12-21-2011 12:48 PM - edited 03-11-2019 03:05 PM
We have the need to support a Vidyo video conference unit that will need to comunicate thru our ASA(outbount connections). We currently do a lot of the standard H.323 calls on our polycom systems. The Vidyo docs state that it communicates using STUN protocol to manage the dynamic UDP sessions.
Has anyone done this with an ASA yet of should I just have them use the 80/443 option and take the performance hit?
Thanks.
JC
Solved! Go to Solution.
01-06-2012 10:00 AM
Hi JC,
If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).
-Mike
01-06-2012 10:00 AM
Hi JC,
If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).
-Mike
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide