Hello
@LyonAdmiral
What you can do so is from your PBX in order to prevent any malicious action is:
- Under Settings >>Security >> Anti-Hacking divide each value by two, except the blacklist time interval, and the security barrier (green).
Set the blacklist time interval to a higher value such as 31536000 (1 year).
-Under Settings>>Security Settings>>Allowed country codes select only the locations that you wish to receive calls from.
-Under Dashboard>>Blacklisted IPs you can blacklist ranges of IPs but please be careful on that because you don't want to block IPs that you get traffic from.
3CX is protecting you from known APIs and tools that can perform malicious actions against your System. You can find them under Settings>>Parameters searching with SEC_IGNORE_USER_AGENT (important: please note that, editing parameters in highly not recommended )
On your firewall:
- Filter the SIP port to allow only trusted sources, meaning your VoIP providers IP/range, and remote extensions (if any).
-Configure all remote Extension connect through the 3CX Tunnel
-Use ACL to alow only trusted IPs
Make use of VPN if possible
You can find more security countermeasures and detailed information here:
https://www.3cx.com/3cxacademy/videos/advanced/security-with-3cx-phone-system/