Create firewall rules
Firewall rules control inbound traffic to your VMs. Each rule specifies an action, a protocol, a port, and a source. Rules are added to a firewall group, which is then attached to one or more VMs.
Before you begin
- An active, verified IBEE Solutions organization
- A firewall group — click Create Firewall Group on the Firewalls page if you don’t have one (Manage firewall groups)
Add a rule
Select a firewall group
Click the firewall group you want to add rules to. The group opens with the IPv4 Rules tab active.
Configure the rule
- Select the Action — accept to allow traffic, drop to block it.
- Choose a Protocol — Any, TCP, UDP, or ICMP.
- For TCP or UDP, enter a port number or range, or pick a common application: SSH (22), HTTP (80), HTTPS (443), MySQL (3306), PostgreSQL (5432), DNS (UDP 53), or MS RDP (3389).
- Set the Source — Anywhere allows all IPs, or choose Custom and enter one or more CIDR blocks or IP addresses.
- Optionally add a Note.
IPv6 rules
IPv6 rules are coming soon. The IPv6 Rules tab does not accept rules yet.
Edit or delete a rule
- To edit, change any field in the rule row and click Save on that row.
- To delete, click the delete icon on the rule row. The rule is removed immediately — there is no separate save step.
System-managed rules cannot be edited or deleted. They have no Save or delete controls.
Example: allow web traffic
To allow HTTP and HTTPS from anywhere, add and save two rules:
Example: restrict SSH to an office IP
Troubleshooting
Cannot edit a rule System-managed rules are read-only. You can only edit or delete rules you created.
Changes not taking effect Make sure you clicked Save on each new or changed rule row. Unsaved rows are not applied.
Custom source validation error
Enter valid CIDR notation (e.g. 10.0.0.0/8) or a single IP address. At least one CIDR or IP is required when using Custom source.
