Cisco Unified Application Environment Developer Forums

« Back to Developers

RE: CUAE & CUCM separated by firewall

Combination View Flat View Tree View
Threads [ Previous | Next ]
toggle
Hi,
 
I'm looking at deploying a CUAE server and a CUCM on opposite sides of a firewall for a business solution.  What ports/protocols would I need to allow on the ACL between the two to facilitate a seamless communication on both servers to support SIP or H.323?  Also, I would need to know if there is a known dynamic port range I would need to consider in either direction? 
 
Any help or references to documentation that describes these requirements would be appreciated!
 
Thanks,
 
Bill

Hi Bill,
    To answer your question I would like to know more informations regarding the deployment. We suggest using SIP protocols instead of H323.
 
1) CUAE or CallManager which will be outside the firewall?
2) What kind of CUAE APIs you are planning to use? CallControl (SIP), JTAPI, AXL/SOAP, EM, Presence.
3) Whether Media Engine will be in different box than the appserver or they will be together? If separate whether they will be in public or private domain?
4) Are you going to use CUAD or ETCH based application?
5) If you are planning to use ETCH based application, where it will be running? In public or private domain.
6) Are you planning to use SIP trunk to CUAE or virtual device of CUAE? There is registration sip port range.
 
Regards
Debanjan

Hi Debanjan,
 
Thanks for your reply.  In response to your follow up questions:
 
1. The CUCM will live in the UCAAS data center and the CUAE will be in our own data center in the trusted network.  So we would need to open up ports to allow:
a. CUAE outbound/inbound communication to CUCM in UCAAS.
b. CUAD synchronization from local machines to CUAE in trusted network.
c. Any other required administration ports to CUAE.
 
2. We're mainly interested in call control.  We have a script that initiates two calls to PSTN devices, then either bridges the calls with a conference (H.323) or blind transfer (SIP).  If the latter is supported with SIP in 2.5 R2, then we should be fine with this.
 
3. Media Engine will be in the same box as Application Server.
 
4. CUAD
 
5. N/A
 
6. I believe we're planning to use the SIP trunk, but am not 100% certain.  I can present our solution offline, if that would be of help.
 
Thanks!
 
Bill

Hi Bill,
 
May be attached port list from CUAE administration document will help you.
 
Regards,
Umesh
Attachments: