Showing results for 
Search instead for 
Did you mean: 

'Route-map' ports open, static NAT ports closed?



I have been struggling to understand why this is happening for some time now and have had no luck. I have used a 'route-map' to open ranges of ports for our IP phone system on the network, and have used static NAT commands for all other ports that require opening.


After doing several test's using online tools, I have gathered that the only ports which are open are 50, and 1720 (I am assuming that there is another reason why the online tools cannot see all the phone system port's to be open other than them not actually being open).


I have tried both using the external IP address and the external interface for the static NAT translations, however this hasn't seemed to made any difference.


Here is the NAT information from the running config; please let me know if there is any other information which would be useful.

  • has been used in this config as the hypothetical static WAN IP address
  • is the gateway for the management VLAN (the IP address I use to SSH in to the router)
  • is the VLAN1 interface for the only switch in the LAN
  • is the management address for the wireless access point in the LAN
  • is the address of the server
  • is the IP address of the IP phone system
  • All interfaces on the router are configured with 'ip access-group 1 in' and 'ip access-group 1 out'

ip nat inside source list 1 interface Dialer1 overload
ip nat inside source static tcp 51 51 extendable
ip nat inside source static tcp 52 52 extendable
ip nat inside source static tcp 54 54 extendable
ip nat inside source static tcp 80 80 extendable
ip nat inside source static tcp 443 443 extendable
ip nat inside source static route-map IPECS_Port_Forwarding_NAT
ip access-list extended IPECS_Port_Forwarding
 permit tcp host any range 1717 1720
 permit tcp host any eq 50
 permit udp host any range 6000 6047
 permit tcp host any range 6000 6588
 permit udp host any range 8000 8047
 permit udp host any range 9000 9047
 permit udp host any range 5060 5060
 permit udp host any range 5588 5588
 permit udp host any range 7000 7015
 permit udp host any range 7100 7115
 permit udp host any range 7300 7315
access-list 1 permit any
route-map IPECS_Port_Forwarding_NAT permit 10
 match ip address IPECS_Port_Forwarding


Thanks in advance for any help that can be given on this issue,



Content for Community-Ad