Inguard (Toll Fraud Guard) - NEC SL2100 Features And Specifications Manual

Hide thumbs Also See for SL2100:
Table of Contents

Advertisement

ISSUE 1.0
Description
Toll Fraud
Toll Fraud is a term used to describe the occurrence of unauthorized calls on a PBX.
• The rise in Dial through Fraud (DTF) and VoIP security threats reported recently indicates that the
worst misuse is likely to be generated remotely by hackers who exploit any available remote access
to the customers PBX to generate expensive unauthorized calls.
• It is important to note that any customer who is affected is still liable for all such call charges and
these can be extremely expensive.
• DTF can be perpetrated via a number of access methods. Examples include: IP-PBX systems
reprogrammed remotely, SIP Trunks, SIP Extensions, DISA (Direct Inward Service Access) or
Voicemail.
• The hacker's objective is to obtain access codes and passwords/PINs that enables unauthorized
calls to be made via a customer's switch. Often, the hackers sell these details to an organized
fraudster for profit.
Toll Fraud Guard
The Toll Fraud Guard is an active call monitoring application. It works by monitoring SMDR output
provided by the PBX and applies user configured rules to look for call trends that could be deemed
fraudulent.
• When the guard detects any fraudulent activity it will send email notifications to users informing
them of the suspicion.
• The application has the ability to modify PBX configuration so that further fraudulent activity does
not takes place, it takes the following actions for the same:
- If the same extension is making a high number of calls, it can be moved to a restricted toll
restriction class to prevent it from making further calls.
- Likewise, if the Guard sees many outbound calls to the same number, it can block this number
from being dialed.
Action Mechanism
There are two stages to the blocking actions for outbound calls:
• Email alerts are first sent to warn the user about possible fraudulent activity.
• Secondly, an automatic blocking action can be carried out. This blocking action could place the
extension in a restrictive toll restriction class or block the number from being dialed.
• The Guard requires access to an email server that is enabled for SMTP and POP3; these are used
for email integration to the application. The application is accessed using a Web Browser.
Conditions
• The following Web Browsers are supported for the Guard Application; Internet Explorer 11,
Chrome™ 43.0 and Firefox 42.
Default Settings
By default, the SL2100 does not have the Toll Guard application installed.
Features and Specifications Manual

InGuard (Toll Fraud Guard)

SL2100
I
1-399

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents