How to configure security rules on Alibaba Cloud platform for 3CX


3CX is an open-platform, software VoIP phone system that works with popular IP Phones and SIP trunks whether on-premise or in the cloud. We have many customers who choose Alibaba Cloud platform to deploy 3CX, some customers don’t know hwo to open the ports for 3cx? In this document we will describe how to configure security rules on Alibaba Cloud for 3CX.


We log in to the Alibaba Cloud console, go to Elastic Compute Service. Find the instance where 3CX is installed, then click More – Network and Security Group – Configuration Security Group .

Next, click on the add rule as shown below:

Click the Quick Rule Creation button.

After click the Quick Rule Creation button will pop up the interface shown below, here we can add the port we need to open, such as RTP port 9000/10999.

  • Rule Direction: Inbound
  • Action: Allow
  • Custom Port Range: In this example we chose UDP and filled in 9000/10999. If we need open 5001 port for 3cx, we need choose tcp and filled in 5001/5001.
  • Authorization Type:  IPv4 CIDR Block
  • Authorization Objects: means that any address can be accessed

Customers can configure the port according to their actual needs to reduce the risk of open ports. In addition, the 5015 port can be deleted after the installation is completed.

