< Previous by Date Date Index Next by Date >
  Thread Index Next in Thread >

[Ietf-behave] SIP over TLS via NAT/Firewall


Hi,

Would like to know about SIP negotiations on TLS. It is the fact that TLS 
strictly provides hop-by-hop security in a SIP Network and even encryption is 
also on hop-by-hop basis.

It'll be great if someone let me know if there is a SIP ALG coexisting with 
NAT/Firewall on the edge of an enterprise network and there is a SIP Server on 
the public network. If suppose an UA sends a SIP request message on TLS, can it 
be incepted by NAT/Firewall on the edge or it'll bypass NAT/Firewall and 
directly go to the SIP Server on the public network?

 

  Private Network              |                         Public Network

                                         |

UA-----------------> NAT/Firewal l/SIP-ALG------------------------------------> 
SIP Server

       tls                               |                          tls

                                          |          

 

Regards,

Sunil