> For a complete page index, fetch https://docs.synthflow.ai/llms.txt. For full documentation content, fetch https://docs.synthflow.ai/llms-full.txt. # Synthflow SIP trunking network guidelines > Firewall and ACL rules for SIP signalling and RTP media when trunking into Synthflow by region (Global, US, EU), including LATAM media for US workspaces. When you connect your PBX directly to Synthflow over SIP, your network must allow outbound traffic to our signalling endpoints and bidirectional RTP to our media pool addresses. Use the tables below to configure ACLs on your firewalls. > **Info** > > Synthflow operates three regions: **Global**, **US**, and **EU**. Your SIP trunk must point to the region that matches your workspace. You can find your workspace region in your account settings. Only allow-list the signalling and media addresses for your region. ## Ports and transports | Traffic | Protocol | Port range | Purpose | | -------------- | -------- | --------------- | ------------------------------------------------------- | | SIP signalling | UDP, TCP | **32681** | SIP over UDP/TCP | | SIP signalling | TLS | **32682** | SIP over TLS | | Media (RTP) | UDP | **10000–60000** | RTP/RTCP between your network and Synthflow media nodes | Point your SIP traffic toward the SIP FQDN (for automatic failover and maintenance exclusion) for your region. Also allow the media UDP range toward **all** media IPs listed for that region. To find which region you reside in, open **Admin** β†’ **Workspace Settings** β†’ **Preferences** and check **Customer Region**. ## Region addresses #### 🌐 Global **Signalling** | FQDN | IP (allow list) | UDP | TCP | TLS | | ------------------ | --------------------------------------------------------------------- | ----- | ----- | ----- | | `sip.synthflow.ai` | `34.138.86.8/32, 34.75.151.191/32, 34.23.45.239/32, 35.231.28.238/32` | 32681 | 32681 | 32682 | **Media** β€” allow **UDP 10000–60000** to each address: | Media IP | | --------------- | | `34.73.190.14` | | `35.237.117.4` | | `34.148.74.207` | | `34.139.134.58` | | `34.73.14.16` | | `34.139.114.28` | #### πŸ‡ΊπŸ‡Έ US **Signalling** | FQDN | IP (allow list) | UDP | TCP | TLS | | --------------------- | --------------------------------------------------- | ----- | ----- | ----- | | `sip.us.synthflow.ai` | `35.237.42.43/32, 34.139.4.161/32, 4.138.180.50/32` | 32681 | 32681 | 32682 | **Media** β€” allow **UDP 10000–60000** to each address: | Media IP | | ---------------- | | `34.74.219.233` | | `34.73.16.58` | | `34.74.102.178` | | `34.139.255.196` | | `34.138.230.237` | | `34.75.0.163` | US workspaces must also allow-list the [LATAM media](#latam-media) addresses below. #### πŸ‡ͺπŸ‡Ί EU **Signalling** | FQDN | IP (allow list) | UDP | TCP | TLS | | --------------------- | ------------------------------------------------------- | ----- | ----- | ----- | | `sip.eu.synthflow.ai` | `34.185.212.150/32, 34.89.186.33/32, 35.242.217.198/32` | 32681 | 32681 | 32682 | **Media** β€” allow **UDP 10000–60000** to each address: | Media IP | | ---------------- | | `34.89.251.213` | | `35.198.108.150` | | `34.141.20.211` | | `34.141.63.192` | | `35.234.97.154` | | `34.141.91.77` | ## LATAM media US-region workspaces can send and receive RTP through Synthflow's Latin America media nodes. If your workspace is in the **US** region, allow **UDP 10000–60000** to each of these addresses in addition to the US media IPs above. Global and EU workspaces do not need these addresses. | Media IP | | ------------- | | `34.51.27.23` | | `34.51.92.73` | ## Related * [Egress IP Addresses](/egress-ip-addresses) β€” outbound IPs for webhooks, custom actions, and MCP * [Connect your phone system (SIP/PBX)](/connect-your-phone-system) β€” trunk settings, codecs, and prerequisites * [SIP Integration overview](/about-sip) β€” provider tiers and supported integrations > Firewall and ACL rules for SIP signalling and RTP media when trunking into Synthflow by region (Global, US, EU), including LATAM media for US workspaces.