Solved

Open/Blocked ports on HP 2910al switch

Posted on 2014-01-28
6
465 Views
Last Modified: 2014-03-01
As above really.  

We have a CIsco ASA 5505 Firewall going to our HP 2910al L3 switch which is the DGW for our 2x vlans (voice & data).
We have issues around ringing tones (mainly external calls) when using a shoretel softphone and also at a remote site with a shoretel v90 switch over a cisco VPN (again not ringing, but internal calls do ring).
I'd like to know if there is a way in which to check open/blocked ports?

UDP 2427 MGCP
UDP 5004 RTP


Thanks
0
Comment
Question by:CHI-LTD
  • 4
  • 2
6 Comments
 
LVL 26

Accepted Solution

by:
Soulja earned 500 total points
ID: 39815461
Your ASA config should show which ports are being allowed through it.

From the command line you can also do:

show asp table socket

It will show what port's the firewall is listening.

Then again, if this traffic is going over a vpn, you want to check your accesslists to see if your firewall is restricting vpn traffic based on port level. Most implementation don't get that granular, and encrypt traffic based on source/destination subnets or hosts.
0
 
LVL 1

Assisted Solution

by:CHI-LTD
CHI-LTD earned 0 total points
ID: 39815473
what about at hp switch level?

2910al poe
v1910
0
 
LVL 26

Assisted Solution

by:Soulja
Soulja earned 500 total points
ID: 39815564
I would think the switches would not be blocking specific ports.

On the hp:
sh access-list


I am not familiar with the shortel, but would think it would not be blocking ports since it's most likely a l2 only switch.
0
Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

 
LVL 1

Author Comment

by:CHI-LTD
ID: 39817543
ringtone is fine on devices local to vlan20, just fails for remote connections and local devices on vlan1...
assume cisco could be at fault?
0
 
LVL 1

Author Comment

by:CHI-LTD
ID: 39817798
not familiar with cisco, bnut here are the results:


Protocol  Socket    Local Address               Foreign Address         State
SSL       0003680f  172.19.10.15:8443           0.0.0.0:*               LISTEN
SSL       00053d3f  wan IP1:8443           0.0.0.0:*               LISTEN
TCP       00072f3f  172.19.10.15:22             0.0.0.0:*               LISTEN
TCP       0009acaf  wan IP1:22             0.0.0.0:*               LISTEN
SSL       000ac1ef  172.19.10.15:444            0.0.0.0:*               LISTEN
DTLS      000cc19f  172.19.10.15:443            0.0.0.0:*               LISTEN
TCP       bf6f6ea8  wan IP1:22             wan ip2:62343    ESTAB
0
 
LVL 1

Author Closing Comment

by:CHI-LTD
ID: 39897005
been escalated to Shoretel US so see what they say..
0

Featured Post

Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Every year the snow affects people and businesses. According to the Federation of Small Businesses (FSB), in 2009, UK businesses lost an estimated £1.2bn (http://news.bbc.co.uk/1/hi/business/7864804.stm) because of bad weather. This article was c…
As companies replace their old PBX phone systems with Unified IP Communications, many are finding out that legacy applications such as fax do not work well with VoIP. Fortunately, Cloud Faxing provides a cost-effective alternative that works over an…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now