Linux Netfilter discussions
 help / color / mirror / Atom feed
* conntrack_sip
@ 2009-03-06 13:18 Andrew O. Zhukov
  2009-03-06 14:27 ` conntrack modules in fedora Andrew O. Zhukov
  0 siblings, 1 reply; 2+ messages in thread
From: Andrew O. Zhukov @ 2009-03-06 13:18 UTC (permalink / raw)
  To: netfilter

ëernel 2.6.25.14-69.fc8
iptables-1.4.1.1-1.fc8.x86_64.rpm

followed trouble:

SIP gw                  Fedora               SipProxy      ásterisk
192.168.2.24   192.168.2.1 666.666.34.46  555.555.184.13  555.555.184.13

Sip proxy without RTP proxy for not nat cusomers. It considetate SIP GW 
as 666.666.34.46 and do not switch on RTP proxy.

call from SIP GW to Asterisk. Dump from FedorÁ:

U 2009/03/05 21:00:11.899191 555.555.184.13:5060 -> 192.168.2.24:5060
   SIP/2.0 183 Session Progress..Via: SIP/2.0/UDP 
555.555.184.13:5060;branch=z9hG4bK878912355;rport=1025..From: "212ua1" <sip
   :101563@xxx.com>;tag=66346232..To: 
<sip:2292694@xxx.com>;tag=as41f52f95..Call-ID: 
1295544592-5060-4@192.168.2.24..
.....
..Contact: <sip:2292694@555.555.184.2>..Content-Type: 
application/sdp..Content-Length: 263....v=0..o=root 277
   97 27797 IN IP4 555.555.184.2..s=session..c=IN IP4 555.555.184.2..t=0

---
180 Ringing without sdp
---

U 2009/03/05 21:00:20.753646 555.555.184.13:5060 -> 192.168.2.24:5060
   SIP/2.0 200 OK..Via: SIP/2.0/UDP 
555.555.184.13:5060;branch=z9hG4bK878912355;rport=1025..Record-Route: 
<sip:555.555.184.13;
   lr=on;ftag=66346232>..From: "212ua1" 
<sip:101563@xxx.com>;tag=66346232..To: 
<sip:2292694@xxx.com>;tag=as41f52f95..C
   all-ID: 1295544592-5060-4@192.168.2.24..CSeq: 31 INVITE..User-Agent: 
Telegroup Ukraine..Allow: INVITE, ACK, CANCEL, OPTIO
   NS, BYE, REFER, SUBSCRIBE, NOTIFY..Supported: replaces..Contact: 
<sip:2292694@555.555.184.2>..Content-Type: application/sd
   p..Content-Length: 265....v=0..o=root 27797 27798 IN IP4 
555.555.184.13..s=session..c=IN IP4 555.555.184.13..t=0 0..m=audio
    29444 RTP/AVP 18 101..a=rtpmap:18 G729/8000..a=fmtp:18 
annexb=no..a=rtpmap:101 telephone-event/8000..a=fmtp:101 0-16..a=
   silenceSupp:off - - - -..a=ptime:20..a=sendrecv..

in the "OK" message ásterisk ip addresses in SDP changed to the ip 
addresses of SipProxy by sip_conntrack. I can provide DUMP from the 
SipProxy and the complete set of dumps for developers.

Thanks in advance.


-- 
Andrew O. Zhukov
Telegroup Ukraine


^ permalink raw reply	[flat|nested] 2+ messages in thread

* conntrack modules in fedora
  2009-03-06 13:18 conntrack_sip Andrew O. Zhukov
@ 2009-03-06 14:27 ` Andrew O. Zhukov
  0 siblings, 0 replies; 2+ messages in thread
From: Andrew O. Zhukov @ 2009-03-06 14:27 UTC (permalink / raw)
  To: netfilter

ëernel 2.6.25.14-69.fc8
iptables-1.4.1.1-1.fc8.x86_64.rpm

Is it somehow possible to switch off conntrack modules in this 
configuration.

conntrack_ftp Ánd conntrack_sip possible exclude by rmod, modprobe -r
lsmod don't show it. In iptables.config IPTABLES_MODULES=""
Multiple reload iptables and linux itself. No result.

In any case I can access outside passive ftp and
I see corrected SIP packets on the outside registar.

Any ideas?


-- 
Andrew O. Zhukov
Telegroup Ukraine

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2009-03-06 14:27 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-03-06 13:18 conntrack_sip Andrew O. Zhukov
2009-03-06 14:27 ` conntrack modules in fedora Andrew O. Zhukov

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox