open port 5060-5080 udp in enableUFWRules

303 views
Skip to first unread message

Les Piech

unread,
May 14, 2021, 11:15:40 AM5/14/21
to BigBlueButton-dev
looks like by default I am unable to dial into freeswitch on the bbb server from another sip server because with firewall enabled ports 5060-5080 are not open by default.

I can disable the firewall and then it works, but I would prefer the firewall to be enabled, so I added a line of code in red to apply-lib.sh and restarted bbb, but then I get a 500 error when I try to join a meeting:

enableUFWRules() {

........

  ufw allow OpenSSH

  ufw allow "Nginx Full"

  ufw allow 16384:32768/udp

  ufw allow 5060:5080/udp

  ufw --force enable

}

How do I open 5060-5080 udp in the firewall to accept inbound SIP calls?

thanks!

Felipe Cecagno

unread,
May 14, 2021, 11:55:46 AM5/14/21
to bigblueb...@googlegroups.com
I believe you do not need port 5080, only port 5060, both TCP and UDP.
Also you might want to open it only from the source IPs you trust. You do that using:

ufw allow from <TRUSTED_IP>  to any port 5060

--
   
Felipe Cecagno


--
You received this message because you are subscribed to the Google Groups "BigBlueButton-dev" group.
To unsubscribe from this group and stop receiving emails from it, send an email to bigbluebutton-...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/bigbluebutton-dev/9939557c-7149-4175-b91a-0c151f3630b1n%40googlegroups.com.

Les Piech

unread,
May 14, 2021, 3:35:57 PM5/14/21
to BigBlueButton-dev
Thanks,
Is there a reason why this line I added in apply-lib.sh fails?  It is nearly identical to the previous line in the script.
ufw allow 5060:5080/udp
-Les

Felipe Cecagno

unread,
May 14, 2021, 4:03:26 PM5/14/21
to bigblueb...@googlegroups.com
Hmm I noticed this in your first message: "but then I get a 500 error when I try to join a meeting"

I don't think this is related to ufw, and I don't see why the line you've included fails.
It looks like you're dealing with two different issues.

--
   
Felipe Cecagno


Les Piech

unread,
May 14, 2021, 4:13:51 PM5/14/21
to BigBlueButton-dev
ok, well, when i reverted to the original apply-lib.sh and restarted bbb everything worked again, so it seemed they may be related.
Reply all
Reply to author
Forward
0 new messages