<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Where is the coturn config located?]]></title><description><![CDATA[<p dir="auto">I am trying to resolve my issues with the TURN server not working (across multiple apps) for me. It seems I just get errors saying local ports are blocked. I have port forwarded.</p>
<p dir="auto">Where would I find the coturn config for Cloudron? the one I found in /etc/ seems to have everything commented out.</p>
]]></description><link>https://forum.cloudron.io/topic/4159/where-is-the-coturn-config-located</link><generator>RSS for Node</generator><lastBuildDate>Sun, 12 Apr 2026 12:46:35 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/4159.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 08 Jan 2021 00:26:37 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 19 Jul 2021 17:27:44 GMT]]></title><description><![CDATA[<p dir="auto">Found the template with:</p>
<pre><code>sudo grep -rnw '/' -e 'rtcsec'
</code></pre>
]]></description><link>https://forum.cloudron.io/post/34082</link><guid isPermaLink="true">https://forum.cloudron.io/post/34082</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Mon, 19 Jul 2021 17:27:44 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 19 Jul 2021 17:22:16 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> Im a bit confused looking at the box code. I moved to a new server and my hack to undo that security fix needs to be done again. My issue now is I forgot what exactly I did. Is there a way to make this change and persist it through restarts? I guess what I am trying to do is remove this bit:<br />
<a href="https://www.rtcsec.com/post/2020/04/how-we-abused-slacks-turn-servers-to-gain-access-to-internal-services/" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.rtcsec.com/post/2020/04/how-we-abused-slacks-turn-servers-to-gain-access-to-internal-services/</a></p>
<p dir="auto">Changing the config in /run/turnserver in the container doesn't appear to work on restart. It resets the config.</p>
]]></description><link>https://forum.cloudron.io/post/34081</link><guid isPermaLink="true">https://forum.cloudron.io/post/34081</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Mon, 19 Jul 2021 17:22:16 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 03 May 2021 08:02:03 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> said in <a href="/post/23071">Where is the coturn config located?</a>:</p>
<blockquote>
<p dir="auto"><a href="https://www.rtcsec.com/2020/04/01-slack-webrtc-turn-compromise/" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.rtcsec.com/2020/04/01-slack-webrtc-turn-compromise/</a></p>
</blockquote>
<p dir="auto">So for my use case, I had to remove those rules for the vulnerability to resolve the issue. My router and desktop IPs were on the list of local IPs blocked in that list.</p>
<p dir="auto">Of course, I am looking for a better way to do this, but I temporarily changed the turnserver.conf.template file</p>
]]></description><link>https://forum.cloudron.io/post/30687</link><guid isPermaLink="true">https://forum.cloudron.io/post/30687</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Mon, 03 May 2021 08:02:03 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Tue, 30 Mar 2021 04:53:31 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/robi" aria-label="Profile: robi">@<bdi>robi</bdi></a> said in <a href="/post/28772">Where is the coturn config located?</a>:</p>
<blockquote>
<p dir="auto">Our meetings in NC:Talk work fine.<br />
Our meetings in Kopano work fine.<br />
Our meetings in GL/BBB fail at enabling the microphone. (using BBB from a second 3rd party server)</p>
</blockquote>
<p dir="auto">Our meetings in GL/BBB works fine now.</p>
<p dir="auto">Backend firewall issue after an upgrade.</p>
]]></description><link>https://forum.cloudron.io/post/28862</link><guid isPermaLink="true">https://forum.cloudron.io/post/28862</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Tue, 30 Mar 2021 04:53:31 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 29 Mar 2021 20:28:10 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> Yeah thats fair. At least for meetings I am good rn</p>
]]></description><link>https://forum.cloudron.io/post/28840</link><guid isPermaLink="true">https://forum.cloudron.io/post/28840</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Mon, 29 Mar 2021 20:28:10 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 29 Mar 2021 20:24:17 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji I think <a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> and I have to first build up some webrtc expertise to understand where the problems might be. We packaged up the turn service and hope things to just work (tm) and well, they fail in many situations and afaik the apps themselves don't provide good tools to debug the situation. Either it works or it doesn't, it's not ideal. It's one of the reasons Jitsi is also not packaged. Leaving packaging complications aside, we need to be in a position where we can help when things don't work.</p>
]]></description><link>https://forum.cloudron.io/post/28838</link><guid isPermaLink="true">https://forum.cloudron.io/post/28838</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Mon, 29 Mar 2021 20:24:17 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Mon, 29 Mar 2021 01:01:30 GMT]]></title><description><![CDATA[<p dir="auto">Our meetings in NC:Talk work fine.<br />
Our meetings in Kopano work fine.<br />
Our meetings in GL/BBB fail at enabling the microphone. (using BBB from a second 3rd party server)</p>
<p dir="auto">It tried to connect to the echo server... and fails.</p>
<p dir="auto">One thing I noticed is that our TURN server is configured (per <a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a>) for a port range of 50000-51000 and BBB expects 32768-65535.</p>
<pre><code>Required Ports (https://docs.bigbluebutton.org/2.2/setup-turn-server.html)

On the coturn server, you need to have the following ports (in addition port 22) available for BigBlueButton clients to connect (port 3478 and 443) and for coturn to connect to your BigBlueButton server (32768 - 65535).
Ports 	Protocol 	Description
3478 	TCP/UDP 	coturn listening port
443 	TCP/UDP 	TLS listening port
32768-65535 	UDP 	relay ports range
</code></pre>
<p dir="auto">What's with port 22? (We use a diff port for ssh)</p>
<p dir="auto">From .env in GL, I don't see these ports being specified, hence we may need to modify the GL / BBB configs for our more limited port range.</p>
<p dir="auto">Also, since we're using a 3rd party BBB, we may need to specify the 3rd party TURN server as mentioned <a href="https://docs.bigbluebutton.org/2.2/setup-turn-server.html" target="_blank" rel="noopener noreferrer nofollow ugc">here</a>.</p>
]]></description><link>https://forum.cloudron.io/post/28772</link><guid isPermaLink="true">https://forum.cloudron.io/post/28772</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Mon, 29 Mar 2021 01:01:30 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sat, 27 Mar 2021 17:56:35 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> I noticed there are some turn changes in the next version. Is this something you imagine would help here?</p>
<p dir="auto">Like it seems like it just keeps blocking people I try to talk to and I cannot for the life of me figure out why. I've had to resort to a BBB vps for meetings, but with discord's potential aquisition I would like to also use the voice and video chat in Matrix (Element) but I encounter the same issues.</p>
]]></description><link>https://forum.cloudron.io/post/28726</link><guid isPermaLink="true">https://forum.cloudron.io/post/28726</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Sat, 27 Mar 2021 17:56:35 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 15:15:09 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji idk, that was the thought about the reflexive connectivity, yet it should be able to use a fallback relay.</p>
]]></description><link>https://forum.cloudron.io/post/25767</link><guid isPermaLink="true">https://forum.cloudron.io/post/25767</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Sun, 14 Feb 2021 15:15:09 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 07:32:41 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/robi" aria-label="Profile: robi">@<bdi>robi</bdi></a> Oh on the my desktop or the cloudron server?</p>
<p dir="auto">Network-wise my port forwarding everything seems to be in order</p>
]]></description><link>https://forum.cloudron.io/post/25755</link><guid isPermaLink="true">https://forum.cloudron.io/post/25755</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Sun, 14 Feb 2021 07:32:41 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 05:22:20 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji sounds like a firewall issue for udp ports.</p>
]]></description><link>https://forum.cloudron.io/post/25753</link><guid isPermaLink="true">https://forum.cloudron.io/post/25753</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Sun, 14 Feb 2021 05:22:20 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 04:03:14 GMT]]></title><description><![CDATA[<p dir="auto">Ugh no luck...</p>
]]></description><link>https://forum.cloudron.io/post/25751</link><guid isPermaLink="true">https://forum.cloudron.io/post/25751</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Sun, 14 Feb 2021 04:03:14 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 03:17:56 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji No Adguard in our picture so try disabling it temporarily.</p>
]]></description><link>https://forum.cloudron.io/post/25750</link><guid isPermaLink="true">https://forum.cloudron.io/post/25750</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Sun, 14 Feb 2021 03:17:56 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Sun, 14 Feb 2021 02:10:17 GMT]]></title><description><![CDATA[<p dir="auto"><img src="/assets/uploads/files/1613264507642-5ce0a490-306d-4337-83ea-fc14ce243816-image.png" alt="5ce0a490-306d-4337-83ea-fc14ce243816-image.png" class=" img-fluid img-markdown" /><br />
Huh so I am back on the debugging train here. I do seem to fail the Reflexive connectivity test here O_O</p>
<p dir="auto">Also, I should point out that I use Adguard Home on my router, which is also what connects to my cloudron. Would that cause any problems?</p>
<p dir="auto">But its weird because it seems to work between my phone on data and my desktop (on the same network as my cloudron) but not between my someone in toronto and my desktop.</p>
<p dir="auto">I remember there was a change related to this slated for a release <a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a>. Is this true? I'm really not sure what else I can do here O_O</p>
<p dir="auto">EDIT: Seems like my investigations are going nowhere <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f61e.png?v=223f9defb2f" class="not-responsive emoji emoji-android emoji--disappointed" style="height:23px;width:auto;vertical-align:middle" title=":(" alt="😞" /></p>
<p dir="auto">I assumed it might have to do with this commit but if it works for Robi in the same scenario I've got nothing else I can think of trying: <a href="https://git.cloudron.io/cloudron/box/-/commit/6adf5772d8f871eae98ad5f5ffdbed7098bac214" target="_blank" rel="noopener noreferrer nofollow ugc">https://git.cloudron.io/cloudron/box/-/commit/6adf5772d8f871eae98ad5f5ffdbed7098bac214</a></p>
]]></description><link>https://forum.cloudron.io/post/25746</link><guid isPermaLink="true">https://forum.cloudron.io/post/25746</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Sun, 14 Feb 2021 02:10:17 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Tue, 26 Jan 2021 18:45:03 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji Yes, same box. it's actually a nested virtualized server and the host is a client.<br />
ISP Router ports forward directly to the server for this.</p>
]]></description><link>https://forum.cloudron.io/post/24087</link><guid isPermaLink="true">https://forum.cloudron.io/post/24087</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Tue, 26 Jan 2021 18:45:03 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Tue, 26 Jan 2021 06:14:54 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/robi" aria-label="Profile: robi">@<bdi>robi</bdi></a> Ah what I meant is if you have run a meeting off of a computer that is on the same network as the server which is clearly also a computer.</p>
]]></description><link>https://forum.cloudron.io/post/24062</link><guid isPermaLink="true">https://forum.cloudron.io/post/24062</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Tue, 26 Jan 2021 06:14:54 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Tue, 26 Jan 2021 06:12:03 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji computer = server, so yes. clients no.</p>
]]></description><link>https://forum.cloudron.io/post/24061</link><guid isPermaLink="true">https://forum.cloudron.io/post/24061</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Tue, 26 Jan 2021 06:12:03 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Tue, 26 Jan 2021 06:10:02 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> Digging this back up again. So I found the config file, however removing the disallowed peers doesnt work as it is all reset when the turn server is restarted.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/robi" aria-label="Profile: robi">@<bdi>robi</bdi></a> For your setup is your computer and server on the same network? I'm seeing 401s every time I try to connect with others.</p>
]]></description><link>https://forum.cloudron.io/post/24060</link><guid isPermaLink="true">https://forum.cloudron.io/post/24060</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Tue, 26 Jan 2021 06:10:02 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 22:06:07 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> perfect, thanks! I’ll play around in there and see if I can get this sorted.</p>
]]></description><link>https://forum.cloudron.io/post/23105</link><guid isPermaLink="true">https://forum.cloudron.io/post/23105</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Fri, 08 Jan 2021 22:06:07 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 21:52:54 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji The config is in <code>/run/turnserver/turnserver.conf</code> inside the container</p>
]]></description><link>https://forum.cloudron.io/post/23103</link><guid isPermaLink="true">https://forum.cloudron.io/post/23103</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Fri, 08 Jan 2021 21:52:54 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 17:28:55 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> I didn’t see those lines in /etc/turn server.conf. Is this configured per app or is there a config file somewhere else I’m missing?</p>
]]></description><link>https://forum.cloudron.io/post/23092</link><guid isPermaLink="true">https://forum.cloudron.io/post/23092</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Fri, 08 Jan 2021 17:28:55 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 09:35:22 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji So the turn addon is configured as per <a href="https://github.com/coturn/coturn/blob/master/examples/etc/turnserver.conf" target="_blank" rel="noopener noreferrer nofollow ugc">https://github.com/coturn/coturn/blob/master/examples/etc/turnserver.conf</a> to have the following ports:</p>
<pre><code>listening-port=3478
tls-listening-port=5349
min-port=50000
max-port=51000
</code></pre>
<p dir="auto">We have also included a section for preventing some attack, which I think is what you may hit?</p>
<pre><code># https://www.rtcsec.com/2020/04/01-slack-webrtc-turn-compromise/
no-multicast-peers
denied-peer-ip=0.0.0.0-0.255.255.255
denied-peer-ip=10.0.0.0-10.255.255.255
denied-peer-ip=100.64.0.0-100.127.255.255
denied-peer-ip=127.0.0.0-127.255.255.255
denied-peer-ip=169.254.0.0-169.254.255.255
denied-peer-ip=127.0.0.0-127.255.255.255
denied-peer-ip=172.16.0.0-172.31.255.255
denied-peer-ip=192.0.0.0-192.0.0.255
denied-peer-ip=192.0.2.0-192.0.2.255
denied-peer-ip=192.88.99.0-192.88.99.255
denied-peer-ip=192.168.0.0-192.168.255.255
denied-peer-ip=198.18.0.0-198.19.255.255
denied-peer-ip=198.51.100.0-198.51.100.255
denied-peer-ip=203.0.113.0-203.0.113.255
denied-peer-ip=240.0.0.0-255.255.255.255
</code></pre>
<p dir="auto">Those IPs are anyways no public IPs and thus would not help you to achieve connectivity through it as far as I understand.</p>
]]></description><link>https://forum.cloudron.io/post/23071</link><guid isPermaLink="true">https://forum.cloudron.io/post/23071</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Fri, 08 Jan 2021 09:35:22 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 04:16:31 GMT]]></title><description><![CDATA[<p dir="auto">The documentation seems quite lacking in this regard. Perhaps <a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> or <a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> have more info on this? Meanwhile I'll see if I can figure something out combing through the cloudron/box repo</p>
]]></description><link>https://forum.cloudron.io/post/23060</link><guid isPermaLink="true">https://forum.cloudron.io/post/23060</guid><dc:creator><![CDATA[[[global:former-user]]]]></dc:creator><pubDate>Fri, 08 Jan 2021 04:16:31 GMT</pubDate></item><item><title><![CDATA[Reply to Where is the coturn config located? on Fri, 08 Jan 2021 03:57:36 GMT]]></title><description><![CDATA[<p dir="auto">@atrilahiji I see..<br />
can you find the process and trace it to a container?</p>
<p dir="auto">I have to run atm, but would dig into the CL TURN docs and see how or why they restrict the private networks if that's where it's blocked.</p>
]]></description><link>https://forum.cloudron.io/post/23059</link><guid isPermaLink="true">https://forum.cloudron.io/post/23059</guid><dc:creator><![CDATA[robi]]></dc:creator><pubDate>Fri, 08 Jan 2021 03:57:36 GMT</pubDate></item></channel></rss>