P a g e
|
79
UCM6200 Series User Manual
Version 1.0.20.38
Connection
Threshold
Configure the connection threshold. Once a host exceeds this threshold, it will
be added to the blacklist. Default setting is 100.
Dynamic Defense
Whitelist
Allowed IPs and ports range, multiple IP addresses and port range.
For example:
192.168.5.100-
192.168.5.200 1500:2000
The following figure shows a configuration example like this:
•
If a host at IP address 192.168.5.7 initiates more than 20 TCP connections to the UCM6200 within 1 minute,
it will be added into UCM6200 blacklist.
•
This host 192.168.5.7 will be blocked by the UCM6200 for 500 seconds.
•
Since IP range 192.168.5.100-192.168.5.200 is in whitelist, if a host initiates more than 20 TCP connections
to the UCM6200 within 1 minute, it will not be added into UCM6200 blacklist. It can still establish TCP
connection with the UCM6200.
Figure 29: Configure Dynamic Defense
Fail2ban
Fail2Ban feature on the UCM6200 provides intrusion detection and prevention for authentication errors in SIP
REGISTER, INVITE and SUBSCRIBE and prevents SIP brute force attacks on the PBX system.
Once an IP address exceeds the allowed number of login or SIP authentication attempts within the configured
"Max Retry Duration" period, all SIP and HTTP requests from that IP address will be dropped, forbidding web
access and blocking further authentication attempts.
Summary of Contents for UCM6200 Series
Page 1: ...Grandstream Networks Inc UCM6200 Series IP PBX User Manual...
Page 239: ...P a g e 238 UCM6200 Series User Manual Version 1 0 20 38 Figure 144 Conference Report on CSV...
Page 271: ...P a g e 270 UCM6200 Series User Manual Version 1 0 20 38 Figure 171 Sync LDAP Server option...
Page 313: ...P a g e 312 UCM6200 Series User Manual Version 1 0 20 38 Figure 213 Presence Status CDR...
Page 322: ...P a g e 321 UCM6200 Series User Manual Version 1 0 20 38 Figure 219 911 Emergency Sample...
Page 455: ...P a g e 454 UCM6200 Series User Manual Version 1 0 20 38 Figure 339 Cleaner...
Page 468: ...P a g e 467 UCM6200 Series User Manual Version 1 0 20 38 Figure 351 Network Status...