View Issue Details

IDProjectCategoryView StatusLast Update
0007469Linux server software[All Projects] Generalpublic2024-09-19 17:49
ReporterDigitalMy 
PrioritynormalSeverityminorReproducibilityhave not tried
Status assignedResolutionopen 
Summary0007469: DDoS and brute-force blocking by fail2ban
Descriptionsudo apt update
apt install fail2ban

edit /etc/asterisk/logger.conf
[logfiles]
fail2ban => notice,security

asterisk -x "logger reload"

edit /etc/fail2ban/jail.local
fail2ban-client reload

Edit /etc/fail2ban/filter.d/asterisk.conf
^.* NOTICE\[\d+\] res_pjsip/pjsip_distributor\.c: Request from '"\d+" <sip:\d+@.*>' failed for '<HOST>.* \(callid: .*\) - No matching endpoint found$
TagsNo tags attached.

Activities

DigitalMy

2024-09-14 00:42

administrator   ~0014377

Monitoring:
systemctl status fail2ban
fail2ban-client status
fail2ban-client status asterisk

DigitalMy

2024-09-14 02:18

administrator   ~0014378

installed iptables-nftables
nft list ruleset