Firewall ports required to use voice and data on OCDial (Call Centre Related)

OCDial requires several ports to be opened outbound to our server(s).

Depending on which server you are on, the firewall rule assumed here is

1) Ensure ALG SIP, SIP Inspection, etc on firewall, router, etc is Disabled

Please ensure SIP ALG / SIP Inspection is disabled on your firewall. The setting name varies by vendor — Check Point calls it SIP service inspection, Fortinet the SIP session-helper — so for corporate environments please check with your security/network team. For home setups, refer to our KB article: ALG SIP on firewall, router, etc.

2) Ports Required on firewall, routes, etc.

Source = You

Destination = OC Servers (Check your welcome email) except for Google STUN server
Note: If you don't know your Destination/OC Servers please send an email to [email protected] requesting this inof

Port = Required to open

Port Protocol Purpose Direction
80 UDP/TPC HTTP Outbound to your Orencloud server(s)
443 UDP/TCP HTTPS Outbound to your Orencloud server(s)
5060 UDP SIP Outbound to your Orencloud server(s)
5061 TCP TLS Outbound to your Orencloud server(s)
5080 UDP SIP Outbound to your Orencloud server(s)
8088 TCP WebRTC Outbound to your Orencloud server(s)
8089 TCP WebRTC Outbound to your Orencloud server(s)
4445 TCP Daemon Outbound to your Orencloud server(s)
3478 & 5349 UDP/TCP Audio Outbound to
stun1.oren.cloud or 157.230.245.31
stun2.oren.cloud or 210.1.230.94
10000-20000 UDP RTP/Audio Inbound & Outbound from/to your Orencloud server(s)



Article ID: 266
Last updated: 26 Aug, 2026
Revision: 4
ORENcloud IPPBX Infrastructure -> Firewall ports required to use voice and data on OCDial (Call Centre Related)
https://kb.astiostech.com//firewall-ports-required-to-use-voice-and-data-on-ocdial-(call-centre-related)_266.html