IPsec tunnel from remote site, need to pass VLAN traffic for phones?
-
I'm trying to figure out the best way to get our remote site VOIP phones working.
Currently we have a pfSense fireall at our remote site and an Endian firewall at our headquarters. They are connected through an ipSec tunnel. Our PBX is located at our headquarters, so phone traffic will need to be routed the tunnel.
The SIP signalling seems to be working fine because the phones at the remote site can make internal and external calls, but there is no audio. Was thinking this might have to do with the voice VLAN not being passed through the tunnel?
If that's the case, would ipSec with L2TP be the right direction here?
-
@djohnson
This is a late reply but it may assist someone else in future.
The VOIP audio traffic (RTP) require separate UDP ports to be open. The exact range will vary depending on your VoIP system.Hence, if the RTP ports are not open, you can experience a "working" system, but with a complete lack of audio.