Creating a reverse proxy relay service for PPM traffic

Last Updated : Nov 16, 2021 |

About this task

Use the following procedure for each Avaya SBC.

Procedure

  1. Log in to the EMS web interface with administrator credentials.
  2. From the Device menu, click the SBC name to administer.
  3. Navigate to DMZ Services > Relay.

    The EMS server displays the Relay Services page.

  4. In the Reverse Proxy tab, click Add.
  5. On the Add Reverse Proxy Profile page, administer the following options using Relay Services field descriptions for reference:
    1. In the Service Name field, type the reverse proxy profile name.
    2. Select the Enabled check box.
    3. In the Listen IP field, click the external SBC IP address.
    4. In the Listen Protocol field, select the protocol published towards remote workers.

      If you select the HTTPS protocol, the system enables the Listen TLS Profile field.

    5. In the Listen TLS Profile field, click the TLS profile you created.

      The default TLS profiles, such as AvayaSBCServer have demonstration certificates. For optimum security, Avaya recommends that you do not use demonstration certificates.

    6. In the Listen Port field, type the port for remote workers.

      The default value is 443 for HTTPS and 80 for HTTP.

    7. In the Server Protocol field, click the protocol used for the Avaya SBC server.

      For security reasons, Avaya recommends the use of HTTPS.

    8. In the Server TLS Profile field, click the TLS profile that you created.
    9. In the Connect IP field, click the IP address that Avaya SBC must use for communicating with the file servers.
    10. In the PPM Mapping Profile field, click the mapping profile.

      For information about creating PPM Mapping Profile, see Creating PPM Mapping Profile.

    11. In the Server Addresses field, type the PPM server IP address and port number.
    12. In the IP / URI Blocklist Profile field, select desired profile.
    13. In the IP / URI Blocklist Trusted Address field, enter the trusted server IP address.
  6. Click Finish.