Firewall test fail

Status
Not open for further replies.

equinoxitc

Joined
Apr 2, 2018
Messages
18
Reaction score
0
still playing with 3cx and its seeming to be holding up well. However firewall test fails and I want to work through this issue: Tester reports the following:

  • testing 3CX SIP Server... failed (How to resolve?)
    • stopping service... done
    • detecting SIP ALG... not detected
    • testing port 5060... full cone test failed (How to resolve?)
    • starting service... done
  • testing 3CX Tunneling Proxy... failed (How to resolve?)
    • stopping service... done
    • testing port 5090... full cone test failed (How to resolve?)
    • starting service... done

firewall is a draytek 2860n and we have 3 IPs and the 3cx has the open posrts config below. There are a couple of other NAT forwards in play on the same IP. an http redirect for TCP 9081 > local ip 80 and another open port config for SSL through to a local IP. These two non 3cx services could be moved elsewhere but not sure they are in the mix.

214_openPorts_2018-04-16_11-48-07.jpg

Any ideas on what I should be looking at. The 3cx document is not that helpful on resolution.
 
Hi equinoxict,

This should assist if the first place: https://www.3cx.com/blog/docs/draytek-firewall-voip/

You need to configure your firewall for Full Cone/Full Feature NAT. This should work fine with Draytek, I don't use them personally but know plenty who do.

SIP ALG is turned off but you will/may need firewall rules and NAT port forwarding to be configured.
 
I knew there was something I missed out of the post :( That's the article I was following and while I have not done the QoS settings yet all the open ports are done and sip_alg was disabled.
 
Status
Not open for further replies.

Latest Posts

Forum statistics

Threads
111,885
Messages
589,545
Members
164,744
Latest member
johnblackwood1