Configuring Network Components for Zoom
Firewall
Proper external firewall and external router configuration is critical for consistent connectivity and media quality of Zoom products on your network
Implement all Zoom-provided firewall rules allows for consistent Zoom audio and video collaboration
Use DNS-based packet inspection on your firewall and routers for seamless global collaboration and scalability when adopting new Zoom platform features
Custom header insertions on next-generation firewalls allow administrators to restrict the amount of bandwidth Zoom products consumes
For organizations using DSCP marking, marking inbound Zoom data packets on your external firewall and router is an important measure to maintain equal media prioritization
Avoiding centralized ingress and egress for external routers may improve the transmission of Zoom traffic
Packet Inspection
Proper configurations for packet inspection and whitelisting help maintain high-quality audio and video for Zoom Meetings and Webinars
Policies to avoid deep packet inspection for Zoom data may need to be implemented
Network components that are performing security inspection or filtering may need to have Zoom IP addresses, ports, and domains added to an allow-list
Use Secure Real Time Protocol (SRTP) and avoid SSL/TLS inspection for Zoom traffic
Intra-Network Routing
Optimize network routing to minimize “hairpinning” to reduce latency for internal Zoom traffic
Windows supports the implementation of QoS through Group Policy and macOS/iOS supports it through MDMs and Cisco Fastlane
Use packet shapers or bandwidth management devices to prioritize Zoom traffic, and allocate bandwidth to Zoom applications
Use network switches capable of handling real-time media data and utilize any available onboard tools to optimize switches for Zoom data traffic
Research and leverage additional onboard features on your network switches that may aid in efficient transmission and prevention of packet loss for Zoom data
Configuration SD-WAN solutions for Zoom traffic helps to transmit Zoom audio and video efficiently over your wide area network
Hand Zoom media off to SD-WAN gateways or SD-WAN edge devices to apply policies and use dynamic transmission paths
Utilizing a dual internet connection with an SD-WAN solution allows for more efficient transmission of Zoom traffic by separating it from non-business critical internet traffic
Use available QoS and network settings through your internet service provider, including ISP-provided DNS servers
Confirm that QoS and DSCP marking configurations are consistent among the MPLS networks that your Zoom traffic traverses
Wireless access points with current Wi-Fi standards, strong access point coverage, and traffic prioritization settings help facilitate high-quality Zoom media
Use available QoS, bandwidth control, or application prioritization settings to optimize your wireless access points for Zoom
Virtual Private Networks
Use VPN Split Tunneling to avoid Zoom audio and video degradation and overloading your VPN infrastructure
Last updated
Was this helpful?

