Brian Camp wrote:
> On Oct 31, 2007, at 3:27 PM, Tom Eastep wrote:
> 
>> On the flip side, note that we've seen cases where loading
>> ip_conntrack_sip has actually _broken_ working SIP installations.
> 
> That reminds me..
> 
> To work around the ip_nat_sip problem, I first appended 'rmmod ip_nat  
> sip &> /dev/null' to our start file.  It was a great solution, or so I  
> thought, because it didn't require modification of anything outside  
> of /etc/shorewall and survived shorewall upgrades performed via yum  
> update.


Brian,

I like your solution and I will be trying it with my phone tonight.

I am curious if you also removed "ip_conntrack_sip"?  Did you also do a
DNAT forward of ports "4569,5060,10000:20000"?

Thanks,
Kenneth

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to