ZyXEL P-2024 User Guide - Page 69

Use NAT, Some NAT routers may include a SIP Application Layer Gateway ALG. An Application

Page 69 highlights

Chapter 6 SIP Some NAT routers may include a SIP Application Layer Gateway (ALG). An Application Layer Gateway (ALG) manages a specific protocol (such as SIP, H.323 or FTP) at the application layer. A SIP ALG allows SIP calls to pass through NAT by examining and translating IP addresses embedded in the data stream. When the P-2024 registers with the SIP register server, the SIP ALG translates the P-2024's private IP address inside the SIP data stream to a public IP address. You do not need to use STUN or an outbound proxy (see Section 6.1.7.4 on page 70) if your P-2024 is behind a SIP ALG. 6.1.7.2 Use NAT If you know the NAT router's public IP address and SIP port number, you can use the Use NAT feature to manually configure the P-2024 to use a them in the SIP messages. This eliminates the need for STUN or a SIP ALG. You must also configure the NAT router to forward traffic with this port number to the P-2024. 6.1.7.3 STUN STUN (Simple Traversal of User Datagram Protocol (UDP) through Network Address Translators) allows the P-2024 to find the presence and types of NAT routers and/or firewalls between it and the public Internet. STUN also allows the P-2024 to find the public IP address that NAT assigned, so the P-2024 can embed it in the SIP data stream. STUN does not work with symmetric NAT routers or firewalls. See RFC 3489 for details on STUN. The following figure shows how STUN works. 1 The P-2024 (A) sends SIP packets to the STUN server (B). 2 The STUN server (B) finds the public IP address and port number that the NAT router used on the P-2024's SIP packets and sends them to the P-2024. 3 The P-2024 uses the public IP address and port number in the SIP packets that it sends to the SIP server (C). Figure 26 STUN P-2024 User's Guide 69

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206

Chapter 6 SIP
P-2024 User’s Guide
69
Some NAT routers may include a SIP Application Layer Gateway (ALG). An Application
Layer Gateway (ALG) manages a specific protocol (such as SIP, H.323 or FTP) at the
application layer.
A SIP ALG allows SIP calls to pass through NAT by examining and translating IP addresses
embedded in the data stream.
When the P-2024 registers with the SIP register server, the SIP ALG translates the P-2024’s
private IP address inside the SIP data stream to a public IP address. You do not need to use
STUN or an outbound proxy (see
Section 6.1.7.4 on page 70
) if your P-2024 is behind a SIP
ALG.
6.1.7.2
Use NAT
If you know the NAT router’s public IP address and SIP port number, you can use the
Use
NAT
feature to manually configure the P-2024 to use a them in the SIP messages. This
eliminates the need for STUN or a SIP ALG.
You must also configure the NAT router to forward traffic with this port number to the P-2024.
6.1.7.3
STUN
STUN (Simple Traversal of User Datagram Protocol (UDP) through Network Address
Translators) allows the P-2024 to find the presence and types of NAT routers and/or firewalls
between it and the public Internet. STUN also allows the P-2024 to find the public IP address
that NAT assigned, so the P-2024 can embed it in the SIP data stream. STUN does not work
with symmetric NAT routers or firewalls. See RFC 3489 for details on STUN.
The following figure shows how STUN works.
1
The P-2024 (A) sends SIP packets to the STUN server (B).
2
The STUN server (B) finds the public IP address and port number that the NAT router
used on the P-2024’s SIP packets and sends them to the P-2024.
3
The P-2024 uses the public IP address and port number in the SIP packets that it sends to
the SIP server (C).
Figure 26
STUN