If you use a firewall that limits access from and/or to certain IPs, please whitelist the IP ranges listed below for both TCP and UDP.
Subnet | Start IP | End IP |
---|---|---|
185.19.236.0/22 | 185.19.236.0 | 185.19.239.255 |
Service | Port number | |
SIP | 5060 UDP 5060 TCP 5061 TLS |
|
RTP | ANY PORT - UDP | |
Provisioning |
https://dm.yealink.com 52.71.103.102 80 TCP |
|
Fonzie C2D + SIP calling | 8089 Webrtc 11.203.206.88 |
Do not forget: Disable SIP Application Layer Gateway (SIP ALG).
One last thing to check in the firewall is to allow fragmented packets. If we send packets of more than 1500 bytes, they will be sent in a fragmented way. Not all firewalls allow fragmented packets and this should also be checked.
- Disable SPI (Stateful Packet Inspection).
- Disable Strict Security in the Firewall options.