Regarding ports for PAP2T by default, 5061 and 5062 are SIP ports. RTP ports are from 16384 to 16482. IP addresses will be all over the map. For sure, you will be talking to the SIP server that you are connected to. If your audio stream is proxied, then the audio stream will be from the SIP server. If it is not proxied, then any media gateway around the country could send audio streams to RTP ports (16384 16482). And then there are syslog messages that go over port 514.
But you have to have complete understanding of how your NAT'ing works on your cisco router. Because, if the same ports (SIP and RTP) are used by multiple VOIP devices in your network, then you might end up with problems. Also, if the router thinks that a port is being used then it will map it to a different global port. I have Cisco router and used to have firewall turned on. But it became hard to handle over time, to maintain the ACLs.
Bookmarks