Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. Feature Requests
  3. Possibility to disable TURN service

Possibility to disable TURN service

Scheduled Pinned Locked Moved Feature Requests
turnstunservicessecurity
2 Posts 2 Posters 292 Views 2 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M Offline
    M Offline
    msbt
    App Dev
    wrote on last edited by msbt
    #1

    My Cloudrons host various .at domains and apparently the CERT.at (Computer Emergency Response Team) is very motivated to keep those domains "clean". I received multiple emails over the last few weeks that those domains/servers contain services that may be susceptible to hacking attacks:

    2024-08-14T06:18:53+02;123.123.123.123;udp;3478;session traversal utilities for nat;my.example.at;;;;24940;DE;Nuremberg;vulnerable;ddos-amplifier;open-stun;;;;;shadowserver-accessible-stun-service;;;;"{""amplification"": 4.2, ""tag"": ""stun""}";;;https://cert.at/de/services/daten-feeds/vulnerable/#accessible-stun;
    https://www.shadowserver.org/what-we-do/network-reporting/accessible-stun-service-report/

    Unsure how to solve this and keep using voip apps, but as a first step it would be nice to have the option to disable the service/port without touching an external firewall if they're not in use.

    1 Reply Last reply
    1
    • J Offline
      J Offline
      joseph
      Staff
      wrote on last edited by
      #2

      A temporary workaround: docker stop turn . Some platform updates might turn back the turn service on though (when updating the turn docker image).

      1 Reply Last reply
      0
      Reply
      • Reply as topic
      Log in to reply
      • Oldest to Newest
      • Newest to Oldest
      • Most Votes


      • Login

      • Don't have an account? Register

      • Login or register to search.
      • First post
        Last post
      0
      • Categories
      • Recent
      • Tags
      • Popular
      • Bookmarks
      • Search