Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
phowardmhm
New Contributor

Fortigate 60D (FortiOS 5.0.12)

Hello everyone,

        New to FortiGate firewalls, quick question.  I'm bringing in a new fiber connection to our Corp office and I want all our VOIP/SIP traffic to use this new connection but all other internet traffic to go out our existing connection.  What would be the best way to achieve this?  Thanks,

 

Pat

6 REPLIES 6
jintrah_FTNT
Staff
Staff

Hi,

 

You may use policy routes to route UDP traffic with destination port 5060 through the new gateway. Please see http://kb.fortinet.com/kb/microsites/search.do?cmd=displayKC&docType=kc&externalId=100116

 

jintrah_FTNT

You may use protocol number 17 for UDP. BTW, the policy route config in 5.0 is more or less the same

gschmitt

FYI 5060 only covers "clear text" sip

Encrypted sip needs 5061 (UDP, but TCP is reserved aswell) aswell

 

and this is only if (s)he actually uses SIP (which (s)he appearently does)

If (s)he uses Cisco phones it's sccp on tcp2000 and SCCPS on 2443

phowardmhm
New Contributor

I looked at Policy Based but there isn't a Protocol Number for SIP.  The documentation you sent me was for v3 and v4, I am running v5.0.12.  Thanks, Pat

phowardmhm
New Contributor

OK, sounds good!  Thanks!

 

Pat

Admin_FTNT
Staff
Staff

The KB article listed earlier does indeed apply to 5.0 & 5.2.  It has been updated to reflect this, and the screen captures now show the current GUI.

 

Regards,

Admin

Labels
Top Kudoed Authors