Thanks for the explanation.
I'm actually offloading the IPsec work to an
external entity, which guarantees that the bottom Via is not spoofed. So I'm adding an
optional "trust-the-bottom-Via" flag.
I didnt understand what you mean by offloading the IPsec work to an external entity. You
mean IPSec creation is done by other entity (other than ims_ipsec_pcscf module)?
Also, the naming "trust-the-bottom-Via" doesnt go well in my opinion
("bottom-via" part I mean). While handling SIP REQUEST the first Via needs to be
considered and in case SIP REPLY I think last Via needs to be considered
--
Reply to this email directly or view it on GitHub:
https://github.com/kamailio/kamailio/pull/3891#issuecomment-2186500019
You are receiving this because you are subscribed to this thread.
Message ID: <kamailio/kamailio/pull/3891/c2186500019(a)github.com>