From 2723d9f0ab2d7f8a2ada8b58e8974fc38ea5f0d1 Mon Sep 17 00:00:00 2001 From: FusionPBX Date: Wed, 11 Jul 2018 19:52:00 -0600 Subject: [PATCH] Create sip-auth-challenge-ip.conf --- .../fail2ban/sip-auth-challenge-ip.conf | 21 +++++++++++++++++++ 1 file changed, 21 insertions(+) create mode 100644 freebsd/resources/fail2ban/sip-auth-challenge-ip.conf diff --git a/freebsd/resources/fail2ban/sip-auth-challenge-ip.conf b/freebsd/resources/fail2ban/sip-auth-challenge-ip.conf new file mode 100644 index 0000000..58faf20 --- /dev/null +++ b/freebsd/resources/fail2ban/sip-auth-challenge-ip.conf @@ -0,0 +1,21 @@ +# Fail2Ban configuration file +# + +[Definition] + +# Option: failregex +# Notes.: regex to match the password failures messages in the logfile. The +# host must be matched by a group named "host". The tag "" can +# be used for standard IP/hostname matching and is only an alias for +# (?:::f{4,6}:)?(?P[\w\-.^_]+) +# Values: TEXT +# +#[WARNING] sofia_reg.c:1792 SIP auth challenge (INVITE) on sofia profile 'internal' for [+972592277524@xxx.xxx.xxx.xxx] from ip 209.160.120.12 +failregex = \[WARNING\] sofia_reg.c:1792 SIP auth challenge \(INVITE\) on sofia profile 'internal' for \[.*@\d+.\d+.\d+.\d+\] from ip + + +# Option: ignoreregex +# Notes.: regex to ignore. If this regex matches, the line is ignored. +# Values: TEXT +# +ignoreregex =