Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Srdjan_B
Collaborator
Collaborator

H.323 issue and forced deep packet inspection

Hello,

we have a customer using H.323 over Remote Access tunnel (using SoftPhone app). The setup was working fine before migration of gateways from R80.20/OpenServer to R80.40/CP6400 appliances. Original setup was using built-in H323 service and it was working fine with R80.20.

Troubleshooting is showing that gateway is always doing deep packet inspection and replacing IP address of VoIP board with its own IP (cluster IP). As a troubleshooting step, we created generic tcp1720 and udp1719 services, without specifying protocol and used them in the rule. Troubleshooting rule is being matched, but logs are showing that H323 service is being used and not our generic tcp1720 service. Packet capture also shows that IP address is still being replaced even after we've changed the rule to use generic services (without protocol definition).

How can we force GW not to do any H.323 processing and not to replace anything inside the packet? 

GWs are running R80.40 with JHF T118, it is HA cluster, just a regular SG (not VSX). TAC SR has been opened for three weeks, but not much progress so far. Any help is appreciated.

Thank you.

0 Kudos
15 Replies
This widget could not be displayed.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events