TANDBERG D13691.03 Network Router User Manual


 
TANDBERG Border Controller User Manual
4.2 Bandwidth Control Examples
One possible configuration for the depl oyment in Figure 4 is shown in Figure 8. Each of the
offices is represented as a separate subzone, with bandwidth configured according to local policy.
The enterprise’s leased line connection to the Inter n et, and th e DSL connections to the remote
offices, are modelled as separate pipes.
Figure 8: Bandwidth control example
There are no firewalls involved in the scenario shown in figure 4, so we can configure links
between e ach of the offices. Each link is then assigned two pipes, representing the Internet
connections of the offices at each end of the l ink. A call placed between the Home Office and
Branch Office will consume bandwidth in the home and branch subzones and on the home and
branch pipe. The enterprise’s bandwidth budget will be unaffected by the call.
If we now modify our deployment to include firewalls between the offices, we can use the firewall
traversal capability of the TANDBERG Gatekeeper and Border Controller to maintain connectivity.
In Figure 9, the endpoints in the enterprise register with the Gatekeeper, whilst those in the
branch and home office register with the Border Controller.
Figure 10 shows how the Border Controller could be configured for the deployment in Figure 9.
The introduction of the firewalls means that there is no longer any direct connectivity between
the Branch and Home offices. All traffic must be routed through the Border Controller. This is
shown by the absence of a link between the Home and Branch subzones.
The Traversal Zone in Figure 10 represents the Enterprise Gatekeeper. The Border Controller
will consume bandwidth from the Traversal Zone for all calls placed to endpoints managed by the
Enterprise Gatekeeper. In this example we have assumed that there is no bottleneck on the link
between the Border Controller and the Enterprise network, so have not placed a pipe on this link.
If you want to limit the amount of traffic flowing through your firewall, you could provision a pipe
on this link.
17