Hello,
Yes, I have read through those docs, specifically that section. I was just wondering if that is enough.
So with the recommended approach in the docs, port 5060 will be open to the world. A bad actor would be blocked in 2 ways.
1. If they try and register with an IP instead of...