• V20: 3CX Re-engineered. Get V20 for increased security, better call management, a new admin console and Windows softphone. Learn More.

Block access to provisioning url IP based (Linux)

Status
Not open for further replies.

mear

Joined
Aug 9, 2011
Messages
16
Reaction score
1
Hi,

We have a hosted PBX that is been hacked, and apparently, someone found what is the provisioning URL and they are trying Mac Addresses until they get one served by the server.

Last time we had this issue, we replaced the phone and this now happened again with a different device.

Is there any way of blocking the provisioning folder? we tried to use the NGNIX configuration but it continues to serve configuration files containing the authentication details.

Can you please help?
 
I use Iptables to block everything except allowed ports. You could allow tcp port 5001 from valid wan IP's and then block the rest. We only use Linux for hosting so it it pretty easy.
 
Status
Not open for further replies.
Get 3CX - Absolutely Free!

Link up your team and customers Phone System Live Chat Video Conferencing

Hosted or Self-managed. Up to 10 users free forever. No credit card. Try risk free.

3CX
A 3CX Account with that email already exists. You will be redirected to the Customer Portal to sign in or reset your password if you've forgotten it.