3CX v20: SIP denies registering through one of ISP provider

Status
Not open for further replies.

VUSALDADASHOV

Gold Partner
Basic Certified
Joined
Dec 30, 2021
Messages
68
Reaction score
15
Hello Dear forum

Really need your help to show mw the way to troubleshoot. I'm facing with this kind of isse for the first time.

Look. I have a Fortigate device which has 2 ISP providers. Those network interfaces (WAN1 & WAN2) configured as SDWAN Interface and named as VirtualWanLink. SDWAN does his job. I’m sure. I have many IPSEC connection (all of them are dual) and a everything seems to work.

So, What is the case

  • WAN1 IP: 1.1.1.1
  • WAN2 IP: 2.2.2.2

BTW, I noticed this issue today. When in the afternoon today WAN2 had internet outage, 2 of my SIP trunks just stopped working. Those SIP trunks are connected through internet: public IP address, resolvable FQDN.

So, briefly those t2o trunks didn’t want to register via 1.1.1.1. After 2 hours Provider fixed his issue and all start to work. In the evening, before I left the office, I made some tests. I disabled WAN2 interface (2.2.2.2) and saw that those 2 trunks were red.

I started troubleshooting

  • Ping to voip provider: OK
  • Telnet to voip provider 5060: OK
  • Nslookup voip provider FQDN: resolved correct IP address.

But SIP trunk denied to register!!!

1713981010231.png

I thought that SIP Provider blacklisted my WAN1 IP address (1.1.1.1) What did to check it?!

I disabled those two trunks. I downloaded and installed MicroSIP application onto my computer. My computer also passed all network related tests and I had internet through WAN1 (1.1.1.1) interface.

But MicroSIP registered this SIP account successfully. That means SIP provider didn’t blacklisted my IP. I’m sure.

Wireshark shows register logs. All seems are OK… But trunk doesn’t want to register

What else can I do ??

PS: in the past this worked. I’m sure! But this issue may persists for a long time… I just noticed it today
 
@VUSALDADASHOV

Are you using 1.1.1.1 for real, or are you just using this as an example in this case?
I ask as 1.1.1.1 is a DNS Server out in the world and the reply therefore might go to this DNS Server ;)
 
@VUSALDADASHOV

Are you using 1.1.1.1 for real, or are you just using this as an example in this case?
I ask as 1.1.1.1 is a DNS Server out in the world and the reply therefore might go to this DNS Server ;)
:) I used those IP addresses here just for example.
 
  • Like
Reactions: jed and OlegR_3CX
@VUSALDADASHOV
Did you manage to find the source of the issue?

I tried to have a conversation with tech dep of SIP provider but had no success, I couldn’t reach them at all. The only man who I could speak to it was an operator which had no idea of what I was talking about,

Anyway, I some kind of fixed my issue. I routed all queries to SIP Provider’s IP address through a different firewall, which I had in DMZ zone and which have dual WAN ISP with IP addresses like 3.3.3.3 and 4.4.4.4. This is temporary fix until I find a person from SIP Provider to talk to.
 
  • Like
Reactions: OlegR_3CX and jed
Well done, it sounds like you found the issue with the routing there, as the other firewall and ISP work fine.
Keep us updated.
 
  • Like
Reactions: jed
Status
Not open for further replies.

Forum statistics

Threads
111,953
Messages
589,913
Members
164,847
Latest member
mike.carter.991