<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ASA and polycom in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404392#M953446</link>
    <description>&lt;P&gt;Hello All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a polycom in my internal network behind firewall cisco asa 5506.&lt;/P&gt;
&lt;P&gt;Problem is that second site can see video and audio too, but on my site I cannot see nothing.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Situation is:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Polycom(10.10.10.1) --- &amp;gt;&amp;nbsp; Cisco ASA(NAT to 192.168.1.2) &lt;SPAN&gt;&amp;nbsp;--- &amp;gt;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;and then it goes to outside interface of provider (192.168.1.253) , and on provider router there is &lt;STRONG&gt;second&lt;/STRONG&gt; NAT to some public IP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NOTE: Polycom has management interface, which is reachable via https to public IP and it is working, so I guess there is NAT 1:1 and it should be okay.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could you please help me what I should check on cisco ASA? I have already checked realview monitoring and there wasn´t any deny log, or something which should indicate some issues with audio or video.&lt;/P&gt;
&lt;P&gt;Could you please help me with this issue ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:54:42 GMT</pubDate>
    <dc:creator>Jaro</dc:creator>
    <dc:date>2020-02-21T15:54:42Z</dc:date>
    <item>
      <title>Cisco ASA and polycom</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404392#M953446</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a polycom in my internal network behind firewall cisco asa 5506.&lt;/P&gt;
&lt;P&gt;Problem is that second site can see video and audio too, but on my site I cannot see nothing.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Situation is:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Polycom(10.10.10.1) --- &amp;gt;&amp;nbsp; Cisco ASA(NAT to 192.168.1.2) &lt;SPAN&gt;&amp;nbsp;--- &amp;gt;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;and then it goes to outside interface of provider (192.168.1.253) , and on provider router there is &lt;STRONG&gt;second&lt;/STRONG&gt; NAT to some public IP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NOTE: Polycom has management interface, which is reachable via https to public IP and it is working, so I guess there is NAT 1:1 and it should be okay.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could you please help me what I should check on cisco ASA? I have already checked realview monitoring and there wasn´t any deny log, or something which should indicate some issues with audio or video.&lt;/P&gt;
&lt;P&gt;Could you please help me with this issue ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:54:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404392#M953446</guid>
      <dc:creator>Jaro</dc:creator>
      <dc:date>2020-02-21T15:54:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA and polycom</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404420#M953454</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The communication is using sip?&lt;/P&gt;
&lt;P&gt;Do you have inspect sip enabled?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you share your config please? Remove confidential data before and upload the config in a text file.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Jun 2018 02:14:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404420#M953454</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2018-06-24T02:14:34Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA and polycom</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404767#M953458</link>
      <description>&lt;P&gt;Hello Francesco, thank you very much for your answer,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The communication is using H323.&lt;/P&gt;
&lt;P&gt;Yes I have inspect sip, h323.. etc enabled, please check configuration in attachement.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Jun 2018 09:42:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404767#M953458</guid>
      <dc:creator>Jaro</dc:creator>
      <dc:date>2018-06-25T09:42:32Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA and polycom</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404776#M953464</link>
      <description>Right of the bat, can you schedule a maintenance window and simply disable H232 inspection then see how this goes?</description>
      <pubDate>Mon, 25 Jun 2018 10:18:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3404776#M953464</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-06-25T10:18:41Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA and polycom</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3405110#M953465</link>
      <description>As Florin said, can you remove inspect sip?&lt;BR /&gt;Use the following to remove it:&lt;BR /&gt;&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt;  no inspect sip&lt;BR /&gt;  no inspect h323 h225&lt;BR /&gt;  no inspect h323 ras&lt;BR /&gt;&lt;BR /&gt;And then test it again and let us know please.</description>
      <pubDate>Mon, 25 Jun 2018 18:31:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-and-polycom/m-p/3405110#M953465</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2018-06-25T18:31:09Z</dc:date>
    </item>
  </channel>
</rss>

