Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. Discuss
  3. Ask About Cloudron Firewall

Ask About Cloudron Firewall

Scheduled Pinned Locked Moved Discuss
networkfirewall
4 Posts 3 Posters 665 Views 3 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • I Offline
    I Offline
    IniBudi
    wrote on last edited by joseph
    #1

    Hi, I’d like to ask a question about the Firewall. What is the function of the Firewall in Cloudron?

    For example, if an IP is blocked in the firewall, does it automatically prevent access to all applications installed on Cloudron?

    Additionally, if someone attempts to access the SSH server and gets blocked by Fail2Ban, can we automatically add that IP address to Cloudron’s firewall?

    I appreciate your time and attention.
    Thank you.
    Best regards.

    J 1 Reply Last reply
    1
    • I IniBudi

      Hi, I’d like to ask a question about the Firewall. What is the function of the Firewall in Cloudron?

      For example, if an IP is blocked in the firewall, does it automatically prevent access to all applications installed on Cloudron?

      Additionally, if someone attempts to access the SSH server and gets blocked by Fail2Ban, can we automatically add that IP address to Cloudron’s firewall?

      I appreciate your time and attention.
      Thank you.
      Best regards.

      J Online
      J Online
      joseph
      Staff
      wrote on last edited by
      #2

      @IniBudi said in Ask About Cloudron Firewall:

      What is the function of the Firewall in Cloudron?

      It's main function is to set up rate limits - https://docs.cloudron.io/security/#rate-limits . This prevents basic DoS and DDoS .

      It also has basic blocklists and whitelisting certain ports (for custom software) - https://docs.cloudron.io/networking/#firewall

      For example, if an IP is blocked in the firewall, does it automatically prevent access to all applications installed on Cloudron?

      assuming you mean the blocklist feature, yes, it prevents access to all apps on Cloudron .

      Additionally, if someone attempts to access the SSH server and gets blocked by Fail2Ban, can we automatically add that IP address to Cloudron’s firewall?

      Cloudron doesn't use Fail2Ban but you can install it on your own if you like - https://docs.cloudron.io/security/#fail2ban . In general, Fail2Ban is not useful for SSH . Just configure your SSH to a) block root login b) block password login and c) use eddsa strong keys . See https://docs.cloudron.io/security/#securing-ssh-access . People can waste all their resources trying to access your server, you can just ignore them. Reality of internet is anyone can access your server.

      I 1 Reply Last reply
      2
      • necrevistonnezrN Offline
        necrevistonnezrN Offline
        necrevistonnezr
        wrote on last edited by
        #3

        Or don’t expose your ssh to the internet but e.g. require a Wireguard connection to access it locally…. Isn’t that even safer?

        1 Reply Last reply
        2
        • J joseph

          @IniBudi said in Ask About Cloudron Firewall:

          What is the function of the Firewall in Cloudron?

          It's main function is to set up rate limits - https://docs.cloudron.io/security/#rate-limits . This prevents basic DoS and DDoS .

          It also has basic blocklists and whitelisting certain ports (for custom software) - https://docs.cloudron.io/networking/#firewall

          For example, if an IP is blocked in the firewall, does it automatically prevent access to all applications installed on Cloudron?

          assuming you mean the blocklist feature, yes, it prevents access to all apps on Cloudron .

          Additionally, if someone attempts to access the SSH server and gets blocked by Fail2Ban, can we automatically add that IP address to Cloudron’s firewall?

          Cloudron doesn't use Fail2Ban but you can install it on your own if you like - https://docs.cloudron.io/security/#fail2ban . In general, Fail2Ban is not useful for SSH . Just configure your SSH to a) block root login b) block password login and c) use eddsa strong keys . See https://docs.cloudron.io/security/#securing-ssh-access . People can waste all their resources trying to access your server, you can just ignore them. Reality of internet is anyone can access your server.

          I Offline
          I Offline
          IniBudi
          wrote on last edited by
          #4

          @joseph Many thanks for the clear and detailed explanation!

          1 Reply Last reply
          1
          Reply
          • Reply as topic
          Log in to reply
          • Oldest to Newest
          • Newest to Oldest
          • Most Votes


          • Login

          • Don't have an account? Register

          • Login or register to search.
          • First post
            Last post
          0
          • Categories
          • Recent
          • Tags
          • Popular
          • Bookmarks
          • Search