Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Voip : Only one way speech is working between 2 Sites!

    Scheduled Pinned Locked Moved Firewalling
    28 Posts 6 Posters 9.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      fifinon
      last edited by

      this is another captur of my state table in site C :

      Proto    Source -> Router -> Destination    State   
      udp 172.16.3.200:1719 <- 172.16.1.200:4562 SINGLE:MULTIPLE 
      udp 172.16.1.200:4562 -> 172.16.6.200:1719 MULTIPLE:SINGLE 
      udp 172.16.3.200:48607 <- 172.16.1.200:1719 NO_TRAFFIC:SINGLE 
      udp 172.16.1.200:1719 -> 172.16.6.200:48607 SINGLE:NO_TRAFFIC 
      udp 172.16.1.200:4561 <- 172.16.6.200:48607 NO_TRAFFIC:SINGLE 
      udp 172.16.3.200:48607 -> 192.168.24.25:56773 -> 172.16.1.200:4561 SINGLE:NO_TRAFFIC

      1 Reply Last reply Reply Quote 0
      • pttP
        ptt Rebel Alliance
        last edited by

        Diagnostics –> Packet Capture

        Do a "call capture" then open with Wireshark ( Telephony -> VoIP Calls -> Flow ) and check where the RTPs Come & Go, then you can figure what is happening.

        1 Reply Last reply Reply Quote 0
        • F
          fifinon
          last edited by

          i created  this rules but no résult

          source (ports)  => destination (ports)

          adresse PBX site A : 172.16.1.200 (UDP 32000-32512 ) => adresse PBX Site B 172.16.2.200 (UDP 32000-32512)

          1 Reply Last reply Reply Quote 0
          • marcellocM
            marcelloc
            last edited by

            Create one with serverA => serverB and serverB => serverA.

            Free all traffic between voip servers.

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • F
              fifinon
              last edited by

              @marcelloc:

              Create one with serverA => serverB and serverB => serverA.

              Free all traffic between voip servers.

              i did it !! no résult >:(

              1 Reply Last reply Reply Quote 0
              • F
                fifinon
                last edited by

                I think the problème is in the NAT !! because when i turn off NAT filtre in advance setup the voip work very good, but the navigation in internet don't work (no internet acces) so i don't know how to give acces to internet !!! do you have any idea ????

                1 Reply Last reply Reply Quote 0
                • marcellocM
                  marcelloc
                  last edited by

                  The server is on the same subnet as machines?

                  If so, disable automatic nat and create your own nat out rules.

                  Ps.
                  It sounds strange to me that some services will need nat and some don't.

                  Treinamentos de Elite: http://sys-squad.com

                  Help a community developer! ;D

                  1 Reply Last reply Reply Quote 0
                  • F
                    fifinon
                    last edited by

                    @marcelloc:

                    The server is on the same subnet as machines?

                    If so, disable automatic nat and create your own nat out rules.

                    Ps.
                    It sounds strange to me that some services will need nat and some don't.

                    Yes the server is on the same subnet as machnies !

                    1 Reply Last reply Reply Quote 0
                    • F
                      fifinon
                      last edited by

                      I really don't understand this problème!!!
                      i tired every thing to resolve it but no solution until now!!

                      now i'm trying to make the VOIP work just between 2 sites but the firewall still block the voip!

                      the ping between 2 sites A and B is good also the transfer of DATA from A => B and B => A!

                      Site A :172.16.1.0
                      ALCATEL PBX A : 172.16.1.200
                      Site B :172.16.2.0
                      ALCATEL PBX B : 172.16.2.200

                      i created those rules,

                      in Server A :

                      Rule 1 :

                      Lan Interface :

                      Action : Pass

                      Interface : LAN

                      Protocol : Any

                      Source  : Lan subnet

                      Destination : Single Hoste Or Aliace (Site B)

                      Geteway : default

                      Rule 2 :

                      Lan Interface :

                      Action : Pass

                      Interface : LAN

                      Protocol : TCP/UDP

                      Source  : Single Hoste Or Aliace (172.16.1.200)

                      Port : from 32000 to 32512

                      Destination : Single Hoste Or Aliace (172.16.2.200)

                      Port : from 32000 to 32512

                      Geteway : default

                      –-----------------------------------------------------------

                      in Server B :

                      Rule 1 :

                      Lan Interface :

                      Action : Pass

                      Interface : LAN

                      Protocol : Any

                      Source  : Lan subnet

                      Destination : Single Hoste Or Aliace (172.16.1.0)

                      Geteway : default

                      Rule 2 :

                      Lan Interface :

                      Action : Pass

                      Interface : LAN

                      Protocol : TCP/UDP

                      Source  : Single Hoste Or Aliace (172.16.2.200)

                      Port : from 32000 to 32512

                      Destination : Single Hoste Or Aliace (172.16.1.200)

                      Port : from 32000 to 32512

                      Geteway : default

                      –------------------------------------------------------------

                      Alcatel support say that the VOIP need just port from 32000 to 32512 but i also tried to autorise all port!! but no résult!

                      in Diagnostics: System logs: Firewall : the firewall still block the voip !!!

                      Act       Time         If            Source                Destination              Proto
                      X Oct 2 15:32:01 LAN 172.16.1.200:4489 172.16.2.200:58615 UDP
                      X Oct 2 15:31:59 LAN 172.16.1.200:4491 172.16.2.200:34195 UDP


                      Do you have any idea? ???

                      1 Reply Last reply Reply Quote 0
                      • marcellocM
                        marcelloc
                        last edited by

                        Have you disabled nat between sites?

                        Use tcpdump at console and see packages flowing

                        Treinamentos de Elite: http://sys-squad.com

                        Help a community developer! ;D

                        1 Reply Last reply Reply Quote 0
                        • F
                          fifinon
                          last edited by

                          I turned off the NAT in advance setup, it work good ! but users can't have the internet navigation!!

                          how can i block the nat just between the 2 sites ???

                          1 Reply Last reply Reply Quote 0
                          • M
                            Metu69salemi
                            last edited by

                            With manual outbound nat, there is two ways to do it.
                            either you have rules to these networks with a check box: DO NOt NAT and after that destination any network with normal natting

                            -or-

                            almost similar, but any other destinations has to have nat rule except these 2sites.

                            1 Reply Last reply Reply Quote 0
                            • C
                              cmb
                              last edited by

                              It's probably not NATing between the sites, it wouldn't by default at least, you would have to setup manual outbound NAT for that.

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.