[Asterisk-Users] SIP security

Olle E Johansson oej at edvina.net
Wed Jan 4 02:00:33 MST 2006


Tomislav Parcina wrote:
> I have * server that has public IP. Some users with their softphones 
> (and other with hardphones) need to connect to that * server and call 
> out thrue Zap lines. As far as I know when someone tries to authenticate 
> to * server using SIP protocol, he sends data in plain text format. 
> Right? How can I protect * server from snifers?
> 
> I would like to use SJphone softphone for above purpose.
> 
> 

All SIp authentications are done with MD5 basic digest, not with plain 
text auth. Plain text auth was remove from SIP a long time ago.

/O



More information about the asterisk-users mailing list