eoleg Posted December 9, 2018 · Report post Микротик с последней прошивкой на ether1 приходят 2 vlan на vlan2 прописана подсеть 1.1.1.146/30 на ether4 прописана подсеть 1.1.1.149/30 1.1.1.150 - клиент с freeswitch висит на ether4 2.2.2.164 - софтсвич провайдераSIP ALG отключен 2.2.2.164 -посылает OPTIONS 1.1.1.150 получает OPTIONS от 1.1.1.149 Как я понимаю роутер подставляет вместо 2.2.2.164 1.1.1.149 Как победить это ...... Вот то что на vlan2 No. Time Source Destination Protocol Length Info 1 0.000000 2.2.2.164 1.1.1.150 SIP 477 Request: OPTIONS sip:1.1.1.150:5060 | Frame 1: 477 bytes on wire (3816 bits), 477 bytes captured (3816 bits) Encapsulation type: Ethernet (1) Arrival Time: Dec 9, 2018 10:03:41.353778000 Багдадское время (зима) [Time shift for this packet: 0.000000000 seconds] Epoch Time: 1544339021.353778000 seconds [Time delta from previous captured frame: 0.000000000 seconds] [Time delta from previous displayed frame: 0.000000000 seconds] [Time since reference or first frame: 0.000000000 seconds] Frame Number: 1 Frame Length: 477 bytes (3816 bits) Capture Length: 477 bytes (3816 bits) [Frame is marked: False] [Frame is ignored: False] [Protocols in frame: eth:ethertype:ip:udp:sip] [Number of per-protocol-data: 1] [Session Initiation Protocol, key 6] [Coloring Rule Name: UDP] [Coloring Rule String: udp] Ethernet II, Src: Cisco_b4:92:80 (00:1c:b0:b4:92:80), Dst: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04) Destination: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04) Address: Routerbo_b6:37:04 (d4:ca:6d:b6:37:04) .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default) .... ...0 .... .... .... .... = IG bit: Individual address (unicast) Source: Cisco_b4:92:80 (00:1c:b0:b4:92:80) Address: Cisco_b4:92:80 (00:1c:b0:b4:92:80) .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default) .... ...0 .... .... .... .... = IG bit: Individual address (unicast) Type: IP (0x0800) Internet Protocol Version 4, Src: 2.2.2.164 (2.2.2.164), Dst: 1.1.1.150 (1.1.1.150) Version: 4 Header Length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00: Not-ECT (Not ECN-Capable Transport)) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..00 = Explicit Congestion Notification: Not-ECT (Not ECN-Capable Transport) (0x00) Total Length: 463 Identification: 0xec2e (60462) Flags: 0x00 0... .... = Reserved bit: Not set .0.. .... = Don't fragment: Not set ..0. .... = More fragments: Not set Fragment offset: 0 Time to live: 60 Protocol: UDP (17) Header checksum: 0xa333 [validation disabled] [Good: False] [Bad: False] Source: 2.2.2.164 (2.2.2.164) Destination: 1.1.1.150 (1.1.1.150) [Source GeoIP: Unknown] [Destination GeoIP: Unknown] User Datagram Protocol, Src Port: 5060 (5060), Dst Port: 5060 (5060) Source Port: 5060 (5060) Destination Port: 5060 (5060) Length: 443 Checksum: 0x5cd1 [validation disabled] [Good Checksum: False] [Bad Checksum: False] [Stream index: 0] Session Initiation Protocol (OPTIONS) Request-Line: OPTIONS sip:1.1.1.150:5060 SIP/2.0 Method: OPTIONS Request-URI: sip:1.1.1.150:5060 Request-URI Host Part: 1.1.1.150 Request-URI Host Port: 5060 [Resent Packet: False] Message Header Via: SIP/2.0/UDP 2.2.2.164:5060;branch=z9hG4bK4ztcoahgeacttbo6h3ev3tchz;Role=3;Hpt=8e48_16;X-HwDim=4 Transport: UDP Sent-by Address: 2.2.2.164 Sent-by port: 5060 Branch: z9hG4bK4ztcoahgeacttbo6h3ev3tchz Role=3 Hpt=8e48_16 X-HwDim=4 Record-Route: <sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e48_16;CxtId=4;TRC=ffffffff-ffffffff> Record-Route URI: sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e48_16;CxtId=4;TRC=ffffffff-ffffffff Record-Route Host Part: 2.2.2.164 Record-Route Host Port: 5060 Record-Route URI parameter: transport=udp Record-Route URI parameter: lr Record-Route URI parameter: Hpt=8e48_16 Record-Route URI parameter: CxtId=4 Record-Route URI parameter: TRC=ffffffff-ffffffff Call-ID: isbcqrqacuf1nfuquv78a41qnufnvqu9crau@SoftX3000 From: <sip:1.1.1.150:5060>;tag=nb1qbctf SIP from address: sip:1.1.1.150:5060 SIP from address Host Part: 1.1.1.150 SIP from address Host Port: 5060 SIP from tag: nb1qbctf To: <sip:1.1.1.150:5060> SIP to address: sip:1.1.1.150:5060 SIP to address Host Part: 1.1.1.150 SIP to address Host Port: 5060 CSeq: 1 OPTIONS Sequence Number: 1 Method: OPTIONS Max-Forwards: 69 Content-Length: 0 Вот то что на ether4 No. Time Source Destination Protocol Length Info 1 0.000000 1.1.1.149 1.1.1.150 SIP 477 Request: OPTIONS sip:1.1.1.150:5060 | Frame 1: 477 bytes on wire (3816 bits), 477 bytes captured (3816 bits) Encapsulation type: Ethernet (1) Arrival Time: Dec 9, 2018 10:02:56.849730000 Багдадское время (зима) [Time shift for this packet: 0.000000000 seconds] Epoch Time: 1544338976.849730000 seconds [Time delta from previous captured frame: 0.000000000 seconds] [Time delta from previous displayed frame: 0.000000000 seconds] [Time since reference or first frame: 0.000000000 seconds] Frame Number: 1 Frame Length: 477 bytes (3816 bits) Capture Length: 477 bytes (3816 bits) [Frame is marked: False] [Frame is ignored: False] [Protocols in frame: eth:ethertype:ip:udp:sip] [Number of per-protocol-data: 1] [Session Initiation Protocol, key 6] [Coloring Rule Name: UDP] [Coloring Rule String: udp] Ethernet II, Src: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07), Dst: AsustekC_48:23:41 (08:60:6e:48:23:41) Destination: AsustekC_48:23:41 (08:60:6e:48:23:41) Address: AsustekC_48:23:41 (08:60:6e:48:23:41) .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default) .... ...0 .... .... .... .... = IG bit: Individual address (unicast) Source: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07) Address: Routerbo_b6:37:07 (d4:ca:6d:b6:37:07) .... ..0. .... .... .... .... = LG bit: Globally unique address (factory default) .... ...0 .... .... .... .... = IG bit: Individual address (unicast) Type: IP (0x0800) Internet Protocol Version 4, Src: 1.1.1.149 (1.1.1.149), Dst: 1.1.1.150 (1.1.1.150) Version: 4 Header Length: 20 bytes Differentiated Services Field: 0x00 (DSCP 0x00: Default; ECN: 0x00: Not-ECT (Not ECN-Capable Transport)) 0000 00.. = Differentiated Services Codepoint: Default (0x00) .... ..00 = Explicit Congestion Notification: Not-ECT (Not ECN-Capable Transport) (0x00) Total Length: 463 Identification: 0x20ff (8447) Flags: 0x00 0... .... = Reserved bit: Not set .0.. .... = Don't fragment: Not set ..0. .... = More fragments: Not set Fragment offset: 0 Time to live: 59 Protocol: UDP (17) Header checksum: 0xf253 [validation disabled] [Good: False] [Bad: False] Source: 1.1.1.149 (1.1.1.149) Destination: 1.1.1.150 (1.1.1.150) [Source GeoIP: Unknown] [Destination GeoIP: Unknown] User Datagram Protocol, Src Port: 5060 (5060), Dst Port: 5060 (5060) Source Port: 5060 (5060) Destination Port: 5060 (5060) Length: 443 Checksum: 0x6a08 [validation disabled] [Good Checksum: False] [Bad Checksum: False] [Stream index: 0] Session Initiation Protocol (OPTIONS) Request-Line: OPTIONS sip:1.1.1.150:5060 SIP/2.0 Method: OPTIONS Request-URI: sip:1.1.1.150:5060 Request-URI Host Part: 1.1.1.150 Request-URI Host Port: 5060 [Resent Packet: False] Message Header Via: SIP/2.0/UDP 2.2.2.164:5060;branch=z9hG4bK8am5rv17871ee49ml1a4551se;Role=3;Hpt=8e58_16;X-HwDim=4 Transport: UDP Sent-by Address: 2.2.2.164 Sent-by port: 5060 Branch: z9hG4bK8am5rv17871ee49ml1a4551se Role=3 Hpt=8e58_16 X-HwDim=4 Record-Route: <sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e58_16;CxtId=4;TRC=ffffffff-ffffffff> Record-Route URI: sip:2.2.2.164:5060;transport=udp;lr;Hpt=8e58_16;CxtId=4;TRC=ffffffff-ffffffff Record-Route Host Part: 2.2.2.164 Record-Route Host Port: 5060 Record-Route URI parameter: transport=udp Record-Route URI parameter: lr Record-Route URI parameter: Hpt=8e58_16 Record-Route URI parameter: CxtId=4 Record-Route URI parameter: TRC=ffffffff-ffffffff Call-ID: isbcb7f4vbb78qq8nftuqi8aaqc9rc4rfa48@SoftX3000 From: <sip:1.1.1.150:5060>;tag=1ubq188v SIP from address: sip:1.1.1.150:5060 SIP from address Host Part: 1.1.1.150 SIP from address Host Port: 5060 SIP from tag: 1ubq188v To: <sip:1.1.1.150:5060> SIP to address: sip:1.1.1.150:5060 SIP to address Host Part: 1.1.1.150 SIP to address Host Port: 5060 CSeq: 1 OPTIONS Sequence Number: 1 Method: OPTIONS Max-Forwards: 69 Content-Length: 0 Вставить ник Quote Ответить с цитированием Share this post Link to post Share on other sites More sharing options...
McSea Posted December 9, 2018 · Report post 3 hours ago, eoleg said: Микротик с последней прошивкой на ether1 приходят 2 vlan на vlan2 прописана подсеть 1.1.1.146/30 на ether4 прописана подсеть 1.1.1.149/30 1.1.1.150 - клиент с freeswitch висит на ether4 2.2.2.164 - софтсвич провайдераSIP ALG отключен 2.2.2.164 -посылает OPTIONS 1.1.1.150 получает OPTIONS от 1.1.1.149 Как я понимаю роутер подставляет вместо 2.2.2.164 1.1.1.149 Как победить это ...... src-nat(маскарад) на ether4 уберите Вставить ник Quote Ответить с цитированием Share this post Link to post Share on other sites More sharing options...
eoleg Posted December 10, 2018 · Report post на ether4 нет маскарадинга, есть на ether1 где vlanы но я пока включил свой софтсвич через упр. коммутатор и простой проводной роутер асус, всё там отключено и запросы options пропали. ) может у них там ещё привязка к маку. Вставить ник Quote Ответить с цитированием Share this post Link to post Share on other sites More sharing options...
McSea Posted December 10, 2018 · Report post 5 hours ago, eoleg said: на ether4 нет маскарадинга, есть на ether1 где vlanы у себя такого не наблюдаю конфиг можете показать ? Вставить ник Quote Ответить с цитированием Share this post Link to post Share on other sites More sharing options...