DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
2820 firewall help
- faaai
- Topic Author
- Offline
- New Member
Less
More
- Posts: 2
- Thank you received: 0
20 Sep 2011 15:26 #69432
by faaai
2820 firewall help was created by faaai
hi,
i have a 2820 with 2 wan on NAT i configured open port for wan1 and wan2 of 5060-5065 range and rtp ports on lan ip, on firewall in filter setup i specify the only ip that have access to the lan ip of PBX !!
i received an attach on 5060 port open on my pbx....
why the dryteck did not block other ip that tried to open 5060 port !!
i have a 2820 with 2 wan on NAT i configured open port for wan1 and wan2 of 5060-5065 range and rtp ports on lan ip, on firewall in filter setup i specify the only ip that have access to the lan ip of PBX !!
i received an attach on 5060 port open on my pbx....
why the dryteck did not block other ip that tried to open 5060 port !!
Please Log in or Create an account to join the conversation.
- nealuk
- Offline
- Member
Less
More
- Posts: 465
- Thank you received: 0
20 Sep 2011 16:41 #69434
by nealuk
Hello, does your 2820 have built in VoIP ? In this case the Vigors own on board VoIP takes precedance.
So I think what you need is the telnet command to disable VOIP:
'voip sip misc -D 1'
then to commit this to memory, and restart with the amended functionality
sys commit
sys reboot
Regards, Neal
Replied by nealuk on topic Re: 2820 firewall help
...why the dryteck did not block other ip that tried to open 5060 port ...faaai wrote:
Hello, does your 2820 have built in VoIP ? In this case the Vigors own on board VoIP takes precedance.
So I think what you need is the telnet command to disable VOIP:
'voip sip misc -D 1'
then to commit this to memory, and restart with the amended functionality
sys commit
sys reboot
Regards, Neal
Please Log in or Create an account to join the conversation.
- faaai
- Topic Author
- Offline
- New Member
Less
More
- Posts: 2
- Thank you received: 0
20 Sep 2011 16:42 #69435
by faaai
Replied by faaai on topic Re: 2820 firewall help
no i haven't build-in voip...how ever the problem is that an wan attack bypass the firewall rules ( or i make a wrong )
Please Log in or Create an account to join the conversation.
- frag
- Offline
- Member
Less
More
- Posts: 115
- Thank you received: 0
26 Sep 2011 10:12 #69488
by frag
Replied by frag on topic Re: 2820 firewall help
this is probably down the the firewall rule itself.
Go to the edit button under the service type for the block rule and ensure you only specify the DESTINATION PORT as 5060, leave the source port as 1~65535
Go to the edit button under the service type for the block rule and ensure you only specify the DESTINATION PORT as 5060, leave the source port as 1~65535
Please Log in or Create an account to join the conversation.
Moderators: Chris, Sami
Copyright © 2024 DrayTek