Got it

SE2900 RTP Ports Range Restrict

Created: Oct 20, 2021 12:24:19Latest reply: Oct 29, 2021 13:53:14 490 10 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Please advise if there is a possible way to restrict the RTP ports within a range on SE2900 in order to verify the network security within a network as customer wants want to close the un-necessary ports.


Thank you

Featured Answers

Best answer

Recommended answer

gzzz
Admin Created Oct 20, 2021 13:11:24

Hello friend.

Please refer to the following pictures:

SE2900

SE2900

SE2900

I hope this helps you.

Thank you.

View more
  • x
  • convention:

heshamk
heshamk Created Oct 20, 2021 13:19:51 (0) (0)
@gzzz thanks for yur feedback, I will provide that to the customer and check, just one question, do you know whether it is possible to restrict a certain RTP ports range or not.  
user_4400653
user_4400653 Created Oct 25, 2021 05:50:32 (0) (0)
 
All Answers
Please wait, the engineer will handle it later.
View more
  • x
  • convention:

gzzz
gzzz Admin Created Oct 20, 2021 13:11:24

Hello friend.

Please refer to the following pictures:

SE2900

SE2900

SE2900

I hope this helps you.

Thank you.

View more
  • x
  • convention:

heshamk
heshamk Created Oct 20, 2021 13:19:51 (0) (0)
@gzzz thanks for yur feedback, I will provide that to the customer and check, just one question, do you know whether it is possible to restrict a certain RTP ports range or not.  
user_4400653
user_4400653 Created Oct 25, 2021 05:50:32 (0) (0)
 
gzzz
gzzz Admin Created Oct 20, 2021 13:27:42

Hello, friend.

@heshamk Are you referring to the SRTP deployment process?

To deploy SRTP, perform the following steps:

  • Plan an independent SIP AN or SIP trunk group for SRTP UEs, and plan the configuration information in the SIP AN or SIP trunk group.

  • The signaling encryption function, such as SIP over TLS, is deployed on the SIP access network or SIP trunk group used by SRTP UEs to ensure that SIP signaling is transmitted in a secure network communication environment. The SRTP function requires SDP messages to negotiate encryption environment parameters. Sensitive parameters such as the master key are carried during the negotiation.

  • Run ADD ENCRYPLC to add an SRTP encryption policy and configure SRTP-related parameters.

  • Run ADD ENCRYPLCSET to reference the SRTP encryption policy set.

  • Run ADD SIPAN on the ASBC to add a SIP AN and reference the encryption policy set so that the SRTP function takes effect on the SIP AN.

  • Run ADD ISIPTG on the ISBC to add a SIP trunk group and reference the encryption policy set so that the SRTP function takes effect on the SIP trunk group.

View more
  • x
  • convention:

heshamk
heshamk Created Oct 20, 2021 13:34:09 (0) (0)
@gzzz tanks for your prompt response, what the customer needs is the procedure to disable or restrict a number of RTP ports within a certain range, do you know if that is possible ?  
gzzz
gzzz Reply heshamk  Created Oct 20, 2021 13:35:11 (0) (0)
Hello friend.
I don't think so, because RTP uses dynamic port ranges. even UDP ports are used for RTP traffic and the larger adjacent odd ports are used for TCP traffic. Although there is no standard for port range assignment, RTP is typically configured to use ports between 1024 and 65535 and mailbox servers running the Microsoft Exchange Unified Messaging service follow this convention.  
user_4400653
user_4400653 Created Oct 25, 2021 05:50:45 (0) (0)
 
Good
View more
  • x
  • convention:

Good answers
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.