CloudLink Gateway

The following table lists the network connections from CloudLink Gateway to the external destination unless specified.The rules used for establishing the connections assume a firewall that permits return traffic on these established connections. This is referred to as pin hole punching. If pin hole punching is not available or has been disabled on the firewall, then you must exercise your own due diligence in configuring and testing the connections with the ports listed.

Note:
  • ICMP must be enabled on the firewall.
  • The CloudLink Gateway onboarding portal network configuration is different when embedded with an MBG.

    Examples of the IP address ranges which are expected can be found here.

Purpose Direction Protocol Domain Name IP Address Range Ports

NTP Service

GW to Internet

UDP

*.mitel.pool. ntp.org

The public service assigns a random set of servers on an hourly basis.  It is not possible to set an effective IP address range.

123

DNS Service

GW to Internet

UDP

N/A

DNS configured by the customer

53

Managed Services provided by the CloudLink Platform including LittleMole, APIs, and portals

GW to Internet

TCP

*.mitel.io

mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

443

STUN Service

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

3478 and 3479

SIP Connectivity

GW to Internet

TCP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

5061

RTP/SRTP Connectivity for CloudLink Gateway Appliance and SMBC

Note: See performance profile considerations in the following section for virtual and embedded variants.

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

16384 to 49152

and

65336 to 65534

Required for CloudLink Single Sign-On deployment using Azure AD federation

User Browser to Internet

TCP

*.microsoftonline .com

*.microsoft.com

The IP address range published by Microsoft is shown here:  Office 365 URLs and IP address ranges - Microsoft 365 Enterprise

See "ID 56" in the table of the given link.

443

Gateway onboarding portal

Note: This row is not applicable to an MBG scenario. See the MBG Considerations Section below for the necessary configuration.

User Browser to Gateway

TCP

Cloudlink.local

Local IP address of the gateway as configured on site.

80

Testing Network Connections

To help identify a network connection issues a test tool is included in the CloudLink Gateway

After the completion of onboarding process, if the CloudLink Gateway fails to connect to the required CloudLink services the installer is notified through the following channels:
  • An email is sent to the Support Contact(s) listed in the account.

  • An entry is created in the Support Logs page of the Mitel Administration portal.

  • The local web page of the CloudLink Gateway.

The gateway type determines how those tests are run and where the results are displayed.

The following table can be used to identify how to run the test and see the results.

Gateway Type Initiate Test Output Displayed

MSL

Click the Run Diagnostics button located in the CloudLink Gateway page in MSL.

Issues displayed in the diagnostics section located in the CloudLink Gateway page in MSL.

Appliance and Virtual

Diagnostic test runs during the startup of the CloudLink Gateway.

Issues displayed in the system monitor (Physical CloudLink Gateway Appliance requires a Monitor, Virtual CloudLink Gateway displays via the hosts Virtual Console).

SMBC

Diagnostic test runs during the startup of the CloudLink Gateway.

Issues displayed as a system alarm.

Note: The failed test cases are written in the CloudLink Gateway logs, see file clgw.log file. This can be located in CloudLink Gateway log file <File name.tar.gz> \log\hostlog\log\clgw\clgw.log.

MBG Considerations

Mitel Administration is accessed differently when embedded within an MBG server.

The following table provides the required details:

Purpose Direction Protocol Domain Name IP Address Range Ports

Gateway onboarding portal

User Browser to Gateway

TCP

Domain Name of MBG Server

Local IP address of the gateway as configured on site

80

Gateway onboarding portal from MBG

User Browser to Gateway

TCP

GW IP address

Local IP address of the gateway as configured on site

8287

CloudLink Gateway Performance Profiles

The following tables provide information about the performance profiles of CloudLink Gateway.

For information about hardware requirements related to performance profiles, see Performance Profiles.

Profile Platform Purpose Direction Protocol Domain Name IP Address Range Ports

Small

CloudLink Gateway Appliance, SMBC, Virtual, MiVoice 5000, and MSL

RTP/SRTP

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

16384 to 49152

and

65336 to 65534

Small-Plus

Virtual,

MiVoice 5000

RTP/SRTP

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

16384 to 49152

and

65198 to 65534

Medium

Virtual,

MSL

RTP/SRTP

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

16384 to 49152

and

65296 to 65534

Large

Virtual,

MSL

RTP/SRTP

GW to Internet

UDP

*.mitel.io

See the CloudLink Platform IP Address Ranges section in this document.

16384 to 49152

and

61536 to 65534