Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.



30 posts

Geek


Topic # 105338 2-Jul-2012 20:47 Send private message

I have my IP PBX working, it works with remote extensions and everything works perfectly,

I have ports open on my router forwarding to the internal IP address of the PBX but when I check whether I can see if the ports are open from canyouseeme.org it tells me port 5060 isn't open, yet it is, is this weird or have I missed something really obvious?

Create new topic
19868 posts

Uber Geek
+1 received by user: 1565

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649777 2-Jul-2012 20:59 Send private message

It's not surprising, it depends entirely what it's doing to test for open ports.

You really need to understand the deeper aspects if TCP/IP to understand why, but in effect most scanning is TCP based since you can scan for SYN packets or responses.

SIP typically uses UDP which is a connectionless protocol.




30 posts

Geek


  Reply # 649779 2-Jul-2012 21:06 Send private message

it just seemed bizzare as none of the SIP ports actually showed open yet all the ports for the microsoft crap do, but she works a treat

I am loving my IP pbx though after a couple of little teething issues its run without fault or even a restart for 6 months,

19868 posts

Uber Geek
+1 received by user: 1565

Moderator
Trusted
Biddle Corp
Subscriber

  Reply # 649798 2-Jul-2012 21:43 Send private message

What sort of PBX are you using? You clearly need to be aware of the massive security implications of leaving a PBX with port 5060 open to the internet. Unless you have good security in place it's not a case of if it will be compromised, but when.




30 posts

Geek


  Reply # 649800 2-Jul-2012 21:47 Send private message

Its lurking behind an cisco ASA 5505 on a private VLAN segmented off from the rest of the network,

and the wife has a newfoundland so if anyone gets in she'll set him onto them after she chews their ear off

2015 posts

Uber Geek
+1 received by user: 276

Trusted
Subscriber

  Reply # 649816 2-Jul-2012 22:58 Send private message

Being behind an ASA with port 5060 open to the world isn't exactly any safer than having it's arse hanging out on the internet unprotected.

Create new topic




Twitter »
Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





Trending now »

Hot discussions in our forums right now:

How good is your general Science Knowledge?
Created by Aredwood, last reply by joker97 on 31-Oct-2014 23:44 (39 replies)
Pages... 2 3


Government Limos
Created by networkn, last reply by Bung on 31-Oct-2014 12:39 (94 replies)
Pages... 5 6 7


Snap refuses to replace faulty gear
Created by Brendan, last reply by MadEngineer on 28-Oct-2014 19:07 (92 replies)
Pages... 5 6 7


Sky will be 'upgrading software' of My Sky to connect to internet. What does that mean?
Created by Geektastic, last reply by NonprayingMantis on 31-Oct-2014 23:55 (27 replies)
Pages... 2


Shutup and take my money (via NFC on my mobile phone)
Created by sxz, last reply by sonyxperiageek on 31-Oct-2014 22:34 (24 replies)
Pages... 2


Uber: a cheaper taxi ride?
Created by kingdragonfly, last reply by livisun on 31-Oct-2014 14:47 (34 replies)
Pages... 2 3


OneDrive code giveaway - go!
Created by freitasm, last reply by pgsheng on 1-Nov-2014 01:50 (33 replies)
Pages... 2 3


DDos Protection from ISP
Created by charsleysa, last reply by freitasm on 31-Oct-2014 12:11 (46 replies)
Pages... 2 3 4



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.