Cisco SPA962-NA Administration Guide - Page 25

Network Address Translation, NAT Overview

Page 25 highlights

Chapter 1 Introducing Linksys 900 Series IP Phones Technology Background • SIP ports-By default, UDP port 5060 and 5061 • RTP ports-16384 to 16482 If security is not a concern in your environment, you can consider disabling SPI, if this function exists on your firewall. Network Address Translation This section describes issues that arise when using the LVS system on a network behind a network address translation (NAT) device. It includes the following topics: • NAT Overview, page 1-13 • NAT Types, page 1-14 • Simple Traversal of UDP Through NAT, page 1-14 • SIP-NAT Interoperation, page 1-15 NAT Overview Network Address Translation (NAT) allows multiple devices to share the same public, routable, IP address for establishing connections over the Internet. NAT is typically performed by a router that forwards packets between the Internet and the internal, private network. The association between a private address and port and a public address and port is called a NAT mapping. This mapping is maintained for a short period of time, that varies from a few seconds to several minutes. The expiration time is extended whenever the mapping is used to send a packet from the source device. The ITSP may support NAT mapping using a Session Border Controller (see Figure 1-3). Figure 1-3 NAT Support with Session Border Controller Provided by ITSP 192.168.1.101 192.168.1.102 Private IP address 192.168.1.1 External IP address assigned by ISP NAT Device ISP DHCP server Internet SPA9000 SIP Proxy 192.168.1.100 ITSP Session Border Controller Document Version 3.0 Linksys 900 Series IP Phone Administrator Guide 1-11

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164

1-11
Linksys 900 Series IP Phone Administrator Guide
Document Version 3.0
Chapter 1
Introducing Linksys 900 Series IP Phones
Technology Background
SIP ports—By default, UDP port 5060 and 5061
RTP ports—16384 to 16482
If security is not a concern in your environment, you can consider disabling SPI, if this function
exists on your firewall.
Network Address Translation
This section describes issues that arise when using the LVS system on a network behind a
network address translation (NAT) device. It includes the following topics:
NAT Overview, page 1-13
NAT Types, page 1-14
Simple Traversal of UDP Through NAT, page 1-14
SIP-NAT Interoperation, page 1-15
NAT Overview
Network Address Translation (NAT) allows multiple devices to share the same public,
routable, IP address for establishing connections over the Internet. NAT is typically performed
by a router that forwards packets between the Internet and the internal, private network.
The association between a private address and port and a public address and port is called a
NAT
mapping
. This mapping is maintained for a short period of time, that varies from a few
seconds to several minutes. The expiration time is extended whenever the mapping is used to
send a packet from the source device.
The ITSP may support NAT mapping using a Session Border Controller (see
Figure 1-3
).
Figure 1-3
NAT Support with Session Border Controller Provided by ITSP
SIP Proxy
Internet
ITSP
NAT Device
SPA9000
192.168.1.102
ISP
DHCP
server
192.168.1.101
192.168.1.100
Session Border
Controller
Private IP address
192.168.1.1
External IP address
assigned by ISP