Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Vidyo and STUN protocol on ASA

We have the need to support a Vidyo video conference unit that will need to comunicate thru our ASA(outbount connections).  We currently do a lot of the standard H.323 calls on our polycom systems.  The Vidyo docs state that it communicates using STUN protocol to manage the dynamic UDP sessions.

Has anyone done this with an ASA yet of should I just have them use the 80/443 option and take the performance hit?

Thanks.

JC

Everyone's tags (3)
1 ACCEPTED SOLUTION

Accepted Solutions
Cisco Employee

Vidyo and STUN protocol on ASA

Hi JC,

If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).

-Mike

1 REPLY
Cisco Employee

Vidyo and STUN protocol on ASA

Hi JC,

If your plan is to pass the STUN traffic as regular UDP or TCP traffic, the ASA will handle this just fine. However, the ASA does not have a dedicated inspection engine for STUN, so it will not be able to do any deep packet inspection on the traffic (which would include doing packet rewrites, protocol enforcement, or ACL pinholing).

-Mike

1732
Views
0
Helpful
1
Replies
CreatePlease login to create content