Uploaded by dzakihilmi14

Firewall requirement

advertisement
DMZ Firewall located on RPAD WAN
Internet to RPAD
SourceIP
Protocol
SourcePort
DestinationIP
DestinationPort
Note
Any internet
TCP
>1023
RPAD Public
1720
H.225 Call Setup
Any internet
TCP
>1023
RPAD Public
10001:13000
H.245 Control
Any internet
TCP/UDP
>1023
RPAD Public
5060
Unencrypted SIP
Any internet
TCP
>1023
RPAD Public
5061
SIP TLS
Any internet
UDP
>1023
RPAD Public
20002:30001
RTP Media
Any internet
TCP
>1023
RPAD Public
389
LDAP TLS for Access Proxy
Any internet
TCP
>1023
RPAD Public
443
SSL TLS for Access Proxy and Web Suite
MEA
Any internet
TCP
>1023
RPAD Public
5222
XMPP for Access Proxy
RPAD to Internet
SourceIP
Protocol
SourcePort
DestinationIP
DestinationPort
Note
RPAD Public
TCP
10001:20000
Any internet
1720
H.225 Call Setup
RPAD Public
TCP
10001:20000
Any internet
>1023
H.245 Control
RPAD Public
TCP
13001:15000
Any internet
5060:5061
SIP TCP : SIP TLS
RPAD Public
UDP
5060
Any internet
5060
SIP UDP
RPAD Public
UDP
20002:30001
Any internet
>1023
RTP Media
Page 23 of 53
DMZ Firewall located on RPAD LAN
RPAD to LAN
SourceIP
Protocol
SourcePort
DestinationIP
DestinationPort
Note
RPAD Internal
UDP
1719
DMA
1719
H.225 RAS
RPAD Internal
TCP
10001:13000
DMA
1720
H.225 Call Setup
RPAD Internal
TCP
10001:13000
DMA
36000:61000
H.245 Control {DMA Routed call mode}
RPAD Internal
TCP
13001:15000
DMA
5060:5061
SIP TCP : SIP TLS
RPAD Internal
UDP
5070
DMA
5060
SIP UDP
RPAD Internal
TCP
5071
DMA
5061
SIP TCP
RPAD Internal
UDP
40002:50001
RPCS
49152:59999
RTP Media
RPAD Internal
UDP
40002:50001
Endpoint IP
>1023
RTP Media
RPAD Internal
TCP
16001:17000
RPCS
49152:59999
BFCP/TCP for Content from BFCP/TCPcapable clients
RPAD Internal
TCP
30001:60000
RPRM
389
LDAP TLS for Access Proxy
RPAD Internal
TCP
30001:60000
RPRM
443
SSL TLS for Access Proxy
RPAD Internal
TCP
30001:60000
RPRM
5222
XMPP for Access Proxy
Page 24 of 53
LAN to RPAD
SourceIP
Protocol
SourcePort
DestinationIP
DestinationPort
Note
DMA
UDP
1719
RPAD Internal
1719
H.225 RAS
DMA
TCP
36000:61000
RPAD Internal
1720
H.225 Call Setup
DMA
TCP
36000:61000
RPAD Internal
10001:13000
H.245 Control {DMA Routed call mode}
DMA
UDP
5060
RPAD Internal
5070
SIP UDP
DMA
TCP
20000:35999
RPAD Internal
5070:5071
SIP TCP / SIP TLS
RPCS
UDP
49152:59999
RPAD Internal
40002:50001
RTP Media
Endpoint IP
UDP
>1023
RPAD Internal
40002:50001
RTP Media
RPCS
TCP
49152:59999
RPAD Internal
16001:17000
BFCP/TCP for Content from BFCP/TCPcapable clients
Page 25 of 53
Download