This article applies to Dedicated Server accounts.
This article explains how to create a new Rule within an existing Ruleset within a Shared Firewall
1
Login to the Control Panel.
2
Choose the Server tab at the top of the page
3
Chooose Firewalls from the menu at the top of the page
This will take you to the Firewalls page which lists the dedicated servers you currently have with Donhost. You can either select to purchase firewalling for a server, or to manage any existing firewalls you have.
4
Identify the server upon which Shared Firewall is set-up and click Manage Firewall to the right of the listing.
5
Choose Manage rulesets.
6
Choose the ‘Edit’ link alongside the relevant ruleset.
A rule is configured by choosing a number of variables, some of which will require your text or numerical input and / or selections from drop-down menus.
Creating a new rule
7
Scroll to the bottom of the listings of existing rules in the ruleset and click Add Rule button
You will be transferrd to the Add a Firewall Rule page. You now need to define your rule.
You must enter a Name for your rule
- Single IP – Allow access from an individual IP address – Remember to specify the IP address
- Range of IP’s – Allow access from a specific network block
- Any – Allow access from any IP address
The type of traffic for the rule to apply to.
- Any – Allow access from any IP protocol (TCP, UDP, etc)
- TCP – Allow TCP traffic only
- UDP – Allow UDP traffic only
- GRE – Generic Routing Encapsulation - Used for Point to Point links / VPN
- ICMP – Used for “Ping” protocol
The port the request ORIGINATES from (i.e. the port on servers requesting content from your servers. This should always be set to ANY, unless you have very specific requirements)
- Any – Allow access originating from any port on a client
- Single port – allow access from a specific port on a client
- Port range – allow access from a range of ports on a client (i.e. from 10 – 20)
- Smaller than – allow access from a clients ports lesser than the value (i.e. 80 and lower)
- Greater than – allow access from a clients ports greater than the value (i.e. 1024 and higher)
The IP address on your server that you wish the rule to apply to (or all the IP’s on your dedicated server.)
13
Server Port
The port your service runs off locally on your server
- Any – allow access to any port on your server
- Single port – allow access to a specific port on your server
- Port range – allow access to a range of ports on your server (i.e. from 10 – 20)
- Smaller than – allow access to any port lesser than the value (i.e. 80 and lower)
- Greater than – allow access to any port greater than the value (i.e. 1024 and higher)
- Permit – To allow the traffic to pass
- Deny – To block traffic
The status of the rule
- Enabled – The Rule is active and processing
- Disabled – The Rule does not apply
16
Check your details and click the Add button at the bottom of the page