General Firewall Requirements
- Create a rule to allow inbound traffic from:
- Prioritize and allow all traffic to/from the following FQDNs/IPs:core-nj.5060.cloud (64.21.2.5) core2-nj.5060.cloud (64.21.2.1) core-fl.5060.cloud (8.12.10.20) core2-fl.5060.cloud (8.12.10.23) core-lv.5060.cloud (64.58.238.1) 
- Create a rule to allow traffic from the provisioning server: p1.5060.cloud (64.21.2.4).
- Disable SIP ALG- for Sonicwall Firewall is the same as SIP-Transformations.
- for Cisco ASA Firewall no+A240:A262 inspect sip.
 
- Set UDP Timeout to 180 sec
Open the following ports
| Port | Protocol | Description | 
| 443 | TCP | Needed for secure web content and secure provisioning over HTTPS. | 
| 5060 | TCP/UDP | Needed for SIP signaling. | 
| 5061 | TCP/UDP | Needed for secure SIP signaling. | 
| 20000-36000 | UDP | Needed for Audio/Video streams (RTP) | 
| 8001 | TCP | Required for the Portal to provide dynamic updates. | 
| 9002 | TCP | Required for SNAPmobile Web communication. | 

