SIP

Version 1.2 by Aaron Blackburn on 2026/09/01 18:31

  @import url('https://fonts.googleapis.com/css2?family=Host+Grotesk:wght@300;400;500;600;700;800&display=swap');

  .fd-sip-diag, .fd-sip-diag * { box-sizing: border-box; }
  .fd-sip-diag {
    --fd-navy: #003366;
    --fd-dark-navy: #001a33;
    --fd-blue: #307ab2;
    --fd-sky: #38b2e3;
    --fd-bright-cyan: #5ed2ff;
    --fd-red: #cf333d;
    --fd-slate: #2e404d;
    --fd-grey: #8f9499;
    --fd-lightgrey: #e2e8f0;
    --fd-offwhite: #f8fafc;
    --fd-max-w: 1140px;

    font-family: 'Host Grotesk', system-ui, -apple-system, sans-serif;
    color: var(--fd-slate);
    background: #ffffff;
    max-width: var(--fd-max-w);
    margin: 0 auto;
    padding: 24px 16px;
  }

  /* ---------- HEADER BANNER ---------- */
  .fd-sip-diag .diag-header {
    background: radial-gradient(circle at 50% 35%, rgba(13, 71, 128, 0.78) 0%, rgba(0, 51, 102, 0.93) 60%, rgba(0, 26, 51, 0.98) 100%),
                url('Fiber Optic Theme.JPG') center/cover no-repeat;
    padding: 40px 32px;
    border-radius: 20px;
    text-align: center;
    color: #ffffff;
    box-shadow: inset 0 0 60px rgba(0, 26, 51, 0.6), 0 12px 32px rgba(0, 51, 102, 0.12);
    margin-bottom: 32px;
  }
  .fd-sip-diag .diag-header p.kicker {
    color: var(--fd-bright-cyan);
    font-weight: 800;
    font-size: .8rem;
    text-transform: uppercase;
    letter-spacing: .18em;
    margin: 0 0 8px;
    text-shadow: 0 2px 10px rgba(0, 26, 51, 0.8);
  }
  .fd-sip-diag .diag-header h1 {
    font-weight: 800;
    font-size: 2.25rem;
    margin: 0 0 10px;
    letter-spacing: -0.02em;
    text-shadow: 0 3px 12px rgba(0, 26, 51, 0.9);
  }
  .fd-sip-diag .diag-header p.sub {
    color: #f8fafc;
    font-weight: 400;
    font-size: 1rem;
    max-width: 680px;
    margin: 0 auto;
    line-height: 1.5;
    text-shadow: 0 2px 8px rgba(0, 26, 51, 0.95);
  }

  /* ---------- DIAGRAM ARCHITECTURE GRID ---------- */
  .fd-sip-diag .arch-grid {
    display: grid;
    grid-template-columns: 1fr 120px 1.2fr 120px 1fr;
    align-items: center;
    gap: 12px;
    margin-bottom: 36px;
  }

  .fd-sip-diag .node-box {
    background: rgba(255, 255, 255, 0.95);
    border: 2px solid var(--fd-lightgrey);
    border-radius: 16px;
    padding: 24px 20px;
    text-align: center;
    box-shadow: 0 8px 24px rgba(0, 30, 60, 0.06);
    position: relative;
  }

  .fd-sip-diag .node-box.fd-cloud {
    background: linear-gradient(180deg, #f0f7fc 0%, #ffffff 100%);
    border-color: var(--fd-blue);
  }
  .fd-sip-diag .node-box.firewall {
    background: linear-gradient(180deg, #fff5f5 0%, #ffffff 100%);
    border-color: var(--fd-red);
  }
  .fd-sip-diag .node-box.cust-pbx {
    background: linear-gradient(180deg, var(--fd-offwhite) 0%, #ffffff 100%);
    border-color: var(--fd-navy);
  }

  .fd-sip-diag .node-badge {
    display: inline-block;
    padding: 4px 10px;
    font-size: 0.72rem;
    font-weight: 700;
    text-transform: uppercase;
    letter-spacing: 0.08em;
    border-radius: 20px;
    margin-bottom: 12px;
  }
  .fd-cloud .node-badge { background: var(--fd-blue); color: #ffffff; }
  .firewall .node-badge { background: var(--fd-red); color: #ffffff; }
  .cust-pbx .node-badge { background: var(--fd-navy); color: #ffffff; }

  .fd-sip-diag .node-box h3 {
    margin: 0 0 6px;
    font-size: 1.2rem;
    color: var(--fd-navy);
    font-weight: 700;
  }
  .fd-sip-diag .node-box p.ip-addr {
    font-family: monospace;
    font-size: 0.85rem;
    font-weight: 700;
    color: var(--fd-slate);
    background: #eef4f8;
    padding: 4px 8px;
    border-radius: 6px;
    display: inline-block;
    margin: 4px 0 10px;
  }
  .fd-sip-diag .node-box p.desc {
    font-size: 0.82rem;
    color: var(--fd-slate);
    margin: 0;
    line-height: 1.4;
  }

  /* Connector Arrows */
  .fd-sip-diag .flow-connector {
    text-align: center;
    position: relative;
  }
  .fd-sip-diag .arrow-line {
    height: 3px;
    background: var(--fd-blue);
    position: relative;
    margin: 12px 0;
  }
  .fd-sip-diag .arrow-line::before, .fd-sip-diag .arrow-line::after {
    content: '';
    position: absolute;
    top: -4px;
    width: 0; height: 0;
    border-style: solid;
  }
  /* Left Arrowhead */
  .fd-sip-diag .arrow-line::before {
    left: -2px;
    border-width: 5px 8px 5px 0;
    border-color: transparent var(--fd-blue) transparent transparent;
  }
  /* Right Arrowhead */
  .fd-sip-diag .arrow-line::after {
    right: -2px;
    border-width: 5px 0 5px 8px;
    border-color: transparent transparent transparent var(--fd-blue);
  }
  .fd-sip-diag .flow-label {
    font-size: 0.72rem;
    font-weight: 700;
    color: var(--fd-navy);
    text-transform: uppercase;
    letter-spacing: 0.05em;
    background: var(--fd-offwhite);
    padding: 2px 6px;
    border-radius: 4px;
    border: 1px solid var(--fd-lightgrey);
  }

  /* ---------- RULES & SPECS CARDS ---------- */
  .fd-sip-diag .rules-grid {
    display: grid;
    grid-template-columns: 1fr 1fr;
    gap: 20px;
    margin-bottom: 32px;
  }
  .fd-sip-diag .rule-card {
    background: rgba(255, 255, 255, 0.95);
    border: 1px solid var(--fd-lightgrey);
    border-left: 5px solid var(--fd-sky);
    border-radius: 12px;
    padding: 20px 24px;
    box-shadow: 0 4px 16px rgba(0, 30, 60, 0.04);
  }
  .fd-sip-diag .rule-card.outbound {
    border-left-color: var(--fd-blue);
  }
  .fd-sip-diag .rule-card h4 {
    margin: 0 0 10px;
    font-size: 1.05rem;
    color: var(--fd-navy);
    display: flex;
    align-items: center;
    gap: 8px;
  }
  .fd-sip-diag .rule-card ul {
    margin: 0;
    padding-left: 18px;
    font-size: 0.9rem;
    line-height: 1.5;
  }
  .fd-sip-diag .rule-card li { margin-bottom: 6px; }

  /* ---------- TROUBLESHOOTING / PITFALLS SECTION ---------- */
  .fd-sip-diag .pitfalls-container {
    background: #fff8f8;
    border: 1px solid #fecaca;
    border-radius: 16px;
    padding: 28px;
    box-shadow: 0 8px 24px rgba(207, 51, 61, 0.05);
  }
  .fd-sip-diag .pitfalls-header {
    display: flex;
    align-items: center;
    gap: 12px;
    margin-bottom: 16px;
  }
  .fd-sip-diag .pitfalls-header h3 {
    margin: 0;
    color: var(--fd-red);
    font-size: 1.2rem;
    font-weight: 800;
  }
  .fd-sip-diag .pitfalls-grid {
    display: grid;
    grid-template-columns: 1fr 1fr;
    gap: 20px;
  }
  .fd-sip-diag .pitfall-item {
    background: #ffffff;
    border: 1px solid #fca5a5;
    border-radius: 10px;
    padding: 16px 20px;
  }
  .fd-sip-diag .pitfall-item h5 {
    margin: 0 0 6px;
    color: var(--fd-navy);
    font-size: 0.95rem;
    font-weight: 700;
  }
  .fd-sip-diag .pitfall-item p {
    margin: 0;
    font-size: 0.88rem;
    color: var(--fd-slate);
    line-height: 1.45;
  }

  @media (max-width: 900px) {
    .fd-sip-diag .arch-grid { grid-template-columns: 1fr; gap: 20px; }
    .fd-sip-diag .flow-connector { display: none; }
    .fd-sip-diag .rules-grid, .fd-sip-diag .pitfalls-grid { grid-template-columns: 1fr; }
  }

FirstDigital Technical Architecture

SIP Trunking Architecture & Traffic Flow

Reference guide for signaling (UDP 5060), media routing (RTP), and required customer firewall policies.

FirstDigital Cloud

Cloud SBC

FirstDigital SBC IP

Central Session Border Controller managing inbound/outbound signaling & media.

WAN SIP / RTP
UDP 5060
Boundary

Customer Firewall

Public IP (Provided)

Network perimeter executing NAT and inspecting incoming/outgoing UDP 5060 & RTP streams.

LAN Routing
Private Net
Customer Premises

Customer PBX

192.168.x.x (Private)

Internal phone system handling extensions, call logic, and audio endpoints.

Inbound Call Rules (FirstDigital → Customer)

  • FirstDigital SBC directs calls toward the Public IP provided by the customer.
  • The customer's firewall must permit inbound UDP 5060 sourced strictly from FirstDigital's SBC IP.
  • Dynamic RTP audio port ranges must be allowed through the firewall once the SIP handshake completes.

Outbound Call Rules (Customer → FirstDigital)

  • All signaling and audio streams must source from the registered Public IP provided to FirstDigital.
  • FirstDigital enforces strict security and will automatically reject calls sourcing from unknown or unverified IPs.
  • Firewall must perform proper Source NAT (SNAT) to map outgoing PBX packets to the designated public IP.

Most Common SIP & Audio Issues

1. One-Way or No Audio (Dropped RTP Packets)

Occurs when the customer firewall allows SIP signaling (UDP 5060) to connect the call, but blocks or drops the dynamic RTP audio stream ports. Ensure RTP port ranges are open between the SBC and PBX.

2. Private IP Leakage in SIP SDP Headers

The firewall fails to rewrite the SDP payload, causing the audio stream to request packet delivery to the PBX's private IP (e.g. 10.x.x.x or 192.168.x.x) rather than its external public IP address.