01-18-2021 02:19 AM
Dear experts,
There is CUCM 11.5.1 clusters in our customer. We deploy call-replay recorder on Window Server standard license versoin. there is PA firewall between CUCM and Window server.
we all allowed (any to any)traffic. But As I test ,some ports are not open to CUCM as well as JTAPI (2749).All services are running in CUCM side and working normal. May I know that how to fix CUCM sip trunk is down local=2 state to call-replay recorder.
your Sincerely,
Min Ko
01-18-2021 02:28 AM
01-18-2021 03:24 AM
Dear Nithin,
CUCM > PALOATO > Callreplay (deployed on window server 2016)
Noted and thanks for your help.
May I inform you that all ports are allowed by security Engineer at this moment. .
But As I test ,some ports are not open to CUCM as well as JTAPI (2749). And Sip trunk is not up. (local=2 down).
Callreplay recorder is configured as sipforking recording. (SPANLESS).
Could I know how to fix it to work recorders. your help would be really appreciated.
thanks and best rgds,
Min Ko
01-18-2021 03:33 AM - edited 01-18-2021 03:34 AM
I am not good in firewalls. i had a customer who use PA firewall in between CUCM and IP phones. Sip phones where not getting registered and SCCP phones where working fine . PA engineer said all ports are open asper the policy and then later making some changes on PA SIP settings(this is what i came to know from the PA engineer) it started working.
01-19-2021 09:19 AM
Hi there,
Can you ask your security engineer to check the PA Firewall traffic logs if it's receiving the traffic from CUCM?
It may be beneficial to run packet captures on CUCM, the PA Firewall and / or the Windows server (assuming you manage it) to check how far the traffic is getting or what is exactly is happening with the traffic.
To take packet captures on CUCM, refer to this link:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide