Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.
Buying anything on Amazon? Please use the Geekzone Amazon aff link.




30 posts

Geek


Topic # 105338 2-Jul-2012 20:47 Send private message

I have my IP PBX working, it works with remote extensions and everything works perfectly,

I have ports open on my router forwarding to the internal IP address of the PBX but when I check whether I can see if the ports are open from canyouseeme.org it tells me port 5060 isn't open, yet it is, is this weird or have I missed something really obvious?

Create new topic
20081 posts

Uber Geek
+1 received by user: 1669

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649777 2-Jul-2012 20:59 Send private message

It's not surprising, it depends entirely what it's doing to test for open ports.

You really need to understand the deeper aspects if TCP/IP to understand why, but in effect most scanning is TCP based since you can scan for SYN packets or responses.

SIP typically uses UDP which is a connectionless protocol.




30 posts

Geek


  Reply # 649779 2-Jul-2012 21:06 Send private message

it just seemed bizzare as none of the SIP ports actually showed open yet all the ports for the microsoft crap do, but she works a treat

I am loving my IP pbx though after a couple of little teething issues its run without fault or even a restart for 6 months,

20081 posts

Uber Geek
+1 received by user: 1669

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649798 2-Jul-2012 21:43 Send private message

What sort of PBX are you using? You clearly need to be aware of the massive security implications of leaving a PBX with port 5060 open to the internet. Unless you have good security in place it's not a case of if it will be compromised, but when.




30 posts

Geek


  Reply # 649800 2-Jul-2012 21:47 Send private message

Its lurking behind an cisco ASA 5505 on a private VLAN segmented off from the rest of the network,

and the wife has a newfoundland so if anyone gets in she'll set him onto them after she chews their ear off

2034 posts

Uber Geek
+1 received by user: 281

Trusted
Subscriber

  Reply # 649816 2-Jul-2012 22:58 Send private message

Being behind an ASA with port 5060 open to the world isn't exactly any safer than having it's arse hanging out on the internet unprotected.

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

Netflix officialy launching in NZ in March
Created by jarj, last reply by tdgeek on 21-Nov-2014 19:08 (97 replies)
Pages... 5 6 7


Click Monday Deals
Created by mrtoken, last reply by Krishant007 on 24-Nov-2014 17:11 (25 replies)
Pages... 2


Gull Employment Dispute.
Created by networkn, last reply by networkn on 25-Nov-2014 13:16 (103 replies)
Pages... 5 6 7


Current Netflix payment method as of Nov 14 - Cant pay
Created by andynz, last reply by Kiwipixter on 25-Nov-2014 10:45 (33 replies)
Pages... 2 3


The Warehouse pulling R18 games and DVD's
Created by semigeek, last reply by richms on 25-Nov-2014 13:02 (31 replies)
Pages... 2 3


Voda VDSL, Horrid offnet performance.
Created by TimA, last reply by Demeter on 25-Nov-2014 11:49 (28 replies)
Pages... 2


SEO spammers
Created by freitasm, last reply by jamesrt on 24-Nov-2014 16:09 (25 replies)
Pages... 2


SSD hard drive in aging HTPC disappointingly slow
Created by watman, last reply by joker97 on 23-Nov-2014 22:02 (20 replies)
Pages... 2



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.