Locked down Firewall for 3CX

Status
Not open for further replies.

dpslusser

Free User
Joined
May 1, 2018
Messages
10
Reaction score
0
Hey guys, we have our 3CX server running on a VM in our office. It is a brand new installation, and the way that we will be using the PBX is mostly internal, where the only way external clients can connect to the PBX is through our main VPN. We decided this primarily due to the minimal amount of users we have outside our office, and the security risk with the amount of ports that must be opened up on the firewall, pointing at the server.

Currently we have port 5060 opened and restricted to the SIP providers gateway. ALL other traffic restricted. This has been working without any problems.

But, this was mainly for proof of concept. Now that we are moving forward with a professional license and 6 SIP's, I have some questions regarding what NEEDS opened in order for operation:

1. We will have 6 sips with SIPtrunk.com. Plan is to restrict 5060 to gw1.siptrunk.com. Is this all we need to do for the trunk while maintaining security?

2. What do I need to allow in the firewall to allow the 3CX server to talk to 3CX.com for licensing? I keep getting a warning, "Unable to reach 3CX License Activation Server. Confirm that your Primary DNS Server is able to resolve activation.3cx.com".

3. We want to use the webmeeting feature of 3CX, but haven't tested this feature yet. Anything particular in the firewall that needs allowed for this?
 
Status
Not open for further replies.

Forum statistics

Threads
111,889
Messages
589,580
Members
164,755
Latest member
adrhoades