[SR-Users] OS-assigned TLS source Port#?

Matthias Urlichs matthias at urlichs.de
Wed Mar 2 22:21:13 CET 2022


On 02.03.22 19:35, Henning Westerholt wrote:
> this is the port kamailio is usually configured to use for TLS. What is your expectation which port it should use?

I'm talking about the source port, not the destination.

My expectation is for Kamailio to use a random kernel-assigned source 
port, just like everybody else who opens a TCP connection.

How do you expect two Kamailio processes to talk to each other if they 
both decide to connect to the other side simultaneously? This works with 
"normal" TCP, by design, but AFAIK the TLS layer has a strict 
client/server separation and thus can't do that.

-- 
-- mit freundlichen Grüßen
-- 
-- Matthias Urlichs

-------------- next part --------------
A non-text attachment was scrubbed...
Name: matthias.vcf
Type: text/x-vcard
Size: 4 bytes
Desc: not available
URL: <http://lists.kamailio.org/pipermail/sr-users/attachments/20220302/86001837/attachment.vcf>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 840 bytes
Desc: OpenPGP digital signature
URL: <http://lists.kamailio.org/pipermail/sr-users/attachments/20220302/86001837/attachment.sig>


More information about the sr-users mailing list