Configuring an Avaya Partner SSL VPN using an SDK

Last Updated : Nov 19, 2014 |

Third party service providers can use their own Avaya VPN Gateway to perform remote customer support over IP Office SSL VPN technology.

For third party service provider support, the SSL VPN can be configured using a Software Development Kit (SDK). The SDK is designed to allow Partners to set up their own AVG by automating some or all aspects of the IP Office registration and on-boarding process. The automated process replaces the procedures used for manual configuration.

SDK Options

There are two on-boarding SDKs.

  • On-boarding SDK

  • On-boarding Express SDK

On-boarding SDK

For every new IP Office installation, the On-boarding SDK is run on the Partner’s web server to generate the on-boarding xml file that is uploaded to IP Office via Web Manager. This process sets up the SSL VPN tunnel from the customer IP Office to the Partner AVG.

On-boarding Express SDK

The On-boarding Express SDK can be run offline, without a connection to the internet. When you run the SDK, IP Office gets on-boarded immediately then collects all relevant on-boarding process files and logs in a zip file. At this point, the SSL VPN tunnel attempts to connect with the AVG but fails to authenticate. When the Partner processes the zip file content to create the associated customer site SSL VPN credentials, the AVG accepts the establishment of the SSL VPN tunnel.

Short Codes

IP Office supports multiple SSL VPN service instances. This means there can be two concurrent and actively connected SSL VPN services, one to the Avaya support AVG and one to the Partner AVG. When two SSL VPN services are configured on IP Office, Avaya recommends the naming and short code numbering conventions listed below for the Avaya Support SSL VPN Service and the Partner SSL VPN Service. The conventions are based on:
  • The digits 775 = SSL on a phone dial pad.

  • The fourth digit value of 1 or 2 is for the service instance.

  • For the fifth digit value, 1=enabled and 0=disabled.

Avaya Support SSL VPN Service

  • Service Name: AVAYA_SUPPORT

  • Short code to enable service AVAYA_SUPPORT: 77511

  • Shortcode to disable service AVAYA_SUPPORT: 77510

Partner SSL VPN Service

  • Service Name: BP_SUPPORT

  • Short code to enable service BP_SUPPORT: 77521

  • Short code to disable service BP_SUPPORT: 77520

Prerequisites

  • On the machine where you will run the SDK, you must have Java 1.6 or higher installed.

  • The tunnel IP address must not be between 172.22.0.0 and 172.25.255.255. This address range is reserved for Avaya support.