hi , i need a help
I try to build VoIP small network with asterisk and have a plan to using TLS+SRTP for securing my communications.
im using asterisk 16.6.1 on ubuntu 20.04.2 LTS (on virtualbox)
im traying to configure TLS on asterisk may times but still not working
this is my asterisk logs;
Connected to Asterisk 16.6.1 currently running on arwadhahri-VirtualBox (pid = 1124)
arwadhahri-VirtualBoxCLI> reload
Asterisk Queue Logger restarted
[Apr 13 23:34:42] NOTICE[2708]: cdr.c:4517 cdr_toggle_runtime_options: CDR simple logging enabled.
[Apr 13 23:34:42] NOTICE[2709]: sorcery.c:1334 sorcery_object_load: Type ‘system’ is not reloadable, maintaining previous values
[Apr 13 23:34:42] WARNING[2708]: res_phoneprov.c:1230 get_defaults: Unable to find a valid server address or name.
[Apr 13 23:34:42] NOTICE[2708]: chan_skinny.c:8459 config_load: Configuring skinny from skinny.conf
Reloading SIP
[Apr 13 23:34:42] ERROR[2708]: ari/config.c:312 process_config: No configured users for ARI
[Apr 13 23:34:42] NOTICE[2708]: cel_custom.c:95 load_config: No mappings found in cel_custom.conf. Not logging CEL to custom CSVs.
Added CEL CSV mapping for 0 files.
== Using SIP CoS mark 4
[Apr 13 23:34:42] WARNING[1224]: chan_sip.c:31690 build_peer: ‘tls’ is not a valid transport type when tlsenable=no. If no other is specified, the defaults from general will be used.
[Apr 13 23:34:42] WARNING[1224]: chan_sip.c:31690 build_peer: ‘tls’ is not a valid transport type when tlsenable=no. If no other is specified, the defaults from general will be used.
== Setting global variable ‘CONSOLE’ to ‘Console/dsp’
== Setting global variable ‘IAXINFO’ to ‘guest’
Reloading MGCP
== Setting global variable ‘TRUNK’ to ‘DAHDI/G2’
== Setting global variable ‘TRUNKMSD’ to ‘1’
Reloading unistim.conf…
== Setting global variable ‘CONSOLE-AEL’ to ‘“Console/dsp”’
== Setting global variable ‘IAXINFO-AEL’ to ‘guest’
== Setting global variable ‘OUTBOUND-TRUNK’ to ‘“Zap/g2”’
== Setting global variable ‘OUTBOUND-TRUNKMSD’ to ‘1’
[Apr 13 23:34:42] NOTICE[2708]: app_queue.c:9144 reload_queue_rules: queuerules.conf has not changed since it was last loaded. Not taking any action.
arwadhahri-VirtualBoxCLI>
my sip.conf
[general]
tlsenable=yes
tlsbindaddr=0.0.0.0:5061
tlscertfile=/etc/asterisk/keys/asterisk.pem
tlscafile=/etc/asterisk/keys/ca.crt
tlscapath=/etc/asterisk/keys
tlsprivatekey=/etc/asterisk/keys/asterisk.key
tlsclientmethod=tlsv1
[6007]
type=friend
host=dynamic
dtmfmode=rfc2833
disallow=all
allow=g722
fullname = arwa
username = arwa
secret=0001
context = work
transport=tls
[6006]
type=friend
host=dynamic
dtmfmode=rfc2833
disallow=all
allow=g722
fullname = abir
username = abir
secret=1234
context = work
transport=tls
my extensions.conf
[work]
exten => _6XXX,1,Dial(SIP/${EXTEN},20)
exten => _6XXX,2,Hangup()