I begin with asterisk, I think I need help from the formers. I’ve install a Asterisk 1.8.13.1~dfsg1-3+deb7u6 version on a separate VLAN. To be exact my asterisk server belongs to 192.168.10.0/24 and my clients asterisk to the VLAN 10.204.1.0/24. I have iptables rules between the 2 VLANs. But when I try to register a client it fails. I realized that clients are constinually asking for register, but the server don’t response(tcpdump on the firewall shows: 14:31:29.820932 IP 10.204.1.76.sip > voip.td.auf.sip: SIP: PUBLISH sip:koye.dansaibo@192.168.10.122 SIP/2.0
14:31:30.902822 IP 10.204.1.177.sip > voip.td.auf.sip: SIP: REGISTER sip:192.168.10.122 SIP/2.0
14:31:33.413412 IP 10.204.1.177.sip > voip.td.auf.sip: SIP: REGISTER sip:192.168.10.122 SIP/2.0
14:31:33.914940 IP 10.204.1.177.sip > voip.td.auf.sip: SIP: REGISTER sip:192.168.10.122 SIP/2.0).
My iptables follows: _####BEGIN _ _##IAX & SIP clients to server asterisk _ _#iptables -t filter -I FORWARD -s 10.204.1.0/24 -d 192.168.10.0/24 -p udp --dport 4569 -m state --state NEW -j ACCEPT _ #iptables -t filter -I FORWARD -s 10.204.1.0/24 -d 192.168.10.0/24 -p udp -m multiport --dport 5060,61001:62000 -m state --state NEW -j ACCEPT ## IAX & SIP server to clients asterisk #iptables -t filter -I FORWARD -s 192.168.10.0/24 -d 10.204.1.0/24 -p udp -sport 4569 -m state --state NEW -j ACCEPT #iptables -t filter -I FORWARD -s 192.168.10.0/24 -d 10.204.1.0/24 -p udp -m multiport --sport 5060,61001:62000 -m state --state NEW -j ACCEPT ###END
Note that I already a -m state ETABLISH, RELATED in a separate file.