> For the complete documentation index, see [llms.txt](https://docs.pascom.net/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.pascom.net/reference/port-overview.md).

# Portübersicht & IP-Adressen | Firewall konfigurieren

Hier finden Sie eine Übersicht der notwendigen Portfreigaben und IP-Adressen für Ihre Firewall.

## Ihre Firewall anpassen

Viele Unternehmen haben **keinen eingeschränkten Internetzugriff** und können den **PASCOM Server** daher **sofort**, ohne jede Anpassung an der Firewall **nutzen**.

Wenn Sie jedoch genau festlegen auf welche Internetdienste Ihr Unternehmensnetzwerk zugreifen darf, schalten Sie bitte folgende Ports in Ihrer Firewall frei, um einen reibungslosen Betrieb der [PASCOM Telefonanlage](https://www.pascom.net/) zu ermöglichen:

[PASCOM Cloud-Telefonie Sicherheit](https://www.pascom.net/sicherheit-made-in-germany/)

![Port Übersicht Cloud](https://1983379169-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FLe82Z891Z9TUVDeTD5WX%2Fuploads%2Fgit-blob-ff42f737aa8a70d2dc76384c31a5fac412035056%2Fport_overview_cloud.png?alt=media)

| Port              | Funktion                                                                            | Gerät               | Quelle       | Ziel                                                                                                             |
| ----------------- | ----------------------------------------------------------------------------------- | ------------------- | ------------ | ---------------------------------------------------------------------------------------------------------------- |
| 123/UDP/TCP       | Zugriff zum Zeitserver (NTP)                                                        | 🖥️ 📱 📞           | Ihr Netzwerk | pool.ntp.org                                                                                                     |
| 5061/TCP          | SIP-Verbindung                                                                      | 🖥️ 📞 📱           | Ihr Netzwerk | pascom.cloud\*                                                                                                   |
| 30.000-35.000/UDP | RTP-Sprache                                                                         | 🖥️ 📞 📱           | Ihr Netzwerk | pascom.cloud\*                                                                                                   |
| 636/TCP           | LDAPS, Telefonbuch                                                                  | 📞                  | Ihr Netzwerk | pascom.cloud\*                                                                                                   |
| 8884/TCP          | Telefonprovisionierung                                                              | 📞                  | Ihr Netzwerk | pascom.cloud\*                                                                                                   |
| 443/TCP           | Updates, Push, Fax, Voicemail, Gesprächsaufzeichnungen, Filetransfer, Web-App, Chat | 🖥️ 📱 🎥           | Ihr Netzwerk | pascom.cloud\*                                                                                                   |
| 19302/UDP+TCP     | WebRTC / Google STUN                                                                | <p>🖥️ 📱<br>🎥</p> | Ihr Netzwerk | <p>pascom.cloud\*,<br>stun.l.google.com,<br>stun1.l.google.com,<br>stun2.l.google.com,<br>stun3.l.google.com</p> |
| 8885/TCP          | VPN Tunnel zur PBX                                                                  | 🗄️                 | Ihr Netzwerk | pascom.cloud\*                                                                                                   |

#### Legende

🗄️ = PASCOM Server\
🖥️ = PASCOM Desktop App\
📱 = PASCOM Mobile App\
📞 = IP-Telefon\
🎥 = PASCOM Web App

\| \* = Die pascom.cloud kann unterschiedliche IP-Adressen als Ziel haben

## IP-Adressen der pascom.cloud ausgehend (Cloud Telefonanlage)

Die IP-Adresse, die ausgehende von der Cloud Telefonanlage benutzt wird ist dynamisch und kann sich jederzeit ändern. Aus diesem Grund ist es nicht ratsam, diese in einer Firewall-Regel zu verwenden.

Bitte benutzen Sie deshalb um z.B. LDAP Server anzubinden den [PASCOM VPN Service](/setup/endpoints/vpn-connector.md).

## IP-Adressen der pascom.cloud eingehend (pascom Apps)

Nutzen Sie statt fixer IPv4 oder IPv6 IP-Adressen den DNS-Eintrag **"ip.pascom.cloud"**. Wenn man ihn auflöst, erhält man alle IPv4 und IPv6 IP-Adressen, welche die pascom.cloud im Moment verwendet.

Zusätzlich benötigen PASCOM Apps, für den Login der Benutzer, Zugriff auf **login.pascom.net**.

### DNS-Eintrag manuell auflösen

Lösen Sie sie den DNS-Eintrag manuell mit Tools wie **"dig"** oder **"nslookup"** auf, um die IP-Adressen zu erhalten:

```
# ipv4 with dig:
dig +short ip.pascom.cloud A

# ipv6 with dig:
dig +short ip.pascom.cloud AAAA

# ipv4 with nslookup
nslookup -q=A ip.pascom.cloud

# ipv6 with nslookup
nslookup -q=AAAA ip.pascom.cloud
```

### DNS-Eintrag direkt in der Firewall setzen

Verwenden Sie den DNS-Eintrag **"ip.pascom.cloud"** direkt in Ihrer Firewall als Ziel oder Quelle. Dies funktioniert nur, wenn Ihre Firewall DNS-Namen anstelle von IP-Adressen verwenden oder auflösen kann und diese regelmäßig aktualisiert.

### QoS Einstellungen

pascom.cloud markiert Sprach- und Signal-Pakete. Viele Router/Switche berücksichtigen diesen standardmäßig oder können entsprechend konfiguriert werden.

| Pakettyp       | TOS    | COS | DSCP decimal |
| -------------- | ------ | --- | ------------ |
| Sprache        | ef/184 | 5   | 46           |
| Signalisierung | cs3/96 | 3   | 24           |

Auch alle PASCOM Clients markieren Pakete entsprechend. Bitte beachten Sie, dass speziell unter Windows hierfür Gruppenrichtlinien gesetzt werden müssen. Siehe [Windows QoS Einstellungen](/operations/clients/windows-installation.md#windows-qos-einstellungen-optional).

{% embed url="<https://www.youtube.com/watch?v=-HeQi1cWQ2s>" %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the following URL with the `ask` and `goal` query parameters:

```
GET https://docs.pascom.net/reference/port-overview.md?ask=<question>&goal=<user_goal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is what the user is ultimately trying to achieve, the reason they need the answer. Sharing it helps GitBook give you a better, more relevant answer. A goal is most helpful when it describes the outcome the user wants rather than restating the question. For example, with `ask=how do I create an API token`, a goal like `build a script that syncs our docs to a CMS` lets GitBook tailor the answer to that use case.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
