How Do I Set the System Up if I Have to Cross One or More Firewalls?
As a minimum requirement for connectivity, the Link-Master must be reachable by all other Link-Members in the Link-Group. To achieve this, port-forwarding rules need to be created within the firewall which the Link-Master is behind. The ports that need to be forwarded are as follows:
- 80:TCP. This is used for both link initiation and Web management.
- 655:TCP/UDP. This is used for the transmission of all audio and data (call signaling) between Link-Group members.
To set up a Link-Group with devices behind one or more firewalls, observe the following example configuration:
Assume the following IP addresses and port-forwarding rules:
- 173.194.121.48 (external IP address)
- 192.168.1.100 (Link-Master network address)
- 6300 (arbitrary port chosen for port 80, the management port-forward rule)
- 6301 (arbitrary port chosen for port 655, the audio/data port-forwarding rule)
- Within the firewall, create a port-forward rule that forwards any TCP requests received on 173.194.121.48:6300 to 192.168.1.100:80.
- Within the firewall, create a port-forward rule that forwards any TCP/UDP requests received on 173.194.121.48:6301 to 192.168.1.100:655.
- Within the Link-Master’s Network configuration page, configure the external IP and audio/data port:
- Within the remote unit’s Linking configuration page, configure the Link-Master’s external IP and management port:
- Repeat step 4 for each LQ unit to be part of the group.
- For every Link-Member within the Link-Group that can be made externally reachable, navigate to the device’s Network configuration page and configure the external IP and audio/data port as in step 3 (optional).
These configuration steps will ensure basic connectivity within the Link-Group. For more detailed information see Internet Connectivity .