Hello All!
We are having a weird issue and I am about out of ideas.
About 2 weeks ago we swapped out an old Cisco ASA (Config attached) with Mikrotik 3011. This customer has VOIP phones that connect to a cloud PBX. Shortly after we swapped the router one of their phones (EX 101) stopped working. They contacted the provider and they had them re-provision the phone. It is a Polycom VVX 400. Re-provisioning did not fix it so they rebooted the Mikrotik and the phone started working. When that one started working though, another stopped. This time EXT 102. They went through the same process and re-provisioning did not fix it. They rebooted the router and again it started working but a third phone (EXT 103) stopped. At this point they called us.
I have looked at the phone and I can see where it is actually pulling the config from the provisioning server but it is failing to register. The customer is convinced that it is a router related issue since rebooting the router got phones online and the VOIP company is sure it isn’t something on their side. The tech said he can see where is it pulling the provisioning files.
When I built the configuration for the Mikrotik there were only 4 ports allowed through the firewall, 25, 443, 80, and 3389. All going to their old server (which is still in place). The Sharpen tech said they need TCP/UDP 5060-5081 allowed and UDP 10,000-20,000 allowed so I created those and can see traffic hitting those but it did not resolve the issue. And the fact that some phones will register fine, it doesn’t make sense. I also went into IP>Firewall>Service Ports and disabled SIP as I read this is the SIP helper that is similar to SIP ALG and is recommended to be disabled. Since other phones are actually registering, this didn’t really make sense, but I am reaching at this point.
Any thoughts?