[VOIPSEC] Actual Attacks

Christopher A. Martin chris at sip1.com
Tue Feb 22 23:00:21 CST 2005


That is very true...one of the primary requirements in many VoIP
deployments, including peering should be that of topology hiding...

________________________________

Christopher A. Martin
P.O. Box 1264
Cedar Hill, Texas 75106
 
Domains.SIP1.com
http://domains.sip1.com 
Low cost domain name registration & other Internet services.
 
Sign up for your PayPal merchant account today and start selling your
products on line today!
https://www.paypal.com/us/mrb/pal=Q622ZEE3CUWM8
 

> -----Original Message-----
> From: Voipsec-bounces at voipsa.org [mailto:Voipsec-bounces at voipsa.org] On
> Behalf Of Geoff Devine
> Sent: Tuesday, February 22, 2005 10:17 AM
> To: Voipsec at voipsa.org
> Subject: RE: [VOIPSEC] Actual Attacks
> 
> Christopher A. Martin <chris at sip1.com> writes:
> 
> > - Standard DoS today in terms of flooding cannot be stopped, but it
> can be
> > handled in the Internet backbone (which often occurs transparently
> > so the rest of us don't see it).
> >
> > - Also standard precautions, such as deploying SIP aware firewalls or
> border
> > controllers which handle the media dynamically prevent a majority of
> port
> > scans and other direct attacks which low end devices are typically
> > susceptible to.
> 
> A side effect of using session controllers and their brethren in a VoIP
> architecture is that you make the IP address of the endpoint anonymous.
> This addresses both privacy concerns and makes DoS attacks against a
> subscriber endpoint less likely.  Any architecture that permits media
> streams to flow directly between subscriber endpoints is very vulnerable
> to DoS attacks on those endpoints.
> 
> Geoff
> 
> _______________________________________________
> Voipsec mailing list
> Voipsec at voipsa.org
> http://voipsa.org/mailman/listinfo/voipsec_voipsa.org





More information about the Voipsec mailing list