How much TLS traffic are you sending? Do your user re-register ever 2 seconds? I find it hard to believe that just SIP signaling via TLS would cause performance degradation unless there is an inordinate amount of encryption/decryption going on and your CPU is a wuss...<div>
<br></div><div>-MC<br><br><div class="gmail_quote">On Thu, Dec 30, 2010 at 6:40 AM, Michel  Freiha <span dir="ltr">&lt;<a href="mailto:freiham@splendor.net">freiham@splendor.net</a>&gt;</span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">
Dear Sir,<br>
<br>
I know that openSIPS supports TLS...the major issue that we are facing<br>
performance degradation once the number of users using TLS increase and<br>
reach some hundreds...<br>
<br>
I just first need to know how many concurrent registered users using TLS<br>
FS can support?<br>
Second, is there any manual that I can follow in order to accomplish<br>
this scenario?<br>
<br>
Regards<br>
<font color="#888888"><br>
Michel Freiha<br>
Technical Manager<br>
Splendor Telecom (<a href="http://www.splendor.net" target="_blank">www.splendor.net</a>)<br>
Beirut, Lebanon<br>
Phone: +961 1 373725<br>
Fax: +961 1 375554<br>
</font><div><div></div><div class="h5"><br>
<br>
-----Original Message-----<br>
From: <a href="mailto:freeswitch-users-bounces@lists.freeswitch.org">freeswitch-users-bounces@lists.freeswitch.org</a><br>
[mailto:<a href="mailto:freeswitch-users-bounces@lists.freeswitch.org">freeswitch-users-bounces@lists.freeswitch.org</a>] On Behalf Of<br>
Steven Ayre<br>
Sent: Thursday, December 30, 2010 4:33 PM<br>
To: FreeSWITCH Users Help<br>
Subject: Re: [Freeswitch-users] Freeswitch with TLS<br>
<br>
FreeSWITCH is a b2bua not proxy server.<br>
<br>
However, yes it would be possible to accept a SIP TLS call and bridge it<br>
to a call going to OpenSIPS. It won&#39;t forward the original messages, but<br>
will forward the signalling (i.e. you&#39;ll get ringing, answered etc<br>
passed along but it&#39;ll be in separate calls not just adding a Via header<br>
when forwarding).<br>
<br>
OpenSIPS supports TLS itself though - any particular reason you&#39;re not<br>
using its own support?<br>
<br>
-Steve<br>
<br>
<br>
On 30 December 2010 11:50, Michel  Freiha &lt;<a href="mailto:freiham@splendor.net">freiham@splendor.net</a>&gt; wrote:<br>
&gt; Dear Sir,<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; I&#39;m planning to use Freeswitch server as a proxy server before<br>
&gt; OpenSIPS...The Job of freeswitch is only when I need to use SIP over<br>
TLS<br>
&gt; or SRTP when there is a severe firewall on user side...The Client will<br>
<br>
&gt; send SIP over TLS to freeswitch and the freeswitch will forward these<br>
&gt; packets to openSIPS or kamailio or whatever Registrar server...<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; Is that possible?<br>
&gt;<br>
&gt; How many concurrent TLS connection a freeswitch server can handle?<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; Regards<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; _______________________________________________<br>
&gt; FreeSWITCH-users mailing list<br>
&gt; <a href="mailto:FreeSWITCH-users@lists.freeswitch.org">FreeSWITCH-users@lists.freeswitch.org</a><br>
&gt; <a href="http://lists.freeswitch.org/mailman/listinfo/freeswitch-users" target="_blank">http://lists.freeswitch.org/mailman/listinfo/freeswitch-users</a><br>
&gt; UNSUBSCRIBE:<a href="http://lists.freeswitch.org/mailman/options/freeswitch-use" target="_blank">http://lists.freeswitch.org/mailman/options/freeswitch-use</a><br>
&gt; rs<br>
&gt; <a href="http://www.freeswitch.org" target="_blank">http://www.freeswitch.org</a><br>
&gt;<br>
&gt;<br>
<br>
_______________________________________________<br>
FreeSWITCH-users mailing list<br>
<a href="mailto:FreeSWITCH-users@lists.freeswitch.org">FreeSWITCH-users@lists.freeswitch.org</a><br>
<a href="http://lists.freeswitch.org/mailman/listinfo/freeswitch-users" target="_blank">http://lists.freeswitch.org/mailman/listinfo/freeswitch-users</a><br>
UNSUBSCRIBE:<a href="http://lists.freeswitch.org/mailman/options/freeswitch-users" target="_blank">http://lists.freeswitch.org/mailman/options/freeswitch-users</a><br>
<a href="http://www.freeswitch.org" target="_blank">http://www.freeswitch.org</a><br>
<br>
_______________________________________________<br>
FreeSWITCH-users mailing list<br>
<a href="mailto:FreeSWITCH-users@lists.freeswitch.org">FreeSWITCH-users@lists.freeswitch.org</a><br>
<a href="http://lists.freeswitch.org/mailman/listinfo/freeswitch-users" target="_blank">http://lists.freeswitch.org/mailman/listinfo/freeswitch-users</a><br>
UNSUBSCRIBE:<a href="http://lists.freeswitch.org/mailman/options/freeswitch-users" target="_blank">http://lists.freeswitch.org/mailman/options/freeswitch-users</a><br>
<a href="http://www.freeswitch.org" target="_blank">http://www.freeswitch.org</a><br>
</div></div></blockquote></div><br></div>