Hi, I have noticed that some SIP system are using the "From:" header field domain/IP to authenticate or do some routing operation instead of the sending IP address. If they authenticate only on the "From:" header field, I guess they could be vulnarable to spoofing. Anyhow, I am wandering if we should replace the From header field IP address with the one of the SIP proxy even if this is not RFC recommended for a proxy ?
_______________________________________________ Users mailing list [email protected] http://lists.opensips.org/cgi-bin/mailman/listinfo/users
