cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3459
Views
0
Helpful
3
Replies

Firewall rules for intercluster trunk between 2 CUCM

htanamas
Level 1
Level 1

Hi, I am a newbie to CUCM.

My case:

I have CUCM cluster in one site, another CUCM cluster at remote office. Two offices are connected via WAN routers, different subnet.

I want to set intercluster trunk non-gatekeeper between these 2 CUCMs.

Any advise for the firewall rules to be setup? My IP Phones are in different subnet from CUCM servers. Do I have to include the IP Phones subnet in the firewall rules?

In general, my rules so far are like this:

From my office

permit: TCP 1720; TCP/UDP 5060, 5061; UDP 16384 – 32767

source: CUCM2 subnet

destination: CUCM1 subnet

From remote office

permit: TCP 1720; TCP/UDP 5060, 5061; UDP 16384 – 32767

source: CUCM1 subnet

destination: CUCM2 subnet

Thank you in advance.

3 Replies 3

Gajanan Pande
Cisco Employee
Cisco Employee

Check out the list of Ports to be opened in CUCM deployment across Firewalls.

http://www.cisco.com/en/US/docs/voice_ip_comm/cucm/port/8_0_1/portlist801.html

Pls rate helpful posts.

GP.

Gordon Ross
Level 9
Level 9
My IP Phones are in different subnet from CUCM servers. Do I have to include the IP Phones subnet in the firewall rules?

If you have "Media Termination Point Required" ticked on the trunk, then no.

GTG

Please rate all helpful posts.

htanamas
Level 1
Level 1

Hi Gajanan, thanks for the reference. I composed my rule based on that actually, but I am still not certain whether I already defined all the required ports. Could someone confirm on that?

Hi Gordon, good point. I just know about that option. So if I did not enable the option, there will be RTP traffics between 2 IP phones from both sites. CMIIW..

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: