to have a video call over Internet by click a link
but without registration/authentication

Global Field Operations Cisco Confidential 8


© 2011 Cisco and/or its affiliates. All rights reserved.
If you tried the “JabberCall Me” link and have something like below in
your email signature, you already knew what it is

Global Field Operations Cisco Confidential 9


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 10
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 11
© 2011 Cisco and/or its affiliates. All rights reserved.
•Enterprise
•CUCM v10
•Jabber Guest virtual machine (get the trial software at
https://communities.cisco.com/community/technology/collaboration/usergroups?view=overview)
https://cloudsso.cisco.com/idp/startSSO.ping?PartnerSpId=ciscomarketing&ACSIdx=1&TargetResource=
%2Fcommunity%2Ftechnology%2Fcollaboration%2Fusergroups%2Fcollaboration%2Fcisco_jabberc

•Expressway Core v8.1 (get the software at http://wwwin-collabsw.cisco.com)


•Expressway Edge v8.1 (same software as above, only license is different)
•DNS server (both internal/external)
•Certificate server
•One public ip address
•Video endpoints, such as 9971 IP phone, EX90 etc
•Firewall (optional)

•Consumer
•Web browser on PC/MAC/mobile devices (better with camera)
•JabberGuest link to access the enterprise

Global Field Operations Cisco Confidential 12


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest software – EAP, no license

•CUCM v10, 60 days trial license

•Windows DNS/CA, trial license

•Expressway Core (trial license)

•Expressway Edge (TURN, Expressway, traversal and non-traversal calls,


dual NIC is optional)
•All above software are running as virtual machines, you must use
vCenter to deploy JabberGuest OVA

Global Field Operations Cisco Confidential 13


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 14
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 15
© 2011 Cisco and/or its affiliates. All rights reserved.
•Domain name, myhome.com

•CUCM, 1.1.1.15

•Expressway Core, 1.1.1.13

•Expressway Edge, 192.168.99.14

•JabberGuest, 1.1.1.20

•IP phone, 2.2.2.x

•DNS/CA, 1.1.1.16

Global Field Operations Cisco Confidential 16


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 17
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 18
© 2011 Cisco and/or its affiliates. All rights reserved.
•Underneath Networking

•DNS/CA server

•CUCM and IP phone/EX

•JabberGuest

•Expressway C/E

Global Field Operations Cisco Confidential 19


© 2011 Cisco and/or its affiliates. All rights reserved.
•Underneath Networking
•Public IP, NAT to Expressway Edge
•Internal routing

Global Field Operations Cisco Confidential 20


© 2011 Cisco and/or its affiliates. All rights reserved.
•DNS/CA server
•Internal DNS server
•Map CUCM, Expressway C/E, JabberGuest IP to hostname
•External DNS server - optional
•Map public IP to a hostname if necessary
•CA server
•Need issue 3 certificate (C/E, JabberGuest will generate certificate request)
•Optionally, issue certificate for CUCM
•Export the root cert, import it onto C/E, JabberGuest
•(C/E need base-64 encoded X.509, JG need DER encoded binary X.509)

Global Field Operations Cisco Confidential 21


© 2011 Cisco and/or its affiliates. All rights reserved.
•CUCM/IP Phone/EX
•Basic setup for IP phones/EX, make sure video call is working internally
•Create SIP trunk to Expressway – Core
•Create SIP trunk security profile (see next page picture)
•Check “SRTP Allowed” if use encryption
•Make sure inbound CSS can reach IP phones/EX
•Destination use IP or FQDN, port 5061
•SIP profile use “standard for Cisco VCS”
•Leave other fields as default

Global Field Operations Cisco Confidential 22


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 23
© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Deploy the OVA template

•Initial login is root/jabbercserver or root/boxgrinder (depends on version)

•Installation guide can be found at

•https://communities.cisco.com/docs/DOC-36522

•After installation, access the JabberGuest by

•https//JabberGuest-IP-address/admin

Global Field Operations Cisco Confidential 24


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Create an user

Global Field Operations Cisco Confidential 25


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Create a link

Global Field Operations Cisco Confidential 26


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Settings

Global Field Operations Cisco Confidential 27


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Settings, create a CSR to CA, import signed cert

Global Field Operations Cisco Confidential 28


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Settings, Call control setup (continueN next page)

Global Field Operations Cisco Confidential 29


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Settings, Call control setup

Global Field Operations Cisco Confidential 30


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•Settings, Call control setup

Global Field Operations Cisco Confidential 31


© 2011 Cisco and/or its affiliates. All rights reserved.
•JabberGuest
•SSH to JabberGuest, modify /opt/cisco/jabberc/etc/sipconfig.xml

[root@JABBERGUEST20 etc]# cat sipconfig.xml

<?xml version='1.0' encoding='UTF-8'?>


<sip-config>
<sip-server>1.1.1.13</sip-server>
</sip-config>

Reboot the JabberGuest server

Global Field Operations Cisco Confidential 32


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Deploy OVA
•Base config, such as IP, DNS, NTP etc
•Apply necessary licenses
•Create an user for authentication, this username/pwd need to be configured
on Expressway Core

Global Field Operations Cisco Confidential 33


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Create a traversal zone (Server) toward Expressway Core

Global Field Operations Cisco Confidential 34


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Create a traversal zone (Server) toward Expressway Core

Global Field Operations Cisco Confidential 35


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Create a traversal zone (Server) toward Expressway Core

Global Field Operations Cisco Confidential 36


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Enable Unified Communication

Global Field Operations Cisco Confidential 37


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Configure TURN

Global Field Operations Cisco Confidential 38


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Enable hidden menu (Experimental)
http://192.168.99.14/setaccess

Global Field Operations Cisco Confidential 39


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Edge
•Enable hidden menu (Experimental, qwertsys)

Global Field Operations Cisco Confidential 40


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Deploy OVA
•Base config, such as IP, DNS, NTP etc
•Create an ADMIN account, name is
“turnturn”, to be used in JabberGuest
Media control page

Global Field Operations Cisco Confidential 41


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a traversal zone (Client) toward Expressway Edge

Global Field Operations Cisco Confidential 42


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a traversal zone (Client) toward Expressway Edge

Global Field Operations Cisco Confidential 43


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a traversal zone (Client) toward Expressway Edge

Global Field Operations Cisco Confidential 44


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a neighbor zone toward CUCM

Global Field Operations Cisco Confidential 45


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a neighbor zone toward CUCM

Global Field Operations Cisco Confidential 46


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a neighbor zone toward JabberGuest

Global Field Operations Cisco Confidential 47


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Create a neighbor zone toward JabberGuest

Global Field Operations Cisco Confidential 48


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Enable JabberGuest for the domain

Global Field Operations Cisco Confidential 49


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Enable Unified Communication

Global Field Operations Cisco Confidential 50


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•Add JabberGuest Server

•Refer to previous page, click “Configure JabberGuest Server”, put


JabberGuest FQDN

Global Field Operations Cisco Confidential 51


© 2011 Cisco and/or its affiliates. All rights reserved.
•Expressway Core
•TURN configuration (applicationB2BUATURN server)
•TURN (Traversal Using Relays for NAT, RFC5766) or STUN (Session
Traversal Utilities for NAT)

Global Field Operations Cisco Confidential 52


© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 53
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 54
© 2011 Cisco and/or its affiliates. All rights reserved.
Global Field Operations Cisco Confidential 55
© 2011 Cisco and/or its affiliates. All rights reserved.
•It is not supported but working
•CUCM v10 with 9971 or EX90 phone
•JabberGuest
•Create a SIP trunk between CUCM and JabberGuest
•Follow slides above to create user/link on JabberGuest
•https://JabberGuest-IP/call/33

Global Field Operations Cisco Confidential 56


© 2011 Cisco and/or its affiliates. All rights reserved.
http://iwe.cisco.com/web/expressway/documents/-
/document_library/view?_20_folderId=788505846

http://www.cisco.com/c/en/us/products/unified-communications/expressway-
series/index.html

http://www.cisco.com/c/en/us/support/unified-communications/expressway-
series/products-installation-and-configuration-guides-list.html

http://www.cisco.com/c/en/us/products/collateral/unified-
communications/telepresence-video-communication-server-vcs/data_sheet_c78-
697073.html

http://en.wikipedia.org/wiki/STUN
http://en.wikipedia.org/wiki/Traversal_Using_Relays_around_NAT

Global Field Operations Cisco Confidential 57


© 2011 Cisco and/or its affiliates. All rights reserved.
Q/A

You might also like