170
private network where the H.323 phones are connected on the internal
network and to the Gatekeeper on the DMZ. The Gatekeeper on the DMZ
is configured with a private address.
The following rules need to be added to the rule listings in both firewalls,
make sure there are no rules disallowing or allowing the same kind of
ports/traffic before these rules.
WebUI
:
1. Incoming Gatekeeper Rules
Rules
IP Rules
Enter the following:
Name: H323In
Action: SAT
Service: H323-Gatekeeper
Source Interface: any
Destination Interface: core
Source Network: 0.0.0.0/0 (all-nets)
Destination Network: ip-wan (external IP of the firewall)
Comment: SAT rule for incoming communication with the Gatekeeper
located at ip-gatekeeper.
SAT
Translate Destination IP Address: To New IP Address: ip-gatekeeper
(IP address of gatekeeper)
Then click OK
Chapter 18. Application Layer Gateway (ALG)
Add
IP Rule:
D-Link Firewalls User's Guide