Note:
On the customer’s firewall, it’s recommended to ensure SIP port is opened for the SIP accounts on the
GXV3370. It’s not necessary to use the default port 5060/5062/… on the firewall. Instead, the network
administrator can consider mapping a different port on the firewall for GXV3370 SIP port 5060 for
security purpose.
• Use HTTPS for web UI access
GXV3370 Web UI access should be equipped with strong administrator password in additional to using
HTTPS. Also, do not expose the GXV3370 web UI access to public network for normal usage.
• Use HTTPS for firmware downloading and config file downloading
Use HTTPS for firmware downloading and provisioning. Besides that, set up username and password
for the HTTP/HTTPS server to require authentication. It’s also recommended to turn on “Validate
Certification Chain” so the GXV3370 will validate server certificate when downloading the firmware or
config file.