<div dir="ltr"><div><div>I have done it. <br><br></div>how about<font face="Times New Roman, serif"><br>tlscafile=/etc/asterisk/certificate/ca.pem</font><br><font face="Times New Roman, serif">tlscertfile=/etc/asterisk/certificate/asterisk.pem<br><br></font></div><font face="Times New Roman, serif">I found this in /etc/kamailio/tls.cfg    Am I right ?<br></font></div><div class="gmail_extra"><br clear="all"><div><div class="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><span><font color="#888888">-- <br><div><div dir="ltr"><div>З повагою,</div><div>Микола Заїка<br></div><div>Компанія VoIPTime,</div><div>Тел: <span style="color:rgb(0,0,255)"><a href="tel:%2B380%2032%202328022" value="+380322328022" target="_blank">+380 32 2328022</a></span></div><div><span style="color:rgb(0,0,255)"><a href="mailto:mzaika@voiptime.net" target="_blank">mzaika@voiptime.net</a></span></div><div><span style="color:rgb(0,0,255)"><a href="http://www.voiptime.net" target="_blank">www.voiptime.net</a></span></div></div></div></font></span></div></div></div></div></div></div></div></div></div>
<br><div class="gmail_quote">2015-04-07 17:25 GMT+03:00 Daniel Grotti <span dir="ltr"><<a href="mailto:dgrotti@sipwise.com" target="_blank">dgrotti@sipwise.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Hi,<br>
in the peering server configuration, you can select the protocol you<br>
want to use for the interconnection.<br>
<br>
<br>
Regards,<br>
<br>
<br>
Daniel Grotti<br>
VoIP Engineer<br>
<br>
<br>
Sipwise GmbH<br>
Europaring F15 | 2345 Brunn am Gebirge, Austria | <a href="http://www.sipwise.com" target="_blank">www.sipwise.com</a><br>
<span class=""><br>
On 04/07/2015 04:20 PM, Mykola Zaika wrote:<br>
> Hello,<br>
><br>
> How can I setup peer with protocol TLS ?  Can someone share his experience ?<br>
><br>
><br>
> Config from Asterisk works:<br>
><br>
> [general]<br>
><br>
> tlsenable=yes<br>
><br>
> tlsbindaddr=client.wan.ip.addr<br>
><br>
> tlscafile=/etc/asterisk/certificate/ca.pem<br>
><br>
> tlscertfile=/etc/asterisk/certificate/asterisk.pem<br>
><br>
> tlscipher=DES-CBC3-SHA<br>
><br>
> tlsclientmethod=tlsv1<br>
><br>
> tlsdontverifyserver=no<br>
><br>
><br>
> register=> tls://<a href="http://044232XXXX:verysecretpass@212.58.166.54:5061" target="_blank">044232XXXX:verysecretpass@212.58.166.54:5061</a><br>
</span>> <<a href="http://212.58.166.54:5061" target="_blank">http://212.58.166.54:5061</a>>/044232XXXX<br>
<span class="">><br>
><br>
> [044232XXXX]<br>
><br>
> type=friend<br>
><br>
> username=044232XXXX<br>
><br>
> secret=verysecretpass<br>
><br>
> host=<a href="tel:212.58.166.54" value="+12125816654">212.58.166.54</a><br>
><br>
> port=5061<br>
><br>
> fromuser=044232XXXX ;<br>
><br>
> transport=tls<br>
><br>
> encryption=yes<br>
><br>
> context=incoming<br>
><br>
> disallow=all<br>
><br>
> allow=ulaw<br>
><br>
> allow=alaw<br>
><br>
><br>
><br>
><br>
><br>
</span>> _______________________________________________<br>
> Spce-user mailing list<br>
> <a href="mailto:Spce-user@lists.sipwise.com">Spce-user@lists.sipwise.com</a><br>
> <a href="https://lists.sipwise.com/listinfo/spce-user" target="_blank">https://lists.sipwise.com/listinfo/spce-user</a><br>
><br>
_______________________________________________<br>
Spce-user mailing list<br>
<a href="mailto:Spce-user@lists.sipwise.com">Spce-user@lists.sipwise.com</a><br>
<a href="https://lists.sipwise.com/listinfo/spce-user" target="_blank">https://lists.sipwise.com/listinfo/spce-user</a><br>
</blockquote></div><br></div>