Re: [WISPA] VOIP Security Consultant

2014-04-18 Thread Faisal Imtiaz
Hi Chris, 

Not withstanding security on Freepbx, you know there is no way for freepbx to 
do anything if one of the endpoints are compromised, or a valid user /ext 
password is jacked. 

We use an external system (a2billing) as a means of managing and controlling 
such compromises... 

If this is of interest, feel free to give me shout off-line, unless there are 
others who would like to hear more about this on the list. 

Regards. 

Faisal Imtiaz 
Snappy Internet & Telecom 
7266 SW 48 Street 
Miami, FL 33155 
Tel: 305 663 5518 x 232 

Help-desk: (305)663-5518 Option 2 or Email: supp...@snappytelecom.net 

- Original Message -

> From: "Chris Fabien" 
> To: "WISPA General List" 
> Sent: Thursday, April 17, 2014 7:28:28 PM
> Subject: [WISPA] VOIP Security Consultant

> I need help troubleshooting some fraudulent activity on our FreePBX system
> and implementing safeguards to prevent it happening again. Anyone who is
> knowledgeable with this please contact me offlist.

> ___
> Wireless mailing list
> Wireless@wispa.org
> http://lists.wispa.org/mailman/listinfo/wireless
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless


Re: [WISPA] VOIP Security Consultant

2014-04-17 Thread Chris Fabien
That would be fine, thank you


On Thu, Apr 17, 2014 at 8:30 PM, Chris Stradtman <
cstradt...@greenpointcommunications.com> wrote:

> Chris,
>
> I'm on an Asterisk mailing list where a lot of folks do this for a living.
>  Would you like me to forward your request onto that list??
>
> Chris Stradtman
>
>
> On Thu, Apr 17, 2014 at 7:57 PM, Chris Fabien  wrote:
>
>> This was someone relaying international calls through somehow. I don't
>> think the server itself was compromised. We caught very quickly but need to
>> figure out where the security flaw is.
>>
>>
>> On Thu, Apr 17, 2014 at 7:49 PM, Cameron Crum  wrote:
>>
>>> You'll probably get a visit from the fbi soon.  We had a server
>>> penitrated for a couple hours one day a few years back. I pulled the hd and
>>> rebuilt the box on a new disk and tightened up my firewall. A year later I
>>> got a visit from two agents asking about it with a warrant. I told them
>>> what happened and gave them the hd. Luckily I just left it sitting on top
>>> of the box all that time. Never heard anything else.
>>>
>>> Cameron
>>> On Apr 17, 2014 6:28 PM, "Chris Fabien"  wrote:
>>>
  I need help troubleshooting some fraudulent activity on our FreePBX
 system and implementing safeguards to prevent it happening again. Anyone
 who is knowledgeable with this please contact me offlist.



 ___
 Wireless mailing list
 Wireless@wispa.org
 http://lists.wispa.org/mailman/listinfo/wireless


>>> ___
>>> Wireless mailing list
>>> Wireless@wispa.org
>>> http://lists.wispa.org/mailman/listinfo/wireless
>>>
>>>
>>
>> ___
>> Wireless mailing list
>> Wireless@wispa.org
>> http://lists.wispa.org/mailman/listinfo/wireless
>>
>>
>
> ___
> Wireless mailing list
> Wireless@wispa.org
> http://lists.wispa.org/mailman/listinfo/wireless
>
>
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless


Re: [WISPA] VOIP Security Consultant

2014-04-17 Thread Chris Stradtman
Chris,

I'm on an Asterisk mailing list where a lot of folks do this for a living.
 Would you like me to forward your request onto that list??

Chris Stradtman


On Thu, Apr 17, 2014 at 7:57 PM, Chris Fabien  wrote:

> This was someone relaying international calls through somehow. I don't
> think the server itself was compromised. We caught very quickly but need to
> figure out where the security flaw is.
>
>
> On Thu, Apr 17, 2014 at 7:49 PM, Cameron Crum  wrote:
>
>> You'll probably get a visit from the fbi soon.  We had a server
>> penitrated for a couple hours one day a few years back. I pulled the hd and
>> rebuilt the box on a new disk and tightened up my firewall. A year later I
>> got a visit from two agents asking about it with a warrant. I told them
>> what happened and gave them the hd. Luckily I just left it sitting on top
>> of the box all that time. Never heard anything else.
>>
>> Cameron
>> On Apr 17, 2014 6:28 PM, "Chris Fabien"  wrote:
>>
>>>  I need help troubleshooting some fraudulent activity on our FreePBX
>>> system and implementing safeguards to prevent it happening again. Anyone
>>> who is knowledgeable with this please contact me offlist.
>>>
>>>
>>>
>>> ___
>>> Wireless mailing list
>>> Wireless@wispa.org
>>> http://lists.wispa.org/mailman/listinfo/wireless
>>>
>>>
>> ___
>> Wireless mailing list
>> Wireless@wispa.org
>> http://lists.wispa.org/mailman/listinfo/wireless
>>
>>
>
> ___
> Wireless mailing list
> Wireless@wispa.org
> http://lists.wispa.org/mailman/listinfo/wireless
>
>
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless


Re: [WISPA] VOIP Security Consultant

2014-04-17 Thread Chris Fabien
This was someone relaying international calls through somehow. I don't
think the server itself was compromised. We caught very quickly but need to
figure out where the security flaw is.


On Thu, Apr 17, 2014 at 7:49 PM, Cameron Crum  wrote:

> You'll probably get a visit from the fbi soon.  We had a server penitrated
> for a couple hours one day a few years back. I pulled the hd and rebuilt
> the box on a new disk and tightened up my firewall. A year later I got a
> visit from two agents asking about it with a warrant. I told them what
> happened and gave them the hd. Luckily I just left it sitting on top of the
> box all that time. Never heard anything else.
>
> Cameron
> On Apr 17, 2014 6:28 PM, "Chris Fabien"  wrote:
>
>> I need help troubleshooting some fraudulent activity on our FreePBX
>> system and implementing safeguards to prevent it happening again. Anyone
>> who is knowledgeable with this please contact me offlist.
>>
>>
>>
>> ___
>> Wireless mailing list
>> Wireless@wispa.org
>> http://lists.wispa.org/mailman/listinfo/wireless
>>
>>
> ___
> Wireless mailing list
> Wireless@wispa.org
> http://lists.wispa.org/mailman/listinfo/wireless
>
>
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless


Re: [WISPA] VOIP Security Consultant

2014-04-17 Thread Cameron Crum
You'll probably get a visit from the fbi soon.  We had a server penitrated
for a couple hours one day a few years back. I pulled the hd and rebuilt
the box on a new disk and tightened up my firewall. A year later I got a
visit from two agents asking about it with a warrant. I told them what
happened and gave them the hd. Luckily I just left it sitting on top of the
box all that time. Never heard anything else.

Cameron
On Apr 17, 2014 6:28 PM, "Chris Fabien"  wrote:

> I need help troubleshooting some fraudulent activity on our FreePBX system
> and implementing safeguards to prevent it happening again. Anyone who is
> knowledgeable with this please contact me offlist.
>
>
>
> ___
> Wireless mailing list
> Wireless@wispa.org
> http://lists.wispa.org/mailman/listinfo/wireless
>
>
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless


[WISPA] VOIP Security Consultant

2014-04-17 Thread Chris Fabien
I need help troubleshooting some fraudulent activity on our FreePBX system
and implementing safeguards to prevent it happening again. Anyone who is
knowledgeable with this please contact me offlist.
___
Wireless mailing list
Wireless@wispa.org
http://lists.wispa.org/mailman/listinfo/wireless