Ctrl K
ring2all.com

Firewall Settings

📖 Introduction

Firewall Settings configures security features to protect your PBX from attacks. Includes Fail2Ban for brute force protection and IP whitelisting/blacklisting.

---

⚠️ Security Critical

CAUTION
Don't disable security: SIP servers are constantly attacked. These protections are essential.

---

🖥️ Accessing the Module

Navigation: Admin → Firewall → Firewall Settings
Firewall Settings
Firewall Settings

---

📝 Form Fields

Fail2Ban Configuration

Firewall Settings Fail2ban
Firewall Settings Fail2ban
FieldDescriptionExample
EnabledFail2Ban is activeYes
Max RetriesFailed attempts before ban5
Ban DurationHours to ban IP24
Find TimeWindow for retries (min)10

IP Whitelist

Never ban these IPs:

IP/RangeDescription
192.168.1.0/24Office LAN
10.0.0.50VoIP Provider

IP Blacklist

Always block these IPs:

IP/RangeReason
1.2.3.4Known attacker
5.6.7.0/24Spam range
---

📊 Attack Protection

Attack TypeProtection
SIP brute forceFail2Ban blocks after failed auths
Registration spamRate limiting
Port scanningConnection limits
Toll fraudCall limits per extension
---

🚀 Practical Example

Whitelist Office Network

If legitimate users are getting blocked:

  1. Find your public IP
  2. Add to Whitelist: 203.0.113.50
  3. Save changes

---

💡 Tips

TIP
Whitelist trusted IPs: Office, provider, remote workers.
TIP
Review bans regularly: Check for false positives.
TIP
Use strong SIP passwords: Prevents most attacks.
WARNING
Never disable: Keep Fail2Ban enabled always.

---

---

← Previous: Telephony Domains
AI Assistant

👋 Hello! I'm your Ring2All documentation assistant. I can help you find information about configuring and using the Ring2All PBX platform.

How can I help you today?