agreed to in writing NORTEL PROVIDES THIS DOCUMENT "AS IS" WITHOUT WARRANTY OR CONDITION OF
ANY KIND, EITHER EXPRESS OR IMPLIED. The information and/or products described in this document are
subject to change without notice.
Nortel, Nortel Networks, the Nortel logo, and the Globemark are trademarks of Nortel Networks.
All other trademarks are the property of their respective owners.
.
.
Contents
New in this release7
Features7
Other changes8
Introduction11
References12
Using the MC 3100 Web Console13
Overview13
Logging on to the MC 3100 Web Console as an administrator15
Logging on to the MC 3100 Web Console as a user18
Changing the MC 3100 Web Console password18
Administration21
3
Administration enhancements7
User interface enhancements8
MC 3100 Web Console buttons13
Logging on to the standalone MC 3100 Web Console as an administrator16
Gateway administration23
Adding an MCG 3100 server23
Deleting an MCG 3100 server24
Locking and unlocking an MCG 3100 server25
Configuring the Gateway settings26
Configuring the dial plan conversion parameters32
Configuring the device settings33
Configuring the emergency telephone numbers37
Configuring the Administration server port settings37
Adding a license file38
Checking Gateway server statistics40
Checking Gateway server status42
Checking Gateway server license file information45
Managing the server processes from the Web Console46
Managing the server processes from the command line47
Nortel Mobile Communication 3100 Administration and Security
Client upgrade methods49
Uploading the mobile client software files53
Deleting files in the software repository54
Filtering the mobile client software files54
Downloading software files as Administrator55
Downloading client software from the software repository to a computer56
Tracking license usage57
Installing or upgrading the MCC 3100 for BlackBerry using the BlackBerry
Enterprise Server58
Checking Instant Conferencing status59
Client language support60
User administration61
Configuring user parameters for autoconfiguration61
Filtering users62
Logging off users63
Removing users63
Clearing a user message64
Checking user status64
Checking user statistics67
Security69
Server certificate management71
Enrolling with a CA73
Generating a CSR for MCG 3100 Gateway Server74
Generating a CSR for MCG 3100 Administration Server76
Obtaining a signed certificate78
Obtaining the CA signed SSL/TLS certificate for MCG 3100 Gateway Server79
Obtaining the CA-signed certificate for the MCG 3100 Administration Server79
Installing the root and signed certificates on the MCG 3100 Gateway Server80
Installing the root and signed certificates on the Administration Server81
Copy single server keystore82
Client certificate management83
Installing a root certificate on a Nokia device83
Installing a root certificate on a Windows Mobile device84
Installing a root certificate on a BlackBerry device in the non-BES
configuration85
Server certificate administration87
Changing the certificate keystore default password87
Generating a self-signed certificate for MCG 3100 Gateway Server89
Generating a self-signed certificate for MCG 3100 Administration Server91
Nortel Mobile Communication 3100 Administration and Security
Backing up the MCG 3100 server databases95
Restoring the MCG 3100 server databases96
Checking the MCG 3100 Software Version97
Sending a system notification to all users97
Sending a system notification to individual users98
Network configuration changes98
Common procedures101
Accessing the server command line as nortel101
Accessing the server command line as superuser101
5
Nortel Mobile Communication 3100 Administration and Security
The following sections detail what’s new in Nortel Mobile Communication
3100 Administration and Security (NN42030-600) for Mobile
Communication 3100 (MC 3100) Release 3.0.
•
"Features" (page 7)
•
"Other changes" (page 8)
Features
The following sections describe the features introduced for MC 3100
Release 3.0.
•
"Administration enhancements" (page 7)
•
"User interface enhancements" (page 8)
Administration enhancements
The Enterprise Common Manager (ECM) integrates the MC 3100 Web
Console tools with the Nortel Enterprise Management tools to simplify MC
3100 administration. The ECM:
7
•Launches the administrative user interface
•
Permits single-sign-on
•
Performs certificate generation and distribution
•Integrates with the Enterprise Subscriber Manager to create fixed
mobile convergence line (FMCL) universal extensions (UEXTs) for MC
3100 users
For information about the interworking of the MC 3100 and ECM, see
Nortel Mobile Communication 3100 and Communication Server 1000
Solution Integration Guide (NN49000-315).
Attention:MC 3100 release 3.0 SU130 and higher does not support
ECM integration.
Nortel Mobile Communication 3100 Administration and Security
The Web Console contains new parameters to support MC 3100
Release 3.0.
Other changes
This document is issued to support MC 3100 Release 3.0.
This document was restructured to conform to Modular Task-Based
Information standards. The port tables moved to Nortel MobileCommunication 3100 Planning and Engineering (NN42030-200).
Revision history
July 2009
June 2009
June 2009
April 2009
January 2009
Standard 03.08. This document is issued to support
Nortel Mobile Communication 3100 Release 3.0 and
the Communication Server 2100 (CS 2100). Information
regarding the CS 2100 was added.
Standard 03.07. This document is up-issued to support
Nortel Mobile Communication 3100 Release 3.0. Updates
were made to the Procedure job aid table.
Standard 03.06. This document is issued to support Nortel
Mobile Communication 3100 Release 3.0 SU3. Updates
were made to the Configuring the device settings section.
Standard 03.05 This document is issued to support Nortel
Mobile Communication 3100 Release 3.0. The following
sections were deleted from this document:
•Installing the ECM MCG 3100 software
•Adding the MCG 3100 as an element from the primary
ECM
•Upgrading to a different network framework
•Accessing the MC 3100 Web Console from the ECM
Standard 03.04 This document is issued to support Nortel
Mobile Communication 3100 Release 3.0. Changes were
made to address formatting issues, including changes to the
procedure "Configuring the device settings" (page 33) and
the creation of the procedure "Configuring the emergency
telephone numbers" (page 37).
December 2008
Nortel Mobile Communication 3100 Administration and Security
Standard 03.03. This document is issued to support Nortel
Mobile Communication 3100 Release 3.0. Added the
Native Dialing Numbers field to "Configuring the device
settings" (page 33). Numerous updates to "Server certificate
management" (page 71) and "Client certificate management"
(page 83).
Nortel Mobile Communication 3100
NN42030-600 03.0817 July 2009
.
Other changes9
December 2008
September 2008
May 2008
April 2008
April 2008
November 2007
October 2007
Standard 03.02. This document is issued to support Nortel
Mobile Communication 3100 Release 3.0. Updates were
made to include links to multimedia presentations and to
update technical content.
Standard 03.01. This document is issued to support Nortel
Mobile Communication 3100 Release 3.0.
Standard 02.03. This document is issued to support Nortel
Mobile Communication 3100 Release 2.1. A sample email
was updated.
Standard 02.02. This document is issued to support Nortel
Mobile Communication 3100 Release 2.1. Added the DNS
port to the Port table.
Standard 02.01. This document is issued to support Nortel
Mobile Communication 3100 Release 2.1.
Standard 01.04. This document is up-issued to include
changes in technical content for the packet dump utility,
E.164 fully qualified international format numbers, CallPilot,
and Call Detail Recording (CDR).
Standard 01.03. This document is up-issued to include
changes in technical content including an MCC 3100 for
BlackBerry/Nokia implementation workflow and updated
screen captures.
October 2007
September 2007
Standard 01.02. This document is up-issued to include
changes in technical content for MCG 3100 configuration
parameter fields and network configuration changes.
Standard 01.01. This document is issued to support the
Nortel Mobile Communications 3100 Series Portfolio on
Nortel Communication Server 1000 Release 5.0 and Nortel
Multimedia Communication Server 5100 Release 4.0.
Nortel Mobile Communication 3100 Administration and Security
This document provides information about the administration and security
of the Nortel Mobile Communication 3100 (MC 3100).
MC 3100 contains the following components:
•
Nortel Mobile Communication Gateway 3100 (MCG 3100)
•Nortel Mobile Communication Client 3100 (MCC 3100) for BlackBerry
•
Nortel MCC 3100 for Nokia
•Nortel MCC 3100 for Windows Mobile
The MCG 3100 extends network feature functionality to the MCC 3100
application on mobile devices. Internally, the MCG 3100 contains the
MCG 3100 Gateway Server and the MC 3100 Administration Server.
The MCC 3100 application registers to the MCG 3100 to access the
enterprise network. After registration, users can perform a variety of
functions such as:
11
•
Manage friends by using the MCC 3100 local directory. MCC 3100 for
BlackBerry users can also manage friends by using the BlackBerry
address book.
•Search the corporate directory and the MCC 3100 local directory.
•Use the logs to view the most recent related incoming and outgoing
calls, voice mail indicator, and system events.
•Create a user group that contains multiple friends and then initiate an
ad hoc conference call to the group members.
•Redirect incoming calls to alternative contact locations (for example.
office, home, or other).
•Associate a single number with all of outbound calls.
•Handle the message waiting indicator (MWI) for new voice mail
messages.
This document refers to the supported clients using the generic term
mobile client.
Nortel Mobile Communication 3100 Administration and Security
The following module describes the Mobile Communication 3100
(MC 3100) Web Console.
Navigation
•
"Overview" (page 13)
•
"Logging on to the MC 3100 Web Console as an administrator" (page
15)
•
"Logging on to the MC 3100 Web Console as a user" (page 18)
•
"Changing the MC 3100 Web Console password" (page 18)
Overview
You perform administrative tasks for the Mobile Communication Gateway
3100 (MCG 3100) server using the MC 3100 Web Console, a Web-based
tool. You access the standalone MC 3100 Web Console through Microsoft
Internet Explorer or Mozilla Firefox.
13
Attention:ECM does not support Mozilla Firefox. ECM integration is not
supported in MC 3100 release 3.0 SU130 and higher.
Two access levels exist for the MC 3100 Web Console:
•Administrator access
•
Enterprise user access
MC 3100 Web Console buttons
The following table describes all the MC 3100 Web Console buttons and
their actions.
Nortel Mobile Communication 3100 Administration and Security
Logging on to the Web Console as an administrator task flow
The following flowchart depicts the procedures you perform to log on to
the Web Console as an administrator. To link to any procedure, go to
"Navigation to Logging on to the Web Console as an administrator " (page
16)
Figure 1
Logging on to the Web Console as an administrator task flow
Navigation to Logging on to the Web Console as an administrator
•"Logging on to the standalone MC 3100 Web Console as an
administrator" (page 16)
Logging on to the standalone MC 3100 Web Console as an
administrator
Log on to the MC 3100 Web Console as an administrator to manage the
system, monitor the users, monitor Instant Conferencing, and manage the
client server repository.
Attention:Wait two minutes after starting the MCG 3100 before
accessing the MC 3100 Web Console.
Nortel Mobile Communication 3100 Administration and Security
1
2On the System Configuration page, select Group Actions,
Click the System Configuration tab.
Add MG.
Attention:In a redundant system, add the local server first.
3
Enter the Gateway Address as an IP Address or Fully Qualified
Domain Name (FQDN).
4Click OK.
5If you receive a prompt to restart the gateway,
To restart the gateway, click Yes.
OR
To restart at a later time, click No.
Attention:Nortel recommends that you restart the gateway.
--End--
Procedure job aid
Use the following table to help you understand the Add Gateway
parameters.
FieldDescription
Gateway AddressThe IP address or FQDN of the new MCG 3100
gateway server being added.
Deleting an MCG 3100 server
Delete an MCG 3100 on the MCG 3100 Web Console. This procedure
only removes the MCG 3100 from management by the Web Console; the
gateway continues to operate.
Nortel Mobile Communication 3100 Administration and Security
Attention:Lock the server before performing system maintenance or
changing gateway configuration parameters.
Prerequisites
•You must be logged in to the MC 3100 Web Console as administrator.
For more information on logging in as an administrator, see "Logging
on to the MC 3100 Web Console as an administrator" (page 15).
Procedure steps
StepAction
1Click System Configuration tab.
2To unlock the server, click Gateway Actions, Unlock.
3To lock the server, click Gateway Actions, Lock and then
perform one of the following actions:
•Select Graceful Lock and click OK.
•
Select Immediate Lock and click OK.
Configuring the Gateway settings
Configure the Gateway settings to enable the MCG 3100 to interact with
the network elements. In redundant MC 3100 deployments, most of the
Gateway settings are shared between the two servers.
Prerequisites
•You must be logged into the MC 3100 Web Console as administrator.
For more information, see "Logging on to the MC 3100 Web Console
as an administrator" (page 15).
•Add the MCG 3100 server before beginning this procedure.
Procedure steps
StepAction
--End--
1Click the System Configuration tab.
2Select Gateway Actions, Configure Gateway.
3In redundant configurations, select the gateway.
Nortel Mobile Communication 3100 Administration and Security
DomainEnter the SIP registration domain defined on the Enterprise
Call Server (ECS).
This parameter applies to both servers in the redundant
configuration.
Gateway nameEnter the gateway identity defined on the ECS for the
MCG 3100.
This parameter applies to both servers in the redundant
configuration.
Media ServerEnter the address and port of the Instant Conferencing
Server.
Format: <IP address l FQDN> :<port>
This parameter is unique to the local server.
Incoming Call Reliable TimerSpecify the amount of time, in seconds, that the MCG 3100
waits before it redirects a call after receiving no response
from the client. The value is set to one half of the call
unanswered timeout period. The default is 7 seconds.
This parameter applies to both servers in the redundant
configuration.
Primary ECS AddressEnter the address and port of the primary ECS.
Format: <IP address l FQDN> :<port>
This parameter applies to both servers in the redundant
configuration.
Secondary ECS AddressEnter the address and port of the secondary ECS.
Format: <IP address l FQDN> :<port>
This parameter applies to both servers in the redundant
configuration.
Device Access
HTTP PortSelect the hypertext transport protocol (HTTP) port used by
clients to access the system and to download software over
the air.
The valid range is 8080 to 8089; the default is 8080.
Select 0 to disable the port.
This parameter applies to both servers in the redundant
configuration.
HTTPS PortSelect the HTTP Secure (HTTPS) port used by clients to
access the system and to download software over the air.
The valid range is 8440 to 8449; the default is 8443.
Select 0 to disable the port.
Use HTTPS when a certificate infrastructure exists on the
clients and MCG 3100.
This parameter applies to both servers in the redundant
configuration.
Nortel Mobile Communication 3100 Administration and Security
HTTPS certificate passwordEnter the password used for the HTTPS certificate
transmitted by clients to the MCG 3100 server. The default
nortel.
is
This parameter applies to both servers in the redundant
configuration.
Dial Plan
User Prefix/Phone-context
for Call Origination
Enter the user name prefix or phone context for call
origination. This prefix applies to calls originated by the
MCG 3100 server and to the calling address.
This parameter applies to both servers in the redundant
configuration.
User Prefix for Call TerminationEnter the user name prefix for call termination. This prefix
applies to calls received by the MCG 3100 server and to the
called address.
This parameter applies to both servers in the redundant
configuration.
Dial-In Service DN
Enter the Service Directory Number (DN) for client calls that
will arrive at the MCG3100 on the SIP network.
This field is mandatory. The Service DN allows MCC
3100 for BlackBerry, MCC 3100 for Windows Mobile, and
MCC 3100 for Nokia users to place calls directly from their
wireless devices to other parties using Direct Outbound call
mode.
The PSTN numbers that are dialed by the mobile on the
PSTN are defined on the device configuration page. When
the call arrives at the enterprise the PSTN number must be
converted to an internal format for use on the SIP network,
routed by the NRS, and which will eventually arrive at the
MCG3100.
The mobile phone will dial +41123456789 for direct
outbound calls. This PSTN number will be routed to the
enterprise as a DID number. When the number arrives
at the Enterprise we must manipulate the PSTN number
(+41123456789) to be routed on the SIP network.
Nortel Mobile Communication 3100 Administration and Security
trunk route on the call server to map a PSTN service
DN number: +41123456789 to 5550006789, you
would configure the service DN on the MCG3100 as
0006789. In the case where an enterprise has multiple
service DN’s all incoming PSTN service DN calls must
map to the single service DN number configured in this
For Example:+1613132 4567 to 5550006789.
field.
Dialplan Conversion ListFor information on configuring this field, see "Configuring the
dial plan conversion parameters" (page 32).
DTR
Initial port for DTR (27000-27499)Enter the first port in the range of ports used by the
MCG 3100 server Digital Tone Receiver (DTR) engine. A
DTR recognizes Dual Tone Multi-Frequency (DTMF). 1500
ports are allotted for DTR.
The port must be an even number (for example, 27000).
This parameter applies to both servers in the redundant
configuration.
Mid-Call Cellular PrefixEnter the prefix used by clients to invoke mid-call features
using DTMF. Permitted values include the characters star
(*) and pound (#), and the numerals 0 to 9, entered in any
combination. The default value is *, which needs to be
changed only if it conflicts with other network resources.
For example, if clients use * to access conference features,
then you must change the Mid-Call Cellular Prefix to a
different value such as # or #99.
This parameter applies to both servers in the redundant
configuration.
LDAP
URLEnter the address and port of the Lightweight Directory
Access Protocol (LDAP) server that hosts the corporate
directory. Obtain this value from the directory administrator.
Format: ldap://<IP address l FQDN> :<port>
This parameter applies to both servers in the redundant
configuration.
Search BaseEnter the distinguished name of the search base object
(node) that defines the location in the directory from
which the LDAP search begins. Obtain this value from the
directory administrator.
This parameter applies to both servers in the redundant
configuration.
Nortel Mobile Communication 3100 Administration and Security