[Home]

Summary:ASTERISK-00775: [request] permit/deny for hostnames and ranges...
Reporter:zoa (zoa)Labels:
Date Opened:2004-01-10 19:51:53.000-0600Date Closed:2011-06-07 14:05:24
Priority:MajorRegression?No
Status:Closed/CompleteComponents:Core/General
Versions:Frequency of
Occurrence
Related
Issues:
Environment:Attachments:
Description:i think that it would be pretty usefull for improved adsl and cable users security to have an option to only allow axx to people with a specific hostname.


****** ADDITIONAL INFORMATION ******

possibilities:

*.adslforfree.com
or
zoa.dyndns.org
so that only if that hostname resolves to the ip of the client it would give axx.

also great would be the option to define ranges, so that you could for example only allow axxes to people from a specific provider (that has multiple ranges).
Comments:By: Brian West (bkw918) 2004-01-10 19:56:39.000-0600

hostnames can be spoofed.  Not wise to use that for access control.

By: zoa (zoa) 2004-01-10 20:03:13.000-0600

true, but i think its better to have some security than no security at all.
(it would at least limit the amount of people that can abuse it)

By: jrollyson (jrollyson) 2004-01-11 03:27:48.000-0600

Not practical for wildcarded hostnames, also, you would need an asyncronous resolver to avoid DoS.

By: Olle Johansson (oej) 2004-01-28 15:41:33.000-0600

Access for what? Which channel? If SIP, for registration or all SIP signalling?

By: Brian West (bkw918) 2004-03-19 17:46:23.000-0600

Add this to your wish list and keep it handy... requests are going to be moved to something else.