VoIP Mailing List Archives
Mailing list archives for the VoIP community |
|
View previous topic :: View next topic |
Author |
Message |
davidswalkabout at gma... Guest
|
Posted: Thu Oct 07, 2021 4:21 pm Post subject: [Freeswitch-users] Avoiding DDoS with verto? |
|
|
After reading about recent DDoS attacks on VOIP providers in https://www.rtcsec.com/post/2021/09/massive-ddos-attacks-on-voip-providers-and-simulated-ddos-testing/ in which Freeswitch is mentioned, I wondered what current practices are for services that must serve the public Internet.
For example, a service that is purely verto-based seems like it could protect itself in this way:
1) Block requests on all ports (except the verto WSS login) unless the request is from an address that's already part of signaling.
2) To protect signaling, put it behind AWS API Gateway, which provides rate-limiting, and add an authorization check.
Does this seem like it would defend against DDoS? Can FS be configured to do #1? |
|
Back to top |
|
|
dujinfang at gmail.com Guest
|
|
Back to top |
|
|
|
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
Powered by phpBB © 2001, 2005 phpBB Group
|