[SR-Users] it's auth module send clear text password?

PICCORO McKAY Lenz mckaygerhard at gmail.com
Tue Mar 5 13:10:55 CET 2019


thanks for aswer Federico, another, if the communication beetween asterisk
and kamailio are using public ip, that password are easyl hackaeable?


i read rfc2617 but does are not clear respect security and seems SIP is not
an easy protocol to secure due relationship beetween both are trusted or
something similar?

El mar., 5 de mar. de 2019 a la(s) 03:08, Federico Cabiddu (
federico.cabiddu at gmail.com) escribió:

> Hi,
> auth module implement digest authentication (rfc2617) so passwords are not
> sent in clear from the client to kamailio.
>
> Federico
>
> On Tue, Mar 5, 2019 at 7:07 AM PICCORO McKAY Lenz <mckaygerhard at gmail.com>
> wrote:
>
>> if kamailio doe snot use TLS all the mechanish in atuh module are send
>> the pasword nude to the network?
>>
>> Lenz McKAY Gerardo (PICCORO)
>> http://qgqlochekone.blogspot.com
>> _______________________________________________
>> Kamailio (SER) - Users Mailing List
>> sr-users at lists.kamailio.org
>> https://lists.kamailio.org/cgi-bin/mailman/listinfo/sr-users
>>
> _______________________________________________
> Kamailio (SER) - Users Mailing List
> sr-users at lists.kamailio.org
> https://lists.kamailio.org/cgi-bin/mailman/listinfo/sr-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.kamailio.org/pipermail/sr-users/attachments/20190305/7918e1f8/attachment.html>


More information about the sr-users mailing list