| 19
RADVISION | RADVISION Port Security Reference Guide
Pathfinder Client
Note:
You cannot have a firewall between the H.323 endpoint (or other H.323 entity) and the SCOPIA
PathFinder Client (see
Figure 1-1
on page 15). If there is a firewall, you must open all the high
ports in both directions (1025-65535).
Table 1-11
lists the outbound ports supported by SCOPIA PathFinder Client, when the client
connects to the SCOPIA PathFinder Server.
3089
UDP
Neighbor server
media connection
SCOPIA
PathFinder
Server to
SCOPIA
PathFinder
Client
Cannot traverse media to
neighbor server using UDP.
PathFinder Server
4000-5000
(configure
within this
range)
TCP, UDP
Direct Public
Access for H.323
call media,
signaling and call
control
SCOPIA
PathFinder
Server to H.323
entity
Cannot setup/connect DPA
mode calls with external
SCOPIA PathFinder Server.
The approximate number of
ports required is the
number of simultaneous
DPA calls multipled by 10.
The multiplication factor is
lower for audio-only calls,
higher for calls with dual
video. We recommend using
10 as an approximation.
To configure the port range
on the SCOPIA PathFinder
Server:
1.
Select Settings >
General.
2.
Enable H.323 Direct
Access.
Enter the Port Range
numbers.
Any H.323 entity
using a Q.931
signaling in DPA
mode.
The recipient
H.323 entity
probably works
with ports outside
this range. Your
firewall rule should
therefore specify
From 4000-5000 To
Any.
Table 1-10
Outbound ports supported by SCOPIA PathFinder Server
Port Range
Protocol
Functionality
Direction
Result of Blocking Port on
Firewall
Recipient Client
or Server Type