<div dir="ltr">Bilal,<div><br></div><div>The first thing that comes to my mind is you may have "accept-blind-reg" directive in your sip profile.</div><div><br></div><div>It would help to see sip traffic to check against authorisation process.</div></div><div class="gmail_extra"><br><div class="gmail_quote">2018-01-26 21:41 GMT+03:00 Bilal Abbasi <span dir="ltr"><<a href="mailto:bilaln018@gmail.com" target="_blank">bilaln018@gmail.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">Hi Users,<div>I am using FreeSWITCH<span style="background-color:rgb(255,255,255)"><font color="#000000"> <font face="arial, helvetica, sans-serif"><span style="font-variant-ligatures:no-common-ligatures">Version 1.6.19 git c540248</span><span class="m_2710641116545189066gmail-Apple-converted-space" style="font-variant-ligatures:no-common-ligatures"> .</span></font></font></span></div><div>today i noticed very weird issue, that i am getting an attack on one of my dev servers, that somebody is trying to make calls out of the box.</div><div>And he is able to register the phone via "default" username(check via sngrep), i am using complex password and there is NO USER with name "DEFAULT" on my switch.</div><div>I tried to register the default user with any random password and it allowed me to register on my softphone.</div><div>I am really worried, and i can't believe that it's something at FS end.</div><div>I am sure its some mistake, can somebody help me out please.</div><div><br></div><div>Regards</div><span class="HOEnZb"><font color="#888888"><div>Abbasi</div>







</font></span></div>
<br>______________________________<wbr>______________________________<wbr>_____________<br>
Professional FreeSWITCH Consulting Services:<br>
<a href="mailto:consulting@freeswitch.org">consulting@freeswitch.org</a><br>
<a href="http://www.freeswitchsolutions.com" rel="noreferrer" target="_blank">http://www.<wbr>freeswitchsolutions.com</a><br>
<br>
Official FreeSWITCH Sites<br>
<a href="http://www.freeswitch.org" rel="noreferrer" target="_blank">http://www.freeswitch.org</a><br>
<a href="http://confluence.freeswitch.org" rel="noreferrer" target="_blank">http://confluence.freeswitch.<wbr>org</a><br>
<a href="http://www.cluecon.com" rel="noreferrer" target="_blank">http://www.cluecon.com</a><br>
<br>
FreeSWITCH-users mailing list<br>
<a href="mailto:FreeSWITCH-users@lists.freeswitch.org">FreeSWITCH-users@lists.<wbr>freeswitch.org</a><br>
<a href="http://lists.freeswitch.org/mailman/listinfo/freeswitch-users" rel="noreferrer" target="_blank">http://lists.freeswitch.org/<wbr>mailman/listinfo/freeswitch-<wbr>users</a><br>
UNSUBSCRIBE:<a href="http://lists.freeswitch.org/mailman/options/freeswitch-users" rel="noreferrer" target="_blank">http://lists.<wbr>freeswitch.org/mailman/<wbr>options/freeswitch-users</a><br>
<a href="http://www.freeswitch.org" rel="noreferrer" target="_blank">http://www.freeswitch.org</a><br></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr">Volkan Oransoy</div></div>
</div>