Dismiss Notice
We would like to remind you that we’re updating our login process for all 3CX forums whereby you will be able to login with the same credentials you use for the Partner or Customer Portal. Click here to read more.

Blacklist

Discussion in '3CX Phone System - General' started by gyates82, Sep 12, 2016.

Thread Status:
Not open for further replies.
  1. gyates82

    Joined:
    Aug 7, 2016
    Messages:
    5
    Likes Received:
    0
    I have a few problems with the blacklist.

    First, I cant reconcile the blacklist time in these messages. My blacklist time is actually days, not minutes, which worked fine in v14:

    The IP 52.32.205.214 has been blacklisted for 1001 sec.
    Reason: Requests rate is too high!

    In this example it shows 1001 seconds, but in other messages the time ranges seemingly randomly from 12 to 201 seconds. The blacklist action doesn't seem to take into account the blacklist timeout I've set.

    Second,
    Under IP Blacklist in Security, the blacklisted IP's are not displayed, event though the dashboard (and the activity log) show there to be active blackisted IP addresses.
     
  2. Davidch

    Joined:
    Sep 14, 2016
    Messages:
    2
    Likes Received:
    0
    +1

    I have the same probleme
     
  3. gyates82

    Joined:
    Aug 7, 2016
    Messages:
    5
    Likes Received:
    0
    Bump. Sorry. Fending off huge numbers of attacks.
     
  4. pj3cx

    pj3cx Active Member

    Joined:
    Aug 1, 2013
    Messages:
    646
    Likes Received:
    1
    Hi there,
    Please open support tickets so that we can review your logs and help further on this.

    In the meantime, some prevention steps can be taken from your side
    - in the Settings / Security / Anti-Hacking / divide each values by two, except the blacklist time interval, and the security barrier (green). Set the blacklist time interval to a higher value such as 31536000 (1 year).
    - in your firewall, filter the SIP port to allow only trusted sources, meaning your VoIP providers IP/range, and remote extensions (if any).
    - validate, restart services.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
Thread Status:
Not open for further replies.