S series - Network attack from Wi-Fi phone

We've just added a Yealink T46G IP phone using the USB Wi-Fi dongle to an S50 PBX.  As the phone provisions, the PBX logs a "Network attack" and blacklists the IP of the phone (which is on the same LAN subnet as the PBX).

The auto provision routine has created a firewall rule based on the mac address of the phone, yet it still sees the traffic as an attack.  The PBX reports port 5060 UDP traffic as the offending attack.

Any ideas on why this registers as an attack and how to resolve it?


I've opened a ticket with Yeastar but since they are on Chinese New Year, I thought I would toss this question to the community.

Thanks in advance,



