Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Remote phones over VPN

Status
Not open for further replies.

andy4uk

Programmer
Jan 28, 2005
223
GB
Hi Guys,

I have a problem with getting a 5215 dual IP Phone to connect over a VPN link, from the remote site i can ping the 3300 system from the handset and from the main site i can ping the IP phone - the phone boot up starts to down load and get stuck with ip address of the phone and IP address on the Mitel system.

So we have the VPN link working and we can get the phone to talk to the mitel and thats it, i don't understand what's happening as i have got loads of these handsets to work over VPN and I have run out of idea's

Please help ....!!
 
Is there a firewall anywhere along the VPN?
Sounds like some of your ports are blocked.
 
That's what I thought, I think there's a cisco PIX in the way.

Any one know what the port numbers are required to be opened up...??
 
Should be in your documentation. I can't recall what they are. There are about 5 I think.
 
IP Sets TCP 6800
IP SETS TCP 6900
IP SETS RTP/UDP 9000/9002
E2T RTP/UDP 5000-5256
RTC TCP 6900
 
I have checked with the Cisco Pix supplier and they have confirmed that the VPN is set to allow all of the IP protocol. This includes TCP and UDP ports.

Still not sure if this is the case, as i would think this is more directed towards the firewall, is there any way we can check with any software from either site to see if the ports are open??
 
Andy,

This might not be the most pratical way but if all else fails you could telnet to the controller address from the remote site and specify the ports. You should get a "blank" response.

example: telnet 192.168.1.2 6800 <return/enter>

This will only test TCP ports you would need something else for the UDP ports.

Hope this helps a bit.
 
Thanks Mitelpassison,

I'll give it a try, Just need a way to prove to the data company it's a problem with their firewall - as at the moment they don't believe me...!!
 
Go to
download and runon your machine on the other side of the firewall,add the address of the 3300. From smart scanning choose TCP and UDP, the from port set choose everything,it will test open ports for you. I just ran it on my 3300.

Hope this helps.
 
Thanks CaperJ I'll give it a try on Monday
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top