Answer the question
In order to leave comments, you need to log in
IPs are not added to fail2ban filtering rules. What am I doing wrong?
in filter.d/asterisk.conf there are such variations
Trying to put 'SIP\/2.0 401' onto UDP socket destined for <HOST>:.*
Trying to put 'SIP/2.0 401' onto UDP socket destined for <HOST>:.*
DEBUG.* .*: Trying to put 'SIP\/2.0 401' onto UDP socket destined for <HOST>:.*$
DEBUG.* .*: Trying to put 'SIP/2.0 401' onto UDP socket destined for <HOST>:.*$
DEBUG[31267]: chan_sip.c:3805 __sip_xmit: Trying to put 'SIP/2.0 401' onto UDP socket destined for ip:port
[asterisk]
port = 5060,5061
action = %(banaction)s[name=%(__name__)s-tcp, port="%(port)s", protocol="tcp", chain="%(chain)s", actname=%(banaction)s-tcp]
%(banaction)s[name=%(__name__)s-udp, port="%(port)s", protocol="udp", chain="%(chain)s", actname=%(banaction)s-udp]
%(mta)s-whois[name=%(__name__)s, dest="%(destemail)s"]
logpath = /var/log/asterisk/full
maxretry = 10
findtime = 86400
bantime = 518400
enabled = true
Answer the question
In order to leave comments, you need to log in
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question