



You should be able to see if the phone is trying to register with its RFC 1918 address and NOT the NAT’d IP of the ASA/Fortigate. The best way to know if this is causing a problem is to perform a packet capture. An application-level gateway is a security component that augments a firewall or NAT employed in a computer network. outside a networks firewall system is used to prevent public users from. Otherwise, firewall policies need to statically open a wide range of ports.ģ) Inspection and logging of VoIP traffic (using ALG/Proxy instead of session-helper). This page describes how to configure application-level gateways and proxy. SIP ALG is a feature where the firewall will inspect the SIP packets as they egresses the firewallġ) Modification of IP addresses in the application payload when NAT is used.Ģ) Dynamic opening of data ports (“pinholes”) as required to allow audio traffic. SIP Application Layer Gateway – Cisco and Fortinet
