Block traffic from unknown IP

prasadm
Posts: 21
Member Since:
2007-03-20

Hi all,

I have the newer version of TB ( 2.6.1.13 ) running on one server and is so far working okay. I have a SIP trunk only for incoming traffic setup on the TB. Since I only receive calls on this the incoming trunk is setup as follows. The IP address a.b.c.d is the address of the carrier who is sending calls to my TB. So far so good. However I would like to know how secure this is.. Is it possible for someone else to send us calls on the same trunk without this being configured on the TB ? Say from IP address w.x.y.z. ? What will happen if someone does send us a call ? In the general settings, allow anonymous calls is set to yes. I am a bit wary of testing this on a live system, but can someone clarify what will happen if we receive a call from ip w.x.y.x ? To secure the TB trunks do I still need to enter the register string ? ( at the moment I do not have a register string entered and calls are passing but I would really like to know if that would be necessary to make it more secure. Or will it ?)

Thanks a lot..

host=a.b.c.d
username=
secret=
type=friend
allow=ulaw&alaw&g729&g723
canreinvite=no
progressinband=yes



prasadm
Posts: 21
Member Since:
2007-03-20
Bump !

Anyone knows this ? Or was it a dumb question ?



bubbapcguy
Posts: 3774
Member Since:
2006-06-02
your question

Well come on, what do you think of when I ask you

"Block traffic from unknown IP" Um unknown IP ...UM if it is unknown...well....

You task should be to BLOCK ALL IP's and allow only those you wish.
this can be done with IP tables and webmin
or you can use something at the border (better than the iptables)



prasadm
Posts: 21
Member Since:
2007-03-20
okay, I rephrase the question..

Does asterisk block all traffic from IP ddresses that are not defined in the incoming trunk group ? ie, without the use of a firewall ? I m trying to block SIP traffic not looking at the admin part of Trixbox.. Whan I said Unknown, I only meant that is not defined in the trixbox..

Prasad



Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.