[Freeswitch-users] OT: SIP and IP spoofing

Mathieu Rene mrene_lists at avgs.ca
Wed Mar 3 16:34:51 PST 2010


Theorically you can spoof the network's ip address as long as you set  
the contact header to where the reply should be sent.

Mathieu Rene
Avant-Garde Solutions Inc
Office: + 1 (514) 664-1044 x100
Cell: +1 (514) 664-1044 x200
mrene at avgs.ca




On 3-Mar-10, at 3:07 AM, Jonas Gauffin wrote:

> Hello,
>
> My sip gateway provider are using both IP address locking (only my  
> servers IP addresses can use my gateway account) and Digest  
> authentication on every call.
> I asked why and they said that the account would be vulnerable to IP  
> spoofing otherwise. Is that possible? I mean, if someone fakes my  
> servers IP address in the packets, shouldn't the responses be sent  
> back to my server and not the one creating the fake packets? Are  
> there any other reasons to use both ip locking and digest  
> authentication?
>
> Regards,
>   Jonas
> _______________________________________________
> FreeSWITCH-users mailing list
> FreeSWITCH-users at lists.freeswitch.org
> http://lists.freeswitch.org/mailman/listinfo/freeswitch-users
> UNSUBSCRIBE:http://lists.freeswitch.org/mailman/options/freeswitch-users
> http://www.freeswitch.org





More information about the FreeSWITCH-users mailing list