Editing an existing ruleset for a Shared Firewall

Editing an existing ruleset for a Shared Firewall

This article applies to Dedicated Server accounts.

 

This article explains how to create a new Rule within an existing Ruleset within a Shared Firewall

1

Login to the Control Panel.

2

Choose the Server tab at the top of the page

3

Chooose Firewalls from the menu at the top of the page

This will take you to the Firewalls page which lists the dedicated servers you currently have with Donhost. You can either select to purchase firewalling for a server, or to manage any existing firewalls you have.

4

Identify the server upon which Shared Firewall is set-up and click Manage Firewall to the right of the listing.

5

Choose Manage rulesets.

6

Choose the ‘Edit’ link alongside the relevant ruleset.

A rule is configured by choosing a number of variables, some of which will require your text or numerical input and / or selections from drop-down menus.

Creating a new rule

7

Scroll to the bottom of the listings of existing rules in the ruleset and click Add Rule button

You will be transferrd to the Add a Firewall Rule page. You now need to define your rule.

8

Description

You must enter a Name for your rule

9

Inbound IP

  • Single IP – Allow access from an individual IP address – Remember to specify the IP address
  • Range of IP’s – Allow access from a specific network block
  • Any – Allow access from any IP address
10

Protocol

The type of traffic for the rule to apply to.

  • Any – Allow access from any IP protocol (TCP, UDP, etc)
  • TCP – Allow TCP traffic only
  • UDP – Allow UDP traffic only
  • GRE – Generic Routing Encapsulation - Used for Point to Point links / VPN
  • ICMP – Used for “Ping” protocol
11

Inbound Port

The port the request ORIGINATES from (i.e. the port on servers requesting content from your servers. This should always be set to ANY, unless you have very specific requirements)

  • Any – Allow access originating from any port on a client
  • Single port – allow access from a specific port on a client
  • Port range – allow access from a range of ports on a client (i.e. from 10 – 20)
  • Smaller than – allow access from a clients ports lesser than the value (i.e. 80 and lower)
  • Greater than – allow access from a clients ports greater than the value (i.e. 1024 and higher)
12

Server IP

The IP address on your server that you wish the rule to apply to (or all the IP’s on your dedicated server.)

13

Server Port

The port your service runs off locally on your server

  • Any – allow access to any port on your server
  • Single port – allow access to a specific port on your server
  • Port range – allow access to a range of ports on your server (i.e. from 10 – 20)
  • Smaller than – allow access to any port lesser than the value (i.e. 80 and lower)
  • Greater than – allow access to any port greater than the value (i.e. 1024 and higher)
14

Action

  • Permit – To allow the traffic to pass
  • Deny – To block traffic
15

Status

The status of the rule

  • Enabled – The Rule is active and processing
  • Disabled – The Rule does not apply
16

Check your details and click the Add button at the bottom of the page