SM_PAGE_TITLE
Store » SIP Security

 

       Download PDF Brochure

       Download PDF sipPROT 4 Release Notes

  

 


sipPROT is a PBXware and SERVERware module
which provides protection from SIP attacks.


Unlike other similar solutions
sipPROT works with
live SIP traffic, dynamically blocking/unblocking
IP addresses currently threatening the system.

 

Purpose
Brute-force break-in attempts are quite frequent
and an unpredictable threat.
Unprotected VOIP PBX systems are very sensitive
to this kind of attack.

The most common consequence of this kind of
network attack are:
• VOIP service downtime
• The possibility of password stealing
  (SIP registration)
• Direct financial loss due to network unstabillity

 
sipPROT prevent those scenarios from happening.

 

 

 


 


 

Advanced attack detection
To detect SIP attacks,
sipPROT uses 
the following advanced detection techniques:
• Pattern recognition

SIP Scanners protection
(immediately blocking known SIP scanners)

• TFTP brute force protection

• SIP protocol anomaly detection

 

 

 















 

How it works

sipPROT does constant LIVE SIP Traffic monitoring. 
After an attack is detected, sipPROT updates the firewall rules
and blocks IP addresses from which the attack is coming,
for a specific amount of time. If attacks stop in a certain
period of time
sipPROT unblocks that IP addresses automatically.
This allows sipPROT to block attacks more efficiently then most other solutions.

 

 

  

Benefits
• Protects your network from intrusions
• Potects from SIP Scanner attacks
• Protects from SIP DoS attacks
• Prevents posible network destabilization
• Saves PBX resources by preventing attacks
• Protects your customers and your money

 

 

 

 

  

 






 

Database
sipPROT provides easy
access to informations like:
• List of IPs in Black list
• List of IPs in White list
• List of IPs blocked by
sipPROT

 


















 

Standard Features
• LIVE SIP Traffic Monitoring
• Advanced SIP register protection
(separate blocktime and hitcount values)
• SIP Invite protection
• Advanced detection technics
• Dynamically block/unblock IPs
• Configurable Black list of IPs
• Configurable White list of IPs
• Dynamic configuration
(no need to restart after any configuration change)

• Permanent block treshold

 

 

 

 

 

Standard Features Managed Unmanaged
Live SIP Traffic Monitoring Yes Yes
Advanced Threat Detection Yes Yes
Dynamical block/unblock of IPs Yes Yes
Configurable Black list Yes Yes
Configurable White list Yes Yes
Dynamic configuration Yes Yes
Data Managed Unmanaged
Permanent block treshold Yes Yes
List of blocked IPs Configurable Configurable
List of IPs in Black list Configurable Configurable
List of IPs in White list Configurable Configurable
Detection Managed Unmanaged
Pattern recognition Yes Yes
Brute force detection Yes Yes
SIP protocol anomaly detection Yes Yes
Protection Managed Unmanaged
Advanced SIP Register Yes Yes
SIP Invite Yes Yes
SIP Scanners Yes Yes
TFTP preventing brute force attacks Yes Yes
Network intrusions Yes Yes
SIP Scanner Attack Yes Yes
SIP DoS Attack Yes Yes
Pricing Managed Unmanaged

Store
PBXware
gloCOM
Bicom Systems
Software
Press Releases
TELCOware
Telephony Billing
Solutions
Appliances
SERVERware
Support Categories
Hardware
SIP Security
  Managed
  Unmanaged
SIP Monitoring
Softphones
Work Preview
Financing Options
Content
Working at Bicom Systems
Invoicing
Trade Shows
Click here - SALES Click here - SUPPORT
Privacy Policy Copyright Bicom Systems 2003 - 2024


Bicom Systems at Twitter       Bicom Systems at Facebook   Bicom Systems at Flickr   Bicom Systems at Voip-Info   Bicom Systems at FierceVoIP