Link to home
Start Free TrialLog in
Avatar of Danny_Larouche
Danny_Larouche

asked on

vonage ports and protocols

What are vonage`s protocols and ports used for their voip service (incoming and outgoing)

ASKER CERTIFIED SOLUTION
Avatar of tomerlei
tomerlei

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of carl_legere
carl_legere

via the linksys phone adapter, no ports need to be openened.  The device will find it's own way out and the inbound traffic is allowed by most firewall policies because there is an outbound packed followed by inbound packets from the same server(s).  So it is allowed by SPI.
Avatar of Danny_Larouche

ASKER

Carl: i don't talk about the adapter itself, but the border firewall.  I have to create routing policies and firewalling rules on both sides. Default outbound is set to deny.

Tomerlei: Do you have the IP address range where trafic is coming from?  Which ports are used for outgoing and which one for incoming traffic. I believe that SIPTLS (port 5061) should receive call and other ones are use by the ATA as outgoing trafic, right?
You can't really know the ip address range the traffic will come from it depends on the servers which you connect to.

The ports i gave you are probably for inbound traffic because the site gives it for port forwarding, to check what outbound traffic you need to use just write in a command prompt of a windows machine that already uses vonage:
netstat -n -b
it will determine which ports are open on established connection (outbound traffic) and which program is responsible for it, then all you need to do is write down the Foreign address fields (which includes the outgoing port) of all the connections related to vonage.
What i ment by that you can't really know the ip range, is that it can be dynamic or unaccurate, if you know the servers dns name you can run nslookup on it to detect all it's ip addresses.
ah hah
they do not support running the pap2 behind complicated firewall policies.  I've often broken off a piece of bandwidth to handle this, at least at my house where I have a SunRocket box.

internet ---- cable modem---- cheap hub------main VPN router----internal network
                                                                             |
                                                                             |
                                                                     SunRocket box

this gets me around some annoying QOS issues also.

I suspect you will have bad luck hardprogramming your border firewall for specific ports and you might have better luck assigning it a static ip address via a DHCP reservation, and then open that IP up on the gateway