Source note · SIP scanning and telephony denial of service
Cisco's hardening guide recommends turning off plain UDP and TCP SIP listening on port 5060 (no transport udp, no transport tcp) and using TLS 1.2 instead.
Checked 2026-09-25
- Vendor
- Cisco
- Product
- Cisco Unified Border Element (CUBE)
- Subsystem
- Hardening - SIP transport
- Deployment
- on-premises
- Region
- not restricted
- Release range
- as of 2023-04-10
- Checked
- 2026-09-25
Sources
- Cisco Guide to Harden Cisco Unified Border Element (CUBE) Enterprise Devices — Cisco Systems · tier 2 current vendor documentation · SIP transport / TLS sections
Cite this note
APA
WarmTransfer. (2026, September 25). SIP scanning and telephony denial of service: source note sip-scanning-tdos-harden-disable-5060. WarmTransfer. https://warmtransfer.net/knowledge/claims/sip-scanning-tdos-harden-disable-5060
BibTeX
@misc{warmtransfer-claim-sip-scanning-tdos-harden-disable-5060,
title = {SIP scanning and telephony denial of service: source note sip-scanning-tdos-harden-disable-5060},
author = {{WarmTransfer}},
year = {2026},
url = {https://warmtransfer.net/knowledge/claims/sip-scanning-tdos-harden-disable-5060},
note = {Source note sip-scanning-tdos-harden-disable-5060, checked 2026-09-25}
}