Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.
Buying anything on Amazon? Please use the Geekzone Amazon aff link.




30 posts

Geek


Topic # 105338 2-Jul-2012 20:47 Send private message

I have my IP PBX working, it works with remote extensions and everything works perfectly,

I have ports open on my router forwarding to the internal IP address of the PBX but when I check whether I can see if the ports are open from canyouseeme.org it tells me port 5060 isn't open, yet it is, is this weird or have I missed something really obvious?

Create new topic
20210 posts

Uber Geek
+1 received by user: 1775

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649777 2-Jul-2012 20:59 Send private message

It's not surprising, it depends entirely what it's doing to test for open ports.

You really need to understand the deeper aspects if TCP/IP to understand why, but in effect most scanning is TCP based since you can scan for SYN packets or responses.

SIP typically uses UDP which is a connectionless protocol.




30 posts

Geek


  Reply # 649779 2-Jul-2012 21:06 Send private message

it just seemed bizzare as none of the SIP ports actually showed open yet all the ports for the microsoft crap do, but she works a treat

I am loving my IP pbx though after a couple of little teething issues its run without fault or even a restart for 6 months,

20210 posts

Uber Geek
+1 received by user: 1775

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649798 2-Jul-2012 21:43 Send private message

What sort of PBX are you using? You clearly need to be aware of the massive security implications of leaving a PBX with port 5060 open to the internet. Unless you have good security in place it's not a case of if it will be compromised, but when.




30 posts

Geek


  Reply # 649800 2-Jul-2012 21:47 Send private message

Its lurking behind an cisco ASA 5505 on a private VLAN segmented off from the rest of the network,

and the wife has a newfoundland so if anyone gets in she'll set him onto them after she chews their ear off

2049 posts

Uber Geek
+1 received by user: 287

Trusted
Subscriber

  Reply # 649816 2-Jul-2012 22:58 Send private message

Being behind an ASA with port 5060 open to the world isn't exactly any safer than having it's arse hanging out on the internet unprotected.

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

Slaughter of Innocents
Created by networkn, last reply by networkn on 19-Dec-2014 17:46 (64 replies)
Pages... 3 4 5


youtube downloader
Created by Ford, last reply by jarledb on 22-Dec-2014 16:57 (18 replies)
Pages... 2


Spray Foam Insulation
Created by AACTech, last reply by timbosan on 19-Dec-2014 16:58 (36 replies)
Pages... 2 3


Crew Drinking on Flights - Why!?
Created by networkn, last reply by Geektastic on 22-Dec-2014 09:35 (34 replies)
Pages... 2 3


Police Camera Van Disguise
Created by Reanalyse, last reply by SirHumphreyAppleby on 23-Dec-2014 09:26 (78 replies)
Pages... 4 5 6


Spark, the least secure part of your home network?
Created by NZtechfreak, last reply by NonprayingMantis on 23-Dec-2014 02:02 (31 replies)
Pages... 2 3


Some lowlife is using my easy to remember number to commit idiocy
Created by joker97, last reply by joker97 on 22-Dec-2014 15:48 (15 replies)

Couriers starting to charge for redelivery
Created by mattwnz, last reply by rendezvous on 19-Dec-2014 11:45 (78 replies)
Pages... 4 5 6



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.