<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic what type of of traffic need to be open between cucm 7.0 (publis in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171147#M359069</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;SCCP uses port 2000, so open that one. The firewall inspection should do the rest.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Normally you won't need to open anything else if you try to establish phone calls.&lt;/P&gt;&lt;P&gt;Don't block DHCP nor TFTP though. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 02 Apr 2013 22:39:07 GMT</pubDate>
    <dc:creator>jocamare</dc:creator>
    <dc:date>2013-04-02T22:39:07Z</dc:date>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publisher and subscribers)</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171140#M359061</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; There is a firewall that do not allow any traffic between a cucm 7.0 publisher and subscribers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Neet to know what need to be open so that all communication between them is working?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:22:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171140#M359061</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2019-03-12T01:22:37Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171141#M359063</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This might help you:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/port/7_0/CCM_7.0PortList.pdf"&gt;http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/port/7_0/CCM_7.0PortList.pdf&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 20:35:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171141#M359063</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-02T20:35:51Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171142#M359064</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you very much for the pointer!!! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I already have that document which contain lots of ports.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What I am looking for is what ports that I need to add to open traffic on the Firewall (7200) when add/remove users in Subscribers (CUCM 7.0).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All traffic to the Publisher (CUCM 7.0) are blocked, so I need to know what specific ports to open along with the command?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 20:49:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171142#M359064</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2013-04-02T20:49:51Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171143#M359065</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What type of users are we talking about?&lt;/P&gt;&lt;P&gt;End users or Ip phone extensions?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 21:26:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171143#M359065</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-02T21:26:04Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171144#M359066</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Both, end users and ip phones!!! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not exactly sure what ports they need?? That is why I need help here…..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What needed to be done is that, the ability to add users/phones on the Subscribers (CUCM 7.0) which sits on a different subnet than the publisher (CUCM 7.0) and between them is a Firewall (Cisco 7200).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not sure what ports I can open to do that types of traffic?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help will be highly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Isam.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 21:37:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171144#M359066</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2013-04-02T21:37:02Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171145#M359067</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is important to know the protocol that you are going to use, that way we can define the ports that you need open.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are many, SCCP 2000&amp;nbsp; SIP 5060, 5061 TCP &amp;amp; UDP,&amp;nbsp;&amp;nbsp; H323 1720 TCP , MGCP 2427 Y 2428 TCP.&lt;/P&gt;&lt;P&gt;That without the RTP ports.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 21:59:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171145#M359067</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-02T21:59:39Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171146#M359068</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the feedback!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We use Cisco IP phone SCCP Protocol to talk to CUCM 7.0, but in this case I am not sure what types of traffic between Subscribers and Publisher when you need to add users/phones and there is Firewall between Subs and Pub?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 22:08:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171146#M359068</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2013-04-02T22:08:58Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171147#M359069</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;SCCP uses port 2000, so open that one. The firewall inspection should do the rest.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Normally you won't need to open anything else if you try to establish phone calls.&lt;/P&gt;&lt;P&gt;Don't block DHCP nor TFTP though. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 22:39:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171147#M359069</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-02T22:39:07Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171148#M359070</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Phones/Users work fine once they have registered!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Before that we need to have a way of adding them to the pub?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 23:56:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171148#M359070</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2013-04-02T23:56:01Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171149#M359072</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, bro.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's not you, it's me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But, i didn't get your last post, can you please elaborate?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 00:02:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171149#M359072</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-03T00:02:37Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171150#M359074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The Pub sits in one region that is separated from Subs region. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; If a phone/user is already created they will work fine within the Subs region as they will have access to them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What we would like to do is when we activate the Firewall and we need to add new users/phones, We nee to know what ports and traffic that need to be opened in the Firewall. That is why I need some help here.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 17:27:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171150#M359074</guid>
      <dc:creator>isamabbas</dc:creator>
      <dc:date>2013-04-03T17:27:00Z</dc:date>
    </item>
    <item>
      <title>what type of of traffic need to be open between cucm 7.0 (publis</title>
      <link>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171151#M359076</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, you already have a list of ports that need to be opened.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now, assuming your phones are on the internal side of the ASA, they do not represent a threat and are somehow trusted phones. There should not be any port restriction, we trust the phones don't we?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Speaking of trusted stuff, i'm curious about the fact that the server [subscriber] and the phones are separated by the ASA.&lt;/P&gt;&lt;P&gt;Why is it like that?&lt;/P&gt;&lt;P&gt;Is this something that can be changed?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If i had a bunch of phones, a server and whole lot of time, i would sell them. Don't know much of voice stuff, you know?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But i know about this, so, i would recommend you to move the server with the phones and place them all in the same network, that way they will freely communicate with each other, saving a L3 hop and bandwidth. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As my grandpa used to say: "&lt;EM&gt;If you can save a L3 hop in a voice implementation, do it.&lt;/EM&gt;" Wise words.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now, in case you are keeping your current setup, make sure that TFTP and SCCP traffic is allowed from the phones to the server, also UDP/16384 - 32767.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's basically all you need to get it working. Ports UDP/69, TCP/2000 and UDP/16384 - 32767&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 21:00:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-type-of-of-traffic-need-to-be-open-between-cucm-7-0/m-p/2171151#M359076</guid>
      <dc:creator>jocamare</dc:creator>
      <dc:date>2013-04-03T21:00:08Z</dc:date>
    </item>
  </channel>
</rss>

