[asterisk-users] ip source aware Authentication

2009-11-15 Thread gergis.rasmy
Is there a way to ensure that the source IP address from witch the SIP user register is not tampred with , is there a feild in the SIP register message header can be used to achive this security ? i have an asterisk server in witch SIP users register through an SBC(session border controller) ,

Re: [asterisk-users] ip source aware Authentication

2009-11-15 Thread Alex Balashov
Are you referring to the source address of the SIP REGISTER request itself? If so, you can constrain that, but it would be fairly useless to spoof it in the general sort of way in which all IP spoofing is fairly pointless except in a few very particular scenarios, because the reply will not be

Re: [asterisk-users] ip source aware Authentication

2009-11-16 Thread Kevin P. Fleming
Alex Balashov wrote: > As far as I know, Asterisk has no way to restrict the content of the > domain portion of the Contact URI. However, most commercial SBCs > should have a way to filter this, and it is highly recommended that > you do so. It does actually; we added it to address this very

Re: [asterisk-users] ip source aware Authentication

2009-11-17 Thread Alex Samad
On Mon, Nov 16, 2009 at 08:17:27AM -0600, Kevin P. Fleming wrote: > Alex Balashov wrote: > > > As far as I know, Asterisk has no way to restrict the content of the > > domain portion of the Contact URI. However, most commercial SBCs > > should have a way to filter this, and it is highly recomme