Yes, SIP can get very hairy, because it's primarily xml -ished based. The proper way to make MSN Messenger work is using Universal Plug n Play to do nat traversal. http://linux-igd.sourceforge.net will make this work (every feature except file transfer, which we at the UPnP forum are trying to get Microsoft to hurry up and fix (along with many router vendors)).
If there was indeed an SIP conntrack however, it would be so much nicer, because there are a lot of packages coming out that use SIP but do not use UPnP. It's just a matter of sparking enough interest in it to get someone knowledgeable in netfilter to write one (or someone learning from scratch). Glover George Systems/Networks Administrator Gulf Sales & Supply, Inc. [EMAIL PROTECTED] (228)-762-0268 -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Harald Welte Sent: Thursday, June 27, 2002 6:26 AM To: Amir Khandani Cc: [EMAIL PROTECTED] Subject: Re: MSN Messenger ALG On Wed, Jun 26, 2002 at 11:44:14AM -0700, Amir Khandani wrote: > Hi, > Is there a ALG for MSN Messenger in iptables? I need that to get file > transfer and voice working between NATed clients. I assume you are talking about the SIP protocol? No, nobody came up to either write or sponsor support for SIP yet. It's a fairly complex protocol... > thanks for any help, > -amir -- Live long and prosper - Harald Welte / [EMAIL PROTECTED] http://www.gnumonks.org/ ======================================================================== ==== GCS/E/IT d- s-: a-- C+++ UL++++$ P+++ L++++$ E--- W- N++ o? K- w--- O- M- V-- PS+ PE-- Y+ PGP++ t++ 5-- !X !R tv-- b+++ DI? !D G+ e* h+ r% y+(*)