[VOIPSEC] setting up trixbox - opening ports

Robin Wood dninja at gmail.com
Tue Feb 20 05:39:49 CST 2007


Hi
It is going to be used as a business line with an external dial in
number probably going through sipgate.co.uk so would I need to open it
up to them.

Opening port 80 I'm happy with but opening such a wide range of ports
(10022 ports) doesn't seem right! Also, with just a soho router I'm
not sure if I can do that at all or if I can if I have to go through
and manually open all through the web interface (would script it but
still effort).

Robin

On 2/19/07, Anthony Rodgers <Anthony_Rodgers at dnv.org> wrote:
> Hi Robin,
>
> You only need to open those ports on a firewall to the world if you
> expect to be receiving SIP calls from the world. If you are
> connecting to a single ITSP, then you should only open those ports
> for the ITSP's IP address - if you do not intend to connect to
> external SIP providers at all, you shouldn't open the ports at all.
>
> No different from port 80, really.......
>
> CP
>
> On 18-Feb-07, at 4:18 PM, Robin Wood wrote:
>
> > Hi
> > I'm new to voip and in the process of setting up my first server at
> > home. Going for Trixbox and going through a tutorial I got to this
> > point:
> >
> > http://www.voip-info.org/wiki/view/Asterisk%40Home+Handbook+Wiki
> > +Chapter+2#2531SettingupyourrouterfirewallsoAHcanco
> >
> > Which basically says, add the following router rules:
> >
> > Forward UDP Port 5060-5082 to 192.168.1.2
> > Forward UDP Port 10000 to 20000 to 192.168.1.2
> >
> > Is this usual for a voip setup? From a security point of view this
> > seems like a bad thing.
> >
> > Robin
> >
> > _______________________________________________
> > Voipsec mailing list
> > Voipsec at voipsa.org
> > http://voipsa.org/mailman/listinfo/voipsec_voipsa.org
> >
>
>
> _______________________________________________
> Voipsec mailing list
> Voipsec at voipsa.org
> http://voipsa.org/mailman/listinfo/voipsec_voipsa.org
>




More information about the Voipsec mailing list