I Think Astaro:
H.323 and SIP application filter
All possible VOIP Ports are kept closed.
The ports are designated to be opened dynamically during the H.323 or SIP negotiation.
The Firewall listens in on the call negotiation and opens the necessary ports by dynamically creating the rules.
The ports are open only from one endpoint to the other.
All ports are closed when the call ends.
No restriction in NATed network environment
Really?
Javier
This thread was automatically locked due to age.