Configuring SIP through a Sonicwall Device

General questions regarding SIP Trunking

Configuring SIP through a Sonicwall Device

Postby browsey » Wed Dec 16, 2009 3:08 pm

In this example we have a topology in which the Cisco voice gateway device is not on the edge of the network, therefore it is required to send SIP traffic through a Sonicwall Firewall before it reaches the voice gateway. In this instance the Sonicwall model is NSA 3500. Updating the firmware to the latest is highly recommended as it adds some VOIP features.

Configuration of Sonicwall:

1) Setup the NAT on the Sonicwall to map traffic from an outside IP, we used a one to one type NAT in this example not PAT. Create the NAT as shown in this example, there will be a checkbox near the bottom that says “create reflexive policy” be sure this is checked as well and it will create the reflexive NAT automatically which tends to work better. You will need to configure the address objects beforehand ex: 172.18.200.1 = Router LAN IP. Your inbound interface may vary.

Image



2) Create the firewall policy to allow the SIP traffic through to the outside IP address that you have NAT’ed to the proper inside address of the voice gateway. In this screenshot we have the service set to ANY, this was during testing. I would lock that down to only SIP for the final configuration.

Image



3) Configure the VOIP settings in the firewall to match this screenshot. These settings corrected an issue when an outside party hung up the phone the call would continue for the internal party.

Image



4) In Communication Manager the Gateway configuration should look similar to this taking into account any specific changes you need to make for your particular installation. The key settings to work out calls connecting properly with Triad Telecom’s implementation of SIP were to make sure you uncheck “Wait for Far-End H.245” and make sure you check “ Enable Inbound Fast-Start”

Image
browsey
 
Posts: 1
Joined: Tue Nov 10, 2009 5:00 pm

Return to SIP Trunking General Questions

Who is online

Users browsing this forum: No registered users and 1 guest

cron
e911 Setup
Triad Telecom, Inc., PO Box 2673, Greensboro, NC 27402, (888) 857-VOIP