RECORDING VoIP TRAFFIC via PORT MIRRORING



Similar documents
Qfiniti Enterprise and VoIP for Avaya. Qfiniti Enterprise and VoIP. An etalk Technical White Paper

Cisco Network Analysis Module Software 4.0

Monitoring Load-Balancing Services

OrecX Oreka Total Recorder Application Notes

Integrating Telrex CallRex Call Recording Solution with the Cisco Unified Communications 500 Series for Small Business

Technical Note. ForeScout CounterACT: Virtual Firewall

This document explains how to enable the SIP option and adjust the levels for the connected radio(s) using the below network example:

Configuring IPS High Bandwidth Using EtherChannel Load Balancing

This article describes a detailed configuration example that demonstrates how to configure Cyberoam to provide the access of internal resources.

White Paper. Solutions to VoIP (Voice over IP) Recording Deployment

Network Agent Quick Start

PowerLink Bandwidth Aggregation Redundant WAN Link and VPN Fail-Over Solutions

The ECHO - Cisco Connection ECHO, and how it interacts with Cisco's CallManager

Observer Probe Family

Networking Topology For Your System

Quick Start for Network Agent. 5-Step Quick Start. What is Network Agent?

Peer-to-Peer SIP Mode with FXS and FXO Gateways

LAN Planning Guide LAST UPDATED: 1 May LAN Planning Guide

Introduction. What is a Remote Console? What is the Server Service? A Remote Control Enabled (RCE) Console

Many network and firewall administrators consider the network firewall at the network edge as their primary defense against all network woes.

Packetized Telephony Networks

Introducing Cisco Voice and Unified Communications Administration Volume 1

TOTAL RECALL MAX Potential Connection Diagrams CALL RECORDING. Product Specifications YOU NEED TOTAL RECALL MAX

Software-Powered VoIP

Network audit Campina UK Horsham November 10th, 2004

Hosting more than one FortiOS instance on. VLANs. 1. Network topology

SNMP Monitoring: One Critical Component to Network Management

Configuration Guide for Cisco Unified Communications Environments

VOIP THE ULTIMATE GUIDE VERSION /23/2014 onevoiceinc.com

NEC s SonicView IP Recorder Release Notes. Version 1.2. Release Notes

Cisco Agent Desktop. CAD Base Services

Integrating VoIP Phones and IP PBX s with VidyoGateway

Quick Start for Network Agent. 5-Step Quick Start. What is Network Agent?

Receiving the IP packets Decoding of the packets Digital-to-analog conversion which reproduces the original voice stream

Opera VoIP Networking Configuration Guide

How Your Computer Accesses the Internet through your Wi-Fi for Boats Router

Bandwidth Security and QoS Considerations

Migration from TDM to IP in Public Safety Environments: The Challenge for Voice Recording

Analyzing Full-Duplex Networks

Session Title: Exploring Packet Tracer v5.3 IP Telephony & CME. Scenario

Voice-Over IP Monitoring Best Practices Deployment Guide for CAD 6.0/6.1

Grandstream Networks, Inc. How to Integrate UCM6100 with Microsoft Lync Server

Vocia MS-1 Network Considerations for VoIP. Vocia MS-1 and Network Port Configuration. VoIP Network Switch. Control Network Switch

Edge Configuration Series Reporting Overview

eircom advantage VoIP Netwrorking Configuration Guide

Network Instruments white paper

NETFORT LANGUARDIAN MONITORING WAN CONNECTIONS. How to monitor WAN connections with NetFort LANGuardian Aisling Brennan

Network Analysis Modules

Crystal Gears. Crystal Gears. Overview:

Networking Devices. Lesson 6

Broadband Bonding Network Appliance TRUFFLE BBNA6401

3CX Guide sip.orbtalk.co.uk

Step into the next level of office communication

Scenario 1: One-pair VPN Trunk

Redefine Network Visibility in the Data Center with the Cisco NetFlow Generation Appliance

TALKSWITCH VOIP NETWORK TROUBLESHOOTING GUIDE

Back Office Recorder 4iP Installation Guide Intelligent Recording Limited

BroadCloud PBX Customer Minimum Requirements

Observer Probe Family

Exhibit n.2: The layers of a hierarchical network

Enhancing Cisco Networks with Gigamon // White Paper

VoIP Logic: Disaster Recovery and Resiliency

IP PBX. SD Card Slot. FXO Ports. PBX WAN port. FXO Ports LED, RED means online

Flow Analysis Versus Packet Analysis. What Should You Choose?

Ranch Networks for Hosted Data Centers

Choosing Tap or SPAN for Data Center Monitoring

nexvortex VOIP DISASTER RECOVERY BUSINESS SOLUTION

How to Configure the Allworx 6x, 24x and 48x for use with Integra Telecom SIP Solutions

LiveAction Application Note

VoIP Configuration Examples

QoS (Quality of Service)

VLAN 802.1Q. 1. VLAN Overview. 1. VLAN Overview. 2. VLAN Trunk. 3. Why use VLANs? 4. LAN to LAN communication. 5. Management port

Juniper Networks EX Series/ Cisco Catalyst Interoperability Test Results. May 1, 2009

Intercommunication between two MyPBX (via VoIP Trunking)

Net Optics and Cisco NAM

Observer Analysis Advantages

NetVanta 7100 Exercise Service Provider SIP Trunk

An Introduction to VoIP Protocols

Optimizing Enterprise Network Bandwidth For Security Applications. Improving Performance Using Antaira s Management Features

Connecting to the Cloud with F5 BIG-IP Solutions and VMware VMotion

Using Double-Take Through a Firewall

Broadband Bonding Network Appliance TRUFFLE BBNA6401

The Ins and Outs of PoE

6.0. Getting Started Guide

MyIC setup and configuration (with sample configuration for Alcatel Lucent test environment)

Cisco Prime Network Analysis Module Software 5.1 for WAAS VB

Polycom. RealPresence Ready Firewall Traversal Tips

Author: Seth Scardefield 1/8/2013

WHITE PAPER. Gaining Total Visibility for Lawful Interception

Secure Networks for Process Control

How To Balance On A Cisco Catalyst Switch With The Etherchannel On A Fast Ipv2 (Powerline) On A Microsoft Ipv1 (Powergen) On An Ipv3 (Powergadget) On Ipv4

OfficeMaster Gate (Virtual) Enterprise Session Border Controller for Microsoft Lync Server. Quick Start Guide

Enhancing Cisco Networks with Gigamon // White Paper

: Introducing Cisco Voice and Unified Communications Administration (ICOMM) v8.0 Course Introduction

Any-to-any switching with aggregation and filtering reduces monitoring costs

Transcription:

Recording. Solutions. Redefined. OrecX will easily record your VoIP traffic once your VoIP traffic is seen on the server interface. Use (SPAN, port spanning or port monitoring) to get the right traffic to the OrecX server. To understand what is port mirroring?, please see Appendix A (page 6). How to configure There are a few different "" configurations to consider for different types of VoIP networks & different types of VoIP recording needs. In any case 1. be sure your switch supports port mirroring, port spanning or port monitoring functions (whatever term the manufacturer uses for that function). 2. decide which calls need to be recorded.there are three types of calls: Outbound (local phone makes a call to the external phone) Inbound (call is received from the external phone to the local phone) Local or Internal (call is established between two local phones) If recording of local calls is not necessary (or there are no such calls), then a configuration of "" is very simple.you need to mirror the port where is connected to (see Figure 1).

Figure 1. Recording of Inbound and Outbound calls only Source Port Destination Port Managed Switch with Mirrored As you can see with Figure 1, RTP audio traffic is sent from IP Phone to. This traffic is mirrored to OrecX server, where it is decoded. This solution works for both inbound and bound calls, but may not work for local calls.

On most systems there is an optimization for network bandwidth usage if the call is made between two local/internal, then is sent directly between phones with reaching of (see Figure 2). Figure 2. Recording of Inbound, Outbound & Local/Internal calls Destination Port Source Ports Mirrored In order to record Local calls as well as Inbound and Outbound you must mirror every port where are connected.

VoIP Recording Multi-switch network Configuration of " in a multiple switch setup is easy if recording of local calls is not required. In this case "" is required only on the main switch (see Figure 3). Figure 3. Recording of calls on the second switch (no local/internal calls need to be recorded) Source Port Destination Port Regular Switch Mirrored

Recording with Multiple Switches & Internal/Local Calls In multi-switch scenarios, where recording of local calls is required there are three configurations: 1. Install additional network adapter into OrecX server and connect multiple switches to it (see Figure 4) 2. Install a separate OrecX server for the second switch (see Figure 5). 3. Use Remote SPAN (RSPAN) capability of Cisco Catalyst Switches (see Figure 6) Figure 4. OrecX server with two network adapters Managed Switch with Mirrored Source Port Destination Port

Recording with Multiple Switches & Servers Figure 5. Two OrecX servers 1 2 Mirrored Source Port Destination Port

Recording with Multiple Switches & RSPAN Figure 6. RSPAN Configuration Managed Switch with Remote RSPAN Managed Switch with Remote RSPAN Mirrored Source Port Destination Port RSPAN allows you to monitor source ports that are spread all over a switched network, not only locally on a switch with SPAN. This feature appears in CatOS 5.3 in the Catalyst 6500/6000 Series Switches and is added in the Catalyst 4500/4000 Series Switches in CatOS 6.3 and later. The functionality works exactly as a regular SPAN session. The traffic that is monitored by SPAN is not directly copied to the destination port, but flooded into a special RSPAN VLAN. The destination port can then be located anywhere in this RSPAN VLAN. There can even be several destination ports. For More on RSPAN http://www.cisco.com/en/us/products/hw/switches/ps708/products_tech_note09186a008015c612.shtml#topic4-2

Appendix A What is?, also known as SPAN (Switched Port Analyzer), is a method of monitoring network traffic. With port mirroring enabled, the switch sends a copy of all network packets seen on one port (or an entire VLAN) to another port, where the packet can be analyzed. features, which is supported in nearly all enterprise class switches (managed switches), allows other computers to see a network traffic which is not visible to them in general case. Managed switches have a configuration interface (web-based or command-line console), which administrators may use to specify the source port(s) to be mirrored and the destination port, where copy of all packets will be forwarded. Below pictures illustrate how port mirroring feature works. Four computers (A, B, C and D) are shown on this example. On Figure 2 they are connected to a managed switch with port mirroring support, while on Figure 1 they are connected to a general switch with port mirroring support. A network traffic is sent between computers A and B (one portion of data is sent from A to B and another portion is sent in reverse direction from B to A). In Figure 1 you will see how a general unmanaged switch works. It forwards packets directly between ports, where computers A and B are connected to. Other computers (C and D) do not see these packets. In Figure 2 you will see the same scenario, but on the switch with port mirroring function. The network traffic is sent again between computers A and B. But there is a computer D, which is listening (monitoring) to that traffic. Every packet, which is sent or received by computer A is duplicated (mirrored) to computer D port. When configuring port mirroring on the switch, the "source monitoring port" is a port, where computer A is connected to and the "destination analysis port" is a port, where computer D is connected to. Figure 1. General Switch Figure 2. Managed Switch with General Switch Managed Switch with D Monitored Port (source ) Analysis Port (destination ) A B C D A B C

in in RECORDING VoIP TRAFFIC via PORT MIRRORING How function can be used for recording voip calls? OrecX leverages port mirroring capability of a network switch to accomplish "unobtrusive" recording of VoIP calls. The switch forwards to OrecX server a copy of every network packet sent or received by IP phones. Below picture illustrates how the network should be configured to allow a recording of calls. Remote Phones in Telephone Network in in Managed Switch with In this example, one of makes a call to a remote phone side of the local network (whether it is analog phone, cellular or IP Phone). The network traffic from IP Phone goes through a switch and then to. Orecx server receives a copy of every network packet, which is sent or received by IP Phone. in By using intelligent packet capturing technology, OrecX can detect VoIP-related packets inside the network traffic, decode them and save the audio part on a disk.