- Joined
- Apr 28, 2014
- Messages
- 6
- Reaction score
- 0
Hi
I'm in the middle of an argument between my 3CX partner and my TI company that manages our firewall. We have upgraded to v15.5 and the firewall check is failing as it needs a full cone NAT on 5060.
Our IT company are saying this is unsafe to do and we should get a list of IP addresses from 3CX and only open the port to traffic from those addresses.
does anyone have a view as to the security issues of providing the 1:1 NAT on 5060 back to the pbx?
Regards
I'm in the middle of an argument between my 3CX partner and my TI company that manages our firewall. We have upgraded to v15.5 and the firewall check is failing as it needs a full cone NAT on 5060.
Our IT company are saying this is unsafe to do and we should get a list of IP addresses from 3CX and only open the port to traffic from those addresses.
does anyone have a view as to the security issues of providing the 1:1 NAT on 5060 back to the pbx?
Regards