Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Wanet Telecoms Ltd on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Stun server not populating with the 5060 UDP

Status
Not open for further replies.

raknas

Technical User
May 4, 2004
276
GB
Hi All

I am at a customer site and just need confirmation that it is the customers firewall (SonicwallTZ210). Just set up Gamma Sip Trunks filled in the Stun Server address. Ran Stun and it comes back with the correct Pubic IP address but not the correct UDP Port of 5060. The port number always changes when you run stun and "Port Restricted Cone NAT" is populated. The Public IP is correct.
The IT guys has port forwared the 5060 ect to IP 500. He has disabled SIP Transformations.

Any thing else he can try. Also inbound speech does not work but that is because of the stun not resolving with the correct UDP port of 5060
 
Its because its not a proper static NAT rule, or in cisco terms extendable. This will fix the port both in and out bound.

ACSS - SME
General Geek

 
Hi All

Just a update.

The IT Guy said he implememented a proper static NAT rule. Any how after speaking to Sonicwall we were able to get it to work by doing the following.
Sonicwall Firmware must be on latest software.
Sonicwall must have "SIP Transformations" enabled on the VOIP configuration. (Reboot after enabling).
IPO 500 should be set to "Blocking" for Firewall Type, have 0.0.0.0 for Public IP, 0 for binding refresh, use port 5060, and have a stun server configured.
Apparantley Sonicwall to do the SIP transformation and not the IP Office to do the Firewall transversal.
We set the above up and inbound/outbound speech working.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top