Getting Started rtpproxy.cfg file => Re: [Serusers] NAT Problem No Voice

Greger V. Teigre greger at teigre.com
Sun Apr 10 11:49:17 CEST 2005


We have two different approches to testing nat in the rtpproxy and 
mediaproxy configs that introduced the error. We are discussing how to 
resolve this before notifying people about this issue.

Try:
 192. onreply_route[1] {
193.
194. if (isflagset(6) && status=~"(180)|(183)|2[0-9][0-9]") {
195. if (!search("^Content-Length:\ 0")) {
196. force_rtp_proxy();
197. };
198. } else if (nat_uac_test("1")) {
199. fix_nated_contact();
200. };
201. }
fix_nated_contact() should go in between line 194 and 195.

g-(

Kamran Ahmad wrote:
> hello
>
> I am using ser-0.9.0 from onsip with rtpproxy i am
> getting only one side voice. what could be the reason.
>
> here is my ser.cfg when i am trying to use
> configuration from onsip i am getting error.
>
> ----------------------------------------------------
> ser.cfg from onsip.org gettingstarted.pdf
>
> #debug=3
> #fork=yes
> #log_stderror=no
>
> debug=7
> fork=no
> log_stderror=yes
>
> dns=no
> rev_dns=no
> fifo="/tmp/ser_fifo"
> #fifo_db_url="mysql://ser:heslo@localhost/ser"
>
> #loadmodule "/usr/local/lib/ser/modules/mysql.so"
> loadmodule "/usr/local/lib/ser/modules/sl.so"
> loadmodule "/usr/local/lib/ser/modules/tm.so"
> loadmodule "/usr/local/lib/ser/modules/rr.so"
> loadmodule "/usr/local/lib/ser/modules/maxfwd.so"
> loadmodule "/usr/local/lib/ser/modules/usrloc.so"
> loadmodule "/usr/local/lib/ser/modules/registrar.so"
> loadmodule "/usr/local/lib/ser/modules/auth.so"
> loadmodule "/usr/local/lib/ser/modules/auth_radius.so"
> #loadmodule "/usr/local/lib/ser/modules/auth_db.so"
>
> loadmodule "/usr/local/lib/ser/modules/uri.so"
> loadmodule "/usr/local/lib/ser/modules/domain.so"
> loadmodule "/usr/local/lib/ser/modules/nathelper.so"
> loadmodule "/usr/local/lib/ser/modules/textops.so"
> loadmodule "/usr/local/lib/ser/modules/uri_radius.so"
>
> #modparam("auth_db|usrloc|uri_db", "db_url",
> "mysql://ser:heslo@localhost/ser")
> #modparam("auth_db", "calculate_ha1", 1)
> #modparam("auth_db", "password_column", "password")
>
> modparam("nathelper", "natping_interval", 30)
> modparam("nathelper", "ping_nated_only", 1)
> modparam("nathelper", "rtpproxy_sock",
> "unix:/var/run/rtpproxy.sock")
> modparam("usrloc", "db_mode", 0)
> modparam("registrar", "nat_flag", 6)
> modparam("rr", "enable_full_lr", 1)
>
>
> route {
>
>     #
> -----------------------------------------------------------------
>     # Sanity Check Section
>     #
> -----------------------------------------------------------------
>
>     if (!mf_process_maxfwd_header("10")) {
>             sl_send_reply("483", "Too Many Hops");
>             break;
>     };
>
>     if (msg:len > max_len) {
>             sl_send_reply("513", "Message Overflow");
>             break;
>     };
>
>     #
> -----------------------------------------------------------------
>     # Record Route Section
>     #
> -----------------------------------------------------------------
>
>     if (method!="REGISTER") {
>             record_route();
>     };
>
>     if (method=="BYE" || method=="CANCEL") {
>             unforce_rtp_proxy();
>     }
>
>     #
> -----------------------------------------------------------------
>     # Loose Route Section
>     #
> -----------------------------------------------------------------
>
>     if (loose_route()) {
>
>           if (has_totag() && method=="INVITE") {
>                   if (nat_uac_test("19")) {
>                           setflag(6);
>                           force_rport();
>                           fix_nated_contact();
>                   };
>
>                   force_rtp_proxy("l");
>           };
>           route(1);
>           break;
>    };
>    #
> -----------------------------------------------------------------
>    # Call Type Processing Section
>    #
> -----------------------------------------------------------------
>    if (uri==myself) {
>           if (method=="INVITE") {
>                   route(3);
>                   break;
>           } else if (method=="REGISTER") {
>                   route(2);
>                   break;
>           };
>
>          if (!lookup("location")) {
>                   sl_send_reply("404", "User Not
> Found");
>                   break;
>           };
>          route(1);
>    };
> }
>
>
> route[1] {
>     #
> -----------------------------------------------------------------
>     # Default Message Handler
>     #
> -----------------------------------------------------------------
>     t_on_reply("1");
>     if (!t_relay()) {
>            if (method=="INVITE" && isflagset(6)) {
>                    unforce_rtp_proxy();
>            };
>            sl_reply_error();
>     };
> }
>
>
> route[2] {
>     #
> -----------------------------------------------------------------
>     # REGISTER Message Handler
>     #
> ----------------------------------------------------------------
>     if (!search("^Contact: \*") &&
> nat_uac_test("19")) {
>             setflag(6);
>             fix_nated_register();
> # fix_nated_contact();
>             force_rport();
>     };
>     sl_send_reply("100", "Trying");
>
>     if (!check_to()) {
>             sl_send_reply("401", "Unauthorized");
>             break;
>     };
>
> #     consume_credentials();
>
>     if (!save("location")) {
>      sl_reply_error();
> };
> }
>
>
> route[3] {
>     #
> -----------------------------------------------------------------
>     # INVITE Message Handler
>     #
> -----------------------------------------------------------------
>     if (nat_uac_test("19")) {
>             setflag(6);
>     }
>     if (!lookup("location")) {
>             sl_send_reply("404", "User Not Found");
>             break;
>     };
> if(!check_from()) {
>             sl_send_reply("403", "Use From=ID");
>             break;
>     };
>
> #     consume_credentials();
>
>     if (isflagset(6)) {
>             force_rport();
>             fix_nated_contact();
>             force_rtp_proxy();
>     };
>
> t_on_reply("1");
>
>     if (!t_relay()) {
>
>             if(isflagset(6)) {
>                    unforce_rtp_proxy();
>             }
>
>             sl_reply_error();
>     };
> }
>
> onreply_route[1] {
>     if (isflagset(6) &&
> status=~"(180)|(183)|2[0-9][0-9]") {
>             if (!search("^Content-Length:\ 0")) {
>                    force_rtp_proxy();
>             };
>     }
> else if (nat_uac_test("1")) {
>             fix_nated_contact();
>     };
> }
> error when starting ser with ser.cfg from onsip.org
> -----------------------------------------------------
> 0(31996) qm_free(0x80fb260, 0x812f9ac), called from
> sr_module.c: destroy_modules(357)
> 0(31996) qm_free: freeing frag. 0x812f994 alloc'ed
> from sr_module.c: register_module(136)
> 0(31996) DEBUG: tm_shutdown : start
> 0(31996) DEBUG: tm_shutdown : emptying hash table
> 0(31996) DEBUG: tm_shutdown : releasing timers
> 0(31996) DEBUG: tm_shutdown : removing semaphores
> 0(31996) DEBUG: tm_shutdown : destroying tmcb lists
> 0(31996) DEBUG: tm_shutdown : done
> 0(31996) qm_free(0x80fb260, 0x812f8bc), called from
> sr_module.c: destroy_modules(357)
> 0(31996) qm_free: freeing frag. 0x812f8a4 alloc'ed
> from sr_module.c: register_module(136)
> 0(31996) qm_free(0x80fb260, 0x812f7cc), called from
> sr_module.c: destroy_modules(357)
> 0(31996) qm_free: freeing frag. 0x812f7b4 alloc'ed
> from sr_module.c: register_module(136)
> 0(31996) shm_mem_destroy
>
>
> ----------------------------------------------------
> i am getting only one side voice with this ser.cfg
>
>
> # ----------- global configuration parameters
> ------------------------
>
> debug=3         # debug level (cmd line: -dddddddddd)
> fork=yes
> log_stderror=no # (cmd line: -E)
>
> /* Uncomment these lines to enter debugging mode
> fork=no
> log_stderror=yes
> */
>
> check_via=no # (cmd. line: -v)
> dns=no           # (cmd. line: -r)
> rev_dns=no      # (cmd. line: -R)
> port=5060
> children=4
> fifo="/tmp/ser_fifo"
>
> # ------------------ module loading
> ----------------------------------
>
> # Uncomment this if you want to use SQL database
> #loadmodule "/usr/local/lib/ser/modules/mysql.so"
>
> loadmodule "/usr/local/lib/ser/modules/sl.so"
> loadmodule "/usr/local/lib/ser/modules/tm.so"
> loadmodule "/usr/local/lib/ser/modules/rr.so"
> loadmodule "/usr/local/lib/ser/modules/maxfwd.so"
> loadmodule "/usr/local/lib/ser/modules/usrloc.so"
> loadmodule "/usr/local/lib/ser/modules/registrar.so"
> loadmodule "/usr/local/lib/ser/modules/textops.so"
>
> # Uncomment this if you want digest authentication
> # mysql.so must be loaded !
> #loadmodule "/usr/local/lib/ser/modules/auth.so"
> #loadmodule "/usr/local/lib/ser/modules/auth_db.so"
>
> # !! Nathelper
> loadmodule "/usr/local/lib/ser/modules/nathelper.so"
>
> #startsetting for rtpProxy
> #
> #loadmodule "/usr/local/lib/ser/modules/uri_db.so"
> #
> #end setting for rtpproxy
>
>
> # ----------------- setting module-specific parameters
> ---------------
>
> # -- usrloc params --
>
> modparam("usrloc", "db_mode",   0)
>
> # Uncomment this if you want to use SQL database
> # for persistent storage and comment the previous line
> #modparam("usrloc", "db_mode", 2)
>
> # -- auth params --
> # Uncomment if you are using auth module
> #
> #modparam("auth_db", "calculate_ha1", yes)
> #
> # If you set "calculate_ha1" parameter to yes (which
> true in this config),
> # uncomment also the following parameter)
> #
> #modparam("auth_db", "password_column", "password")
>
> # -- rr params --
> # add value to ;lr param to make some broken UAs happy
> modparam("rr", "enable_full_lr", 1)
>
> # !! Nathelper
> modparam("registrar", "nat_flag", 6)
> modparam("nathelper", "natping_interval", 30) # Ping
> interval 30 s
> modparam("nathelper", "ping_nated_only", 1)   # Ping
> only clients behind NAT
>
> #Start of RtpProxy setting
> #
> modparam("nathelper", "rtpproxy_sock",
> "unix:/var/run/rtpproxy.sock")
> #
> #End of RtpProxy Setting
>
>
> # -------------------------  request routing logic
> -------------------
>
> # main routing logic
>
> route{
>
> # initial sanity checks -- messages with
> # max_forwards==0, or excessively long requests
> if (!mf_process_maxfwd_header("10")) {
> sl_send_reply("483","Too Many Hops");
> break;
> };
> if (msg:len >=  max_len ) {
> sl_send_reply("513", "Message too big");
> break;
> };
>
>        # !! Nathelper
> # Special handling for NATed clients; first, NAT test
> is
> # executed: it looks for via!=received and RFC1918
> addresses
> # in Contact (may fail if line-folding is used);
> also,
> # the received test should, if completed, should
> check all
> # vias for rpesence of received
> if (nat_uac_test("3")) {
> # Allow RR-ed requests, as these may indicate that
> # a NAT-enabled proxy takes care of it; unless it is
> # a REGISTER
>
> if (method == "REGISTER" || !
> search("^Record-Route:")) {
>     log("LOG: Someone trying to register from
> private IP, rewriting\n");
>
>     # This will work only for user agents that
> support symmetric
>     # communication. We tested quite many of them
> and majority is
>     # smart enough to be symmetric. In some phones
> it takes a configuration
>     # option. With Cisco 7960, it is called
> NAT_Enable=Yes, with kphone it is
>     # called "symmetric media" and "symmetric
> signalling".
>
>     fix_nated_contact(); # Rewrite contact with
> source IP of signalling
>
>     if (method == "INVITE") {
>         fix_nated_sdp("1"); # Add direction=active
> to SDP
>     };
>
>     force_rport(); # Add rport parameter to topmost
> Via
>     setflag(6);    # Mark as NATed
> };
> };
>
> # we record-route all messages -- to make sure that
> # subsequent messages will go through our proxy;
> that's
> # particularly good if upstream and downstream
> entities
> # use different transport protocol
> if (!method=="REGISTER") record_route();
>
> #start of RtpProxy Setting
> #
> # if (method=="BYE" || method=="CANCEL") {
> # unforce_rtp_proxy();
> # }
> #
> #end of RtpProxy Setting
>
> # subsequent messages withing a dialog should take
> the
> # path determined by record-routing
> if (loose_route()) {
> # mark routing logic in request
> #start of rtpproxy setting
> # if (has_totag() && method=="INVITE") {
> # if (nat_uac_test("19")) {
> # setflag(6);
> # force_rport();
> # fix_nated_contact();
> # };
> #
> # force_rtp_proxy("l");
> # };
> #
> #end of rtpproxy setting
> append_hf("P-hint: rr-enforced\r\n");
> route(1);
> break;
> };
>
> if (!uri==myself) {
> # mark routing logic in request
> append_hf("P-hint: outbound\r\n");
> route(1);
> break;
> };
>
> # if the request is for other domain use UsrLoc
> # (in case, it does not work, use the following
> command
> # with proper names and addresses in it)
> if (uri==myself) {
>
> if (method=="REGISTER") {
>
> # Uncomment this if you want to use digest
> authentication
> # if (!www_authorize("iptel.org", "subscriber")) {
> # www_challenge("iptel.org", "0");
> # break;
> # };
>
> save("location");
> break;
> };
>
> lookup("aliases");
> if (!uri==myself) {
> append_hf("P-hint: outbound alias\r\n");
> route(1);
> break;
> };
>
> # native SIP destinations are handled using our
> USRLOC DB
> if (!lookup("location")) {
> sl_send_reply("404", "Not Found");
> break;
> };
> };
> append_hf("P-hint: usrloc applied\r\n");
> route(1);
> }
>
> route[1]
> {
>
> #start of rtpproxy setting
> # t_on_reply("1");
> #
> # if (!t_relay()) {
> # if (method=="INVITE" && isflagset(6)) {
> # unforce_rtp_proxy();
> # };
> #
> # sl_reply_error();
> # };
> #end of rtpproxy setting
>
> # !! Nathelper
> if
> (uri=~"[@:](192\.168\.|10\.|172\.(1[6-9]|2[0-9]|3[0-1])\.)"
> && !search("^Route:")){
>     sl_send_reply("479", "We don't forward to private
> IP addresses");
>     break;
>        };
>
> # if client or server know to be behind a NAT, enable
> relay
> if (isflagset(6)) {
>     force_rtp_proxy();
> };
>
> # NAT processing of replies; apply to all
> transactions (for example,
> # re-INVITEs from public to private UA are hard to
> identify as
> # NATed at the moment of request processing); look at
> replies
> t_on_reply("1");
>
> # send it out now; use stateful forwarding as it
> works reliably
> # even for UDP2TCP
> if (!t_relay()) {
> sl_reply_error();
> };
> }
>
> #--------------reply route
> block--------------------------------
>
> # !! Nathelper
> onreply_route[1] {
>    # NATed transaction ?
>    if (isflagset(6) && status =~ "(183)|2[0-9][0-9]")
> {
>        fix_nated_contact();
> force_rtp_proxy();
>    # otherwise, is it a transaction behind a NAT and
> we did not
>    # know at time of request processing ? (RFC1918
> contacts)
>    } else if (nat_uac_test("1")) {
>        fix_nated_contact();
>    };
> }
>
>
>
> __________________________________
> Do you Yahoo!?
> Yahoo! Small Business - Try our new resources site!
> http://smallbusiness.yahoo.com/resources/ 




More information about the sr-users mailing list