Fail2Ban; Figure 30: Configure Dynamic Defense - Grandstream Networks UCM6100 Series User Manual

Ip pbx
Hide thumbs Also See for UCM6100 Series:
Table of Contents

Advertisement

Since IP range 192.168.5.100-192.168.5.200 is in whitelist, if a host initiates more than 20 TCP connections
to the UCM6100 within 1 minute, it will not be added into UCM6100 blacklist. It can still establish TCP
connection with the UCM6100.

Fail2ban

Fail2Ban feature on the UCM6100 provides intrusion detection and prevention for authentication errors in SIP
REGISTER, INVITE and SUBSCRIBE. Once the entry is detected within "Max Retry Duration", the UCM6100
will act to forbid the host for certain period as defined in "Banned Duration". This feature helps prevent SIP brute
force attacks to the PBX system.

Figure 30: Configure Dynamic Defense

UCM6100 Series User Manual
Version 1.0.18.13
P a g e
|
81

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ucm6102Ucm6104Ucm6108Ucm6116

Table of Contents