We are running 3825 routers and CUCM 7.x. We have been asked to look at vulnerabilites in the security.
We have found that from inside the network we can setup an H323 soft phone, point it at our gateway and make external calls.
Besides applying ACL's on the interfaces specifying IP addresses, is there a way to secure the H323 devices that can connect to the gateway?
Solved! Go to Solution.
You can invoke the IP toll fraud implementation feature if you upgrade your
3800 to at least 15.1.2T
This allows you to build a kind of access list that only allows the IP addresses you state to access the gateway to