Jabber Guest:Single NICDeployment Ports
Purpose Src. IP Src. ports Protocol Dest. IP Dst. Ports
Jabber Guest Client Media
(TURN)
Any 1024-65535 UDP Expressway-
E Public IP
3478
(S/Msystems)
3478-3483 (L
systems)*
Jabber Guest Client Signaling
(HTTP always redirected to
HTTPS)
Any 1024-65535 TCP Expressway-
E Public IP
80
Jabber Guest Client Secure
Signaling (HTTPS)
Any 1024-65535 TLS Expressway-
E Public IP
443
To avoid port conflicts, traffic to Expressway-E public:80 must
NAT&PATto private:9980. HTTPis always redirected to HTTPS.
TLS Expressway-
EPrivate IP
9980
‡
To avoid port conflicts, traffic to Expressway-Epublic:443 must
NAT&PATto private:9443
TLS Expressway-
EPrivate IP
9443
‡
SSHTunnels from
Expressway-C to Expressway-
E
Expressway-C 35000-35999 TCP Expressway-
E Public IP
2222
SIPSignaling Expressway-C 25000-25999 TLS Expressway-
E Public IP
7001
TURNmedia relays Expressway-C 36000-59999 UDP Expressway-
E Public IP
24000-29999
TURNmedia relays
†
Expressway-E
Public IP
24000-29999 UDP Expressway-
C
36000-59999
SIPTCP signaling Expressway-C 30000-35999 TCP Jabber
Guest Server
5060
SIPTLSsignaling Expressway-C 30000-35999 TLS Jabber
Guest Server
5061
SIPTCP signaling Jabber Guest
Server
Eph TCP Expressway-
C
5060
SIPTLSsignaling Jabber Guest
Server
Eph TLS Expressway-
C
5061
Table 17 Port Reference for Jabber Guest Single NICDeployment
*On Large systems you can configure a range of TURN request listening ports. The default range is 3478 – 3483.
‡ Port translation in external firewall
† Inbound media ports only required for unidirectional media initiated from Jabber Guest client, eg. BFCP. Otherwise
it is enough to allow the outbound media range from Expressway-C to Expressway-E (previous row).
33
Cisco Expressway IP Port Usage Configuration Guide