General Firewall Requirements
- Create a rule to allow inbound traffic from:
- Prioritize and allow all traffic to/from the following FQDNs/IPs:
core-nj.5060.cloud (64.21.2.5)
core2-nj.5060.cloud (64.21.2.1)
core-fl.5060.cloud (8.12.10.20)
core2-fl.5060.cloud (8.12.10.23)
core-lv.5060.cloud (64.58.238.1)
- Create a rule to allow traffic from the provisioning server: p1.5060.cloud (64.21.2.4).
- Disable SIP ALG
- for Sonicwall Firewall is the same as SIP-Transformations.
- for Cisco ASA Firewall no+A240:A262 inspect sip.
- Set UDP Timeout to 180 sec
Open the following ports
Port | Protocol | Description |
443 | TCP | Needed for secure web content and secure provisioning over HTTPS. |
5060 | TCP/UDP | Needed for SIP signaling. |
5061 | TCP/UDP | Needed for secure SIP signaling. |
20000-36000 | UDP | Needed for Audio/Video streams (RTP) |
8001 | TCP | Required for the Portal to provide dynamic updates. |
9002 | TCP | Required for SNAPmobile Web communication. |