- Joined
- Dec 15, 2007
- Messages
- 102
- Reaction score
- 4
Hi,
I was speaking with support on another case i was told the following:
'In regards to the logs being very large, in a capture you previously sent, I noticed a lot of registrations coming through the tunnel (from the SBC) with User Agent: Asterisk PBX.
By checking the SIP packets I can be quite certain that it is a hacking attempt.
This was quite a lot of traffic so this might be what was causing it. However I cannot be sure of this, the above is just as an assumption.
For the above to happen, it is quite possible that port 5060 is open on the firewall of the SBC and forwarded to the SBC. If this is the case, please close the port as the SBC does not need any port forwarding to function.
I am not referring to the PBX firewall. I am referring to SBC firewall. Check if port 5060 is open and forwarded to the SBC on the site where the SBC resides. If it is, close the port as the SBC does not need to have this forwarded to function.'
Am i correct in assuming that the router firewall (public/internet facing) does not need to have port 5060 open and pointing to the SBC? Or is the above requesting something entirely different?
Regards
Tahir
I was speaking with support on another case i was told the following:
'In regards to the logs being very large, in a capture you previously sent, I noticed a lot of registrations coming through the tunnel (from the SBC) with User Agent: Asterisk PBX.
By checking the SIP packets I can be quite certain that it is a hacking attempt.
This was quite a lot of traffic so this might be what was causing it. However I cannot be sure of this, the above is just as an assumption.
For the above to happen, it is quite possible that port 5060 is open on the firewall of the SBC and forwarded to the SBC. If this is the case, please close the port as the SBC does not need any port forwarding to function.
I am not referring to the PBX firewall. I am referring to SBC firewall. Check if port 5060 is open and forwarded to the SBC on the site where the SBC resides. If it is, close the port as the SBC does not need to have this forwarded to function.'
Am i correct in assuming that the router firewall (public/internet facing) does not need to have port 5060 open and pointing to the SBC? Or is the above requesting something entirely different?
Regards
Tahir
