CCME with Internet in same Router

Unanswered Question
Feb 26th, 2008
User Badges:

Hi all


we have a CCME running with BRI Lines and Internet also is configured on same ROuter with PUBLIC IP.


is it possible for any one to hack box thru internet and make international calls ?


They dont have any VPN configured .


please reply


Many Thanks


Manoj


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
arrowdawn Tue, 02/26/2008 - 02:55
User Badges:

Yes !!


Speaking from experience, make sure that you enable the IOS firewall to prevent inbound SIP connections to the CCME, or at least limit them to authorised sources.


As soon as you enable Voicemail (for example), this enables SIP on CCME. If unprotected by a firewall config, the CCME system can then be hacked (following a port scan on 5060) and assuming they guess your Dial-Peer digits (usually 9 in the UK) then they can commit toll fraud and make calls via your system.


We are presently in discussuin with our CAM regards this.


Hope this helps.



manojpillai Tue, 02/26/2008 - 02:56
User Badges:

Thanks very much


They dont have any voicemail configured.


and i have only enabled internal ip in access list .


please reply


Many Thanks

Actions

This Discussion