karl anderson
50c499d75f
updated websocket alias logic for in-dialog requests
12 years ago
karl anderson
687ac1f110
new log lines for in-dialog websocket
12 years ago
karl anderson
23850d4f8b
range the while loop, just in case
12 years ago
karl anderson
1f43638296
listen on the UDP ports for FS->kamailio traffic when using websockets
12 years ago
karl anderson
fb944f86a7
comment out the ca.pem by default
12 years ago
bitbashing
cf691338ec
KAZOO-1513: remove my dispatcher config
12 years ago
karl anderson
55063d5c51
correct typo
12 years ago
karl anderson
df3323467b
KAZOO-1513: prepare for merge
12 years ago
karl anderson
299768d33c
KAZOO-1513: tweaks
12 years ago
karl anderson
9ec4d26505
KAZOO-1513: add tls bindings
12 years ago
karl anderson
4d9db1805d
KAZOO-1513: that just makes it confusing
12 years ago
karl anderson
89af95c914
KAZOO-1513: moving some things around since we must change local.cfg
12 years ago
lazedo
1af0c70fc5
order of dbtext module
12 years ago
lazedo
ba26c0a00e
pua module files
12 years ago
lazedo
33ff0e2c00
enable tls/wss
create single point of configuration (substdef.cfg)
12 years ago
bitbashing
be61320650
Adding a few more checks before allowing a websocket
12 years ago
karl anderson
2580fd2d45
allow traffic from the same server (RTMP gateway)
12 years ago
karl anderson
cf249478c2
KAZOO-2363: do not remap the valid 6xx codes
12 years ago
karl anderson
38aa1e5c1f
added websockets role and fix double AMQP binding if the example config.ini is used
12 years ago
karl anderson
ff89e4dfc6
ensure the list is non-empty
12 years ago
karl anderson
54e60f8143
fix hunt in the backup dispatcher list, fix tab-to-space and enable tls by default
12 years ago
karl anderson
fa88eb7ab7
always check ds list 2 if not found
12 years ago
karl anderson
317913d70b
update registration failure log
12 years ago
karl anderson
e305fea6f4
KAZOO-1846: do not send option pings if the user-agent is for a SPA8000, it causes the ATA to reboot when multiple lines are registered
12 years ago
karl anderson
4a1b8d4121
record_route on re-invite
12 years ago
karl anderson
0423a56d70
handle inbound notifies like options
12 years ago
karl anderson
d6f9581d9b
support associations in the backup list and fix issue with redirect when challenged
12 years ago
karl anderson
8f877e65d3
move work on redirect tracking to dev env
12 years ago
karl anderson
ff083338ac
move min/max expires to presence module
12 years ago
karl anderson
5e16640224
config tweaks
12 years ago
karl anderson
9a51eed721
add exit after send_reply for MESSAGE
12 years ago
karl anderson
adca0c5eac
correct mpath
12 years ago
karl anderson
854016e224
tweak what is considered a retry requiring failure
12 years ago
karl anderson
bda404305c
config tweaks to ignore errors post session progress and ignore MESSAGE for now
12 years ago
karl anderson
0dc462a5fa
always ping
12 years ago
karl anderson
5c861c8763
created a role to enable traffic filters, strip custom headers, and remove diversion headers for now
12 years ago
karl anderson
91a846d566
more log tweaks
12 years ago
karl anderson
3c11f5132e
log line tweak
12 years ago
karl anderson
cf1c8b19da
allow trusted IPs to bypass all checks
12 years ago
karl anderson
b4aae404f9
more tweaks, move dispatcher.list to dbtext and drop the extension
12 years ago
karl anderson
171ab48442
tweaks
12 years ago
Anca Vamanu
c9c62c8bd2
default.cfg Changes in DOS Prevention
- drop only REGITSER, SUBSCRIBE or OPTIONS that has an IP as a To domain
or no to domain
- for Invites, drop the ones that have an IP as an auth_realm.
12 years ago
Anca Vamanu
35bb43c754
Added dbtext files.
12 years ago
Anca Vamanu
410b972bc7
default.cfg Improved DOS protection
- use permissions module to have the equivalent of a white list, a list
of IPs that are trusted. This module is used together with db_text and
the list of IPs and IP ranges will be specified in the address dbtext
file.
- drop requests that have no To domain or a To domain consisting of an
IP.
- reply to Options from outside only if the RURI domain is not IP.
12 years ago
Anca Vamanu
f48ad99a3f
registrar-role.cfg: DOS prevention
- reject Register to IP domain
- check for brute force attack - allow only two consecutive attempts to
authenticate. If both failed block the account for 2 minutes.
12 years ago
Anca Vamanu
033eeb46f4
default.cfg:disable replys to Options from outside
12 years ago
Anca Vamanu
7f5ac5a17b
default.cfg - introduced DOS prevention
Use pike module to drop the SIP requests in case of a DOS
attack.
12 years ago
Anca Vamanu
267d3472eb
dispatcher extensions
- distribute also Register and Subscribes to groups 20 and 30
respectively
- for Invites introduce a backup group 2 to be used in case in group 1
there are less than 3 available gateways
12 years ago
karl anderson
ed4ae26a01
fix kamailio role dependencies, add more async IO workers, and constrain erlang ports
12 years ago
karl anderson
d0adf5af20
correct copy/paste error
13 years ago