09-12-2017 09:15 PM - edited 03-05-2019 09:07 AM
Hi
i have configure cisco 881 as below, clients can access internet work well, but video conference cannot call in/out could you please help to reivew and as advise.
------------------------------------------------
!
ip name-server 203.144.128.194
ip cef
no ipv6 cef
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
no ip address
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
description WAN IP
ip address XXX.XXX.29.94 255.255.255.252
ip nat outside
ip virtual-reassembly in
duplex full
speed 100
!
interface Vlan1
description LAN
ip address 192.168.1.1 255.255.255.0
ip access-group 101 in
ip nat inside
ip virtual-reassembly in
!
ip forward-protocol nd
ip http server
ip http secure-server
!
!
ip nat inside source list 101 interface FastEthernet4 overload
ip route 0.0.0.0 0.0.0.0 XXX.XXX.29.93
!
!
access-list 101 remark Verizon
access-list 101 permit ip 65.210.41.0 0.0.0.255 any
access-list 101 permit ip host 63.97.112.115 any
access-list 101 permit ip host 63.97.112.116 any
access-list 101 remark Level3
access-list 101 permit ip 207.218.87.0 0.0.0.255 any
access-list 101 permit ip 209.130.193.0 0.0.0.255 any
access-list 101 remark DNS
access-list 101 permit ip host 203.144.128.194 any
!
control-plane
!
!
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
!
!
!
!
!
!
line con 0
login local
no modem enable
line aux 0
line vty 0 4
login local
transport input telnet ssh
!
scheduler allocate 20000 1000
!
end
Solved! Go to Solution.
09-13-2017 11:58 PM
Hello,
add the line below to your configuration:
ip nat outside source static xxx.xxx.29.94 192.168.1.10
09-13-2017 12:33 AM
09-13-2017 12:42 AM
09-13-2017 03:51 AM
Hello,
with your current configuration, I don't see how your clients (on Vlan 1) can access the Internet, including video conferencing.
I have made a few changes to your configuration (marked in bold), try those and check if that makes a difference:
ip name-server 203.144.128.194
ip cef
no ipv6 cef
!
interface FastEthernet0
no ip address
!
interface FastEthernet1
no ip address
!
interface FastEthernet2
no ip address
!
interface FastEthernet3
no ip address
!
interface FastEthernet4
description WAN IP
ip address XXX.XXX.29.94 255.255.255.252
ip nat outside
ip virtual-reassembly in
duplex full
speed 100
!
interface Vlan1
description LAN
ip address 192.168.1.1 255.255.255.0
no ip access-group 101 in
ip nat inside
ip virtual-reassembly in
!
ip forward-protocol nd
ip http server
ip http secure-server
!
ip nat inside source list 1 interface FastEthernet4 overload
ip route 0.0.0.0 0.0.0.0 XXX.XXX.29.93
!
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 101 remark Verizon
access-list 101 permit ip 65.210.41.0 0.0.0.255 any
access-list 101 permit ip host 63.97.112.115 any
access-list 101 permit ip host 63.97.112.116 any
access-list 101 remark Level3
access-list 101 permit ip 207.218.87.0 0.0.0.255 any
access-list 101 permit ip 209.130.193.0 0.0.0.255 any
access-list 101 remark DNS
access-list 101 permit ip host 203.144.128.194 any
!
control-plane
!
mgcp behavior rsip-range tgcp-only
mgcp behavior comedia-role none
mgcp behavior comedia-check-media-src disable
mgcp behavior comedia-sdp-force disable
!
mgcp profile default
!
line con 0
login local
no modem enable
line aux 0
line vty 0 4
login local
transport input telnet ssh
!
scheduler allocate 20000 1000
!
end
09-13-2017 07:38 PM
09-13-2017 11:58 PM
Hello,
add the line below to your configuration:
ip nat outside source static xxx.xxx.29.94 192.168.1.10
09-14-2017 03:20 AM
Thank you for your help, I add this command already and will test it in next week then update.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide