User guide
SmartDefense Categories
496 Check Point Safe@Office User Guide
SIP
The SmartDefense SIP Application Level Gateway (ALG) processes the SIP protocol,
allows firewall and NAT traversal, and enables Traffic Shaper to operate on SIP
connections.
By default, the SIP ALG checks SIP sessions for RFC compliance. If desired, you can
allow non-RFC-compliant SIP connections, so that VoIP devices that initiate non-standard
SIP calls can communicate through the firewall. You can also disable the SIP ALG
altogether, if it is not needed by your SIP clients, or if it interferes with their operation.
Table 106: SIP Fields
In this field…
Do this…
SIP Protocol
Handler
Specify whether to enable SIP support, by selecting one of the following:
• Enabled. Enable SIP support. This is the default.
•
Disabled. Disable SIP support.
RFC Non-
compliant
Messages
Specify what action to take when non-RFC-compliant SIP packets arrive, by
selecting one of the following:
• Block. Block the packets. This is the default.
•
None. No action.