- Joined
- May 4, 2022
- Messages
- 66
- Reaction score
- 10
We recently got a lot of these from different IPs (mostly from China, Russia and Hong Kong):
I know 3CX is doing its job and blacklisting the IPs but just wondering if there is anything else we can do to stop these. What is the Tunnel Manager used for anyway and what ports does it use (thinking of blocking those ports on the firewall)?
The IP 185.7.214.105 on PBX blahblahbla has been blacklisted and will expire on: 2025/04/26 22:45:47.
Affected Module: Tunnel Manager
User agent:
Reason: Blocked due to suspicious activity (flood)
This IP Address 185.7.214.105 has made numerous attempts to authenticate with 3CX using invalid credentials. In response, 3CX has blacklisted this IP and denied any further requests.
No action is required on your behalf.
I know 3CX is doing its job and blacklisting the IPs but just wondering if there is anything else we can do to stop these. What is the Tunnel Manager used for anyway and what ports does it use (thinking of blocking those ports on the firewall)?