Phone Proxy with ASA to the side of corporate firewall

Unanswered Question
Jul 13th, 2010
User Badges:
  • Silver, 250 points or more

When setting up the ASA phone proxy feature, what are the options for the remote phones when the corporate firewall is not the ASA with the phone proxy feature?  Internally, the default route of the network takes all external traffic through the corporate firewall and away from the ASA.  I know policy routing would be an option but is there anything else that can be done from the perspective of the ASA?


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
redrobish Tue, 07/13/2010 - 17:30
User Badges:

Same as sstudsdahl, our phone proxy is already working but it was moved behind Juniper FW and now it won't work.

Can someone pls. tell if what ports are to be opened at the Juniper FW for the ASA with phone proxy feature to work?


redrobish Tue, 07/13/2010 - 19:18
User Badges:

it seems i got the answer to my question from a document in Cisco...will try these.

ASA Phone Proxy can be placed behind another firewall but the external firewall...
1. Must NOT NAT the CUCM address
2. Must open up the TCP (SSL, TLS) and UDP (SRTP, TFTP) ports
3. Must ensure that the ASA Phone Proxy has a publicly routable address

Just sharing...

I hope this helps you too sstudsdahl.


This Discussion

Related Content