Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add fail2ban & iptables #51

Closed
pergolafabio opened this issue Jan 6, 2022 · 5 comments
Closed

Add fail2ban & iptables #51

pergolafabio opened this issue Jan 6, 2022 · 5 comments

Comments

@pergolafabio
Copy link
Contributor

Can you add those and make it configurable? It's to protect our PBX from outside

@felipecrs
Copy link
Collaborator

felipecrs commented Jan 6, 2022

In the freepbx docker image, fail2ban requires --privileged, which is very discouraged in add-ons and would require a manual step in the installation. Not to mention it would decrease the score of the add-on in overall to 1, I think.

Just mentioning.

@pergolafabio
Copy link
Contributor Author

Yeah , but protecting an local hosted app is also important, so I dont care about score :-)

@Tekno-man
Copy link

Tekno-man commented Feb 2, 2022

In the freepbx docker image,

Is this also the case with asterisk rather than FreePBX?

I was looking at this as my ref https://medium.com/@jamesemyn/intrusion-prevention-for-astersik-with-fail2ban-iptables-2c7e907bae4c

@felipecrs
Copy link
Collaborator

felipecrs commented Feb 18, 2022

I think that if we manage to make TECH7Fox/asterisk-hass-integration#45 work, we won't need to have any port exposed outside. Thus, probably we won't need to bother about these firewall things.

@felipecrs
Copy link
Collaborator

@pergolafabio I think the best thing that can be done is to leverage fail2ban from Home Assistant for the job, as in #178. I'm closing this issue in favor of #178, but if you disagree we can reopen.

@felipecrs felipecrs closed this as not planned Won't fix, can't repro, duplicate, stale Jan 15, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants