[asterisk-users] app_hackblock to prevent SIP/IAX reg trolling

Danny Nicholas danny at debsinc.com
Fri Oct 2 15:28:45 CDT 2009


This is where I found this
http://www.voip-info.org/wiki/view/Asterisk+config+sip.conf#SIPConfiguration
general

-----Original Message-----
From: asterisk-users-bounces at lists.digium.com
[mailto:asterisk-users-bounces at lists.digium.com] On Behalf Of Michelle
Dupuis
Sent: Friday, October 02, 2009 3:26 PM
To: 'Asterisk Users List'
Subject: Re: [asterisk-users] app_hackblock to prevent SIP/IAX reg trolling

I can't find any reference for this - is there a doc / link? 

-----Original Message-----
From: asterisk-users-bounces at lists.digium.com
[mailto:asterisk-users-bounces at lists.digium.com] On Behalf Of Danny Nicholas
Sent: Friday, October 02, 2009 3:59 PM
To: Asterisk Users List
Subject: Re: [asterisk-users] app_hackblock to prevent SIP/IAX reg trolling

Sipregisterattempts would seem to be the simplest way to do this.  It is 0
by default, changing it to 5 would stop the hacker after 5 tries.

-----Original Message-----
From: asterisk-users-bounces at lists.digium.com
[mailto:asterisk-users-bounces at lists.digium.com] On Behalf Of Michelle
Dupuis
Sent: Friday, October 02, 2009 2:24 PM
To: 'Asterisk Users List'
Subject: Re: [asterisk-users] app_hackblock to prevent SIP/IAX reg trolling

Good post.  One of the recommendations is to limit the number of calls per
sip entity.  Is there an easy way to do that in sip.conf? 

-----Original Message-----
From: asterisk-users-bounces at lists.digium.com
[mailto:asterisk-users-bounces at lists.digium.com] On Behalf Of C F
Sent: Friday, October 02, 2009 3:01 PM
To: Asterisk Users List
Subject: Re: [asterisk-users] app_hackblock to prevent SIP/IAX reg trolling

Couple of old posts:
http://lists.digium.com/pipermail/asterisk-users/2007-April/186195.html
http://lists.digium.com/pipermail/asterisk-users/2009-March/229479.html
http://lists.digium.com/pipermail/asterisk-users/2007-April/186456.html


On Fri, Oct 2, 2009 at 2:42 PM, Michelle Dupuis <support at ocg.ca> wrote:
> Has anyone written an app that monitors SIP/IAX registration attempts?  
> A couple of clients are being flooded with SIP registrations (but the 
> source IP changes every few hours so IPtables won't do)..
>
> I would think that any attempt to reg 5 times with a bad password 
> should cause a 5 minute timeout until reg is considered again.  Has 
> anyone written such an app?  The name app_hackblock is my contribution 
> to the project :)
>
> MD
> _______________________________________________
> -- Bandwidth and Colocation Provided by http://www.api-digital.com --
>
> AstriCon 2009 - October 13 - 15 Phoenix, Arizona Register Now: 
> http://www.astricon.net
>
> asterisk-users mailing list
> To UNSUBSCRIBE or update options visit:
>   http://lists.digium.com/mailman/listinfo/asterisk-users
>

_______________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --

AstriCon 2009 - October 13 - 15 Phoenix, Arizona Register Now:
http://www.astricon.net

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users


_______________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --

AstriCon 2009 - October 13 - 15 Phoenix, Arizona Register Now:
http://www.astricon.net

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users


_______________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --

AstriCon 2009 - October 13 - 15 Phoenix, Arizona Register Now:
http://www.astricon.net

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users


_______________________________________________
-- Bandwidth and Colocation Provided by http://www.api-digital.com --

AstriCon 2009 - October 13 - 15 Phoenix, Arizona
Register Now: http://www.astricon.net

asterisk-users mailing list
To UNSUBSCRIBE or update options visit:
   http://lists.digium.com/mailman/listinfo/asterisk-users




More information about the asterisk-users mailing list