08-11-2012 11:41 PM - edited 03-17-2019 11:36 PM
Hi,
My Cisco Ex90 is connected to DSL home connection. I want to call to an IP Endpoint with reachable as IP like Cisco C20or EX90. I set the EX90 in H323 Setting -->NAT the Public IP of my Public IP Address and he has also an internal IP address. I can make calls to outside IP but unfortunately not to take call from external. In the home router I can nothing set like NAT setting or whatever. What can I still make the Ex90 devices to legacy Home DSL connections without problems IP to IP connection.
Thank you
Solved! Go to Solution.
08-12-2012 11:30 PM
No, port 2776 is used if your MXP endpoint registered on VCS-E.
If your Endpoint is not registered on GK and call setup mode is direct, following port may use (In static port configuration).
If H.323 Port configuration is Dynamic, then Endpoint will allocate which ports to use when opening a TCP connection.
The reason for doing this is to avoid using the same ports for subsequent calls, as some firewalls consider this as a sign of attack.
When Dynamic is selected, the H.323 ports used are from 11000 to 65535. Once 65535 is reached they restart again at 11000.
08-13-2012 12:14 AM
Oh ok, have you managed to receive the call from public network side now?
> Please note, if you modify default port configuration to static,
> Endpoint must restart first otherwise Endpoint still allocate port dynamically.
This is quite easy to forget to do (^^).
08-12-2012 08:28 AM
Hi,
Do you face the issue where the EX90 sees the incoming call however the call disconnects when "Answer" is pressed.
Thanks,
Amlesh
08-12-2012 08:33 AM
Hi,
Calling to outside per Ip work Fine . But i,'m not able to get a call per Ip. The settings is on direct.
Sent from Cisco Technical Support iPad App
08-12-2012 04:43 PM
Hi,
EX90 perform NAT on H323 packet, it has nothing to do with NAT on IP Packet, I am sure that
when you are dialing from inside then your DSL connection uses normal method PAT and send call outside; however when someone dial from out side it can reach to your DSL, but DSL router doesn't aware that it need to send that call to EX90.
So IP NAT will done by your DSL router.
Which public IP you are using in EX90, is that different from Public IP address assigned to DSL router or is it same.
Regards,
Vivek
08-12-2012 10:54 PM
Hi Vivek,
i used the same Public IP Address what the Router get from the Provider or assigned to the DSL Router
08-12-2012 10:57 PM
Hi Tomonori,
what do do think about that now? To change the Router or? It mzust be used a Home Router that support NAT/PAT?
08-12-2012 11:05 PM
In order to EX90 under home local network to receive the call from device in public network side, you may consider following methods.
If you have only single Endpoint (or only few Endpoint deployment in hone network) , then the first option is less additional cost.
If you have corporate network and also expanding home VC user, VCS-E will give you more robustness and administrative solution including home VC connectivity solution.
08-12-2012 05:32 PM
For H323, call negotiation is use local IP address (or NAT/PAT address by router) for Q9.31 and H.245 negotiation.
Then using IP address in H.323 payload for opening actual media logical port for audio, video, etc.
NAT configuration on EX90 apply for this IP address in H.323 payload because many NAT router only convert IP header address and doesn’t support NAT/PAT for IP address in H.323 payload which end up call establish with one-way audio/video.
For outgoing call from EX90 in home network, far end device see IP address of Home Router and proceed call for Q.931 and H.245 negotiation with it.
Since this originally PAT by home router, returning message from far end device correctly forward back to Home EX90.
Also EX90 include Home Router IP address in H.323 payload (as configured NAT on EX90), therefore call will established correctly with audio/video in both ways.
For incoming call, home router must forward Q.931 (and H.245) message to EX90, but my understand Firtzbox 7390 doesn’t support NAT (or seem it does support configuring it but doesn’t work correctly), therefore call won’t establish.
08-12-2012 11:26 PM
Hi,
we used only 2 Endpoints, that why we dont need t ouse VCSE/VCSC.
i configure Portforwarding on the Router for Q931 and H245=2776 correct?
THX
08-12-2012 11:30 PM
No, port 2776 is used if your MXP endpoint registered on VCS-E.
If your Endpoint is not registered on GK and call setup mode is direct, following port may use (In static port configuration).
If H.323 Port configuration is Dynamic, then Endpoint will allocate which ports to use when opening a TCP connection.
The reason for doing this is to avoid using the same ports for subsequent calls, as some firewalls consider this as a sign of attack.
When Dynamic is selected, the H.323 ports used are from 11000 to 65535. Once 65535 is reached they restart again at 11000.
08-12-2012 11:37 PM
Sorry Tomonori,
i configured Portwarding of my Router with
its ringing but you ot to able pick up. Its ringing but not possible to take the call. Are you have a telephonenumber. Its easier :-)
08-12-2012 11:56 PM
Hi Rasim,
Can you provide the following config :
xconfig //h323
*c xConfiguration H323 NAT Mode: Off
*c xConfiguration H323 NAT Address: ""
*c xConfiguration H323 Profile 1 H323Alias ID: ""
*c xConfiguration H323 Profile 1 H323Alias E164: ""
*c xConfiguration H323 Profile 1 PortAllocation: Dynamic
*c xConfiguration H323 Profile 1 CallSetup Mode: Gatekeeper
*c xConfiguration H323 Profile 1 Gatekeeper Address: ""
*c xConfiguration H323 Profile 1 Gatekeeper Discovery: Manual
*c xConfiguration H323 Profile 1 Authentication LoginName: ""
*c xConfiguration H323 Profile 1 Authentication Password: ""
*c xConfiguration H323 Profile 1 Authentication Mode: Off
*c xConfiguration NetworkServices H323 Mode: On
Using this we will be able to better understand the H323 settings on your endpoint.
Regards,
Mubashshir Akhtar
08-13-2012 12:04 AM
xConfiguration H323 NAT Mode: Off
*c xConfiguration H323 NAT Address: ""
*c xConfiguration H323 Profile 1 H323Alias ID: ""
*c xConfiguration H323 Profile 1 H323Alias E164: ""
*c xConfiguration H323 Profile 1 PortAllocation: Dynamic
*c xConfiguration H323 Profile 1 CallSetup Mode: Direct
*c xConfiguration H323 Profile 1 Gatekeeper Address: ""
*c xConfiguration H323 Profile 1 Gatekeeper Discovery: Manual
*c xConfiguration H323 Profile 1 Authentication LoginName: ""
*c xConfiguration H323 Profile 1 Authentication Password: ""
*c xConfiguration H323 Profile 1 Authentication Mode: Off
*c xConfiguration NetworkServices H323 Mode: On
08-13-2012 12:06 AM
I though you already configure NAT as this Endpoint is behind home firewall.
Unless Firtzbox 7390 is H.323 awareness ALG firewall, you need to configure NAT address on your EX90.
08-13-2012 12:12 AM
Hi Tomonori,
thank for your lot support. It works now. I had set NAT with the Public IP of my Router, i sent to you the wrong config file
xConfiguration H323 NAT Mode: on
*c xConfiguration H323 NAT Address: "91.19.19.19"
*c xConfiguration H323 Profile 1 H323Alias ID: ""
*c xConfiguration H323 Profile 1 H323Alias E164: ""
*c xConfiguration H323 Profile 1 PortAllocation: static
*c xConfiguration H323 Profile 1 CallSetup Mode: Direct
*c xConfiguration H323 Profile 1 Gatekeeper Address: ""
*c xConfiguration H323 Profile 1 Gatekeeper Discovery: Manual
*c xConfiguration H323 Profile 1 Authentication LoginName: ""
*c xConfiguration H323 Profile 1 Authentication Password: ""
*c xConfiguration H323 Profile 1 Authentication Mode: Off
*c xConfiguration NetworkServices H323 Mode: On
The issue was , that i dont restarted after the change from dynamic to static port allocation.
Thank you and other members so much
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: