Configure access to WebRTC-based destinations
You can configure BlackBerry Access for macOS and BlackBerry Access for Windows to allow communication using WebRTC protocol-based web clients such as Citrix VDI browser-based access.
WebRTC traffic can often have high bandwidth demands. For this reason, BlackBerry recommends routing this traffic directly.
Route WebRTC traffic directly
If the WebRTC destination is accessible directly over the internet, use the following routing configuration:
- On the Security tab of the BlackBerry Access app configuration policy, clear the Enforce Strict Tunnel checkbox to disable strict tunnel.
- Optionally, for improved performance, you can enable UDP protocol support. On the BlackBerry Access (Mac and Win) tab of the BlackBerry Access app configuration policy, select the Enable UDP Protocol support checkbox.
- Configure the BlackBerry Dynamics Connectivity profile to route traffic directly to the WebRTC destination, as follows: Add the WebRTC destination URL to the Additional servers section and specify Direct connectivity. This allows the connection to route directly even if the default route is set to use a BlackBerry Proxy cluster.
Note: The BlackBerry Dynamics Connectivity profile and strict tunnel configuration have no effect on UDP connections. UDP connections route directly to the WebRTC destination through the local internet connection.
Route WebRTC traffic through BlackBerry Proxy
If the WebRTC destination is not directly accessible over the internet, or the traffic is required to route through a BlackBerry Proxy cluster, take the following items into consideration:
- To route WebRTC traffic through BlackBerry Proxy clusters, all BlackBerry Proxy clusters must be configured to use Direct Connect. For more information, see the Direct Connect content.
Note: If you do not configure the BlackBerry Proxy clusters with Direct Connect, the WebRTC destination does not load. For more information, see KB 62766.
- Ensure that enough BlackBerry Proxy servers are installed to handle the load generated by the WebRTC traffic.
- This configuration supports only TCP-based WebRTC connections. BlackBerry Proxy servers support only TCP protocol.