How to Unblock an IP After Too Many Failed Login Attempts
2 min read
Ever suddenly found you couldn’t log into the 3CX Web Client or Admin Console, even though your username and password were correct? Your IP may have ended up on the 3CX Blacklist.
This usually happens after too many incorrect password attempts. Don’t worry, it’s not a bug — it’s actually a built-in 3CX security feature that protects the system from illegal login attempts or brute-force attacks.
In this article you’ll learn how to check for it, unblock an IP, and use the Whitelist feature so a specific IP never gets blocked in the first place.
Why Can an IP Get Blocked? #
3CX has an Anti-Hacking Protection feature that automatically blocks an IP address when it detects suspicious login activity.
For example:
- Entering the wrong password repeatedly.
- Using an old password after it’s been changed.
- A softphone still storing a password that’s no longer valid.
- A device repeatedly trying to auto-login with the wrong credentials.
Once the login attempt limit is exceeded, that IP gets added to the Blacklist, and every access attempt from it is rejected.
Signs Your IP Has Been Blacklisted #
Common symptoms include:
- Can’t open the Web Client.
- Can’t log into the Admin Console.
- You keep seeing an “access denied” message or login keeps failing.
- Everyone on the same internet connection also can’t log in.
If you’re seeing this, it’s very likely your internet IP address that’s blocked, not a specific user account.
How to Unblock an IP in 3CX #
Follow these steps:
1. Log Into the Admin Console #
Sign in to the 3CX Admin Console with an Administrator account.
2. Open the Anti-Hacking Menu #
Go to:
Security → Anti-Hacking
On this page you can see the list of IPs blocked by the system.
3. Find the Blocked IP #
In the Blacklisted IP list, find the address you want to unblock.
You’ll typically see information such as:
- The IP address
- When it was blocked
- The reason it was blocked
4. Remove It from the Blacklist #
Select that IP, then click:
Remove or Unblock
Once removed, devices using that IP can access 3CX again.
How to Add an IP to the Whitelist #
If there’s an office or server IP that’s always used and you want it treated as safe, you can add it to the Whitelist.
Steps:
- Go to Security → Anti-Hacking
- Select the Whitelist menu
- Click Add
- Enter the IP address you want to allow.
- Save the changes.
That way, this IP won’t be easily blocked by the system.
Note: Only use the Whitelist for IPs you fully trust, such as your office IP or company VPN.
Tips to Avoid Getting Blocked Again #
To prevent this from happening again, do the following:
- Make sure you have the right password before logging in.
- Update the password on every device after changing it.
- Remove old accounts still saved in 3CX apps.
- Don’t keep trying to log in repeatedly if you’re not sure the password is correct.
- Make sure only authorized devices connect to the 3CX server.
When Should You Use the Whitelist? #
The Whitelist is a good fit when:
- Your office uses a fixed (static) public IP.
- An admin regularly accesses the server from the same location.
- A monitoring server needs permanent access.
- Your company VPN has a fixed IP.
On the other hand, avoid whitelisting IPs that change frequently, as this can reduce the effectiveness of the security system.
Conclusion #
3CX’s IP Blacklist feature is designed to keep the server safe from suspicious login attempts. So if your IP gets blocked, don’t panic — just open the Blacklist list under Security → Anti-Hacking and remove that IP if it’s genuinely safe.
If there’s a device or network you always trust, you can also add it to the Whitelist so it doesn’t get blocked easily down the line.
By understanding how the Blacklist and Whitelist work, you can keep your server secure while reducing login disruptions for your users.
