Anyone successfully configured SIP Registration Overload Protection? (I don't need help to find Acme
Hi y'all
I'm trying to figure out how to best tweek the security settings against SIP registration flooding attacks on my access/ hybrid SBC.
I've read all Acme/ Oracle documents about this and found that it's not always clear what the parameters actually does, and sometimes one document is recommending one thing and another document is recommending something else.
On the access realm there are some settings about this:
access-control-trust-level the documents are recommending this to be set to 'medium' on 3820 and 4500 but 'low' on other models. Why not set 'low' on 3820 too? What Is the purpose of setting 'medium'? Flooders will never be denied.