Robert Dyck wrote:
I understand that the iptables SIP ALG has been much revised this year although I have not tested it myself. I believe you need at least linux 2.6.25.
Really...? That would be a source of immeasurable fascination to me. Do you have a source for this in the changelogs somewhere?
Last time I used the SIP ALG module was a few months ago, during which time I noted that it performs no application protocol-level NAT fixups; all it does is make sure the appropriate ports are mapped to statefully track NAT'd SIP messages. It neither provides for the opening of RTP media ports on session establishment, nor rewrite any SIP headers.