Nick
@nick@shore.me.uk
163 following, 247 followers
@nick one provider won't deliver inbound calls without it being open and the numbers attached to it are well known and in regular use (we were previously using IAX2 trunks for these numbers which didn't attract many attack attempts but the provider abruptly stopped IAX2 support without warning us)
@nick some of them do, the others don't (I'm looking at porting out the numbers from the ones which do not provide a modern level of support)
I've investigated what is going on and fail2ban is catching them anyway, things look worse as SNGREP is catching the packets at kernel level before they hit the firewall..