<P>
<BR>
Hi<BR>
<BR>
I am working on IMS and been given the responsibility of implementing IPsec between the user-agent(SIP phone) and our proxy server (P-CSCF). <BR>
<BR>
the architecture of P-CSCF is like it is an 8 blade server(chassis based) and shows a single IP to the outer world. It has to support IPsec ( key exchange is done at the application level ie. SIP)for both UDP and TCP.<BR>
<BR>
What I want is scalibility like ..<BR>
<BR>
UE ( 40.x.x.x) ----------> P-CSCF ( internal IP addresses from <BR>
(50.x.x.x) 192.168.1.1 to 192.168.1.8)<BR>
<BR>
I want to distribute the IPsec connections made <BR>
onto different blades, so there is no single point of <BR>
failure. Basically, this is load-balancing IPsec connections in a <BR>
cluster .<BR>
<BR>
And also, How do i make these connections redundant over different servers so the SIP phone doesnot have to redo the whole process of making IPsec with the server on failure. <BR>
<BR>
Thanks and sorry if this is not the right place to ask... but i have been searching for this for 2 weeks now .. but to no avail .... any pointers would be appreciated ..... <BR>
<BR>
Thanks again<BR>
<BR>
Gagandeep Bajaj
</P>
<br><br>
<Table border=0 Width=644 Height=57 cellspacing=0 cellpadding=0 style='font-family:Verdana;font-size:11px;line-height:15px;'><TR><td><a href='http://adworks.rediff.com/cgi-bin/AdWorks/click.cgi/www.rediff.com/signature-home.htm/1050715198@Middle5/2051818_2044501/2051914/1?PARTNER=3&OAS_QUERY=null' target=new ><img src ='http://imadworks.rediff.com/cgi-bin/AdWorks/adimage.cgi/2051818_2044501/creative_2051914.gif' alt='Microsoft' border=0></a></td></TR></Table>