Firewall Check

Status
Not open for further replies.

old-ocker

Free User
Joined
Jul 28, 2013
Messages
15
Reaction score
0
New V16 install.

Firewall check

  • resolving 'stun-au.3cx.com'... done
  • resolving 'stun2.3cx.com'... done
  • resolving 'stun3.3cx.com'... done
  • resolving 'sip-alg-detector.3cx.com'... done
  • testing 3CX SIP Server... failed (How to resolve?)
    • stopping service... done
    • detecting SIP ALG... not detected
    • testing port 5060... Mapping does not match 5060. Mapping is 19041. (How to resolve?)
    • starting service... done
  • testing 3CX Tunneling Proxy... failed (How to resolve?)
    • stopping service... done
    • testing port 5090... Mapping does not match 5090. Mapping is 19053. (How to resolve?)
    • starting service... done
  • testing 3CX Media Server... failed (How to resolve?)
    • stopping service... done
    • testing ports [9000..9398]... failed (How to resolve?)
      • testing port 9000... Mapping does not match 9000. Mapping is 19054. (How to resolve?)
      • testing port 9002... Mapping does not match 9002. Mapping is 19055. (How to resolve?)
      • testing port 9004... Mapping does not match 9004. Mapping is 19056. (How to resolve?)
etc etc

Get same result with Windows Firewall turned off.
Cant make outgoing calls.
Voip provider registered.
Outbound rule for 04 done.

Call log shows

05/07/2019 1:03:03 PMFrank Lowes (100)040395xxxxNot Answered


Activity Log shows

05/07/2019 1:28:01 PM - [Flow] Target endpoint for 040395xxxx can not be built!

Anyone help.
Thanks.
 
What firewall is between you and the internet? Ports are not consistent which won't work.
On our Sonicwall I needed to tick to -> Disable Source Port Remap so the ports were 1:1
 
Most firewalls allow outbound traffic by default, the firewall may not be the issue here - what brand are you using ?
Windows Firewall but I get same results with it turned off.
Have you an outbound rule configured firstly:
I have an outbound rule for 04.
As for the firewall issue you are seeing is most likely port forwarding / NAT related
This should be done for ports 5000,5001,5060,5061,5090 TCP and 5060,9000-10999 UDP.
I have now port forwarded my Dlink router but still get same result.

Any other suggestions.
 
after you made the NAT in the Dlink (this is where your problem sits) give it a reboot.
Also, add 5090 to the UDP port range!
 
I have now port forwarded my Dlink router but still get same result.

Older D-Link routers are bad about re-mapping ports, if its a newer model it might support disabling that however.
 
after you made the NAT in the Dlink (this is where your problem sits) give it a reboot.
Also, add 5090 to the UDP port range!
Rebooted Dlink- no difference.
Already had 5090.
Older D-Link routers are bad about re-mapping ports, if its a newer model it might support disabling that however
Dlink router is a DSL-2877AL.
Cant find any setting to disable port remapping.
Looks like I have reached the end.
 
May try and delete all in the firewall list and enter the 3CX PBX as a DMZ (not great but as a test)...
Disabled all port forwarding in Virtual Server and enabled DMZ.
Tried Firewall test.
Same result.
Mapping does not match.
Thanks to all who posted.
 
Disabled all port forwarding in Virtual Server and enabled DMZ.
Tried Firewall test.
Same result.
Mapping does not match.
Thanks to all who posted.

Unfortunately that model lacks enterprise/business features and advanced NAT features as it is a mostly residential device.
 
Status
Not open for further replies.

Latest Posts

Forum statistics

Threads
111,924
Messages
589,756
Members
164,796
Latest member
Dame24