<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Allowing SIP through ASA 5525-X version 9.x in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775350#M173711</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Other than configuring the inspect SIP parameter for the global policy of the firewall, is there anything else I need to configure to allow SIP through my ASA?&amp;nbsp; Do I need to configure NAT &amp;amp; ACLs?&amp;nbsp; I attached a diagram of what I think the topology may look like but I assume that I may have to open up port 5060 from the outside going in on the firewall.&amp;nbsp; I'm not sure, however, because we have a router from the telco where inbound and outbounds SIP calls are to be sent and received from (see diagram).&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Terence&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 07:05:02 GMT</pubDate>
    <dc:creator>Terence Lockette</dc:creator>
    <dc:date>2019-03-12T07:05:02Z</dc:date>
    <item>
      <title>Allowing SIP through ASA 5525-X version 9.x</title>
      <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775350#M173711</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Other than configuring the inspect SIP parameter for the global policy of the firewall, is there anything else I need to configure to allow SIP through my ASA?&amp;nbsp; Do I need to configure NAT &amp;amp; ACLs?&amp;nbsp; I attached a diagram of what I think the topology may look like but I assume that I may have to open up port 5060 from the outside going in on the firewall.&amp;nbsp; I'm not sure, however, because we have a router from the telco where inbound and outbounds SIP calls are to be sent and received from (see diagram).&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Terence&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:05:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775350#M173711</guid>
      <dc:creator>Terence Lockette</dc:creator>
      <dc:date>2019-03-12T07:05:02Z</dc:date>
    </item>
    <item>
      <title>Assuming inbound calls will</title>
      <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775351#M173716</link>
      <description>&lt;P&gt;Assuming inbound calls will be coming over SIP, then yes you will need to create a NAT &amp;amp; ACL. Also ATT can be particular on what address/address space your SIP calls are coming from so you'll want to pay attention to that as well. Even though ATT has a SIP router on premise, there needs to be connectivity between the ATT router and your voice server (which by looking at your diagram, goes through the ASA).&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;</description>
      <pubDate>Tue, 29 Dec 2015 23:16:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775351#M173716</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2015-12-29T23:16:50Z</dc:date>
    </item>
    <item>
      <title>Hello Terence,</title>
      <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775352#M173719</link>
      <description>&lt;P&gt;Hello Terence,&lt;/P&gt;
&lt;P&gt;NAT comes in place if the Call Manager is on the Internet and the phone is on the LAN Network.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;So in this case a phone from Network 12.21.89.x would be communicating with a phone on Network 206.x . So are the phones going to be registered with the Call Manager which is in Network 12.21?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If the scenario is the way I have mentioned then translation would be required from 206 network to 12.21 network if the translation is not performed on Telco router&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Bhavik Shah&lt;/P&gt;</description>
      <pubDate>Wed, 30 Dec 2015 12:27:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775352#M173719</guid>
      <dc:creator>bhavsha2</dc:creator>
      <dc:date>2015-12-30T12:27:47Z</dc:date>
    </item>
    <item>
      <title>Hey guys,</title>
      <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775353#M173721</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;Just so you're aware, we're running Mitel 3300s for our PBXs and will have a SecureLogix appliance to proxy the SIP.&amp;nbsp; We want to keep these devices behind our firewall so I'm sure ACL/NAT will be used along with SIP inspect.&amp;nbsp; I'll provide another updated diagram of how I think the topology will be for the setup.&amp;nbsp; I just need to know what a typical ACL/NAT would look like for allowing SIP through the ASA.&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Terence&lt;/P&gt;</description>
      <pubDate>Fri, 15 Jan 2016 19:00:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775353#M173721</guid>
      <dc:creator>Terence Lockette</dc:creator>
      <dc:date>2016-01-15T19:00:25Z</dc:date>
    </item>
    <item>
      <title>Collin,</title>
      <link>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775354#M173725</link>
      <description>&lt;P&gt;Collin,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Can you provide an example of how I would configure NAT on the ASA that I can use as a reference?&lt;/P&gt;</description>
      <pubDate>Fri, 08 Apr 2016 15:18:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allowing-sip-through-asa-5525-x-version-9-x/m-p/2775354#M173725</guid>
      <dc:creator>Terence Lockette</dc:creator>
      <dc:date>2016-04-08T15:18:25Z</dc:date>
    </item>
  </channel>
</rss>

