如果使用NAT,请注意打开一下端口,比如RTP的端口,如果不打开,将会导致freeswitch的playback异常,听不到提示音。都是亲身经历的。。。修改rtprtp
端口范围
conf/autoload_configs/switch.conf.xml
<param name="rtp-start-port" value="16384"/>
<param name="rtp-end-port" value="19999"/>
1719 UDP H.323 Gatekeeper RAS port
1720 TCP H.323 Call Signaling
3478 UDP STUN service Used for NAT traversal
3479 UDP STUN service Used for NAT traversal
5002 TCP MLP protocol server
5003 UDP Neighborhood service
5060 UDP & TCP SIP UAS Used for SIP signaling (Standard SIP Port, for default Internal Profile)
5070 UDP & TCP SIP UAS Used for SIP signaling (For default "NAT" Profile)
5080 UDP & TCP SIP UAS Used for SIP signaling (For default "External" Profile)
8021 TCP ESL Used for mod_event_socket *
16384-32768 UDP RTP/ RTCP multimedia streaming Used for audio/video data in SIP and other protocols
5066 TCP Websocket Used for WebRTC
7443 TCP Websocket Used for WebRTC
centos:
firewall-cmd –zone=public –add-port=1719/udp –permanent
firewall-cmd –zone=public –add-port=1720/tcp –permanent
firewall-cmd –zone=public –add-port=3478-3479/udp –permanent
firewall-cmd –zone=public –add-port=5002/tcp –permanent
firewall-cmd –zone=public –add-port=5003/udp –permanent
firewall-cmd –zone=public –add-port=5060/udp –permanent
firewall-cmd –zone=public –add-port=5060/tcp –permanent
firewall-cmd –zone=public –add-port=5070/udp –permanent
firewall-cmd –zone=public –add-port=5080/udp –permanent
firewall-cmd –zone=public –add-port=5006/tcp –permanent
firewall-cmd –zone=public –add-port=5007/tcp –permanent
firewall-cmd –zone=public –add-port=5008/tcp –permanent
firewall-cmd –zone=public –add-port=8021/tcp –permanent
firewall-cmd –zone=public –add-port=16384-32768/udp –permanent
firewall-cmd –zone=public –add-port=5066/tcp –permanent
firewall-cmd –zone=public –add-port=7443/tcp –permanent
firewall-cmd –reload
firewall-cmd –list-ports
ubutu:
from入站 to出站
ufw allow|deny from|to 1720/tcp
ufw allow|deny from|to IP
ufw allow|deny from port
ufw allow|deny to 172.26.106.87 #允许|禁止本地端口访问此 IP
ufw allow|deny to ip_address port 22,20,10:120 proto tcp|udp|ssh #允许|禁止 本地访问 指定IP 的某些端口
ufw allow|deny in on virbr0 to ip_address port num proto udp|tcp #允许|禁止 本地访问 指定网卡 virbr0 指定IP 的 特定端口
原文链接:https://blog.csdn.net/geniusChinaHN/article/details/141730095
原文链接:https://blog.csdn.net/irizhao/article/details/89309961
转载请注明:SuperIT » freeswitch端口防火墙开启