01-07-2014 03:23 AM - edited 03-18-2019 02:23 AM
Hi All,
I am trying to test collab edge functionality on VCS 8.1 and CUCM 9.1.2. DNSs are fine, but telnet does not work for both ports (8443 and 5222). Port 5222 in unreachable. There is no issue with FW, because this ports are opened. I can access port 5222 locally to IM&P server. In VCS-C the status of CUCM and IM&P is Active. Do you have any ideas, what am I missing?
BR,
Sebastjan Kocelj
Solved! Go to Solution.
01-07-2014 05:05 AM
Are you checking this ports in a VCS E (not VCS C) running X8.1 and with Remote and Mobile feature enabled?
As you said, your public DNS and external FW should be configured to accept this requests.
The X8.1 have an Automated protection, please revise the internal VCS E Firewall rules and also check the inbound port usage at VCS E menu.
You can also SSH into VCS E using root and use netstat or other Linux commands to check network conectivity.
Hope it helps.
Regards
Elter
01-07-2014 11:32 AM
- I am checking this port on external IP of VCS-E. Remote and Mobile feature IS enabled.
- DNS and FW are configured as supposed to.
- I do not have any FW rules configured on VCS-E, and for sure ASA is forwarding 5222 and 8443 ports to VCS-E. Local Inbound Ports list contains 8443 and 5222.
- I can see that the port 5222 is listened of the internal IP address. Not for ALL.
--------------------------------
~ # netstat -an |grep 8443
tcp 0 0 0.0.0.0:8443 0.0.0.0:* LISTEN
~ # netstat -an |grep 5222
tcp 0 0 192.168.50.1:5222 0.0.0.0:* LISTEN
~ #
--------------------------------
So this does not look OK, because local IP is used for 5222 port. After investigating IP settings on VCSE, I have found that the settings for external IP is actually local IP Address. After changing this and restarting the system, the telnet is working and Jabber is connecting via VCSE without VPN. Thanks for the hints...
01-07-2014 05:05 AM
Are you checking this ports in a VCS E (not VCS C) running X8.1 and with Remote and Mobile feature enabled?
As you said, your public DNS and external FW should be configured to accept this requests.
The X8.1 have an Automated protection, please revise the internal VCS E Firewall rules and also check the inbound port usage at VCS E menu.
You can also SSH into VCS E using root and use netstat or other Linux commands to check network conectivity.
Hope it helps.
Regards
Elter
01-07-2014 11:32 AM
- I am checking this port on external IP of VCS-E. Remote and Mobile feature IS enabled.
- DNS and FW are configured as supposed to.
- I do not have any FW rules configured on VCS-E, and for sure ASA is forwarding 5222 and 8443 ports to VCS-E. Local Inbound Ports list contains 8443 and 5222.
- I can see that the port 5222 is listened of the internal IP address. Not for ALL.
--------------------------------
~ # netstat -an |grep 8443
tcp 0 0 0.0.0.0:8443 0.0.0.0:* LISTEN
~ # netstat -an |grep 5222
tcp 0 0 192.168.50.1:5222 0.0.0.0:* LISTEN
~ #
--------------------------------
So this does not look OK, because local IP is used for 5222 port. After investigating IP settings on VCSE, I have found that the settings for external IP is actually local IP Address. After changing this and restarting the system, the telnet is working and Jabber is connecting via VCSE without VPN. Thanks for the hints...
01-16-2019 02:56 PM
I know this is an old discussion, but I need to know what if the 5222 port looks closed in the Exp-E. In my case, the netstat show this:
~ # netstat -an | grep 5222
~ #
~ #
~ # netstat -an | grep 8443
tcp 0 0 0.0.0.0:8443 0.0.0.0:* LISTEN
How can I enable the XMPP port?
01-16-2019 06:14 PM
Just forget it...in new version of Expressway-C you need to add the services supported for the internal domain for IM&P like the IM and Presence service and XMPP Federation, so when you enable it and restart the XCP Router service in IM&P server the port will be active and in LISTEN status.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide