cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3654
Views
0
Helpful
1
Replies

Vidyo and STUN protocol on ASA

jcosgrove
Level 1
Level 1

We have the need to support a Vidyo video conference unit that will need to comunicate thru our ASA(outbount connections).  We currently do a lot of the standard H.323 calls on our polycom systems.  The Vidyo docs state that it communicates using STUN protocol to manage the dynamic UDP sessions.

Has anyone done this with an ASA yet of should I just have them use the 80/443 option and take the performance hit?

Thanks.

JC

1 Accepted Solution

Accepted Solutions

mirober2
Cisco Employee
Cisco Employee

Hi JC,

If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).

-Mike

View solution in original post

1 Reply 1

mirober2
Cisco Employee
Cisco Employee

Hi JC,

If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).

-Mike

Review Cisco Networking for a $25 gift card