exam questions

Exam 300-820 All Questions

View all questions & answers for the 300-820 exam

Exam 300-820 topic 1 question 42 discussion

Actual exam question from Cisco's 300-820
Question #: 42
Topic #: 1
[All 300-820 Questions]


Refer to the exhibit. Which inbound connection should an administrator configure on the outside firewall?

  • A. Media: UDP 36000 to 36011
  • B. XMPP: TCP 5222
  • C. SIP: TCP 5061
  • D. HTTPS (tunneled over SSH between C and E): TCP 2222
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
Reference:
https://www.cisco.com/c/dam/en/us/td/docs/voice_ip_comm/expressway/config_guide/X12-5/Cisco-Expressway-IP-Port-Usage-for-Firewall-Traversal-
Deployment-Guide-X12-5.pdf

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
undertabler
Highly Voted 2 years, 2 months ago
Both B and C are correct. Probably a multichoice question... The external firewall must allow the following inbound connections to the Expressway-E: SIP: TCP 5061 HTTPS: TCP 8443 XMPP: TCP 5222 Media: UDP 36002 to 59999 Source: Official Cert Guide
upvoted 9 times
Krachowsky
1 year, 1 month ago
That is wrong. The SIP:TCP 5061 is not valid. Only between Expressway-C and On-premises Infrastructure you need to open a SIP TCP Port. And the TCP Port is 5060, not 5061. Port 5061 is used for TLS. Connections Between Off-premises Endpoints and the Expressway-E only needs to be opened for SIP:TLS 5061, not for SIP:TCP 5060. Have a look at the reference tilo1988 mentioned in his comment. So only B is correct.
upvoted 3 times
...
...
JamieF66
Highly Voted 2 years, 6 months ago
Answer B. SIP TLS 5061 and XMPP TCP 5222
upvoted 6 times
...
iamnoone
Most Recent 1 month, 3 weeks ago
Selected Answer: B
This an MRA scenario (screenshot), this should be a multiple answer question. In which case B, C and D are all correct. B) XMPP (IM and Presence) C) SIP signaling D) UDS (phonebook and provisioning) These should be opened ports according to the Cisco documentation, in order to for connections between Off-premises Endpoints and the Expressway-E (Table 2): https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/expressway/config_guide/X15-0/ip-port/exwy_b_cisco-expressway-ip-port-usage-configuration-guide-x15/exwy_m_mobile-and-remote-access.html A. Media UDP 36000-36011 seems too short of a range for RTP flows. In the documentation it states 36000-59999 UDP.
upvoted 1 times
iamnoone
1 month, 2 weeks ago
Pfff my bad, HTTPS is 443 or 8443 in this case. Again B & C look possible answers, but since it's not a multiple answer question, only B anyways. TLS is used for SIP. But on the firewall you would open TCP 5061 anyway. TLS run on top of that using certificates.
upvoted 1 times
...
...
jagifoto
1 year, 2 months ago
B. XMPP: TCP 5222 this is the answerXMPP (IM and Presence) Offpremises endpoint 1024-65535 TCP ExpresswayE Public IP 5222
upvoted 2 times
...
TestingAAgain
1 year, 11 months ago
I agree the answers should be B & C. While tilo1988 points out that the protocol running on port 5061 is actually TLS, the question is what do you have to open on the FIREWALL. The access list requires you to open TCP port 5061, TCP Port 5022, TCP port 8433, and UDP36000 - 59999. TLS is actually a secure layer that runs on TOP of TCP/IP.
upvoted 3 times
aocstr
9 months, 3 weeks ago
Technically TLS runs over TCP and option B is related to TCP, not TLS. I would choose XMPP, is a "closer" answer I'd say.
upvoted 1 times
...
...
kljw5
1 year, 11 months ago
This answer almost got me. SIP is almost right but offnet SIP incoming should be SIP TLS not TCP so that's incorrect. Only valid answer provided is XMPP TCP 5222
upvoted 3 times
...
tilo1988
2 years, 3 months ago
Based on following LINK and page 18(SIP Calls) + 29 (MRA Connections): https://www.cisco.com/c/dam/en/us/td/docs/voice_ip_comm/expressway/config_guide/X12-5/Cisco-Expressway-IP-Port-Usage-for-Firewall-Traversal-Deployment-Guide-X12-5.pdf SIP UDP: 5060 SIP TCP: 5060 SIP TLS: 5061 XMPP TCP: 5222 RTP/RTCP: 36000-59999 There could be ONLY one correct answer B (XMPP: TCP 5222)
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago