











CompTIA
Exam Vouchers
Save money on CompTIA exams
| Question of the day
Sign up to receive
interactive practice questions
for MCSE, CompTIA
Cisco and other exams
| TestKing
Get MCSE, MCSD, CCNA, CCNP,A+, N+ and many more | * ExamSheets *
Guide for Success!
Actual Questions & Answers
MCSE, MCSD, A+ ,CCNA, CCNP
Oracle 8i, Oracle 9i Online practice tests
Certification sites Online university Online college Online education Distance learning Software forum Server administration forum Programming resources
|
|  |
| Author |
H323 through a Pix
|
drizzits
Senior Member
Registered: Sep 2000 Location: ma Country: usa State: Certifications: ccna ccda mcse, ccnp Working on: ccdp
Total Posts: 107
|
|
H323 through a Pix
Hey everyone,
I have a question. Anyone ever set up there pix to do h323 video confrencing without having to poke holes throught it. We are looking to let ourselves connect to anyone on the net. This creats the problem if it was just between offices then it would be easy just create a vpn. WE want it to be able to accept inbound sessions.
Thanks
Drizzits
Report this post to a moderator
|
|
04-12-02 03:56 PM
|
|
chodan
Senior Member M

Registered: Mar 2000 Location: Kentucky Country: United States State: Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+ Working on: CCIE Routing & Switching
Total Posts: 1582
|
|
I wouldn`t think there would be a way without VPN.
Otherwise you would need to create static NAT mappings and allow specific ports incoming access through the firewall.
If you have enough address space you could place your video conference machine on your DMZ, yes it would be more vulnerable but your LAN would be more secure.
__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."
Report this post to a moderator
|
|
04-13-02 02:38 AM
|
|
darthfeces
Senior Member
Registered: Mar 2001 Location: somewhere, NJ Country: United States State: Certifications: A+, N+, I-net+, CCNP, CCDP, CCSP, CISSP Working on: CCIE R&S Lab CCIE-S, PMP, CISM
Total Posts: 1786
|
|
|
04-13-02 02:58 AM
|
|
drizzits
Senior Member
Registered: Sep 2000 Location: ma Country: usa State: Certifications: ccna ccda mcse, ccnp Working on: ccdp
Total Posts: 107
|
|
The problem is not really outgoing its incoming. Darthfeces from what I understand that if you use fixup h323 that will only help with outgoing h323 it still wont accept incoming. THat what I was told I will be trying it tomorrow I will let you know if it works.
Drizzits
Report this post to a moderator
|
|
04-15-02 03:38 AM
|
|
chodan
Senior Member M

Registered: Mar 2000 Location: Kentucky Country: United States State: Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+ Working on: CCIE Routing & Switching
Total Posts: 1582
|
|
Thats why I suggested a static NAT mapping.
So your incoming H.323 will know what address to attach to.
Not to mention fixup protocol h323 1720 is on by default.

__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."
Report this post to a moderator
|
|
04-15-02 11:50 AM
|
|
chodan
Senior Member M

Registered: Mar 2000 Location: Kentucky Country: United States State: Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+ Working on: CCIE Routing & Switching
Total Posts: 1582
|
|
access-list 101 permit tcp host any any eq h323
access-group 101 in interface outside
does this sound right to you all?
__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."
Report this post to a moderator
|
|
04-15-02 12:09 PM
|
|
darthfeces
Senior Member
Registered: Mar 2001 Location: somewhere, NJ Country: United States State: Certifications: A+, N+, I-net+, CCNP, CCDP, CCSP, CISSP Working on: CCIE R&S Lab CCIE-S, PMP, CISM
Total Posts: 1786
|
|
|
04-15-02 06:54 PM
|
|
catfisch
Junior Member
Registered: Dec 2001 Location: Country: United States State: Certifications: CCNA, CCNP, MCP Working on: CCIE, Linux
Total Posts: 17
|
|
The way i did this is.. i took a 224 mask network address i owned and busted it up to..two 240's. put one as my DMZ and assigned 192.168's to my networks behind the fiewall. Then i setup DNAT entries into selected fakes orts inside my network.. and mapped them to one of my IP in my other 240.. this works out really well.. it gives me tight control and it's totally transparent to the users..
-Catfisch
Report this post to a moderator
|
|
04-17-02 04:44 AM
|
|
chodan
Senior Member M

Registered: Mar 2000 Location: Kentucky Country: United States State: Certifications: CCNA/CCNP CCDA /CCDP MCSE NT4/Win2000 MCP+I Network+ Security+ Working on: CCIE Routing & Switching
Total Posts: 1582
|
|
quote: Originally posted by catfisch
The way i did this is.. i took a 224 mask network address i owned and busted it up to..two 240's. put one as my DMZ and assigned 192.168's to my networks behind the fiewall. Then i setup DNAT entries into selected fakes: ports inside my network.. and mapped them to one of my IP in my other 240.. this works out really well.. it gives me tight control and it's totally transparent to the users..
-Catfisch
Sweet
an elegant solution.
__________________
Check out my music at
www.chodan.com
Rural Development in Eastern Ky.
www.centertech.com
"It is our decisions that show us what we truly are in life, not our abilities."
Report this post to a moderator
|
|
04-17-02 11:56 AM
|
|
catfisch
Junior Member
Registered: Dec 2001 Location: Country: United States State: Certifications: CCNA, CCNP, MCP Working on: CCIE, Linux
Total Posts: 17
|
|
|
04-20-02 10:00 PM
|
|
|
Click here for CCNP study guides
Cisco exam notes
Forum Rules: Who Can Read The Forum? Any registered user or guest.
Who Can Post New Topics? Any registered user.
Who Can Post Replies? Any registered user.
Changes: Messages can be edited by their author.
Posts: HTML code is OFF. Smilies are ON. vB code is ON. [IMG] code is ON. |
|
ExamNotes forum archive
|