Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

SONICWALL TZ215 SETUP FOR HYBRID PHONE SYSTEM

Posted on 2016-11-04
3
26 Views
Last Modified: 2016-11-24
the following steps where completed:
UDP global time out set to 120
Default UDP Connection Timeout (seconds):  120
VOIP tab, the only item checked is "Enable Consistent NAT". Everything else, include "Enable SIP Transformations" is unchecked.
Created inbound firewall/NAT rules for the ports service objects and address objects.
have a 50 X 5 for 8 active phones.
on traffic statics i am getting many connection handshake timeouts.
0
Comment
Question by:Avi Leibzon
  • 2
3 Comments
 
LVL 25

Accepted Solution

by:
masnrock earned 500 total points (awarded by participants)
ID: 41875299
What type of PBX? SonicWalls are bad at handling VoIP functions. Try changing the UDP timeout from 120 to 1200.

I would suggestion disabling consistent NAT especially after doing the following:

Talk to Sonicwall and request HF152075. Their engineering group will have to create the firmware for you, which may take a few weeks. However, it will let you do the Disabled Source Port Remap direction in step 4 of this guide:
http://www.3cx.com/blog/voip-howto/sonicwall-firewall-configuration/

I had issues with drops and whatnot for a SIP trunk until I applied this.
0
 
LVL 16

Expert Comment

by:ccomley
ID: 41900228
You dont' say what the phone system is. But in our experience, most modern phone systems do not require the router or firewall to "fix up" the NAT mappings for SIP and turning on Sip Transforms can cause problems. I would suggest checking what your phone system says in the manual about NAT Traversal, but I would be surprised if it doesn't say do NOT use a SIP ALG.
0
 
LVL 25

Expert Comment

by:masnrock
ID: 41900311
Question answered
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Sometimes you have to pull out old tricks to get a new firewall to work… While we were installing a new Sonicwall at a customers site we found that sites they were able to visit before were not working.  It seemed random and we could not understa…
Messaging apps are amazing tools with the power to do a lot of good, but the truth is the process of collaborating with coworkers requires relationships established through meaningful communication - the kind of communication that only happens face-…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…

790 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question