Cisco uses 16384 to 32767 odd ports for audio, even ports for rtcp. Why not just use match protocol rtp audio and be done with it? In your access list for your audio traffic, your also only matching the DESTINATION ports, you might want to considering matching the range of ports on the source as well. It still doesn't help if your audio happens to use a higher number that what they are accepting in their COS. I'm not sure of a way to confine rtp to using specific port ranges, thats a good question. <br>
<br><div class="gmail_quote">On Thu, Mar 27, 2008 at 11:34 AM, Todd Simons <<a href="mailto:tsimons@delphi-tech.com">tsimons@delphi-tech.com</a>> wrote:<br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
<div link="blue" vlink="purple" lang="EN-US">
<div>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Here's a screenshot of Sprint's Standard Offering:</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"><img src="cid:image001.png@01C89006.F3368860" height="116" width="859"></span><span style="font-size: 11pt; color: rgb(31, 73, 125);"></span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Since I can control both routers, is there a way I can define
the specific udp ports to use?</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">~Todd</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<div>
<div style="border-style: solid none none; border-color: rgb(181, 196, 223) -moz-use-text-color -moz-use-text-color; border-width: 1pt medium medium; padding: 3pt 0in 0in;">
<p><b><span style="font-size: 10pt;">From:</span></b><span style="font-size: 10pt;">
<a href="mailto:cisco-voip-bounces@puck.nether.net" target="_blank">cisco-voip-bounces@puck.nether.net</a> [mailto:<a href="mailto:cisco-voip-bounces@puck.nether.net" target="_blank">cisco-voip-bounces@puck.nether.net</a>] <b>On
Behalf Of </b>Todd Simons<br>
<b>Sent:</b> Thursday, March 27, 2008 12:18 PM<br>
<b>To:</b> Scott Voll<div><div></div><div class="Wj3C7c"><br>
<b>Cc:</b> <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
<b>Subject:</b> Re: [cisco-voip] Troubleshooting Resources?</div></div></span></p>
</div>
</div><div><div></div><div class="Wj3C7c">
<p> </p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">I can certainly go by IP address when classing/queueing the
outbound, Sprint only does CoS by port inbound on their end of the Multilink</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<div style="border-style: solid none none; border-color: rgb(181, 196, 223) -moz-use-text-color -moz-use-text-color; border-width: 1pt medium medium; padding: 3pt 0in 0in;">
<p><b><span style="font-size: 10pt;">From:</span></b><span style="font-size: 10pt;"> Scott Voll
[mailto:<a href="mailto:svoll.voip@gmail.com" target="_blank">svoll.voip@gmail.com</a>] <br>
<b>Sent:</b> Thursday, March 27, 2008 12:16 PM<br>
<b>To:</b> Todd Simons<br>
<b>Cc:</b> <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
<b>Subject:</b> Re: [cisco-voip] Troubleshooting Resources?</span></p>
</div>
<p> </p>
<div>
<p>That was why my thought was using the routers IP address to classify
because the only traffic that should have a source or destination of the router
would be the voice traffic.</p>
</div>
<div>
<p> </p>
</div>
<div>
<p style="margin-bottom: 12pt;">Scott</p>
</div>
<div>
<p>On Thu, Mar 27, 2008 at 9:13 AM, Todd Simons <<a href="mailto:tsimons@delphi-tech.com" target="_blank">tsimons@delphi-tech.com</a>> wrote:</p>
<div>
<div>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Yes, Yes, and Yes</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Does anyone know of a link on
Cisco's web site that defines port usage? ...the ports defined were stock from
Sprint's COS setup.</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">--or—</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Can you define the UDP ports
that the routers should use?</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<div style="border-style: solid none none; border-color: rgb(181, 196, 223) -moz-use-text-color -moz-use-text-color; border-width: 1pt medium medium; padding: 3pt 0in 0in;">
<p><b><span style="font-size: 10pt;">From:</span></b><span style="font-size: 10pt;"> Scott Voll [mailto:<a href="mailto:svoll.voip@gmail.com" target="_blank">svoll.voip@gmail.com</a>] <br>
<b>Sent:</b> Thursday, March 27, 2008 11:45 AM </span></p>
<div>
<div>
<p><span style="font-size: 10pt;"><br>
<b>To:</b> Todd Simons<br>
<b>Cc:</b> Paul; <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
<b>Subject:</b> Re: [cisco-voip] Troubleshooting Resources?</span></p>
</div>
</div>
</div>
<div>
<div>
<p> </p>
<div>
<p>ACL 2015 is VPN access..... Right?</p>
</div>
<div>
<p>ACL 2016 is FTP Access...... Right?</p>
</div>
<div>
<p>ACL 2014 is Voice?</p>
</div>
<div>
<p> </p>
</div>
<div>
<p>I "think" h323 control is TCP port 1720 and media is dynamic over
udp ports 1024 - 65535. if this is true. you may not be classifying all the
traffic correctly.</p>
</div>
<div>
<p> </p>
</div>
<div>
<p style="margin-bottom: 12pt;">Scott</p>
</div>
<div>
<p>On Thu, Mar 27, 2008 at 8:17 AM, Todd Simons <<a href="mailto:tsimons@delphi-tech.com" target="_blank">tsimons@delphi-tech.com</a>>
wrote:</p>
<div>
<div>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Below is my show ACL. Why would
the FE be involved? The channelized voice comes in via T1/PRI gets converted,
goes into a loopback interface, then leaves the default route of the router,
the Multilink1</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Extended IP access list 2014</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">10 permit udp any any range
3248 16384 (1510481 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">20 permit tcp any any eq 1790
(2783 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Extended IP access list 2015</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">10 permit tcp any any eq 443
(18140152 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">20 permit udp any any eq isakmp
(84692 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">30 permit udp any any eq 768</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">40 permit esp any any
(513489946 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">Extended IP access list 2016</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">10 permit tcp any any eq
ftp-data (391310 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">20 permit tcp any any eq ftp
(91751 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);">30 permit tcp any any eq 2456
(8396 matches)</span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<p><span style="font-size: 11pt; color: rgb(31, 73, 125);"> </span></p>
<div style="border-style: solid none none; border-color: rgb(181, 196, 223) -moz-use-text-color -moz-use-text-color; border-width: 1pt medium medium; padding: 3pt 0in 0in;">
<p><b><span style="font-size: 10pt;">From:</span></b><span style="font-size: 10pt;"> Scott Voll [mailto:<a href="mailto:svoll.voip@gmail.com" target="_blank">svoll.voip@gmail.com</a>] <br>
<b>Sent:</b> Thursday, March 27, 2008 11:08 AM<br>
<b>To:</b> Todd Simons<br>
<b>Cc:</b> Paul; <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a>
</span></p>
<div>
<div>
<p><span style="font-size: 10pt;"><br>
<b>Subject:</b> Re: [cisco-voip] Troubleshooting Resources?</span></p>
</div>
</div>
</div>
<div>
<div>
<p> </p>
<div>
<p>Someone can correct me if I'm wrong, but it looks like you are not matching
the right traffic. I believe H323 control is ports 1720 and 1719, and I
seem to think the RTP is different they you match in your ACL.</p>
</div>
<div>
<p> </p>
</div>
<div>
<p>With that said, maybe you can match traffic of the FE interface as the only
thing that should be coming directly from that port would be your Voice traffic
or management traffic.</p>
</div>
<div>
<p> </p>
</div>
<div>
<p>Just an idea.</p>
</div>
<div>
<p> </p>
</div>
<div>
<p style="margin-bottom: 12pt;">Scott</p>
</div>
<div>
<p>On Thu, Mar 27, 2008 at 6:35 AM, Todd Simons <<a href="mailto:tsimons@delphi-tech.com" target="_blank">tsimons@delphi-tech.com</a>>
wrote:</p>
<p>Information removed to protect the innocent, Sprint has the same CoS setting
on their side of the MultilinkPPP<br>
<br>
!<generic information cut><br>
version 12.4<br>
service timestamps debug datetime msec<br>
service timestamps log datetime localtime show-timezone<br>
service password-encryption<br>
!<br>
hostname <REMOVED><br>
!<br>
boot-start-marker<br>
boot system flash c2801-ipvoicek9-mz.124-18.bin<br>
boot-end-marker<br>
!<br>
card type t1 0 2<br>
card type t1 0 3<br>
!<br>
no aaa new-model<br>
clock timezone EST -5<br>
clock summer-time est recurring<br>
network-clock-participate wic 2<br>
network-clock-participate wic 3<br>
network-clock-select 9 T1 0/3/1<br>
network-clock-select 10 T1 0/2/1<br>
ip cef<br>
!<br>
isdn switch-type primary-4ess<br>
isdn logging<br>
!<br>
voice-card 0<br>
!<br>
!<br>
!<br>
controller T1 0/2/0<br>
framing esf<br>
linecode b8zs<br>
cablelength long 0db<br>
channel-group 0 timeslots 1-24<br>
description SprintLink Circuit 1<br>
!<br>
controller T1 0/2/1<br>
framing esf<br>
linecode b8zs<br>
cablelength long 0db<br>
ds0-group 1 timeslots 1-4 type e&m-wink-start<br>
description PBX - Nortel T1<br>
!<br>
controller T1 0/3/0<br>
framing esf<br>
linecode b8zs<br>
cablelength long 0db<br>
channel-group 0 timeslots 1-24<br>
description SprintLink Circuit 2<br>
!<br>
controller T1 0/3/1<br>
framing esf<br>
linecode b8zs<br>
cablelength long 0db<br>
pri-group timeslots 1-9,24<br>
description PBX - Nortel PRI<br>
!<br>
class-map match-any delphiCOS-Platinum<br>
match access-group 2014<br>
class-map match-any delphiCOS-Silver<br>
match access-group 2016<br>
class-map match-any delphiCOS-Gold<br>
match access-group 2015<br>
!<br>
!<br>
policy-map ipcos-delphiCOS<br>
class delphiCOS-Platinum<br>
police rate percent 17<br>
conform-action transmit<br>
priority percent 17<br>
class delphiCOS-Silver<br>
bandwidth percent 25<br>
class delphiCOS-Gold<br>
bandwidth percent 33<br>
!<br>
!<br>
!<br>
!<br>
interface Loopback0<br>
description dtiNJ-VoIP<br>
ip address <removed-addr1><br>
h323-gateway voip bind srcaddr <removed-addr1><br>
!<br>
interface Loopback1<br>
no ip address<br>
!<br>
interface Multilink1<br>
description Sprintlink<br>
ip address <removed-addr2><br>
no ip route-cache cef<br>
no ip route-cache<br>
no ip mroute-cache<br>
load-interval 30<br>
no peer neighbor-route<br>
no cdp enable<br>
ppp multilink<br>
ppp multilink group 1<br>
service-policy output ipcos-delphiCOS<br>
!<br>
interface FastEthernet0/0<br>
ip address <removed-addr3><br>
speed 100<br>
full-duplex<br>
!<br>
interface FastEthernet0/1<br>
shutdown<br>
!<br>
interface Serial0/2/0:0<br>
description Sprint Circuit 1<br>
bandwidth 1536<br>
ip unnumbered Multilink1<br>
encapsulation ppp<br>
no fair-queue<br>
ppp multilink<br>
ppp multilink group 1<br>
!<br>
interface Serial0/3/0:0<br>
description Sprint Circuit 2<br>
bandwidth 1536<br>
ip unnumbered Multilink1<br>
encapsulation ppp<br>
no fair-queue<br>
ppp multilink<br>
ppp multilink group 1<br>
!<br>
interface Serial0/3/1:23<br>
description NJ Nortel PBX Client Side DCH 4ESS, requires Clock<br>
no ip address<br>
encapsulation hdlc<br>
logging event subif-link-status<br>
isdn switch-type primary-4ess<br>
isdn protocol-emulate network<br>
isdn incoming-voice voice<br>
isdn supp-service name calling<br>
isdn ie oli 28<br>
no cdp enable<br>
!<br>
access-list 2014 permit udp any any range 3248 16384<br>
access-list 2014 permit tcp any any eq 1790<br>
access-list 2015 permit tcp any any eq 443<br>
access-list 2015 permit udp any any eq isakmp<br>
access-list 2015 permit udp any any eq 768<br>
access-list 2015 permit esp any any<br>
access-list 2016 permit tcp any any eq ftp-data<br>
access-list 2016 permit tcp any any eq ftp<br>
access-list 2016 permit tcp any any eq 2456<br>
!<br>
!<br>
!<br>
control-plane<br>
!<br>
disable-eadi<br>
!<br>
!<br>
voice-port 0/0/0<br>
station-id name FXS 0/0/0<br>
station-id number 3000<br>
caller-id format e911<br>
!<br>
voice-port 0/0/1<br>
station-id name FXS 0/0/1<br>
station-id number 3001<br>
caller-id enable<br>
!<br>
voice-port 0/2/1:1<br>
station-id name NJPBX VoIP T1<br>
station-id number 732xxxxxxx<br>
!<br>
voice-port 0/3/1:23<br>
!<br>
!<br>
!<br>
!<br>
!<br>
dial-peer voice 195 voip<br>
destination-pattern 5...<br>
session target dns:dtiSH-VoIP<br>
!<br>
dial-peer voice 190 pots<br>
description NJPBX Tie Line<br>
preference 1<br>
destination-pattern [3-4][1-9]..<br>
direct-inward-dial<br>
port 0/3/1:23<br>
forward-digits all<br>
!<br>
dial-peer voice 193 voip<br>
preference 1<br>
destination-pattern [1,2]...<br>
session target dns:dtiMA-VoIP<br>
!<br>
!<br>
gateway<br>
timer receive-rtp 1200<br>
!<br>
telephony-service<br>
max-conferences 4 gain -6</p>
<div>
<div>
<p style="margin-bottom: 12pt;"><br>
<br>
-----Original Message-----<br>
From: Paul [mailto:<a href="mailto:asobihoudai@yahoo.com" target="_blank">asobihoudai@yahoo.com</a>]<br>
Sent: Wednesday, March 26, 2008 8:15 PM<br>
To: Todd Simons; Jorge L. Rodriguez Aguila; <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
Subject: Re: [cisco-voip] Troubleshooting Resources?<br>
<br>
Let's see your router's configuration.<br>
<br>
--- Todd Simons <<a href="mailto:tsimons@delphi-tech.com" target="_blank">tsimons@delphi-tech.com</a>>
wrote:<br>
<br>
> Yes, the "internet" traffic remains on the<br>
> SprintLink backbone between their NYC NOC and their<br>
> Springfield, MA NOC, which are 5~6 hops apart and<br>
> not much more than 10ms latency<br>
><br>
><br>
><br>
> From: Jorge L. Rodriguez Aguila<br>
> [mailto:<a href="mailto:jorge.rodriguez@netxar.com" target="_blank">jorge.rodriguez@netxar.com</a>]<br>
> Sent: Wednesday, March 26, 2008 6:56 PM<br>
> To: Todd Simons; <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
> Subject: RE: [cisco-voip] Troubleshooting Resources?<br>
><br>
><br>
><br>
> Do you mean you are running Voice via the internet?<br>
><br>
><br>
><br>
> Jorge<br>
><br>
><br>
><br>
> From: Todd Simons [mailto:<a href="mailto:tsimons@delphi-tech.com" target="_blank">tsimons@delphi-tech.com</a>]<br>
> Sent: Wednesday, March 26, 2008 5:28 PM<br>
> To: Jorge L. Rodriguez Aguila;<br>
> <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
> Subject: RE: [cisco-voip] Troubleshooting Resources?<br>
><br>
><br>
><br>
> I'm new to this.<br>
><br>
><br>
><br>
> I have PRI's to our non-VoIP PBXs, to Cisco 2801<br>
> routers (our data internet routers), and then<br>
> dialpeers (pots/voip) defined from there, very<br>
> basic.<br>
><br>
><br>
><br>
> From: Jorge L. Rodriguez Aguila<br>
> [mailto:<a href="mailto:jorge.rodriguez@netxar.com" target="_blank">jorge.rodriguez@netxar.com</a>]<br>
> Sent: Wednesday, March 26, 2008 4:56 PM<br>
> To: Todd Simons; <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
> Subject: RE: [cisco-voip] Troubleshooting Resources?<br>
><br>
><br>
><br>
> Are you doing CAC? Can you give some more info on<br>
> Codecs, Bandwidth on LLQ for voice, etc.<br>
><br>
><br>
><br>
><br>
><br>
> Jorge Rodríguez Aguila<br>
><br>
> CCNA,CCVP<br>
><br>
> Senior Voice/Data Network Consultant<br>
><br>
> Netxar Technologies<br>
><br>
> <a href="mailto:jorge.rodriguez@netxar.com" target="_blank">jorge.rodriguez@netxar.com</a><br>
><br>
> Office 787-765-0058<br>
><br>
> PCS 787-688-8530<br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
><br>
> From: <a href="mailto:cisco-voip-bounces@puck.nether.net" target="_blank">cisco-voip-bounces@puck.nether.net</a><br>
> [mailto:<a href="mailto:cisco-voip-bounces@puck.nether.net" target="_blank">cisco-voip-bounces@puck.nether.net</a>]
On<br>
> Behalf Of Todd Simons<br>
> Sent: Wednesday, March 26, 2008 4:50 PM<br>
> To: <a href="mailto:cisco-voip@puck-nether.net" target="_blank">cisco-voip@puck-nether.net</a><br>
> Subject: [cisco-voip] Troubleshooting Resources?<br>
><br>
><br>
><br>
> Hello All<br>
><br>
><br>
><br>
> Does anyone have any links for troubleshooting<br>
> procedures? We have everything from reduced call<br>
> quality to voice dropping off.<br>
><br>
><br>
><br>
> We are running on Sprint's internet backbone with<br>
> CoS assigned, 6 hops between the routers and about<br>
> 10ms latency, both sides have multilink ppp<br>
> connections (2xT1)<br>
><br>
><br>
><br>
> ~Todd<br>
<br>
<br>
<br>
<br>
____________________________________________________________________________________<br>
Looking for last minute shopping deals?<br>
Find them fast with Yahoo! Search. <a href="http://tools.search.yahoo.com/newsearch/category.php?category=shopping" target="_blank">http://tools.search.yahoo.com/newsearch/category.php?category=shopping</a></p>
</div>
</div>
<div>
<p>## Scanned by Delphi Technology, Inc. ##</p>
</div>
<p>_______________________________________________<br>
cisco-voip mailing list</p>
<div>
<p><a href="mailto:cisco-voip@puck.nether.net" target="_blank">cisco-voip@puck.nether.net</a></p>
</div>
<p><a href="https://puck.nether.net/mailman/listinfo/cisco-voip" target="_blank">https://puck.nether.net/mailman/listinfo/cisco-voip</a></p>
</div>
<p> </p>
</div>
</div>
</div>
<div>
<div>
<p><br>
## Scanned by Delphi Technology, Inc. ##</p>
</div>
</div>
</div>
</div>
<p> </p>
</div>
</div>
</div>
<div>
<div>
<p><br>
## Scanned by Delphi Technology, Inc. ##</p>
</div>
</div>
</div>
</div>
<p> </p>
<p><br>
## Scanned by Delphi Technology, Inc. ##</p>
</div></div></div><div><div></div><div class="Wj3C7c">
<br>## Scanned by Delphi Technology, Inc. ##</div></div></div>
<br>_______________________________________________<br>
cisco-voip mailing list<br>
<a href="mailto:cisco-voip@puck.nether.net">cisco-voip@puck.nether.net</a><br>
<a href="https://puck.nether.net/mailman/listinfo/cisco-voip" target="_blank">https://puck.nether.net/mailman/listinfo/cisco-voip</a><br>
<br></blockquote></div><br>