securtiy

  1. Content Security Policy (CSP) issue or bypass

    Dear 3CX Community, -------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Description A vulnerability has been detected on https://xxxxxxxxxxxxxx:5001 Some issues have been...
  2. Syslog or View Blacklist Logs

    A few of our customers are getting excessive blacklisted IPs due to failed authentications. I would would like to implement an automated method of permanently blocking those IPs. The best way to do this I believe would be to use syslog to send the logs elsewhere on the network and then do the...
  3. Univ. of North Florida

    Redirecting 3CX Web App and Management Console to HTTPS by Default

    Hi, We noticed that in some situations it is possible to log in to the 3CX Web App and Management Console over HTTP. This is obviously an issue since HTTP isn't encrypted and someone can view our login information if it isn't encrypted. Although we know there is a way to force these web pages...