- Joined
- Oct 24, 2018
- Messages
- 367
- Reaction score
- 40
Are there any processes we can put in place to ultimately protect our cloud based 3cx instances? IE using cloud flares dns proxy protection stuff? (although that's probably moot too because I'm sure most people just port scan public IP's to find my 3cx servers)
Unfortunately using a site to site VPN is out of the question for 99% of my clients who love to use the 3cx iphone/android app, and also blocking all except whitelisted IP's won't work since my clients don't utilize static IP's at their location.
So all my servers are constantly getting brute forced non-stop. I have the auto-ban settings on and all the security settings setup within 3cx itself.
What do you folks do?
It seems the only real option is putting a pfsense firewall in front of every instance and doing geo blocking is about the only decent step.
Unfortunately using a site to site VPN is out of the question for 99% of my clients who love to use the 3cx iphone/android app, and also blocking all except whitelisted IP's won't work since my clients don't utilize static IP's at their location.
So all my servers are constantly getting brute forced non-stop. I have the auto-ban settings on and all the security settings setup within 3cx itself.
What do you folks do?
It seems the only real option is putting a pfsense firewall in front of every instance and doing geo blocking is about the only decent step.