- a static NAT needs to be implemented for the VidyoGateway
- the Firewall must be H.323 aware and H.323 inspection/support needs to be enabled
The following ports need to be allowed on the NAT:
1720 TCP Control Port (static) – for Q.931 call signaling (H.225 protocol) used in setting-up and terminating a call. Q.931 negotiates which dynamic port range to use between the endpoints for H.245 Call Parameters, data, audio and video. The firewall must be able to allow H.323 related traffic through.
Note: If the call never establishes at all, this port may be blocked.
1719 TCP (static) - Gatekeeper RAS
5060 UDP - SIP
These ports MUST be opened in BOTH directions:
1024 – 65535 TCP - Dynamic - H.245 (Call Parameters)
1024 – 65535 UDP - Dynamic - RTP (Video Stream Data)
1024 – 65535 UDP - Dynamic - RTP (Audio Stream Data)
1024 – 65535 UDP - Dynamic - RTCP (Control Information)