This article discusses the VPS SSD add-on service. To set up a firewall directly on the server, follow the instructions for your operating system or firewall software.
In this article you will learn:
- How the Firewall add-on service works
- How to activate the Firewall
- How to manage Firewall rules
- Frequently Asked Questions
VPS SSD Firewall
The additional Firewall service works on the basis of the UFW Linux software. Its advantage compared to running this software on the server itself is saving resources - traffic filtering takes place outside the server itself, thus saving its performance and connectivity.
Up to 5×10 incoming and outgoing firewall rules can be added to this service.
The system applies firewall rules in the order in which they are listed (top to bottom). Thus, list the universal rules at the top, and place the exceptions lower down.
Firewall activation
Firewall is an additional service that you can get either separately or as part of the Profi plan (valid for the first 10 rules). To activate it, follow these steps:
- Log in to the customer administration ⧉.
- In the navigation bar, select Server Services VPS SSD.
- From the list, select the service for which you want to activate the Firewall.
- Select Additional services from the left menu.
- For the first activation, click the + button next to Firewall (10 rules); for additional activations, click Firewall - Additional Service (10 rules).
- In the details of the additional service, select the quantity (additional activations) and click Activate.

To change the number of activations or deactivate, follow the instructions in Services - Additional Services.
Managing Firewall Rules
When you activate the Firewall add-on service, the rule management item of the same name appears in the left menu. The complete procedure for accessing Firewall rules is:
- Log in to the customer administration ⧉.
- In the navigation bar, select Server Services VPS SSD.
- From the list, select the service for which you want to activate the Firewall.
- Select Firewall from the left menu.

Adding a new rule
To add a new rule, follow these steps:
- In the Incoming Rules or Outgoing Rules table, click Add.
- Fill in:
- Description: free text, used to easily identify the rule.
- Source IP: Specific IP, or * for all.
- Target IP: Select a specific IP.
- Port: Select the source/destination type and write or select a value.
- Protocol: Select or leave * (all).
- Action: select enable/disable.
- Click Create Rule.
- Apply the changes.
Managing and deleting rules
To edit the rule parameters or delete it, click the magnifying glass icon on the left side of the table. In the form, make and save the changes, or delete the rule by clicking Delete.
Use the arrows on the right side of the table to move a rule to a different order (rules higher in the list will be executed first).

Frequently Asked Questions
Why don't firewall rules work?
Make sure the rules are listed in the correct order (general at the top, specific below) and the changes are applied. If the problem persists, make sure you have a specific destination IP selected.
Why should I pay for an extra Firewall when it can do the same things as UFW?
You must run UFW on your server and consume resources on it. The additional Firewall service runs outside the server and does not put any load on it.
