- Joined
- Jul 9, 2018
- Messages
- 694
- Reaction score
- 166
We have a cloud install deployed from 3CX and hosted by Google. We have a single site (for which I have whitelisted the IP) tunneling through a SBC and also mobile clients using 3CX for Android.
So far I've decreased the failed authentication threshold to 10, the failed challenge requests to 100 and increased the blacklist time interval to 999999999. I block ranges of IP's whenever they are blacklisted.
The number of failed authentications / blacklists I'm seeing have gone up significantly in the last few days (about 20 new ones per day) and I was wondering if there is any further hardening of the server / firewall that is advisable or if this is to be expected?
Thanks
So far I've decreased the failed authentication threshold to 10, the failed challenge requests to 100 and increased the blacklist time interval to 999999999. I block ranges of IP's whenever they are blacklisted.
The number of failed authentications / blacklists I'm seeing have gone up significantly in the last few days (about 20 new ones per day) and I was wondering if there is any further hardening of the server / firewall that is advisable or if this is to be expected?
Thanks