General Firewall Requirements

  • Create a rule to allow inbound traffic from:
  • Prioritize and allow all traffic to/from the following FQDNs/IPs:

    core-nj.5060.cloud (64.21.2.5)

    core2-nj.5060.cloud (64.21.2.1)

    core-fl.5060.cloud (8.12.10.20)

    core2-fl.5060.cloud (8.12.10.23)

    core-lv.5060.cloud (64.58.238.1)

  • Create a rule to allow traffic from the provisioning server: p1.5060.cloud (64.21.2.4).
  • Disable SIP ALG
    • for Sonicwall Firewall is the same as SIP-Transformations.
    • for Cisco ASA Firewall no+A240:A262 inspect sip.
  • Set UDP Timeout to 180 sec

Open the following ports

Port

Protocol

Description

443

TCP

Needed for secure web content and secure provisioning over HTTPS.

5060

TCP/UDP

Needed for SIP signaling.

5061

TCP/UDP

Needed for secure SIP signaling.

20000-36000

UDP

Needed for Audio/Video streams (RTP)
8001TCPRequired for the Portal to provide dynamic updates.

9002

TCPRequired for SNAPmobile Web communication.