- Securing SSLVPN with client certificates
- Toshiba propels DVD quality to near HD
- 16 hot roles for IT pros
- Torvalds: Fed up with the 'security circus'
- The dos and don'ts of IT job seeking
News | Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:App Performance | On Demand Security | Networking Solution | SOA | Value of WDS
The good news is that VoIP equipment among multiple vendors is finally pretty interoperable; the bad news is that there are still lots of potholes that can ruin VoIP implementation.
That's a broad view of results from Interop Labs tests of VoIP gear run on the show's test network and presented at the Lab's Interop exhibit.
Volunteers set up five model enterprise networks fitted with VoIP equipment, network firewalls, application firewalls, Wi-Fi access points and VPNs and ran VoIP calls through them using a variety of VoIP phones - softphones, hard phones, Wi-Fi handsets and PDAs. The tests involved equipment from two dozen vendors.
The calls ran over a combination of the public phone network and the Internet using a service provider that supports SIP signaling, and then testers tried to disrupt the calls and measure the results.
Some of the results:
* Network address translation (NAT), the masking of private IP addresses from public view, can break VoIP by making it impossible to set up SIP-based calls over the Internet to devices with private IP addresses. The best option the Labs found was to get rid of NAT if possible. If not, get a SIP proxy server that can ignore the public addresses on VoIP packets and find the actual addresses within.
An alternative is to install a server outside the NAT device - usually a firewall - that keeps track of where packets come from and shepherds them through the NAT.
* Use QoS on Wi-Fi networks. While the Labs didn't quantify the difference, testers say the improvement in quality jumped dramatically to their ears when QoS was turned on. "It was noticeable even on non-busy networks," says Jed Daniels, one of the volunteer testers, who said the biggest improvement was it cut delay.
* VPNs don't disrupt VoIP. This came as a surprise to testers, who expected that encapsulating real-time UDP voice packets inside TCP packets would cause delay, but that wasn't the case. With IPSec and SSL VPNs there was no significant degradation, Daniels says, although the quality over SSL VPNs was better.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask to prospective vendors to get the right endpoint solution.
Download the white paper.
Unauthorized applications: Taking back control
Employees installing and using unauthorized applications like IM, VoIP, games and peer-to-peer file-sharing applications cause many businesses serious concern. How do you control these applications?
Download the white paper.
Comment