[TriLUG] Questions about H.323 apps and nat firewalling

Bill Vinson billvinson at nc.rr.com
Sun Nov 25 03:41:07 EST 2001


I am interested in H.323, both open source and things like NetMeeting.  
I realize the H.323 seems to be a horrible protocol for firewalling when 
combined with NAT, but I am interested in both incoming and outgoing 
calls.  I have seen some proxying gatekeepers and some kernel patches to 
work with H.323.

What are my options?  Can I allow incoming calls to a single machine 
with port forwarding?  How about outgoing?  There seems to be a great 
deal of issues surrounding this, so I figured I would check if any other 
TriLUGers had tackled it and what they had done?  How about hardware 
routers such as Linksys, SMC, etc.?  Do they handle this stuff?  And 
lastly what are the security risks to your solution?

Thanks,
Bill




More information about the TriLUG mailing list