
2. The SIP ALG properties will be displayed
3. Specify a name for the ALG, for example sip_alg
4. Click OK
C. Define a custom Service object for SIP:
1. Go to: Objects > Services > Add > TCP/UDP
2. The Service properties will be displayed
3. Specify a name for the service, for example sip_serv
4. Choose UDP as the Type
5. Choose sip-alg as the ALG
6. Under Destination and enter port number 5060
7. Click OK
D. Define the outgoing SIP traffic IP rule:
1. Go to: Rules > IP Rule Set > main > Add > IP Rule
2. The Rule Properties dialog will be displayed
3. Now enter:
• Name: sip_nat
• Action: NAT
• Service: sip_serv
• Source Interface: if1
• Source Network: if1_net
• Destination Interface: ext
• Destination Network: proxy_ip
• Comment: Allow outgoing SIP calls
4. Click OK
E. Define the incoming SIP traffic IP rule:
1. Go to: Rules > IP Rule Set > main > Add > IP Rule
2. The Rule Properties dialog will be displayed
3. Now enter:
• Name: sip_allow
• Action: Allow
Chapter 6: Security Mechanisms
417
Comentários a estes Manuais