I send this email out to the it guy on new setups... hope this helps....
Please have your firewall administrator forward the following ports on one of your static public IP addresses to the same ports of the Mitel phone system private IP X.X.X.X to enable remote Administration & Diagnostics, remote User Web Portal access, as well as Remote Phone connectivity from the Internet.
I have crossed-out ports that are not needed for this particular implementation and thus do not need to be forwarded in the firewall. All others are definitely needed.
Port Forwarding for Remote User Web Portal Access as well as Admin & Diagnostics
22 TCP (SSH) Diagnostics Management Utility
443 TCP (HTTPS) Admin/Diagnostic & End User Web Portal
44000 TCP System Admin & Diagnostics Program Interface
• If there are conflicts in the firewall with these ports, please use alternative ports such as 9922 and 9443 on the outside interface and point them to ports 22 and 443 of the phone system internal IP.
• For security, please lock down ports 22 and 44000 to only allow traffic from our public IP at _____: xxx.xxx.xxx.xxx
o However, please allow traffic from any public IP to 443 so users can login to the User Web Portal from any external IP address (if the customer authorized User Web Portal access for end users outside the office).
Port Forwarding for Remote Phone Functionality
67-68 UDP DHCP Information (optional if set statically)
69 UDP TFTP for phone firmware
3998-3999 TCP SAC protocol (phone apps & button programming on 53xx phones)
5004-5007 UDP RTP for 86XX phones
5566-5567 TCP/UDP Call Control for ITP phones (86xx) outside the firewall.
6004-7039 UDP RTP & RTCP for VoIP outside the firewall.
6800-6802 TCP MiNet Protocol for basic call control of Mitel IP phones.
20001 UDP TFTP for phone firmware
50098-50508 UDP RTP for 52XX/53XX phones
• Please allow traffic from any public IPs for these ports so remote phones can connect from any external IP address.
Please have your firewall administrator contact me with any questions.
Thank you,