Dear
this note is only for fresh administrators don't think about asterisk
security.
I found fail2ban very useful for anti asterisk hacking, so I want to share
it with fresh admins.
some hackers try your sip or iax2 ip with a lot of username/password, may be
after 1 million try, one username/password was accepted.  so in 2-3 hours,
they use all of the credit of the hacked user.
fail2ban, runs as service, and checks the logs, and blocks the suspicious
IPs.

for more info:

http://www.fail2ban.org/wiki/index.php/Asterisk
http://www.voip-info.org/wiki/view/Fail2Ban+(with+iptables)+And+Asterisk

best
--
_____________________________________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --
New to Asterisk? Join us for a live introductory webinar every Thurs:
               http://www.asterisk.org/hello

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users

Reply via email to