[Asterisk-Users] (newby) Asterisk on the open internet & security

tim panton tpanton at attglobal.net
Sun Feb 5 14:49:07 MST 2006


On 5 Feb 2006, at 21:11, Michiel van Baak wrote:

> On 22:38, Sun 05 Feb 06, Cosmin Prund wrote:
>>
>> Hello everyone. I'm again bothering you with a bit of a problem,  
>> hopefully
>> not really a problem. I just need someone to tell me this is ok :-)
>>
>> I'm planning on having two * machines on the open internet (ie:  
>> not behind a
>> NAT) and having them talk to each other using IAX2. I can handle  
>> all the
>> fire walling requirements in this case easy because at least one  
>> of the *'s
>> has a fixed address and I'll be able to filter traffic on IP.
>
> If you dont trust and fear someone is sniffing your udp
> packets that hold user/secret, you can always setup openvpn
> (or whatever vpn solution) and use that to connect first and
> tunnel your sip traffic through it

Better yet, if you want some added security
you can get IAX2 to do encryption between two asterisk
endpoints instead and avoid the extra latency of a vpn layer.

Tim.

http://www.westhawk.co.uk/

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.digium.com/pipermail/asterisk-users/attachments/20060205/62feb620/attachment.htm


More information about the asterisk-users mailing list