Solved

Cisco Access-List Ghost calls

Posted on 2016-08-11
2
49 Views
Last Modified: 2016-08-30
I have created an access-list to prevent ghost calls but it doesn't seems to work. I only want receive SIP traffice from a specific IP address.

Access-List:

access-list 105 permit udp host 178.217.82.83 eq 5060 any log
access-list 105 permit tcp host 178.217.82.83 eq 5060 any log
access-list 105 deny   udp any range 5060 5080 any log
access-list 105 deny   tcp any range 5060 5080 any log
access-list 105 permit ip any any

interface Dialer1
 ip address negotiated
 ip access-group 105 in

Any ideas?
0
Comment
Question by:emieldmz
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
2 Comments
 
LVL 46

Accepted Solution

by:
Craig Beck earned 500 total points (awarded by participants)
ID: 41753178
You're not restricting destination ports at your end coming in to your dialer interface.

Try...

access-list 105 permit udp host 178.217.82.83 eq 5060 any log
access-list 105 permit tcp host 178.217.82.83 eq 5060 any log
access-list 105 deny   udp any any range 5060 5080 log
access-list 105 deny   tcp any any range 5060 5080 log
access-list 105 permit ip any any

Open in new window

1
 
LVL 46

Expert Comment

by:Craig Beck
ID: 41776026
Best answer chosen
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question