AW: [Users] Allow only TLS connections

Daniel-Constantin Mierla daniel at voice-system.ro
Tue Apr 11 16:49:31 CEST 2006


it must be proto!=TLS. please see:
http://openser.org/dokuwiki/doku.php?id=openser_core_cookbook#proto

Cheers,
Daniel


On 04/11/06 17:45, Thorsten.Haupt at t-systems.com wrote:
> I searched for this function, but I didn't found it :-(
> Knows anyone the correct code, not only pseudo-code?
>
> Torsten
>
> -----Ursprüngliche Nachricht-----
> Von: Cesc [mailto:cesc.santa at gmail.com] 
> Gesendet: Dienstag, 11. April 2006 14:03
> An: Haupt, Thorsten
> Cc: users at openser.org
> Betreff: Re: [Users] Allow only TLS connections
>
> I think in openser there is a function to check what transport the message came in ... you can do something like:
> if ( transport != TLS ) {
>           send error to UA
>           break;
> }
>
> Cesc
>
> On 4/11/06, Thorsten.Haupt at t-systems.com <Thorsten.Haupt at t-systems.com> wrote:
>   
>> Hello,
>>
>> I use OpenSER in a testing environment for VoIP security. My clients 
>> connect via TLS. If I deactivate UDP/5060 on the server, it doesn't work correct.
>> Some Clients can't connect and others can't establish calls. I read in 
>> another thread, that UDP is mandatory for SIP and that the server need it.
>>
>> But how can I prevent users from connecting via UDP and force them to 
>> use TLS? I tried a firewall, blocking UDP and TCP on port 5060. But is 
>> this the correct way? Are there any parameters server-side to force 
>> users to connect via TLS?
>>
>> Thanks for response.
>> Torsten
>> _______________________________________________
>> Users mailing list
>> Users at openser.org
>> http://openser.org/cgi-bin/mailman/listinfo/users
>>
>>
>>
>>     
>
> _______________________________________________
> Users mailing list
> Users at openser.org
> http://openser.org/cgi-bin/mailman/listinfo/users
>
> _______________________________________________
> Users mailing list
> Users at openser.org
> http://openser.org/cgi-bin/mailman/listinfo/users
>
>   




More information about the sr-users mailing list