[Ietf-behave] SIP over TLS via NAT/Firewall
Hi,
Would like to know about SIP negotiations on TLS. It is the fact that TLS
strictly provides hop-by-hop security in a SIP Network and even encryption is
also on hop-by-hop basis.
It'll be great if someone let me know if there is a SIP ALG coexisting with
NAT/Firewall on the edge of an enterprise network and there is a SIP Server on
the public network. If suppose an UA sends a SIP request message on TLS, can it
be incepted by NAT/Firewall on the edge or it'll bypass NAT/Firewall and
directly go to the SIP Server on the public network?
Private Network | Public Network
|
UA-----------------> NAT/Firewal l/SIP-ALG------------------------------------>
SIP Server
tls | tls
|
Regards,
Sunil