I think that is just to help iptables pass the SIP traffic correctly. Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373
On Wed, Oct 13, 2010 at 11:03 AM, Faisal Imtiaz <[email protected]>wrote: > The short answer is no... > > I have not done a whole lot of research on this... but know that there > are more and more SIP brute force /attacks /hacks happening... From What > I understand that MT can be used as a SiP proxy, since we are not using > MT for that function, we just turn the ports off, just like you would do > on Telnet and FTP... for SSH you would use some filtering.. > > > Faisal Imtiaz > Snappy Internet & Telecom > > On 10/13/2010 10:36 AM, Scott Piehn wrote: > > I don't want to block legitimate VOIP traffic, > > > > so when the source and destination are the same, that can be legitimate? > > > > > > --------------------------------------------- > > Scott Piehn > > > > > > ----- Original Message ----- > > From: "Faisal Imtiaz"<[email protected]> > > To: "WISPA General List"<[email protected]> > > Sent: Wednesday, October 13, 2010 9:28 AM > > Subject: Re: [WISPA] sip trafic but not? > > > > > >> We did this on the MT > >> > >> set sip disabled=yes ports=5060,5061 > >> > >> What you are proposing will also block legitimate VOIP traffic thru the > >> Mikrotik. > >> > >> Regards. > >> > >> > >> Faisal Imtiaz > >> Snappy Internet& Telecom > >> > >> > >> On 10/13/2010 9:01 AM, Scott Piehn wrote: > >>> I am seeing in my MT firewall connections traffic that is flagged as > >>> sip, but the source port and destination port is the same 5060. Allot > of > >>> the remote sites are not in the US. > >>> question: Will the following rule drop and good traffic. like actual > >>> phone calls > >>> X chain=forward action=drop protocol=udp src-port=5060 dst-port=5060 > >>> --------------------------------------------- > >>> Scott Piehn > >>> > >>> > >>> > >>> > >>> > >>> > -------------------------------------------------------------------------------- > >>> WISPA Wants You! Join today! > >>> http://signup.wispa.org/ > >>> > -------------------------------------------------------------------------------- > >>> > >>> WISPA Wireless List: [email protected] > >>> > >>> Subscribe/Unsubscribe: > >>> http://lists.wispa.org/mailman/listinfo/wireless > >>> > >>> Archives: http://lists.wispa.org/pipermail/wireless/ > >> > >> > >> > -------------------------------------------------------------------------------- > >> WISPA Wants You! Join today! > >> http://signup.wispa.org/ > >> > -------------------------------------------------------------------------------- > >> > >> WISPA Wireless List: [email protected] > >> > >> Subscribe/Unsubscribe: > >> http://lists.wispa.org/mailman/listinfo/wireless > >> > >> Archives: http://lists.wispa.org/pipermail/wireless/ > >> > > > > > > > > > -------------------------------------------------------------------------------- > > WISPA Wants You! Join today! > > http://signup.wispa.org/ > > > -------------------------------------------------------------------------------- > > > > WISPA Wireless List: [email protected] > > > > Subscribe/Unsubscribe: > > http://lists.wispa.org/mailman/listinfo/wireless > > > > Archives: http://lists.wispa.org/pipermail/wireless/ > > > > > > -------------------------------------------------------------------------------- > WISPA Wants You! Join today! > http://signup.wispa.org/ > > -------------------------------------------------------------------------------- > > WISPA Wireless List: [email protected] > > Subscribe/Unsubscribe: > http://lists.wispa.org/mailman/listinfo/wireless > > Archives: http://lists.wispa.org/pipermail/wireless/ >
-------------------------------------------------------------------------------- WISPA Wants You! Join today! http://signup.wispa.org/ -------------------------------------------------------------------------------- WISPA Wireless List: [email protected] Subscribe/Unsubscribe: http://lists.wispa.org/mailman/listinfo/wireless Archives: http://lists.wispa.org/pipermail/wireless/
