Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Unable to connect 1140e from WAN

Status
Not open for further replies.

Blackybear

Technical User
Jun 17, 2011
171
CA
Hello
I have a Bcm50 R6.0
I am not able anymore to log my ip phones from the WAN.
All of them log fine through the Bcm's LAN ip address.

I would like to know what are the minimal ports that need to be forwarded to the Bcm.

Thanks alot.

Regards,
SL
 
Check that you have license code 297 (Remote Worker) active. Check that the Remote worker tick box is ticked in the IP Sets section. You might also need to enable the stun server.


Firebird Scrambler
Nortel Meridian 1 / Succession and BCM / Norstar Programmer in the UK
Advance knowledge on BCM support
 
Thanks for the answer D.
Yes my Remote Worker is ticked.

Remember you and I removed alot of the ports for security reasons.
Our Bcm were getting attacked!

Maybe I have something missing.

What are the ports needed for off premise ip phones?

SL
 
You need the NAT Traversal key code as well.
Is port 7000 open/forwarded?

________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Try these too for NAT:
9900-13999



________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
My BCM is able to use SIP trunks and it has the ability to connect up remote IP sets.

There are my settings from my router.

rule add name="BCM IP Phone Signalling" protocol=udp portrange=7000-7002
rule add name="BCM 50 RTP over UDP" protocol=udp portrange=30000-30099
rule add name="BCM Monitor access" protocol=tcp portrange=60001-60001 triggerport=60001 triggerprotocol=tcp
rule add name="BCM Element Manager access" protocol=tcp portrange=5989-5989
rule add name="BCM Element Manager access" protocol=tcp portrange=60001-60001

In my BCM system under port ranges, I have the following.

RTP over UDP
28000 28249
30000 30099

UDP
5060 5060
7002 7002
20000 20249

Signalling
0 1023
1718 1719
2216 2227
5000 5000
7000 7000
60000 60240


Firebird Scrambler
Nortel Meridian 1 / Succession and BCM / Norstar Programmer in the UK
Advance knowledge on BCM support
 
FirebirdScrambler, you should add a rule for the RTP port range 28000 to 28249. Otherwise, you could experience one way voice path whenever the system uses an RTP port from that range.
 
Hello UCXGUY
I haven't had that problem up to now. I used to have those ports enabled on my router in the past, but a breach of security in the past meant that I only enabled ports that were needed. I have been "playing" with SIP phones on my modified BCM 50 and have experienced one way on the voice path. I'll enable it and try it out.

Thanks


Firebird Scrambler
Nortel Meridian 1 / Succession and BCM / Norstar Programmer in the UK
Advance knowledge on BCM support
 
Hello,
I worked on my Bcm50 this weekend but had no luck!
Yes my remote worker is activated and ticked.
I do have a Nat Traversal license.
I do have port 7000 forwarded to my Bcm50 lan ip address. (192.168.1.200)

I also tried opening extra ports: 9900 - 13999 but no luck!
I keep opened ports to a minimum because of a security breach issue in the past.

Just to make sure, port forwarding and port triggering, what is the diffrence and which one should I use for my configuration.

Also the TCP/UDP, TCP and UDP what is what?

The thing is that everything was working great a few months ago !


Maybe it is time to make a move towards the Ucx50.

Regards
SL
 
I have those same settings right now and works.

7000-7002 UDP and 30000-30099 UDP

No Triggering

Firewall on Router
Enable SPI: yes

NAT Endpoint Filtering:
UDP Endpoint Filtering
Endpoint Independent
TCP Endpoint Filtering
Endpoint Independent

Application Level Gateway (ALG) Configuration
PPTP : Yes
IPSec (VPN) : Yes
RTSP : Yes
SIP : Yes


Which router is it?
What changed?
External IP changed maybe?

Usually its network settings in someway.




________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Also here is a handy port checker "Shields Up"
You can check ranges and single ports etc


________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Hello Curlycord,
I changed my router a while back.
I now have a Netgear Nighthawk R7000.
My external IP has not changed.
Actually nothing has changed in my ocnfigurations either!
I just don't know what is happening..

Thanks I will check my router setup and see.

Thanks

 
I am still working on my problem with no luck.

Can someone explain what is the protocole I need to use to forward the BCM ports.
My router offers these: UDP, TCP and UDP/TCP?

I am presently using UDP for port 7000.

Thanks
 
Just UDP for this issue as far as I know.
Just 7000 or 7000-7002?

Did you find and SIP or ALG settings on your router? try and disable it.
Also disable QoS

Did it ever work on the Nighthawk or was it the old router that everything worked?.

Did Sheildsup verify your ports were open?
Did you try DMZ mode on the rotuer for the BCM's IP? - All ports will be open for the BCM's IP, good for quick testing only.




________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Can the remote users ping your public IP from their PC, the IP the set is trying to find.



________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Hello all,
Yes I can access my ISP IP address from the WAN.

I had port UDP 7000 - 7002 forwarded to 192.168.1.200

I tried the following:
UDP 7000 - 7000 to 192.168.1.200
UDP 7002 - 7002 to 192.168.1.200

I have seperated them and now I can log my IP phones from the WAN!

HUM just don't know what happened because I never changed the configuration in the router.

I must say, I think it is time that I merge to the UCX50.

Regards and thanks.
 
Remember it was a "network" issue.

What do you mean you "separated"?





________________________________________
We take the time to try to answer your questions for free, please return the favor and take the time to answer back and include any resolution you found elsewhere, thanks.

=----(((((((((()----=

small-logo-sig.png

Toronto Canada
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top