- Joined
- Apr 19, 2009
- Messages
- 53
- Reaction score
- 0
Hi,
On our 3cx cloud instance, we see many failed authentications (and then, blacklisted IPs).
I think it would be safer to only authorize authentications coming from the 3CX tunnel and, for generic devices, from our public WAN IP address.
On the virtual server's firewall, incoming traffic on TCP 5060 and UDP 5060 is accepted only when the source is our public IP address, but we still see authentication attempts going through ...
So it means that another protocol/port is used for authentication, but which one ?
Thank you !
On our 3cx cloud instance, we see many failed authentications (and then, blacklisted IPs).
I think it would be safer to only authorize authentications coming from the 3CX tunnel and, for generic devices, from our public WAN IP address.
On the virtual server's firewall, incoming traffic on TCP 5060 and UDP 5060 is accepted only when the source is our public IP address, but we still see authentication attempts going through ...
So it means that another protocol/port is used for authentication, but which one ?
Thank you !