cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1147
Views
5
Helpful
14
Replies

CCUM 10.5 with Voice gataway Cisco 29xx how to block incoming number

sprintership-il
Level 1
Level 1

is there a way to block outside number 915403328054 to be rejected or anything ? We dial using 9 in front of it. 

 

thank you

14 Replies 14

TONY SMITH
Spotlight
Spotlight

This document shows how to configure call blocking using voice translation rules on a CUBE or other voice gateway.  Note that the number in the rule needs to match the number as shown in the incoming call setup.  And the profile needs to be applied to whichever dial peer matches these incoming calls.  Look at the section headed "Call Blocking Specific Calling Numbers" ..

https://www.cisco.com/c/en/us/support/docs/voice/call-routing-dial-plans/64020-number-voice-translation-profiles.html#con13

If you have any questions on syntax or anything then I expect we can help, but that doc should point you in the right direction.

You can define in the route pattern by mentioning 9XXXXXXX call drop.

Yes just incoming calls from that specific number. Not outgoing calls. Thank you 

The document that I linked in my first reply covers the process for blocking inbound calls from certain calling numbers, using voice translation rules on the gateway.   You've got quite a lot going on in your gateway so maybe the best way to confirm the correct dial peer would be to run the following command when while there's an inbound live ...

show call act voice | i PeerId

I must say I'm not 100% sure you won't need to do something a bit different with the port being MGCP controlled.

Just in case, here's a note on an alternative method with CUCM, that's not dependent on gateway dial peers.  It's a bit more fiddly ..

https://netcraftsmen.com/cisco-cucm-blocking-calls-by-calling-party-number-id/

Since the gateway is MGCP controlled there is nothing that can be done on the gateway side. It still surprises me that people use MGCP, it seems so last century. ;-)

To block inbound calls in your case you'd need to do it in CUCM. You should get a long way by looking at this post that Dan Keller made quite some time ago, however it's very much still valid. https://community.cisco.com/t5/collaboration-voice-and-video/blocking-calls-based-on-calling-party-id/ta-p/3113978



Response Signature


Thank you again Tony & Roger, if you say so that with MGCP there is nothing can be done on the voice gateway and the only way is to use CCUM I found this 

 

https://www.youtube.com/watch?v=sYqI6O_9_mM

 

I wonder if this is exactly what I need. 

Thank you Tony, after running the command I see this:

 

show call act voice | i PeerId
PeerId=0
PeerId=0
PeerId=0
PeerId=0


@sprintership-il wrote:

Thank you Tony, after running the command I see this:

 

show call act voice | i PeerId
PeerId=0
PeerId=0
PeerId=0
PeerId=0


This is because you use MGCP. Please read the other replies to this thread. Your options are to use the outlined method in CUCM if you want to stay with MGCP or change the protocol to SIP or H.323 if you want to do the blocking in the gateway.



Response Signature


TONY SMITH
Spotlight
Spotlight

Can you just confirm whether you want to block outgoing calls, you don't want your users to be able to make calls TO this number?  Or incoming, you don't want your users to receive calls FROM this number?

The method which i mentioned it is for outgoing calls.. for the incoming calls you have to define translation pattern in the voice gateway.

Thank you all for replying. 

 

Sorry - how can I do that on voice gateway? 

 

"define translation pattern in the voice gateway "

this is my current config on the voice gateway:

 


!
! Last configuration change at 00:27:01 CDT Fri Oct 11 2019
!
version 15.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname VGW01
!
boot-start-marker
boot-end-marker
!
!
card type t1 0 0
logging buffered 51200 warnings
enable secret 5
!
no aaa new-model
clock timezone CST -6 0
clock summer-time CDT recurring
network-clock-participate wic 0
!
!
!
!
!
!
!
!
!
!
!
!
!
!
no ip domain lookup
ip domain name localdomain
ip host ccm1 10.2.80.15
ip cef
no ipv6 cef
!
multilink bundle-name authenticated
!
!
!
!
!
isdn switch-type primary-4ess
!
cts logging verbose
!
crypto pki trustpoint TP-self-signed-3433760182
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3433760182
revocation-check none
rsakeypair TP-self-signed-3433760182
!
!
crypto pki certificate chain TP-self-signed-3433760182
voice-card 0
!
!
voice call send-alert
voice rtp send-recv
!
voice service voip
ip address trusted list
ipv4 0.0.0.0 0.0.0.0
fax protocol t38 version 0 ls-redundancy 0 hs-redundancy 0 fallback none
!
!
voice iec syslog
!
!
voice translation-rule 1
rule 1 /^1../ /7735556666/
rule 2 /^2../ /7735556666/
rule 3 /^3../ /7735556666/
rule 4 /^4../ /7735556666/
rule 5 /^5../ /7735556666/
!
!
voice translation-profile Outgoing
translate calling 1
!
!
!
!
application
global
service alternate default
!
!
license udi pid CISCO2951/K9 sn
hw-module pvdm 0/0
!
!
!
username admin privilege 15 secret 5 1


!
redundancy
!
!
controller T1 0/0/0
cablelength long 0db
pri-group timeslots 1-24 service mgcp
!
ip ssh authentication-retries 2
ip ssh rsa keypair-name V1ASA
ip ssh version 2
!
translation-rule 500
!
gw-accounting syslog stats
!
!
!
!
interface Embedded-Service-Engine0/0
no ip address
shutdown
!
interface GigabitEthernet0/0
ip address 10.2.80.2 255.255.255.0
duplex auto
speed auto
!
interface GigabitEthernet0/1
no ip address
shutdown
duplex auto
speed auto
!
interface GigabitEthernet0/2
no ip address
shutdown
duplex auto
speed auto
!
interface Serial0/0/0:23
no ip address
encapsulation hdlc
isdn switch-type primary-ni
isdn incoming-voice voice
isdn bind-l3 ccm-manager
no cdp enable
!
ip forward-protocol nd
!
no ip http server
no ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
!
ip route 0.0.0.0 0.0.0.0 10.2.80.1
!
logging trap notifications
logging host 10.2.101.62
!
nls resp-timeout 1
cpd cr-id 1
!
snmp-server community RO 66
access-list 66 permit 10.2.101.66
!
control-plane
!
!
voice-port 0/0/0:23
!
voice-port 0/1/0
timing hookflash-out 50
timing guard-out 1000
!
voice-port 0/1/1
timing hookflash-out 50
timing guard-out 1000
!
voice-port 0/1/2
timing hookflash-out 50
timing guard-out 1000
!
voice-port 0/1/3
echo-cancel coverage 64
timing hookflash-out 50
timing guard-out 1000
!
voice-port 0/2/0
!
voice-port 0/2/1
!
voice-port 0/2/2
!
voice-port 0/2/3
!
voice-port 0/3/0
!
voice-port 0/3/1
!
voice-port 0/3/2
!
voice-port 0/3/3
!
!
!
!
!
mgcp
mgcp call-agent 10.2.80.16 2427 service-type mgcp version 0.1
mgcp rtp unreachable timeout 1000 action notify
mgcp modem passthrough voip mode nse
mgcp package-capability rtp-package
mgcp package-capability sst-package
mgcp package-capability pre-package
no mgcp package-capability res-package
no mgcp timer receive-rtcp
mgcp sdp simple
mgcp fax t38 inhibit
mgcp rtp payload-type g726r16 static
mgcp bind control source-interface GigabitEthernet0/0
mgcp bind media source-interface GigabitEthernet0/0
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
ccm-manager music-on-hold
!
ccm-manager fallback-mgcp
ccm-manager redundant-host 10.2.80.15
ccm-manager mgcp
no ccm-manager fax protocol cisco
ccm-manager config server 10.2.80.15
ccm-manager config
!
dial-peer cor custom
!
!
dial-peer voice 999858 pots
incoming called-number ...
no digit-strip
direct-inward-dial
!
dial-peer voice 99911 pots
destination-pattern 911
no digit-strip
!
dial-peer voice 99900 pots
description Generic Outbound Calls
translation-profile outgoing Outgoing
destination-pattern 91[2-9]..[2-9]......$
incoming called-number .
no digit-strip
forward-digits 11
!
dial-peer voice 999011 pots
service mgcpapp
port 0/1/1
!
dial-peer voice 999010 pots
service mgcpapp
port 0/1/0
!
dial-peer voice 999021 pots
service mgcpapp
port 0/2/1
!
dial-peer voice 999022 pots
service mgcpapp
port 0/2/2
!
dial-peer voice 999023 pots
service mgcpapp
port 0/2/3
!
dial-peer voice 999012 pots
service mgcpapp
port 0/1/2
!
dial-peer voice 999031 pots
service mgcpapp
port 0/3/1
!
dial-peer voice 999030 pots
service mgcpapp
port 0/3/0
!
dial-peer voice 999032 pots
service mgcpapp
port 0/3/2
!
dial-peer voice 999033 pots
service mgcpapp
port 0/3/3
!
dial-peer voice 999020 pots
service mgcpapp
port 0/2/0
!
dial-peer voice 999013 pots
service mgcpapp
port 0/1/3
!
dial-peer voice 616 voip
session protocol sipv2
session target ipv4:10.2.80.11
incoming called-number 885
dtmf-relay rtp-nte
codec g711ulaw
no vad
!
dial-peer voice 771818 pots
description Generic Outbound Calls
translation-profile outgoing Outgoing
destination-pattern 81[2-9]..[2-9]......$
incoming called-number .
no digit-strip
port 0/0/0:23
forward-digits 11
!
dial-peer voice 18911 pots
destination-pattern 8911
no digit-strip
port 0/0/0:23
!
dial-peer voice 99901990 pots
service mgcpapp
port 0/1/0
!
dial-peer voice 99901991 pots
service mgcpapp
port 0/1/1
!
dial-peer voice 99901992 pots
service mgcpapp
port 0/1/2
!
dial-peer voice 99901993 pots
service mgcpapp
port 0/1/3
!
dial-peer voice 99902990 pots
service mgcpapp
port 0/2/0
!
dial-peer voice 99902991 pots
service mgcpapp
port 0/2/1
!
dial-peer voice 99902992 pots
service mgcpapp
port 0/2/2
!
dial-peer voice 99902993 pots
service mgcpapp
port 0/2/3
!
dial-peer voice 99903990 pots
service mgcpapp
port 0/3/0
!
dial-peer voice 99903991 pots
service mgcpapp
port 0/3/1
!
dial-peer voice 99903992 pots
service mgcpapp
port 0/3/2
!
dial-peer voice 99903993 pots
service mgcpapp
port 0/3/3
!
dial-peer voice 99901099 pots
service mgcpapp
port 0/1/0
!
dial-peer voice 99901199 pots
service mgcpapp
port 0/1/1
!
dial-peer voice 99901299 pots
service mgcpapp
port 0/1/2
!
dial-peer voice 99901399 pots
service mgcpapp
port 0/1/3
!
dial-peer voice 99902099 pots
service mgcpapp
port 0/2/0
!
dial-peer voice 99902199 pots
service mgcpapp
port 0/2/1
!
dial-peer voice 99902299 pots
service mgcpapp
port 0/2/2
!
dial-peer voice 99902399 pots
service mgcpapp
port 0/2/3
!
dial-peer voice 99903099 pots
service mgcpapp
port 0/3/0
!
dial-peer voice 99903199 pots
service mgcpapp
port 0/3/1
!
dial-peer voice 99903299 pots
service mgcpapp
port 0/3/2
!
dial-peer voice 99903399 pots
service mgcpapp
port 0/3/3
!
!
num-exp 246 329
num-exp 200 336
num-exp 207 103
num-exp 208 104
num-exp 209 105
num-exp 210 106
num-exp 212 155
num-exp 213 337
num-exp 214 338
num-exp 222 153
num-exp 224 444
num-exp 226 301
num-exp 228 302
num-exp 229 304
num-exp 230 305
num-exp 231 306
num-exp 240 310
num-exp 243 312
num-exp 249 313
num-exp 250 315
num-exp 251 317
num-exp 252 303
num-exp 253 314
num-exp 255 107
num-exp 256 108
num-exp 257 110
num-exp 263 321
num-exp 264 322
num-exp 265 323
num-exp 266 324
num-exp 267 326
num-exp 269 403
num-exp 270 404
num-exp 271 406
num-exp 272 409
num-exp 273 410
num-exp 274 402
num-exp 279 336
num-exp 280 557
num-exp 299 793
num-exp 858 500
!
!
gatekeeper
shutdown
!
!
call-manager-fallback
secondary-dialtone 9
max-conferences 8 gain -6
transfer-system full-consult
limit-dn 7940 2
limit-dn 7960 6
ip source-address 10.2.80.2 port 2000
max-ephones 96
max-dn 96 dual-line
transfer-pattern ....
no huntstop
moh enable-g711 "flash:music-on-hold.au"
time-zone 8
!
!
!
line con 0
login local
line aux 0
line 2
no activation-character
no exec
transport preferred none
transport output pad telnet rlogin lapb-ta mop udptn v120 ssh
stopbits 1
line vty 0 4
exec-timeout 1 30
login local
transport input ssh
line vty 5 15
exec-timeout 0 0
login local
transport input none
!
scheduler allocate 20000 1000
ntp update-calendar
ntp server 10.2.101.17
ntp server 10.2.101.75
!
end

 

Since I have already some configuration and just be adding blocking just one specific inbound number so I should do this:

 

config t

voice translation-profile call_reject
translate calling 2


voice translation-rule 2
rule 1 reject /915403328054/


dial-peer voice 2
call-block translation-profile incoming call_reject
call-block disconnect-cause incoming call_reject

 

I dont want to mess my current config. Just adding one incoming number which should be blocked -915403328054

 

Is this right?

Since your PRI is controlled by MGCP it won't matter what you configure on the dial peer for blocking.

controller T1 0/0/0
cablelength long 0db
pri-group timeslots 1-24 service mgcp

interface Serial0/0/0:23
no ip address
encapsulation hdlc
isdn switch-type primary-ni
isdn incoming-voice voice
isdn bind-l3 ccm-manager
no cdp enable

You need to do it in CUCM as @TONY SMITH and I answered earlier.



Response Signature


Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: