-
Type:
Bug
-
Status: Closed
-
Priority:
Minor
-
Resolution: Fixed
-
Affects Version/s: 15
-
Fix Version/s: None
-
Component/s: Firewall
-
Labels:None
-
ToDo:
-
Asterisk Version:16.17.0
-
Distro Version:15
-
Distro:FreePBX Distro
After Firewall 15.0.8.14 the Advanced Custom Rules are no longer inserted at the top of the firewall rules. All fpbx... rules are inserted before the Custom Rules. This prevents you from blocking an IP from the system before they have access to all the ports/processes of Freepbx.
In the past you could insert (I INPUT) and the rules would be inserted st the top of the IP Tables list. You could also Add (-A INPUT) if you did not want the rules at the top.
In Firewall 15.0.13 the Advanced Custom Rules are no longer installed at all. When custom Rules are used they never appear in the IP Tables List.
I block out problem areas like Microsoft Azure or countries like China. Major sources of hackers and no real reason to access my PBX. When enabled I get very few attacks. With version 15.0.8.14 and after I get hundreds of fail2ban alerts a day.