home.social

#coturn — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #coturn, aggregated by home.social.

  1. Well today I found out that coturn does NOT use /etc/coturn/coturn.conf but actually /etc/turnserver.conf 😅

    I poured hours and hours in getting stuff to work and it turns out that I was editing the wrong file for this service the whole time... (the nextcloud interface only checks if the server is running and not whether the credentials you give it actually work)

    In other news nextcloud talk is finally working XD
    (though I get the same errors from the signaling backend as before)

    #sysadmin #coturn #turnServer #nextcloud #nextcloutTalk

  2. Well today I found out that coturn does NOT use /etc/coturn/coturn.conf but actually /etc/turnserver.conf 😅

    I poured hours and hours in getting stuff to work and it turns out that I was editing the wrong file for this service the whole time... (the nextcloud interface only checks if the server is running and not whether the credentials you give it actually work)

    In other news nextcloud talk is finally working XD
    (though I get the same errors from the signaling backend as before)

    #sysadmin #coturn #turnServer #nextcloud #nextcloutTalk

  3. Well today I found out that coturn does NOT use /etc/coturn/coturn.conf but actually /etc/turnserver.conf 😅

    I poured hours and hours in getting stuff to work and it turns out that I was editing the wrong file for this service the whole time... (the nextcloud interface only checks if the server is running and not whether the credentials you give it actually work)

    In other news nextcloud talk is finally working XD
    (though I get the same errors from the signaling backend as before)

    #sysadmin #coturn #turnServer #nextcloud #nextcloutTalk

  4. Well today I found out that coturn does NOT use /etc/coturn/coturn.conf but actually /etc/turnserver.conf 😅

    I poured hours and hours in getting stuff to work and it turns out that I was editing the wrong file for this service the whole time... (the nextcloud interface only checks if the server is running and not whether the credentials you give it actually work)

    In other news nextcloud talk is finally working XD
    (though I get the same errors from the signaling backend as before)

    #sysadmin #coturn #turnServer #nextcloud #nextcloutTalk

  5. If anyone wants to build a [Matrix] stack, I’ve made a working stack publicly available. Feedback and contributions are welcome.

    github.com/nean-and-i/matrix-s

    #DigitalSovereignty #DIDit #Matrix #Tuwunel #Caddy #LiveKit #Coturn

  6. Two weeks ago we published our analysis of TURN security threats. Today: how to fix them.

    New guides covering implementation-agnostic best practices (IP range blocking, protocol hardening, rate limiting, deployment patterns) and coturn-specific configuration with copy-paste templates at three security levels.

    Best practices: enablesecurity.com/blog/turn-s
    coturn guide: enablesecurity.com/blog/coturn
    Config templates on GitHub: github.com/EnableSecurity/cotu

    coturn 4.9.0 dropped yesterday with fixes for CVE-2026-27624 (IPv4-mapped IPv6 bypass of deny rules) and an inverted web admin password check that had been broken since ~2019. The guides cover workarounds for older versions.

    #infosec #webrtc #security #TURN #coturn #penetrationtesting #voip #serversecurity

  7. Two weeks ago we published our analysis of TURN security threats. Today: how to fix them.

    New guides covering implementation-agnostic best practices (IP range blocking, protocol hardening, rate limiting, deployment patterns) and coturn-specific configuration with copy-paste templates at three security levels.

    Best practices: enablesecurity.com/blog/turn-s
    coturn guide: enablesecurity.com/blog/coturn
    Config templates on GitHub: github.com/EnableSecurity/cotu

    coturn 4.9.0 dropped yesterday with fixes for CVE-2026-27624 (IPv4-mapped IPv6 bypass of deny rules) and an inverted web admin password check that had been broken since ~2019. The guides cover workarounds for older versions.

    #infosec #webrtc #security #TURN #coturn #penetrationtesting #voip #serversecurity

  8. Two weeks ago we published our analysis of TURN security threats. Today: how to fix them.

    New guides covering implementation-agnostic best practices (IP range blocking, protocol hardening, rate limiting, deployment patterns) and coturn-specific configuration with copy-paste templates at three security levels.

    Best practices: enablesecurity.com/blog/turn-s
    coturn guide: enablesecurity.com/blog/coturn
    Config templates on GitHub: github.com/EnableSecurity/cotu

    coturn 4.9.0 dropped yesterday with fixes for CVE-2026-27624 (IPv4-mapped IPv6 bypass of deny rules) and an inverted web admin password check that had been broken since ~2019. The guides cover workarounds for older versions.

    #infosec #webrtc #security #TURN #coturn #penetrationtesting #voip #serversecurity

  9. Two weeks ago we published our analysis of TURN security threats. Today: how to fix them.

    New guides covering implementation-agnostic best practices (IP range blocking, protocol hardening, rate limiting, deployment patterns) and coturn-specific configuration with copy-paste templates at three security levels.

    Best practices: enablesecurity.com/blog/turn-s
    coturn guide: enablesecurity.com/blog/coturn
    Config templates on GitHub: github.com/EnableSecurity/cotu

    coturn 4.9.0 dropped yesterday with fixes for CVE-2026-27624 (IPv4-mapped IPv6 bypass of deny rules) and an inverted web admin password check that had been broken since ~2019. The guides cover workarounds for older versions.

    #infosec #webrtc #security #TURN #coturn #penetrationtesting #voip #serversecurity

  10. Two weeks ago we published our analysis of TURN security threats. Today: how to fix them.

    New guides covering implementation-agnostic best practices (IP range blocking, protocol hardening, rate limiting, deployment patterns) and coturn-specific configuration with copy-paste templates at three security levels.

    Best practices: enablesecurity.com/blog/turn-s
    coturn guide: enablesecurity.com/blog/coturn
    Config templates on GitHub: github.com/EnableSecurity/cotu

    coturn 4.9.0 dropped yesterday with fixes for CVE-2026-27624 (IPv4-mapped IPv6 bypass of deny rules) and an inverted web admin password check that had been broken since ~2019. The guides cover workarounds for older versions.

    #infosec #webrtc #security #TURN #coturn #penetrationtesting #voip #serversecurity

  11. The following hashtags are trending across South African Mastodon instances:

    #deltachat
    #xmpp
    #ejabberd
    #selfhosting
    #foss
    #Today
    #dovecot
    #chatmail
    #coturn
    #polls

    Based on recent posts made by non-automated accounts. Posts with more boosts, favourites, and replies are weighted higher.

  12. The following hashtags are trending across South African Mastodon instances:

    #deltachat
    #xmpp
    #ejabberd
    #selfhosting
    #foss
    #Today
    #dovecot
    #chatmail
    #coturn
    #polls

    Based on recent posts made by non-automated accounts. Posts with more boosts, favourites, and replies are weighted higher.

  13. The following hashtags are trending across South African Mastodon instances:

    #ejabberd
    #selfhosting
    #coturn
    #southafrica
    #limpopo
    #schoolsafety
    #saaf
    #southafricanairforce
    #aviation
    #gripen

    Based on recent posts made by non-automated accounts. Posts with more boosts, favourites, and replies are weighted higher.

  14. Few days ago I successfully configured #coturn to have a TURN/STUN server for in-family calls. But … looks like bots or some bad guys constantly trying to connect to my TURN server to use it for something :-(

    Of course, it is impossible, since anonymous access or any other access without right key is impossible. But, there are no IPs of attackers in the log file, even wth "Verbose" directive — only my local and public IPs and my server's hostname :drgn_cry:

    Maybe, there is some way to force coturn to display IP addresses of connected clients, so I could ban them all with fail2ban?

    #TURN #STUN #selfhosting #networking #AskFedi

  15. Few days ago I successfully configured #coturn to have a TURN/STUN server for in-family calls. But … looks like bots or some bad guys constantly trying to connect to my TURN server to use it for something :-(

    Of course, it is impossible, since anonymous access or any other access without right key is impossible. But, there are no IPs of attackers in the log file, even wth "Verbose" directive — only my local and public IPs and my server's hostname :drgn_cry:

    Maybe, there is some way to force coturn to display IP addresses of connected clients, so I could ban them all with fail2ban?

    #TURN #STUN #selfhosting #networking #AskFedi

  16. Few days ago I successfully configured #coturn to have a TURN/STUN server for in-family calls. But … looks like bots or some bad guys constantly trying to connect to my TURN server to use it for something :-(

    Of course, it is impossible, since anonymous access or any other access without right key is impossible. But, there are no IPs of attackers in the log file, even wth "Verbose" directive — only my local and public IPs and my server's hostname :drgn_cry:

    Maybe, there is some way to force coturn to display IP addresses of connected clients, so I could ban them all with fail2ban?

    #TURN #STUN #selfhosting #networking #AskFedi

  17. Few days ago I successfully configured #coturn to have a TURN/STUN server for in-family calls. But … looks like bots or some bad guys constantly trying to connect to my TURN server to use it for something :-(

    Of course, it is impossible, since anonymous access or any other access without right key is impossible. But, there are no IPs of attackers in the log file, even wth "Verbose" directive — only my local and public IPs and my server's hostname :drgn_cry:

    Maybe, there is some way to force coturn to display IP addresses of connected clients, so I could ban them all with fail2ban?

    #TURN #STUN #selfhosting #networking #AskFedi

  18. Few days ago I successfully configured #coturn to have a TURN/STUN server for in-family calls. But … looks like bots or some bad guys constantly trying to connect to my TURN server to use it for something :-(

    Of course, it is impossible, since anonymous access or any other access without right key is impossible. But, there are no IPs of attackers in the log file, even wth "Verbose" directive — only my local and public IPs and my server's hostname :drgn_cry:

    Maybe, there is some way to force coturn to display IP addresses of connected clients, so I could ban them all with fail2ban?

    #TURN #STUN #selfhosting #networking #AskFedi

  19. Just tested my Prosody server against the compliance checker at compliance.conversations.im My Prosody server got itself a 100% compliance rating, with in-band registration being disabled as it's more of a personal server than a public one, even with that public conference. If you want to see the results for yourself, check out compliance.conversations.im/se I will also point out that both Prosody and CoTurn (which provides media relay services for Prosody) are configured to be dual-stack, meaning everything works both on IPv4 and IPv6. Even got all 8 SRV records configured in DNS so CoTurn's STUN and TURN implementations will hopefully work flawlessly, both via TCP & UDP (and the TLS-based option is included). #Prosody #CoTurn #XMPP #StandardsCompliance #OwnYourData #SelfHosting

  20. Just tested my Prosody server against the compliance checker at compliance.conversations.im My Prosody server got itself a 100% compliance rating, with in-band registration being disabled as it's more of a personal server than a public one, even with that public conference. If you want to see the results for yourself, check out compliance.conversations.im/se I will also point out that both Prosody and CoTurn (which provides media relay services for Prosody) are configured to be dual-stack, meaning everything works both on IPv4 and IPv6. Even got all 8 SRV records configured in DNS so CoTurn's STUN and TURN implementations will hopefully work flawlessly, both via TCP & UDP (and the TLS-based option is included). #Prosody #CoTurn #XMPP #StandardsCompliance #OwnYourData #SelfHosting

  21. Just tested my Prosody server against the compliance checker at compliance.conversations.im My Prosody server got itself a 100% compliance rating, with in-band registration being disabled as it's more of a personal server than a public one, even with that public conference. If you want to see the results for yourself, check out compliance.conversations.im/se I will also point out that both Prosody and CoTurn (which provides media relay services for Prosody) are configured to be dual-stack, meaning everything works both on IPv4 and IPv6. Even got all 8 SRV records configured in DNS so CoTurn's STUN and TURN implementations will hopefully work flawlessly, both via TCP & UDP (and the TLS-based option is included). #Prosody #CoTurn #XMPP #StandardsCompliance #OwnYourData #SelfHosting

  22. So, der prosody #xmpp server läuft mit #coturn für Voice und Video, allen Features passen und wir haben 100% Compliance. Yay.

    Mal sehen, was es jetzt wieder für einen Kampf wird, vom Test- auf den Prodserver umzuziehen.

    Das letzte Zahnrad für die digitale Unabhängigkeit … #selfhosting

  23. So, der prosody #xmpp server läuft mit #coturn für Voice und Video, allen Features passen und wir haben 100% Compliance. Yay.

    Mal sehen, was es jetzt wieder für einen Kampf wird, vom Test- auf den Prodserver umzuziehen.

    Das letzte Zahnrad für die digitale Unabhängigkeit … #selfhosting

  24. So, der prosody #xmpp server läuft mit #coturn für Voice und Video, allen Features passen und wir haben 100% Compliance. Yay.

    Mal sehen, was es jetzt wieder für einen Kampf wird, vom Test- auf den Prodserver umzuziehen.

    Das letzte Zahnrad für die digitale Unabhängigkeit … #selfhosting

  25. So, der prosody #xmpp server läuft mit #coturn für Voice und Video, allen Features passen und wir haben 100% Compliance. Yay.

    Mal sehen, was es jetzt wieder für einen Kampf wird, vom Test- auf den Prodserver umzuziehen.

    Das letzte Zahnrad für die digitale Unabhängigkeit … #selfhosting

  26. Got #prosody running and also established #coturn for stun/turn on the test server. It looks pretty good and is very lightweight, and #conversations looks like a decent client. happy so far...

    But compared to #matrix, the huge amount of features and XEPs is a different story.

  27. Got #prosody running and also established #coturn for stun/turn on the test server. It looks pretty good and is very lightweight, and #conversations looks like a decent client. happy so far...

    But compared to #matrix, the huge amount of features and XEPs is a different story.

  28. Got #prosody running and also established #coturn for stun/turn on the test server. It looks pretty good and is very lightweight, and #conversations looks like a decent client. happy so far...

    But compared to #matrix, the huge amount of features and XEPs is a different story.

  29. Got #prosody running and also established #coturn for stun/turn on the test server. It looks pretty good and is very lightweight, and #conversations looks like a decent client. happy so far...

    But compared to #matrix, the huge amount of features and XEPs is a different story.

  30. @mptcp

    Question de noob:

    Le multipath TCP ca a un interet pour les transitions entre connexions 5g/wifi les apps voip? Genre une app android #conversations qui communique en vers un service relai #coturn ?

    Je crois que la voip utilise UDP en general.

  31. @mptcp

    Question de noob:

    Le multipath TCP ca a un interet pour les transitions entre connexions 5g/wifi les apps voip? Genre une app android #conversations qui communique en vers un service relai #coturn ?

    Je crois que la voip utilise UDP en general.

  32. @mptcp

    Question de noob:

    Le multipath TCP ca a un interet pour les transitions entre connexions 5g/wifi les apps voip? Genre une app android #conversations qui communique en vers un service relai #coturn ?

    Je crois que la voip utilise UDP en general.

  33. @mptcp

    Question de noob:

    Le multipath TCP ca a un interet pour les transitions entre connexions 5g/wifi les apps voip? Genre une app android #conversations qui communique en vers un service relai #coturn ?

    Je crois que la voip utilise UDP en general.

  34. @mptcp

    Question de noob:

    Le multipath TCP ca a un interet pour les transitions entre connexions 5g/wifi les apps voip? Genre une app android #conversations qui communique en vers un service relai #coturn ?

    Je crois que la voip utilise UDP en general.

  35. The #Ansible role for #BigBlueButton is now able to install and configure BBB 3.0.x with embedded #coturn, even on cloud VMs behind a NAT router or firewall.

    github.com/ebbba-org/ansible-r

  36. The #Ansible role for #BigBlueButton is now able to install and configure BBB 3.0.x with embedded #coturn, even on cloud VMs behind a NAT router or firewall.

    github.com/ebbba-org/ansible-r

  37. The #Ansible role for #BigBlueButton is now able to install and configure BBB 3.0.x with embedded #coturn, even on cloud VMs behind a NAT router or firewall.

    github.com/ebbba-org/ansible-r

  38. I got #matrix running on my VPS and it's working nicely, other than calling. How does #Coturn work 😭