Brian Camp wrote: > On Oct 31, 2007, at 3:27 PM, Tom Eastep wrote: > >> On the flip side, note that we've seen cases where loading >> ip_conntrack_sip has actually _broken_ working SIP installations. > > That reminds me.. > > To work around the ip_nat_sip problem, I first appended 'rmmod ip_nat > sip &> /dev/null' to our start file. It was a great solution, or so I > thought, because it didn't require modification of anything outside > of /etc/shorewall and survived shorewall upgrades performed via yum > update.
Brian, I like your solution and I will be trying it with my phone tonight. I am curious if you also removed "ip_conntrack_sip"? Did you also do a DNAT forward of ports "4569,5060,10000:20000"? Thanks, Kenneth ------------------------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/ _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users