Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfseanse ignores RTP/SIP traffic

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 3 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E Offline
      elior021
      last edited by

      Hello, I'm using Pfsense firewall and I have a problem, I am being attacke by several IP addressed around the world, I have opened rules and blocked all of the IP that are attacking me, but one IP is attacking me through telephonic traffic sip/rtp among the rest through ports 5060 and the Pfsense ignores that traffic despite of the fact that I'm blocking it. What can I do? How can I block TP/SIP traffic to specific IP addresses?

      1 Reply Last reply Reply Quote 0
      • chpalmerC Offline
        chpalmer
        last edited by

        Rules are read from top to bottom. Make sure your block rules are at the top and use "Any" protocol…

        Triggering snowflakes one by one..
        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

        1 Reply Last reply Reply Quote 0
        • E Offline
          elior021
          last edited by

          The rule is first from the top and I also blocked "any" protocol and still he doesn't block me the traffic of the RTP in ports 5060, he just ignores them and I have no idea why, could it be that there is a definition in the firewall that says to ignore the telephonic traffic?

          1 Reply Last reply Reply Quote 0
          • J Offline
            johnjohn
            last edited by

            If you are running a telephony client or server behind pfsense, don´t use port forwarding and only allow inbound from your voip provider´s ip range. I see pfsense blocking quite a lot of connection attempts on port 5060 these days.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.