?
Solved

Connect to Asterisk from WAN (Behind Cisco ASA)

Posted on 2011-03-09
4
Medium Priority
?
931 Views
Last Modified: 2012-05-11
Hello all,

I need to allow about a dozen remote employees to access our Asterisk server with their Polycom 450's without the use of VPNs.

I've moved the * server to the DMZ interface on our ASA, and have assigned it a public IP.

In sip.conf I've added externip = xx.xx.xx.xx

On the ASA, I've opened up the following ports to the * server:
5060-5082 UDP
10001-20000 UDP
and
69 UDP (for TFTP access).

I cannot get the phones to connect to the server.  I've also tried/failed connecting X-Lite as well.

Any help is greatly appreciated.
0
Comment
Question by:jclester
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 2

Author Comment

by:jclester
ID: 35089811
The ASA can most likely be ruled out as an issue, packet tracer confirms that the traffic is being allowed through.

That being said, I'm still unable to connect the phone to the PBX.  The built-in firewall and SELinux are both disabled on my PBX too.
0
 
LVL 16

Expert Comment

by:memo_tnt
ID: 35094889
do you get any logs on your asterisk server ?
0
 
LVL 2

Accepted Solution

by:
jclester earned 0 total points
ID: 35096404
I just figured out the issue... I have a VPN tunnel between my home and the location where the asterisk server lives.

For my testing I had been disabling the VPN, but my NAT exemption to the DMZ was still in place, and that was the problem.

I removed the exemption, and everything works properly.
0
 
LVL 2

Author Closing Comment

by:jclester
ID: 35154497
Resolved issue.
0

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

719 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question