What causes the SIP Early NAT chain module to appear in the chain?

What causes the SIP Early NAT chain module to appear in the chain?

What causes the SIP Early NAT chain module to appear in the chain?

A.
The SIP traffic is trying to pass through the firewall.

B.
SIP is configured in IPS.

C.
A VOIP domain is configured.

D.
The default SIP service is used in the Rule Base.



Leave a Reply 1

Your email address will not be published. Required fields are marked *


CNUG

CNUG

IT is D

To prevent inspection on SIP based traffic and disable the fw early SIP nat inspection chain, perform:

Remove ALL pre-defined 5060 (sip_dynamic_ports and MGCP_dynamic_ports as well) and MGCP based services from SmartDashboard entirely (ports 2427 and 2727).