They are sending requests from his own public ip huh? Trade secrets....
Hmmmm, IPTaibles, Fail2Ban (as a preventative), there is something
I am missing.... What the f is it called again? Oh yeah Pike!!!

>> alwaysauthreject = yes
I don't know about that.... However, using the mac address of the device as
the `sipbuddies.name`, and having `sipbuddies.secret` other than `12345a`
;), I would say yes too.

>> One of Asterisk's dirty little secrets is that it does not show the
source IP when a device or hacker tries sending a call >> without
registering.  The rejection message in the logs do not show the IP of the
attacker.   Yes it sucks, yes it has
>> been that way for many many years.

Does not good if the address is spoofed as it seems is the case here.
IPTables, class c filter rule buy yourself a burger or a slice...

Be strong my legit brotherins!!!

N.
--
_____________________________________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --
New to Asterisk? Join us for a live introductory webinar every Thurs:
               http://www.asterisk.org/hello

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users

Reply via email to