This forum is closed to new posts and
responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:
RE: HTTPS and Sametime Meeting Services in the DMZ ~Ted Nonasonings 27.Oct.08 07:53 AM a Web browser Sametime Standard 8.0.1Windows
Hey there, yeah this is a (maybe) caveat that made me/us back out from the whole concept (SSL). On the other hand I am not sure that tunnel concept would have been optimal even if possible.
Recently set up an ST 7.5.1 server w/CF in DMZ.
- Port 80 for inbound http with re-direct to 443/https (domino/port)
- Tunneling for meeting center services 8081
- Community service tunnel on 8082
- Tunneling for audio/video services on 8084
- When/if broadcast: tunneling on 8083
Approach will be the same when upgrading to ST 8.x.
Rules dmz<>internet and dmz<>wan almost identical, with some exceptions to domino domain traffic (only dmz<>wan).
Above config gives ca 1,5-2,5 sec delay on audio transmission (Sametime audio in meeting room). Server is on a 100MB line so it should not be a problem. We have a pending ticket on this and are also looking further into firewall configurations.