Firewall check fails on Azure. ALG detected

Status
Not open for further replies.

datamerge

Gold Partner
Advanced Certified
Joined
Nov 19, 2014
Messages
213
Reaction score
46
Hi all

I have done stacks of 3CX implementations on AWS without issues. I thought I would run up the new 16 alpha on my Azure account to see how it goes.

I used PBXEpress to install it and it is all working fine, but it fails the firewall check due to detecting ALG. I cannot see any sign of ALG on the Azure firewall (which is really just a basic TCP/UCP filter).

Has anyone experience with this and successfully completed the firewall check on Azure?
 
Ok thanks. I'll check that and report back. The trunk works fine both ways.
 
OK, are you actually experiencing an issue at all ? if the trunks are working and calls flow then the ALG should not be having an effect.

Like a media proxy all SIP and RTP packets are sent to an ALG then their respective destinations. The ALG also works with NAT by changing the IP details in the SIP message as required - the main reason it is recommended to be disabled when using with 3CX.
 
Yes I know how ALG works. I am specifically interested to know if anyone has had an issue with firewall checker on Azure. The ALG checker works by check summing the SIP payload it sends to the 3cx check server and comparing that checksum to what is returned by the 3cx server. The issue could be something like the Azure virtual NIC driver pads out the payload with an extra hex 0, so there will be a disparity and a failure. I can't use this in production even if it works as it is unsupported by 3cx.
 
Well that's interesting. I just ran it again today. I have made no changes, but it worked.
 
Status
Not open for further replies.

Forum statistics

Threads
111,907
Messages
589,679
Members
164,772
Latest member
andyt