This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Problems of understanding the NAT of the xg 18

Hello community,
I currently have major problems understanding the new NAT rules of the XG V18 and despite an intensive search I cannot find a solution.
My customer has a new XG125. The rules were adapted from the old Gateprotect firewall to the XG.
There are no problems with Outlook Web App, email and a test release on a Synology NAS to be able to access it from the Internet.
However, there are problems with telephony (Unify OpenScape X3), the HomeOffice SIP telephones (OpenStage 15 HFA) are connected, incoming calls and outgoing calls work, but there is no audio transmission.
Before changing the firewall, i.e. with the old Gateprotect, this worked perfectly.
The home office users have still received XG86 firewalls (as a RED replacement, as they are currently not available), which are each connected to the company firewall via a RED tunnel with routing to the company LAN, which also works perfectly, but there was no audio-transmission of the phones connected to the XG86, too.

The Unify OpenScape X3  requires port translations for e.g. port 4060 to port 4062, but TCP and UDP.
I have now gone so far that I have created a DNAT rule for each (!) Port for TCP and UDP, otherwise an error message would appear that the original port is not the same as the target port.
However, afterwards I found that there was no change from before when I only had a DNAT rule with all the ports required for the OpenScape PBX active.
I also see that the DNAT rules don't seem to apply because usage shows 0.
What am I doing wrong?
The simple Rule for the Unify Booster Card for Web-Access to Unify myPortal ( Port 8802) do not match, too, although there was no difference here from the test rule for the release of the Synology NAS with port 5000.

 

Here is the firewall rule WAN to PBX:

here the rule pbx-to-WAN:

An here e.g. the DNAT rule TCP 4060 (external)-> PBX internal TCP 4062

 

Thanks!!



This thread was automatically locked due to age.
Parents Reply Children
No Data