Thank you for your response @Vaun McCarthy. Can you please let me know if its mandatory to open the 3478 port from CLient to Genesys cloud? Can the port opened between Edge and client and edge and Genesys cloud will work?
It has to UDP? or any other protocol works?
Thank you.
------------------------------
Anush C. Shetty
Nucleus Software Japan KK
------------------------------
Original Message:
Sent: 12-29-2023 01:41
From: Vaun McCarthy
Subject: Firewall/Ports required for Webrtc in BYOC premise
Port 3478 is for the Edges and Clients to process STUN information to build up and onto the list of candidates for WebRTC. Both Edge and client will also try the Google STUN services on port 19302. That's in addition to the host (local) addresses which are already known.
The negotiation will use the information returned from whichever responds first. This will include exchanging the host (LAN) IPs of both Edge and Client and they'll try to use those for SRTP which is why you see that large port range between client and Edges within your firewall.
------------------------------
Vaun McCarthy
Original Message:
Sent: 12-29-2023 00:51
From: Anush C. Shetty
Subject: Firewall/Ports required for Webrtc in BYOC premise
Hi All, In this below diagram from ports requirement for BYOC premise we see that we need to allow the UDP port 3478 for webrtc signalling from user network to Genesys cloud/AWS stun. Can you please let us know if the understanding is correct. Both client and Edge are withing firewall.

Please let me know if the same flow can be allowed via edge ><Browser><Genesys cloud. Will it work.?
#Telephony
------------------------------
Anush C. Shetty
Nucleus Software Japan KK
------------------------------