Solved

Connect to Asterisk from WAN (Behind Cisco ASA)

Posted on 2011-03-09
4
924 Views
Last Modified: 2012-05-11
Hello all,

I need to allow about a dozen remote employees to access our Asterisk server with their Polycom 450's without the use of VPNs.

I've moved the * server to the DMZ interface on our ASA, and have assigned it a public IP.

In sip.conf I've added externip = xx.xx.xx.xx

On the ASA, I've opened up the following ports to the * server:
5060-5082 UDP
10001-20000 UDP
and
69 UDP (for TFTP access).

I cannot get the phones to connect to the server.  I've also tried/failed connecting X-Lite as well.

Any help is greatly appreciated.
0
Comment
Question by:jclester
  • 3
4 Comments
 
LVL 2

Author Comment

by:jclester
Comment Utility
The ASA can most likely be ruled out as an issue, packet tracer confirms that the traffic is being allowed through.

That being said, I'm still unable to connect the phone to the PBX.  The built-in firewall and SELinux are both disabled on my PBX too.
0
 
LVL 16

Expert Comment

by:memo_tnt
Comment Utility
do you get any logs on your asterisk server ?
0
 
LVL 2

Accepted Solution

by:
jclester earned 0 total points
Comment Utility
I just figured out the issue... I have a VPN tunnel between my home and the location where the asterisk server lives.

For my testing I had been disabling the VPN, but my NAT exemption to the DMZ was still in place, and that was the problem.

I removed the exemption, and everything works properly.
0
 
LVL 2

Author Closing Comment

by:jclester
Comment Utility
Resolved issue.
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Article by: user_n
How Sip Phone (User Agent) works and communicates with sip servers 1.  There is a sip server and a sip registrar.  The sip server and sip registrar can be one server or two different servers. The sip registrar is the server on which it is record…
As companies replace their old PBX phone systems with Unified IP Communications, many are finding out that legacy applications such as fax do not work well with VoIP. Fortunately, Cloud Faxing provides a cost-effective alternative that works over an…
This video discusses moving either the default database or any database to a new volume.
In this seventh video of the Xpdf series, we discuss and demonstrate the PDFfonts utility, which lists all the fonts used in a PDF file. It does this via a command line interface, making it suitable for use in programs, scripts, batch files — any pl…

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now