20-6
Cisco ASA Series Firewall CLI Configuration Guide
Chapter20 Configuring Cisco Intercompany Media E ngine Proxy
Information About Cisco Intercompany Media Engine Proxy
Figure20-2 Cisco Intercompany Media Engine Architecture in a Basic Deployment
Basic Deployment
In a basic deployment, the Cisco Intercompany Media Engine Proxy sits in-line with the Internet firewall
such that all Internet traffic traverses the adaptive security appliance. In this deployment, a single Cisco
UCM or a Cisco UCM cluster is centrally deployed within the enterprise, along with a Cisco
Intercompany Media Engine server (and perhaps a backup).
As shown in Figure 20-3, the adaptive security appliance sits on the edge of the enterprise and inspects
SIP signaling by creating dynamic SIP trunks between enterprises.
Figure20-3 Basic Deployment Scenario
SRTP
Peer-to-peer
Validation
Outside Enterprise
Inside Enterprise
UC-IME
Bootstrap Server
RTP/SRTP
UC-IME Server
Permiter Security
SIP/SCCP
ASA Enabled with
UC-IME Proxy
DMZ
248760
Cisco UCM Cluster
M
M
MM
M
UC-IME
Access Protocol
SIP/TLS
TCP/TLS
IP
IP
IP
Enterprise A
Cisco UCM

M

ASA Enabled
with UC-IME Proxy

Internet

SIP Trunk
Enterprise B
IP
IP
Cisco UCM

M

ASA Enabled
with UC-IME Proxy
248762
UC-IME
Bootstrap Server
UC-IME
Server
PSTN Gateway PSTN Gateway
PSTN
IP
IP
UC-IME
Server
V V