[asterisk-users] (Newbie)How to reduce security risks in opening IAX Sip Ports

2008-05-20 Thread Shaun Wingrin
Please direct me to any usefull links to help secure my asterisk server once these ports are opened. Thanks Shaun ___ -- Bandwidth and Colocation Provided by http://www.api-digital.com -- asterisk-users mailing list To UNSUBSCRIBE or update

Re: [asterisk-users] (Newbie)How to reduce security risks in opening IAX Sip Ports

2008-05-20 Thread Tzafrir Cohen
On Tue, May 20, 2008 at 10:41:28AM +0200, Shaun Wingrin wrote: Please direct me to any usefull links to help secure my asterisk server once these ports are opened. http://search.yahoo.com/search?p=secure+asterisk+server http://www.google.com/search?q=secure+asterisk+server Now, do some basic

Re: [asterisk-users] (Newbie)How to reduce security risks in opening IAX Sip Ports

2008-05-20 Thread Raj Jain
One way to make the system more secure would be by not opening these ports statically in Linux iptables. I have not tested this, but Linux iptables have shipped with ip_nat_sip and ip_conntrack_sip modules since kernel version 2.6.18. With these modules, Linux iptables will act as a SIP-aware NAT

Re: [asterisk-users] (Newbie)How to reduce security risks in opening IAX Sip Ports

2008-05-20 Thread Tzafrir Cohen
On Tue, May 20, 2008 at 06:46:49AM -0400, Raj Jain wrote: One way to make the system more secure would be by not opening these ports statically in Linux iptables. I have not tested this, but Linux iptables have shipped with ip_nat_sip and ip_conntrack_sip modules since kernel version 2.6.18.

Re: [asterisk-users] (Newbie)How to reduce security risks in opening IAX Sip Ports

2008-05-20 Thread Raj Jain
On Tue, May 20, 2008 at 7:11 AM, Tzafrir Cohen [EMAIL PROTECTED] wrote: On Tue, May 20, 2008 at 06:46:49AM -0400, Raj Jain wrote: One way to make the system more secure would be by not opening these ports statically in Linux iptables. I have not tested this, but Linux iptables have shipped