ExamNotes.net  -  IT certification portal

ForumsCertResearchTop sitesNewslettersFree email
HomeRegister
Exams Notes
Practice exams
Exam games
Questions by email
Online training
Training videos
College degrees
Boot camps
Book store
Links directory
Tell a friend
For webmasters

CompTIA Exam Vouchers
Save money on CompTIA exams
Question of the day
Sign up to receive
interactive practice questions
for MCSE, CompTIA
Cisco and other exams
TestKing
Get MCSE, MCSD, CCNA, CCNP,A+, N+ and many more

* ExamSheets *
Guide for Success!
Actual Questions & Answers
MCSE, MCSD, A+ ,CCNA, CCNP
Oracle 8i, Oracle 9i

Online practice tests

Certification sites

Online university

Online college

Online education

Distance learning

Software forum

Server administration forum

Programming resources






This is interesting: Free IT Magazines | Databases help forum



Cisco > CCNP > H323 through a Pix

Show a Printable Version
Email This Page to Someone!
Receive updates to this thread




Featured site: Online CCNP practice exams from Cert21.com



Author H323 through a Pix
drizzits
Senior Member




Registered: Sep 2000
Location: ma
Country: usa
State:
Certifications: ccna ccda mcse, ccnp
Working on: ccdp

Total Posts: 107
H323 through a Pix

Hey everyone,


I have a question. Anyone ever set up there pix to do h323 video confrencing without having to poke holes throught it. We are looking to let ourselves connect to anyone on the net. This creats the problem if it was just between offices then it would be easy just create a vpn. WE want it to be able to accept inbound sessions.

Thanks
Drizzits

Report this post to a moderator

Old Post 04-12-02 03:56 PM
drizzits is offline Click Here to See the Profile for drizzits Click here to Send drizzits a Private Message Add drizzits to your buddy list Find more posts by drizzits Reply w/Quote Edit/Delete Message IP: Logged
chodan
Senior Member
M




Registered: Mar 2000
Location: Kentucky
Country: United States
State:
Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+
Working on: CCIE Routing & Switching

Total Posts: 1582

I wouldn`t think there would be a way without VPN.
Otherwise you would need to create static NAT mappings and allow specific ports incoming access through the firewall.
If you have enough address space you could place your video conference machine on your DMZ, yes it would be more vulnerable but your LAN would be more secure.

__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."

Report this post to a moderator

Old Post 04-13-02 02:38 AM
chodan is offline Click Here to See the Profile for chodan Click here to Send chodan a Private Message Visit chodan's homepage! Add chodan to your buddy list Find more posts by chodan Reply w/Quote Edit/Delete Message IP: Logged
darthfeces
Senior Member




Registered: Mar 2001
Location: somewhere, NJ
Country: United States
State:
Certifications: A+, N+, I-net+, CCNP, CCDP, CCSP, CISSP
Working on: CCIE R&S Lab CCIE-S, PMP, CISM

Total Posts: 1786

fixup protocol h323 1720

Report this post to a moderator

Old Post 04-13-02 02:58 AM
darthfeces is offline Click Here to See the Profile for darthfeces Click here to Send darthfeces a Private Message Add darthfeces to your buddy list Find more posts by darthfeces Reply w/Quote Edit/Delete Message IP: Logged
drizzits
Senior Member




Registered: Sep 2000
Location: ma
Country: usa
State:
Certifications: ccna ccda mcse, ccnp
Working on: ccdp

Total Posts: 107

The problem is not really outgoing its incoming. Darthfeces from what I understand that if you use fixup h323 that will only help with outgoing h323 it still wont accept incoming. THat what I was told I will be trying it tomorrow I will let you know if it works.

Drizzits

Report this post to a moderator

Old Post 04-15-02 03:38 AM
drizzits is offline Click Here to See the Profile for drizzits Click here to Send drizzits a Private Message Add drizzits to your buddy list Find more posts by drizzits Reply w/Quote Edit/Delete Message IP: Logged
chodan
Senior Member
M




Registered: Mar 2000
Location: Kentucky
Country: United States
State:
Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+
Working on: CCIE Routing & Switching

Total Posts: 1582

Thats why I suggested a static NAT mapping.
So your incoming H.323 will know what address to attach to.
Not to mention fixup protocol h323 1720 is on by default.

__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."

Report this post to a moderator

Old Post 04-15-02 11:50 AM
chodan is offline Click Here to See the Profile for chodan Click here to Send chodan a Private Message Visit chodan's homepage! Add chodan to your buddy list Find more posts by chodan Reply w/Quote Edit/Delete Message IP: Logged
chodan
Senior Member
M




Registered: Mar 2000
Location: Kentucky
Country: United States
State:
Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+
Working on: CCIE Routing & Switching

Total Posts: 1582

access-list 101 permit tcp host any any eq h323


access-group 101 in interface outside

does this sound right to you all?

__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."

Report this post to a moderator

Old Post 04-15-02 12:09 PM
chodan is offline Click Here to See the Profile for chodan Click here to Send chodan a Private Message Visit chodan's homepage! Add chodan to your buddy list Find more posts by chodan Reply w/Quote Edit/Delete Message IP: Logged
darthfeces
Senior Member




Registered: Mar 2001
Location: somewhere, NJ
Country: United States
State:
Certifications: A+, N+, I-net+, CCNP, CCDP, CCSP, CISSP
Working on: CCIE R&S Lab CCIE-S, PMP, CISM

Total Posts: 1786

yes,
i didn't read through the question ... my bad

Report this post to a moderator

Old Post 04-15-02 06:54 PM
darthfeces is offline Click Here to See the Profile for darthfeces Click here to Send darthfeces a Private Message Add darthfeces to your buddy list Find more posts by darthfeces Reply w/Quote Edit/Delete Message IP: Logged
catfisch
Junior Member




Registered: Dec 2001
Location:
Country: United States
State:
Certifications: CCNA, CCNP, MCP
Working on: CCIE, Linux

Total Posts: 17

The way i did this is.. i took a 224 mask network address i owned and busted it up to..two 240's. put one as my DMZ and assigned 192.168's to my networks behind the fiewall. Then i setup DNAT entries into selected fakesorts inside my network.. and mapped them to one of my IP in my other 240.. this works out really well.. it gives me tight control and it's totally transparent to the users..
-Catfisch

Report this post to a moderator

Old Post 04-17-02 04:44 AM
catfisch is offline Click Here to See the Profile for catfisch Click here to Send catfisch a Private Message Visit catfisch's homepage! Add catfisch to your buddy list Find more posts by catfisch Reply w/Quote Edit/Delete Message IP: Logged
chodan
Senior Member
M




Registered: Mar 2000
Location: Kentucky
Country: United States
State:
Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+
Working on: CCIE Routing & Switching

Total Posts: 1582

quote:
Originally posted by catfisch
The way i did this is.. i took a 224 mask network address i owned and busted it up to..two 240's. put one as my DMZ and assigned 192.168's to my networks behind the fiewall. Then i setup DNAT entries into selected fakes: ports inside my network.. and mapped them to one of my IP in my other 240.. this works out really well.. it gives me tight control and it's totally transparent to the users..
-Catfisch


Sweet
an elegant solution.

__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."

Report this post to a moderator

Old Post 04-17-02 11:56 AM
chodan is offline Click Here to See the Profile for chodan Click here to Send chodan a Private Message Visit chodan's homepage! Add chodan to your buddy list Find more posts by chodan Reply w/Quote Edit/Delete Message IP: Logged
catfisch
Junior Member




Registered: Dec 2001
Location:
Country: United States
State:
Certifications: CCNA, CCNP, MCP
Working on: CCIE, Linux

Total Posts: 17

Thanks.. chodan.. and it's free! -Catfisch

Report this post to a moderator

Old Post 04-20-02 10:00 PM
catfisch is offline Click Here to See the Profile for catfisch Click here to Send catfisch a Private Message Visit catfisch's homepage! Add catfisch to your buddy list Find more posts by catfisch Reply w/Quote Edit/Delete Message IP: Logged
All times are GMT.
Post new thread   Post reply

Click here for CCNP study guides

Cisco exam notes



Forum Jump:
Rate This Thread:
Forum Rules:
Who Can Read The Forum? Any registered user or guest.
Who Can Post New Topics? Any registered user.
Who Can Post Replies? Any registered user.
Changes: Messages can be edited by their author.
Posts: HTML code is OFF. Smilies are ON. vB code is ON. [IMG] code is ON.
 

ExamNotes forum archive


Powered by: vBulletin 2.2.8
Copyright ©2000, Jelsoft Enterprises Limited.

  Free Braindumps | mcse braindumps