help with limiting port 5060 to specific IP's - Nftables

Status
Not open for further replies.

buyuksoy

Silver Partner
Basic Certified
Joined
Mar 29, 2012
Messages
9
Reaction score
7
Dear All,

I could not find how to limit connections to port 5060 from specific IP's only on nftables. Can someone help me how to implement it or send a link that shows how to do it?

Thanks,
Bora
 
Use a firewall in front, as it should be.

Nftables is just the last firewall protection that's built into 3CX.
 
I could not find how to limit connections to port 5060 from specific IP's only on nftables. Can someone help me how to implement it or send a link that shows how to do it?
I am not entirely sure what you are trying to ultimately accomplish -- limiting 5060 at NFT does not sound like the best solution, but here is a post with my notes if you are adamant. I think the ip saddr 1.1.1.1/32 part is what you are looking for.

Some other thoughts:
- This could break 3CX.
- I would not test this on a production system.
- Once 3CX services restart, your rules could be appended to with 3CX's own rules.
- Editing the rules that 3CX services reference on restart is likely to be overridden in future updates.​
 
Status
Not open for further replies.

Forum statistics

Threads
111,974
Messages
590,081
Members
164,899
Latest member
mazet