On 10/05/2012 02:10 PM, Benoit Panizzon wrote:
Hello

We had this situation:

Some bot-net did try to guess SIP logins and finally succeeded. The Asterisk
Server was abused to call a large number of expensive destinations.

I'm sorry to hear that. In the Asterisk source there is a doc that focuses on security. you might want to read that. Google should give you more information about Asterisk/SIP security. Also you may want to install something like fail2ban which prevents brute forcing by banning originating IP addresses after a few failed attempts.

Regards,
Patrick


--
_____________________________________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --
New to Asterisk? Join us for a live introductory webinar every Thurs:
              http://www.asterisk.org/hello

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
  http://lists.digium.com/mailman/listinfo/asterisk-users

Reply via email to