[cisco-voip] H.323 trunks and firewalls

Ryan Ratliff rratliff at cisco.com
Fri Jan 16 10:06:15 EST 2009


RAS-aware firewall?

This is expected because CUCM uses 1720 for direct H.225  
communication (and refuses connections on this port from unknown  
devices).  When we register with the gatekeeper we use a random port  
and this is what the gatekeeper tells other devices to send calls to  
CUCM on.  When CUCM sees an inbound connection on that port it knows  
to treat the call as coming from the gk-controlled trunk.

-Ryan

On Jan 16, 2009, at 9:37 AM, Philip Walenta wrote:

Greetings list,

Scenario:

I have a  CUCM 6.1 system firewalled from the world.  I need to  
establish a gatekeeper controlled trunk.

However, upon any reset of the trunk the ports numbers change.

Has anyone run into this, and if so, how have you dealt with it?

Thanks,

Phil
_______________________________________________
cisco-voip mailing list
cisco-voip at puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-voip

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://puck.nether.net/pipermail/cisco-voip/attachments/20090116/e3e4d7f2/attachment.html>


More information about the cisco-voip mailing list