2008/12/18 Victor Pascual Ávila <[email protected]>:
>> How could a non dialog awareness proxy solve it?
>
> In case you want to prevent "external_attackers", the proxy may ask
> for authentication once it receives the BYE request (as you show for
> the initial INVITE message):

Don't try it with Asterisk as client and other SIp devices which never
will send BYE with credentials after a 407. :(


> To prevent from "your own customers", use a dialog stateful proxy for 
> accounting

This means that the proxy must store the CSeq's for each dialog is
process... not sure if this concept doesn't break the proxy spirit XD


Thanks.




-- 
Iñaki Baz Castillo
<[email protected]>

_______________________________________________
Sip-implementors mailing list
[email protected]
https://lists.cs.columbia.edu/cucslists/listinfo/sip-implementors

Reply via email to