<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 3CX Phone System behind 1450 Appliance in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108283#M4709</link>
    <description>&lt;P&gt;eemmm what?&lt;/P&gt;</description>
    <pubDate>Wed, 20 Jan 2021 19:21:03 GMT</pubDate>
    <dc:creator>obaghishvili</dc:creator>
    <dc:date>2021-01-20T19:21:03Z</dc:date>
    <item>
      <title>3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108124#M4679</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Has anybody ever made 3CXPhone System work behind 1450 Appliance.&lt;/P&gt;&lt;P&gt;I tried probably billion of options found here or over the internet but 3CX firewall checker fails every time.&lt;/P&gt;&lt;P&gt;ports&amp;nbsp; used by 3CX&lt;/P&gt;&lt;P&gt;&lt;EM&gt;SIP:&lt;/EM&gt; &lt;STRONG&gt;TCP&lt;/STRONG&gt; 5060-5061, &lt;STRONG&gt;UDP&lt;/STRONG&gt; 5060&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Tunnel:&lt;/EM&gt; &lt;STRONG&gt;TCP&lt;/STRONG&gt; 5090-5091, &lt;STRONG&gt;UDP&lt;/STRONG&gt; 5090&lt;/P&gt;&lt;P&gt;&lt;EM&gt;RPT/WebRTC:&lt;/EM&gt; &lt;STRONG&gt;UDP&lt;/STRONG&gt; 9000-10999&lt;/P&gt;&lt;P&gt;&lt;EM&gt;WebUI:&lt;/EM&gt; &lt;STRONG&gt;TCP&lt;/STRONG&gt; 5000-5001&lt;/P&gt;&lt;P&gt;Server VoIP3CX services are added and set to manual access policy.&lt;/P&gt;&lt;P&gt;Outbound Policy: Traffic from &lt;STRONG&gt;&lt;EM&gt;Voip3CX (server)&lt;/EM&gt; &lt;/STRONG&gt;o the &lt;EM&gt;&lt;STRONG&gt;internet&lt;/STRONG&gt;&lt;/EM&gt; of any application is &lt;EM&gt;&lt;STRONG&gt;accepted &lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Inbound Policy: Traffic from &lt;EM&gt;&lt;STRONG&gt;any course&lt;/STRONG&gt;&lt;/EM&gt; to &lt;EM&gt;&lt;STRONG&gt;This Gateway&lt;/STRONG&gt;&lt;/EM&gt; on &lt;EM&gt;&lt;STRONG&gt;Voip3CX (services)&lt;/STRONG&gt;&lt;/EM&gt; is &lt;EM&gt;&lt;STRONG&gt;accepted&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Manual NAT: Translate traffic from &lt;EM&gt;&lt;STRONG&gt;any source&lt;/STRONG&gt;&lt;/EM&gt; to this gateway on &lt;EM&gt;&lt;STRONG&gt;Voip3CX (services)&lt;/STRONG&gt;&lt;/EM&gt; as if the traffic is from &lt;EM&gt;&lt;STRONG&gt;original source&lt;/STRONG&gt;&lt;/EM&gt; to &lt;EM&gt;&lt;STRONG&gt;VoIP3CX (server)&lt;/STRONG&gt;&lt;/EM&gt; on &lt;EM&gt;&lt;STRONG&gt;original service &lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Everything I could get configured is 5000-5001 (to reach the web interface from outside)&lt;/P&gt;&lt;P&gt;Other things do not work.&lt;/P&gt;&lt;P&gt;Phone System firewall checker says (briefly) :&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;UL&gt;&lt;LI&gt;bla bla&lt;/LI&gt;&lt;LI&gt;detecting SIP ALG... &lt;FONT color="green"&gt;&lt;STRONG&gt;not detecteda&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;LI&gt;testing port 5060... &lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;Mapping does not match 5060. Mapping is 20112.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;UL&gt;&lt;LI&gt;testing port 5090... &lt;FONT color="red"&gt;&lt;STRONG&gt;Mapping does not match 5090. Mapping is 20116.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;UL&gt;&lt;LI&gt;testing ports [9000..9398]... &lt;FONT color="red"&gt;&lt;STRONG&gt;failed&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;UL&gt;&lt;LI&gt;testing port 9000... &lt;FONT color="red"&gt;&lt;STRONG&gt;Mapping does not match 9000. Mapping is 20119.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;LI&gt;testing port 9002... &lt;FONT color="red"&gt;&lt;STRONG&gt;Mapping does not match 9002. Mapping is 20120.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;LI&gt;testing port 9004... &lt;FONT color="red"&gt;&lt;STRONG&gt;Mapping does not match 9004. Mapping is 20121.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;LI&gt;testing port 9006... &lt;FONT color="red"&gt;&lt;STRONG&gt;Mapping does not match 9006. Mapping is 20122.&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;and so on down to port 10999&lt;/P&gt;&lt;P&gt;I'm advanced with 3CX but pretty new to checkpoint. So any suggestion would be appreciated&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jan 2021 20:09:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108124#M4679</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-18T20:09:05Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108145#M4681</link>
      <description>&lt;P&gt;what is in the logs when mapping fails?&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 11:24:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108145#M4681</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-01-19T11:24:28Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108185#M4687</link>
      <description>&lt;P&gt;Which log? check point or 3CX&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 16:14:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108185#M4687</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-19T16:14:06Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108213#M4696</link>
      <description>&lt;P&gt;I would assume: both. 8)&lt;/img&gt; Did you look at &lt;A id="link_37" class="lia-link-navigation subscription-thread lia-message-unread" href="https://community.checkpoint.com/t5/Security-Gateways/VoIP-Issue-and-SMB-Appliance-600-1000-1200-1400/td-p/40613" target="_blank"&gt;VoIP Issue and SMB Appliance (600/1000/1200/1400)&lt;/A&gt; already ? BAsic is &lt;SPAN&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113573&amp;amp;partition=Basic&amp;amp;product=Small" target="_blank" rel="noopener noreferrer"&gt;sk113573: How to configure VoIP on Locally Managed 600 / 700 / 910 / 1100 / 1200R / 1400 appliances&lt;/A&gt;, this is the most important source for a working configuration of VoIP on SMB Appliances.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 19:07:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108213#M4696</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-01-19T19:07:52Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108216#M4698</link>
      <description>&lt;P&gt;Can you send us both logs? Also, maybe on CP firewall while testing, do command fw ctl zdebug + drop | grep x.x.x.x (just make sure you test correct IP). It would be helpful to see if anything is getting dropped on kernel level.&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 19:16:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108216#M4698</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-01-19T19:16:23Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108218#M4699</link>
      <description>&lt;P&gt;From your post, it looks like you have defined the Manual NAT for the Inbound portion only.&lt;/P&gt;
&lt;P&gt;In this case, for the outbound traffic, 3CX will likely use dynamic port assignments and thus showing you the mismatched mapping.&lt;/P&gt;
&lt;P&gt;Check if you can define Manual outbound NAT for original 3CX services.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 19:26:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108218#M4699</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2021-01-19T19:26:56Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108267#M4705</link>
      <description>&lt;P&gt;Thanks for reply&lt;/P&gt;&lt;P&gt;added manual rule as&lt;/P&gt;&lt;P&gt;translate traffic from&amp;nbsp;&lt;EM&gt;&lt;STRONG&gt;VoIP3CX (server)&lt;/STRONG&gt;&lt;/EM&gt; to &lt;EM&gt;&lt;STRONG&gt;External IP&lt;/STRONG&gt;&lt;/EM&gt; on &lt;EM&gt;&lt;STRONG&gt;Voip3CX (services)&lt;/STRONG&gt;&lt;/EM&gt; as if the traffic is from &lt;EM&gt;&lt;STRONG&gt;original source&lt;/STRONG&gt;&lt;/EM&gt; to &lt;EM&gt;&lt;STRONG&gt;VoIP3CX (server)&lt;/STRONG&gt;&lt;/EM&gt; on &lt;EM&gt;&lt;STRONG&gt;original service &lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;nothing changed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 08:49:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108267#M4705</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-20T08:49:54Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108268#M4706</link>
      <description>&lt;P&gt;TAC should be able to resolve that in short RAS very quickly!&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 08:51:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108268#M4706</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-01-20T08:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108279#M4707</link>
      <description>&lt;P&gt;I already checked guides and suggestions. Opened ticket and talked to supports. They also dont know.&lt;/P&gt;&lt;P&gt;There is nothing blocked or dropped. Logs show that at least 5060 is accepted by CP.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The problem is that original ports ie 5060-5061,5090-5091,9000-10999 are replaced by random ports.&lt;/P&gt;&lt;P&gt;I there any way to FORCE cp use original ports, without enabling deep inspection?&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 10:57:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108279#M4707</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-20T10:57:52Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108280#M4708</link>
      <description>&lt;P&gt;With manual static NAT, that should not happen. Are you sure you use SIP and not just ANY service in the rulebase?&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 10:57:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108280#M4708</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-01-20T10:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108283#M4709</link>
      <description>&lt;P&gt;eemmm what?&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 19:21:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108283#M4709</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-20T19:21:03Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108292#M4710</link>
      <description>&lt;P&gt;He means, technical assistance should be able to help you with a short remote session. In other words, please open a support case for this.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 12:30:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108292#M4710</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-01-20T12:30:34Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108311#M4713</link>
      <description>&lt;P&gt;ah ) Already did.&amp;nbsp; Spent over 4 hours in zoom with technician. No result. The ticket is still open.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 15:10:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108311#M4713</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-20T15:10:55Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108327#M4715</link>
      <description>&lt;P&gt;If you have all 3CX services used in a single NAT rule as a composite group, please try following:&lt;/P&gt;
&lt;P&gt;Create individual NAT rules each containing a single defined service and test again.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 17:49:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108327#M4715</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2021-01-20T17:49:18Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108341#M4716</link>
      <description>&lt;P&gt;Don't know if this could be related, but I had trouble getting a VoIP phone provided by a third party working on our network, connecting out through our firewall.&lt;/P&gt;&lt;P&gt;They asked for TCP/5061, which I added the service "sip_tls_authentication".&lt;/P&gt;&lt;P&gt;It never worked.&lt;/P&gt;&lt;P&gt;I found there was also a service "sip_tls_not_inspected", once I added that it worked, both are port 5061.&lt;/P&gt;&lt;P&gt;Not sure what the differences are other than one has a protocol associated with it the other didn't.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 21:12:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108341#M4716</guid>
      <dc:creator>Jason_Elmore1</dc:creator>
      <dc:date>2021-01-20T21:12:46Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108349#M4718</link>
      <description>&lt;P&gt;There is your key word "NOT INSPECTED"...that would totally explained why it worked. Technically, any service where protocol is set to "none" would not be inspected by anything or for anything. So, thats the main difference...NOT inspected. Think hard if thats what you want to use...&lt;/P&gt;</description>
      <pubDate>Wed, 20 Jan 2021 23:01:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108349#M4718</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-01-20T23:01:13Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108368#M4721</link>
      <description>&lt;P&gt;Dude!!!&lt;/P&gt;&lt;P&gt;It was NOT set to ANY, but your words pushed me in right direction.&lt;/P&gt;&lt;P&gt;Here's config that did a magic. WAN IP in static NAT. Hide outgoing traffic and Force translate. Access from all and properly configured Policy.&lt;/P&gt;&lt;P&gt;All tests passed green.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 464px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/10281iA9CD1816A671F6C2/image-dimensions/464x343?v=v2" width="464" height="343" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/10282iCE66398B3FFE98FA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jan 2021 07:10:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108368#M4721</guid>
      <dc:creator>obaghishvili</dc:creator>
      <dc:date>2021-01-21T07:10:07Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108375#M4722</link>
      <description>&lt;P&gt;I am glad it works for you now.&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jan 2021 07:53:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/108375#M4722</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2021-01-21T07:53:31Z</dc:date>
    </item>
    <item>
      <title>Re: 3CX Phone System behind 1450 Appliance</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/151155#M6970</link>
      <description>&lt;P&gt;I have a 1550 instead of a 1450 and I am not able to find the dialogue box he showed below. Where do I prevent the firewall from changing the ports on the way back?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2022 16:13:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/3CX-Phone-System-behind-1450-Appliance/m-p/151155#M6970</guid>
      <dc:creator>GTurner04</dc:creator>
      <dc:date>2022-06-17T16:13:39Z</dc:date>
    </item>
  </channel>
</rss>

