[Users] Allow only TLS connections

Cesc cesc.santa at gmail.com
Tue Apr 11 14:03:06 CEST 2006


I think in openser there is a function to check what transport the
message came in ... you can do something like:
if ( transport != TLS ) {
          send error to UA
          break;
}

Cesc

On 4/11/06, Thorsten.Haupt at t-systems.com <Thorsten.Haupt at t-systems.com> wrote:
>
>
> Hello,
>
> I use OpenSER in a testing environment for VoIP security. My clients connect
> via TLS. If I deactivate UDP/5060 on the server, it doesn't work correct.
> Some Clients can't connect and others can't establish calls. I read in
> another thread, that UDP is mandatory for SIP and that the server need it.
>
> But how can I prevent users from connecting via UDP and force them to use
> TLS? I tried a firewall, blocking UDP and TCP on port 5060. But is this the
> correct way? Are there any parameters server-side to force users to connect
> via TLS?
>
> Thanks for response.
> Torsten
> _______________________________________________
> Users mailing list
> Users at openser.org
> http://openser.org/cgi-bin/mailman/listinfo/users
>
>
>




More information about the sr-users mailing list