Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps - Status | Demo | Docs | Install
  1. Cloudron Forum
  2. Feature Requests
  3. Possibility to disable TURN service

Possibility to disable TURN service

Scheduled Pinned Locked Moved Feature Requests
turnstunservicessecurity
2 Posts 2 Posters 737 Views 2 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M Offline
    M Offline
    msbt
    App Dev
    wrote on last edited by msbt
    #1

    My Cloudrons host various .at domains and apparently the CERT.at (Computer Emergency Response Team) is very motivated to keep those domains "clean". I received multiple emails over the last few weeks that those domains/servers contain services that may be susceptible to hacking attacks:

    2024-08-14T06:18:53+02;123.123.123.123;udp;3478;session traversal utilities for nat;my.example.at;;;;24940;DE;Nuremberg;vulnerable;ddos-amplifier;open-stun;;;;;shadowserver-accessible-stun-service;;;;"{""amplification"": 4.2, ""tag"": ""stun""}";;;https://cert.at/de/services/daten-feeds/vulnerable/#accessible-stun;
    https://www.shadowserver.org/what-we-do/network-reporting/accessible-stun-service-report/

    Unsure how to solve this and keep using voip apps, but as a first step it would be nice to have the option to disable the service/port without touching an external firewall if they're not in use.

    Happy Hosting & Web Development

    1 Reply Last reply
    1
    • J Offline
      J Offline
      joseph
      Staff
      wrote on last edited by
      #2

      A temporary workaround: docker stop turn . Some platform updates might turn back the turn service on though (when updating the turn docker image).

      1 Reply Last reply
      0

      Hello! It looks like you're interested in this conversation, but you don't have an account yet.

      Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

      With your input, this post could be even better 💗

      Register Login
      Reply
      • Reply as topic
      Log in to reply
      • Oldest to Newest
      • Newest to Oldest
      • Most Votes


      • Login

      • Don't have an account? Register

      • Login or register to search.
      • First post
        Last post
      0
      • Categories
      • Recent
      • Tags
      • Popular
      • Bookmarks
      • Search