Configuring Firewall Allowed Rules - AudioCodes Mediant 800 User Manual

Gateways & session border controllers
Hide thumbs Also See for Mediant 800:
Table of Contents

Advertisement

CHAPTER 41    HA Configuration
If the HA system is already in HA Preempt mode and you want to change the priority of
the device, to ensure that system service is maintained and traffic is not disrupted, it is
recommended to set the higher priority to the redundant device and then reset it. After it
synchronizes with the active device, it initiates a switchover and becomes the new
active device (the former active device resets and becomes the new redundant device).

Configuring Firewall Allowed Rules

If you want to configure firewall rules (see
traffic, you must first configure firewall rules that allow traffic needed in your deployment.
Therefore, in addition to allowing basic traffic (such as OAMP, SIP signalling, and media), you must
also allow HA maintenance traffic between the Active and Redundant devices:
UDP ports 669, 670 and 680 (HA synchronization and keep alive)
TCP ports 2442 and 80 (HA control and data)
Please configure firewall rules 10 through 17, as shown below, where 10.31.4.61 is the IP address
of the Maintenance interface ("HA_IF") of the Redundant device and 10.31.4.62 the IP address of
the Maintenance interface ("HA_IF") of the Active device.
Ind-
Source
ex
IP
0
...
Various rules for basic traffic
9
10
10.31.
4.61
11
10.31.
4.62
12
10.31.
4.61
13
10.31.
4.62
14
10.31.
4.61
15
10.31.
4.62
16
10.31.
4.61
Table 41-1: Allowed Firewall Rules for HA
Pre-
St-
Sou-
End
fix
art
rce
Por-
Len-
Po-
Port
t
gth
rt
669
32
66
669
9
669
32
66
669
9
0
32
24
244
42
2
0
32
24
244
42
2
80
32
0
655
35
80
32
0
655
35
670
32
68
680
0
- 891 -
Mediant 800 Gateway & E-SBC | User's Manual
Configuring Firewall
Rules) that block specific network
Use
Spe-
Inter-
Pro-
cific
face
tocol
Inter-
Name
face
udp
Enab
HA_
le
IF
udp
Enab
HA_
le
IF
tcp
Enab
HA_
le
IF
tcp
Enab
HA_
le
IF
tcp
Enab
HA_
le
IF
tcp
Enab
HA_
le
IF
udp
Enab
HA_
le
IF
Acti-
B-
on
yt-
Byt-
Pac-
Upo-
e
e
ket
n
R-
Bu-
Size
Mat-
at-
rst
ch
e
Allo
0
0
0
w
Allo
0
0
0
w
Allo
0
0
0
w
Allo
0
0
0
w
Allo
0
0
0
w
Allo
0
0
0
w
Allo
0
0
0
w

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

E-sbc

Table of Contents