Jump to content
Калькуляторы

Как победить SIP ALG

Микротик с последней прошивкой
на ether1 приходят 2 vlan
на vlan2 прописана подсеть 1.1.1.146/30
на ether4 прописана подсеть 1.1.1.149/30
1.1.1.150 - клиент с freeswitch висит на ether4
2.2.2.164 - софтсвич провайдера
SIP ALG отключен
2.2.2.164 -посылает OPTIONS
1.1.1.150 получает OPTIONS от 1.1.1.149
Как я понимаю роутер подставляет вместо 2.2.2.164 1.1.1.149
Как победить это ......

Вот то что на vlan2
No.     Time        Source                Destination           Protocol Length Info
      1 0.000000    2.2.2.164        1.1.1.150         SIP      477    Request: OPTIONS sip:1.1.1.150:5060 |

Frame 1: 477 bytes on wire (3816 bits), 477 bytes captured (3816 bits)
    Encapsulation type: Ethernet (1)
    Arrival Time: Dec  9, 2018 10:03:41.353778000 Багдадское время (зима)
    [Time shift for this packet: 0.000000000 seconds]
    Epoch Time: 1544339021.353778000 seconds
    [Time delta from previous captured frame: 0.000000000 seconds]
    [Time delta from previous displayed frame: 0.000000000 seconds]
    [Time since reference or first frame: 0.000000000 seconds]
    Frame Number: 1
    Frame Length: 477 bytes (3816 bits)
    Capture Length: 477 bytes (3816 bits)
    [Frame is marked: False]
    [Frame is ignored: False]
    [Protocols in frame: eth:ethertype:ip:udp:sip]
    [Number of per-protocol-data: 1]
    [Session Initiation Protocol, key 6]
    [Coloring Rule Name: UDP]
    [Coloring Rule String: udp]
Ethernet II, Src: Cisco_b4:92:80 (00:1c:b0:b4:92:80), Dst: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04)
    Destination: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04)
        Address: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04)
        .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
        .... ...0 .... .... .... .... = IG bit: Individual address (unicast)
    Source: Cisco_b4:92:80 (00:1c:b0:b4:92:80)
        Address: Cisco_b4:92:80 (00:1c:b0:b4:92:80)
        .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
        .... ...0 .... .... .... .... = IG bit: Individual address (unicast)
    Type: IP (0x0800)
Internet Protocol Version 4, Src: 2.2.2.164 (2.2.2.164), Dst: 1.1.1.150 (1.1.1.150)
    Version: 4
    Header Length: 20 bytes
    Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00: Not-ECT (Not ECN-Capable Transport))
        0000 00.. = Differentiated Services Codepoint: Default (0x00)
        .... ..00 = Explicit Congestion Notification: Not-ECT (Not ECN-Capable Transport) (0x00)
    Total Length: 463
    Identification: 0xec2e (60462)
    Flags: 0x00
        0... .... = Reserved bit: Not set
        .0.. .... = Don't fragment: Not set
        ..0. .... = More fragments: Not set
    Fragment offset: 0
    Time to live: 60
    Protocol: UDP (17)
    Header checksum: 0xa333 [validation disabled]
        [Good: False]
        [Bad: False]
    Source: 2.2.2.164 (2.2.2.164)
    Destination: 1.1.1.150 (1.1.1.150)
    [Source GeoIP: Unknown]
    [Destination GeoIP: Unknown]
User Datagram Protocol, Src Port: 5060 (5060), Dst Port: 5060 (5060)
    Source Port: 5060 (5060)
    Destination Port: 5060 (5060)
    Length: 443
    Checksum: 0x5cd1 [validation disabled]
        [Good Checksum: False]
        [Bad Checksum: False]
    [Stream index: 0]
Session Initiation Protocol (OPTIONS)
    Request-Line: OPTIONS sip:1.1.1.150:5060 SIP/2.0
        Method: OPTIONS
        Request-URI: sip:1.1.1.150:5060
            Request-URI Host Part: 1.1.1.150
            Request-URI Host Port: 5060
        [Resent Packet: False]
    Message Header
        Via: SIP/2.0/UDP 2.2.2.164:5060;branch=z9hG4bK4ztcoahgeacttbo6h3ev3tchz;Role=3;Hpt=8e48_16;X-HwDim=4
            Transport: UDP
            Sent-by Address: 2.2.2.164
            Sent-by port: 5060
            Branch: z9hG4bK4ztcoahgeacttbo6h3ev3tchz
            Role=3
            Hpt=8e48_16
            X-HwDim=4
        Record-Route: <sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e48_16;CxtId=4;TRC=ffffffff-ffffffff>
            Record-Route URI: sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e48_16;CxtId=4;TRC=ffffffff-ffffffff
                Record-Route Host Part: 2.2.2.164
                Record-Route Host Port: 5060
                Record-Route URI parameter: transport=udp
                Record-Route URI parameter: lr
                Record-Route URI parameter: Hpt=8e48_16
                Record-Route URI parameter: CxtId=4
                Record-Route URI parameter: TRC=ffffffff-ffffffff
        Call-ID: isbcqrqacuf1nfuquv78a41qnufnvqu9crau@SoftX3000
        From: <sip:1.1.1.150:5060>;tag=nb1qbctf
            SIP from address: sip:1.1.1.150:5060
                SIP from address Host Part: 1.1.1.150
                SIP from address Host Port: 5060
            SIP from tag: nb1qbctf
        To: <sip:1.1.1.150:5060>
            SIP to address: sip:1.1.1.150:5060
                SIP to address Host Part: 1.1.1.150
                SIP to address Host Port: 5060
        CSeq: 1 OPTIONS
            Sequence Number: 1
            Method: OPTIONS
        Max-Forwards: 69
        Content-Length: 0
    
    
Вот то что на ether4
No.     Time        Source                Destination           Protocol Length Info
      1 0.000000    1.1.1.149         1.1.1.150         SIP      477    Request: OPTIONS sip:1.1.1.150:5060 |

Frame 1: 477 bytes on wire (3816 bits), 477 bytes captured (3816 bits)
    Encapsulation type: Ethernet (1)
    Arrival Time: Dec  9, 2018 10:02:56.849730000 Багдадское время (зима)
    [Time shift for this packet: 0.000000000 seconds]
    Epoch Time: 1544338976.849730000 seconds
    [Time delta from previous captured frame: 0.000000000 seconds]
    [Time delta from previous displayed frame: 0.000000000 seconds]
    [Time since reference or first frame: 0.000000000 seconds]
    Frame Number: 1
    Frame Length: 477 bytes (3816 bits)
    Capture Length: 477 bytes (3816 bits)
    [Frame is marked: False]
    [Frame is ignored: False]
    [Protocols in frame: eth:ethertype:ip:udp:sip]
    [Number of per-protocol-data: 1]
    [Session Initiation Protocol, key 6]
    [Coloring Rule Name: UDP]
    [Coloring Rule String: udp]
Ethernet II, Src: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07), Dst: AsustekC_48:23:41 (08:60:6e:48:23:41)
    Destination: AsustekC_48:23:41 (08:60:6e:48:23:41)
        Address: AsustekC_48:23:41 (08:60:6e:48:23:41)
        .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
        .... ...0 .... .... .... .... = IG bit: Individual address (unicast)
    Source: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07)
        Address: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07)
        .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
        .... ...0 .... .... .... .... = IG bit: Individual address (unicast)
    Type: IP (0x0800)
Internet Protocol Version 4, Src: 1.1.1.149 (1.1.1.149), Dst: 1.1.1.150 (1.1.1.150)
    Version: 4
    Header Length: 20 bytes
    Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00: Not-ECT (Not ECN-Capable Transport))
        0000 00.. = Differentiated Services Codepoint: Default (0x00)
        .... ..00 = Explicit Congestion Notification: Not-ECT (Not ECN-Capable Transport) (0x00)
    Total Length: 463
    Identification: 0x20ff (8447)
    Flags: 0x00
        0... .... = Reserved bit: Not set
        .0.. .... = Don't fragment: Not set
        ..0. .... = More fragments: Not set
    Fragment offset: 0
    Time to live: 59
    Protocol: UDP (17)
    Header checksum: 0xf253 [validation disabled]
        [Good: False]
        [Bad: False]
    Source: 1.1.1.149 (1.1.1.149)
    Destination: 1.1.1.150 (1.1.1.150)
    [Source GeoIP: Unknown]
    [Destination GeoIP: Unknown]
User Datagram Protocol, Src Port: 5060 (5060), Dst Port: 5060 (5060)
    Source Port: 5060 (5060)
    Destination Port: 5060 (5060)
    Length: 443
    Checksum: 0x6a08 [validation disabled]
        [Good Checksum: False]
        [Bad Checksum: False]
    [Stream index: 0]
Session Initiation Protocol (OPTIONS)
    Request-Line: OPTIONS sip:1.1.1.150:5060 SIP/2.0
        Method: OPTIONS
        Request-URI: sip:1.1.1.150:5060
            Request-URI Host Part: 1.1.1.150
            Request-URI Host Port: 5060
        [Resent Packet: False]
    Message Header
        Via: SIP/2.0/UDP 2.2.2.164:5060;branch=z9hG4bK8am5rv17871ee49ml1a4551se;Role=3;Hpt=8e58_16;X-HwDim=4
            Transport: UDP
            Sent-by Address: 2.2.2.164
            Sent-by port: 5060
            Branch: z9hG4bK8am5rv17871ee49ml1a4551se
            Role=3
            Hpt=8e58_16
            X-HwDim=4
        Record-Route: <sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e58_16;CxtId=4;TRC=ffffffff-ffffffff>
            Record-Route URI: sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e58_16;CxtId=4;TRC=ffffffff-ffffffff
                Record-Route Host Part: 2.2.2.164
                Record-Route Host Port: 5060
                Record-Route URI parameter: transport=udp
                Record-Route URI parameter: lr
                Record-Route URI parameter: Hpt=8e58_16
                Record-Route URI parameter: CxtId=4
                Record-Route URI parameter: TRC=ffffffff-ffffffff
        Call-ID: isbcb7f4vbb78qq8nftuqi8aaqc9rc4rfa48@SoftX3000
        From: <sip:1.1.1.150:5060>;tag=1ubq188v
            SIP from address: sip:1.1.1.150:5060
                SIP from address Host Part: 1.1.1.150
                SIP from address Host Port: 5060
            SIP from tag: 1ubq188v
        To: <sip:1.1.1.150:5060>
            SIP to address: sip:1.1.1.150:5060
                SIP to address Host Part: 1.1.1.150
                SIP to address Host Port: 5060
        CSeq: 1 OPTIONS
            Sequence Number: 1
            Method: OPTIONS
        Max-Forwards: 69
        Content-Length: 0

Share this post


Link to post
Share on other sites

3 hours ago, eoleg said:

Микротик с последней прошивкой
на ether1 приходят 2 vlan
на vlan2 прописана подсеть 1.1.1.146/30
на ether4 прописана подсеть 1.1.1.149/30
1.1.1.150 - клиент с freeswitch висит на ether4
2.2.2.164 - софтсвич провайдера
SIP ALG отключен
2.2.2.164 -посылает OPTIONS
1.1.1.150 получает OPTIONS от 1.1.1.149
Как я понимаю роутер подставляет вместо 2.2.2.164 1.1.1.149
Как победить это ......

src-nat(маскарад) на ether4 уберите

Share this post


Link to post
Share on other sites

на ether4 нет маскарадинга, есть на ether1 где vlanы

но я пока включил свой софтсвич через упр. коммутатор и простой проводной роутер асус,

всё там отключено и запросы options пропали. )

может у них там ещё привязка к маку.

Share this post


Link to post
Share on other sites

5 hours ago, eoleg said:

на ether4 нет маскарадинга, есть на ether1 где vlanы

у себя такого не наблюдаю

конфиг можете показать ? 

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.