[cisco-voip] more ACL questions - RTP from CUE outside RTP range

Wes Sisk wsisk at cisco.com
Fri Dec 2 17:24:05 EST 2011


only some devices use that port range for RTP.  CUCM does not. CIPC does not.  IOS does because of the way it allocates port numbers.

for anything based on a common os (windows/linux) the socket command does not allow specifying a subset of port numbers. this makes compliance nearly impossible.

CUE is running on linux.

On Dec 2, 2011, at 5:02 PM, Lelio Fulgenzi wrote:

So I've got another ACL question. 

When trying to communicate with my CUE module, I get the following error:

%SEC-6-IPACCESSLOGP: list voice_endpoints_out denied udp cue.ipaddr(32773) -> ipphone.ipaddr(19072), 1 packet

I'm assuming this is RTP communications, but then why is the source address higher than the advertised range 16384 to 32767?

I always thought RTP would only communicate to each other from and to a port within this range.

Thoughts?



---
Lelio Fulgenzi, B.A.
Senior Analyst (CCS) * University of Guelph * Guelph, Ontario N1G 2W1
(519) 824-4120 x56354 (519) 767-1060 FAX (ANNU)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
Cooking with unix is easy. You just sed it and forget it. 
                              - LFJ (with apologies to Mr. Popeil)


_______________________________________________
cisco-voip mailing list
cisco-voip at puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-voip

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://puck.nether.net/pipermail/cisco-voip/attachments/20111202/5194800b/attachment.html>


More information about the cisco-voip mailing list