- Joined
- May 17, 2023
- Messages
- 38
- Reaction score
- 3
I receive approximately 10 notifications of an IP address being blacklisted each day. Sometimes there are more in a given day. Is this normal and expected? Does this indicate I have configured something incorrectly or missed something in our Hosted 3CX setup? A redacted example is below.
The IP X.X.X.X on PBX YYYYYYY has been blacklisted and will expire on: 2023/07/26 18:12:22.
Affected Module: SIP Server
User agent: PolycomSoundPointIP-SPIP_450-UA/3.3.4.0085
Reason: Too many failed authentications!
This IP Address X.X.X.X has made numerous attempts to authenticate with 3CX using invalid credentials. In response, 3CX has blacklisted this IP and denied any further requests.
No action is required on your behalf.
If you would like to review, edit or delete the rule, you can do so from your Management Console > Dashboard > IP Blacklist.
For more information: https://www.3cx.com/docs/allow-deny-ip-addresses/
The IP X.X.X.X on PBX YYYYYYY has been blacklisted and will expire on: 2023/07/26 18:12:22.
Affected Module: SIP Server
User agent: PolycomSoundPointIP-SPIP_450-UA/3.3.4.0085
Reason: Too many failed authentications!
This IP Address X.X.X.X has made numerous attempts to authenticate with 3CX using invalid credentials. In response, 3CX has blacklisted this IP and denied any further requests.
No action is required on your behalf.
If you would like to review, edit or delete the rule, you can do so from your Management Console > Dashboard > IP Blacklist.
For more information: https://www.3cx.com/docs/allow-deny-ip-addresses/