Genesys Cloud CX

Discussion Thread View
Expand all | Collapse all

Genesys BYOC - IP Address Range

  • 1.  Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-19-2021 00:58

    Hi

    I am planning to use BYOC Cloud in Japan (Tokyo region)
    As per the documentation for BYOC the entire range of AWS segment 52.129.96.0/20 needs to be opened.

    The question is, is there any specific range of Genesys cloud that is specific to Tokyo region or it is required to open the entire range 52.129.96.0/20 ?

    Please let me know.


    #ArchitectureandDesign

    ------------------------------
    Rajeev Srikant
    ------------------------------


  • 2.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-20-2021 06:47
    Any inputs or help ?

    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 3.  RE: Genesys BYOC - IP Address Range

    GENESYS
    Posted 10-20-2021 10:31
    Rajeev,

    Have you reviewed this article on our resource center?  It has specific addresses for Tokyo: https://help.mypurecloud.com/articles/byoc-cloud-public-sip-ip-addresses/

    More generally here is an article about ports that may need to be opened for BYOC and other features as well: https://help.mypurecloud.com/articles/genesys-cloud-ports-services/

    ------------------------------
    Jim Crespino
    Senior Director, Developer Evangelism
    Genesys
    https://developer.genesys.com
    ------------------------------



  • 4.  RE: Genesys BYOC - IP Address Range

    Posted 10-20-2021 10:31
    You have to consider 2 things.  First there are several IP's in each region for the SIP servers.  These can be found by running the API to get a list of them.  Also, they are listed here:  https://help.mypurecloud.com/articles/byoc-cloud-public-sip-ip-addresses/.  These should never be addressed directly but allowed in the firewall.

    Then you have the CIDR range where all the STUN and media request will map to.  That is the large range (but smaller than all of AWS as it used to be) and that is found here:  https://help.mypurecloud.com/articles/cidr-ip-address-range-for-cloud-media-services/

    ------------------------------
    Robert Wakefield-Carl
    Avtex Solutions, LLC
    Contact Center Innovation Architect
    robertwc@avtex.com
    https://www.Avtex.com
    https://RobertWC.Blogspot.com
    ------------------------------



  • 5.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-20-2021 20:41

    @Robert Wakefield-Carl

    Thanks. I have gone through the details which you have shared.

    BYOC Cloud public SIP IP addresses - Genesys Cloud Resource Center (mypurecloud.com)

    - Regarding the above link, the IP Address which you have mentioned are of SIP servers & there are only 5 IP Address for Tokyo region.
      My understanding is that these ports needs to be opened only between Genesys Cloud <-> Cloud SIP provider ?

      Is my understanding right ? it is not required to be opened in the corporate firewall.

    https://help.mypurecloud.com/articles/cidr-ip-address-range-for-cloud-media-services/

    - Regarding the above link, the link says it is required to open the range 52.129.96.0/20

    So still my question is in my corporate firewall should I open the 52.129.96.0/20 range or is it possible to narrow down only to the tokyo Region range.



    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 6.  RE: Genesys BYOC - IP Address Range

    Posted 10-20-2021 20:58
    For the SIP servers, you need TCP or UDP 5060 or 5061 for TLS.

    For the CIDR range, the same ports plus the UDP media port range. You have to use the full CIDR range.

    ------------------------------
    Robert Wakefield-Carl
    Avtex Solutions, LLC
    Contact Center Innovation Architect
    robertwc@avtex.com
    https://www.Avtex.com
    https://RobertWC.Blogspot.com
    ------------------------------



  • 7.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-20-2021 21:08

    @Robert Wakefield-Carl

    For the CIDR range, the same ports plus the UDP media port range. You have to use the full CIDR range.

    So you mean , I need to you the range 52.129.96.0/20 in my corporate firewall. ​ There is no way this range can be reduced.



    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 8.  RE: Genesys BYOC - IP Address Range

    Posted 10-20-2021 21:15
    Yes.  That is actually a fairly small range.  Yes, you need that.

    ------------------------------
    Robert Wakefield-Carl
    Avtex Solutions, LLC
    Contact Center Innovation Architect
    robertwc@avtex.com
    https://www.Avtex.com
    https://RobertWC.Blogspot.com
    ------------------------------



  • 9.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-24-2021 21:56

    @Robert Wakefield-Carl

    ​Thanks.

    Apart from the range 52.129.96.0/20 , my understanding is that it is required to open the below additional IP Address as below.

    Since for SIP phone provisioning, the below URL needs to be opened,
    https://phone-home.ap-northeast-1.mypurecloud.jp , its corresponding IP Address also needs to be opened in the request.

    https://phone-home.ap-northeast-1.mypurecloud.jp URL resolves to 52.193.154.197, 52.193.245.202

    Is my understanding right  that I need to open the access 52.193.154.197, 52.193.245.202 from my network where my SIP phones are connect ?



    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 10.  RE: Genesys BYOC - IP Address Range

    Posted 10-24-2021 21:59
    These ranges and ports are only for TRUNKS, not PHONES.  All phones in Genesys Cloud communicate over TLS to Genesys Cloud directly through port 443 and 3478 for STUN.  You should be looking here if you are just looking to open ports for phones: Ports and services for WebRTC - Genesys Cloud Resource Center (mypurecloud.com)

    ------------------------------
    Robert Wakefield-Carl
    Avtex Solutions, LLC
    Contact Center Innovation Architect
    robertwc@avtex.com
    https://www.Avtex.com
    https://RobertWC.Blogspot.com
    ------------------------------



  • 11.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-24-2021 22:13

    @Robert Wakefield-Carl

    Thanks,

    I was referring to the below URL, where they have mentioned how to configure polycom phone for manual provisioning.

    Manually configure the provisioning information for the Polycom VVX phone - Genesys Cloud Resource Center (mypurecloud.com)

    In the 3rd step, "Set the provisioning server address to the provisioning URL" , it is required to specify the provisioning end point address.

    In my case it will be "https://phone-home.ap-northeast-1.mypurecloud.jp"

    So if set the above in my polycom phone which placed in my LAN network, first the DNS will try to resolve the above URL.

    Once it is resolved (52.193.154.197, 52.193.245.202) the phone needs to reach the IPs for provisioning.

    So it will be required to open the above 2 IPs in the firewall required for the provisioning. This is my understanding.



    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 12.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 10-25-2021 21:46
    All - Any inputs r help

    ------------------------------
    Rajeev Srikant
    ------------------------------



  • 13.  RE: Genesys BYOC - IP Address Range

    Top 25 Contributor
    Posted 28 days ago
    Dear All - Any inputs or help

    ------------------------------
    Rajeev Srikant
    ------------------------------