<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Restrict SSH access to specific IP addresses]]></title><description><![CDATA[<p dir="auto">Hi there!</p>
<p dir="auto">I want to make SSH accessible only from certain IP addresses. Normally I would just set up an iptables rule to do this. However, the cloudron documentation suggests not to add your own iptables rules. What is the best way to implement this restriction without having a dedicated firewall in front of the cloudron machine?</p>
<p dir="auto">Thank you!</p>
]]></description><link>https://forum.cloudron.io/topic/11228/restrict-ssh-access-to-specific-ip-addresses</link><generator>RSS for Node</generator><lastBuildDate>Sat, 13 Jun 2026 15:33:35 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/11228.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 04 Mar 2024 03:49:55 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Restrict SSH access to specific IP addresses on Mon, 04 Mar 2024 10:18:29 GMT]]></title><description><![CDATA[<p dir="auto">Interesting. So, from <a class="plugin-mentions-user plugin-mentions-a" href="/user/necrevistonnezr" aria-label="Profile: necrevistonnezr">@<bdi>necrevistonnezr</bdi></a>'s like the hosts.allow/hosts.deny may not work in the future. "Note: this might not be an option on modern distributions, as support for tcpwrappers was removed from OpenSSH 6.7"</p>
]]></description><link>https://forum.cloudron.io/post/84371</link><guid isPermaLink="true">https://forum.cloudron.io/post/84371</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Mon, 04 Mar 2024 10:18:29 GMT</pubDate></item><item><title><![CDATA[Reply to Restrict SSH access to specific IP addresses on Mon, 04 Mar 2024 09:42:34 GMT]]></title><description><![CDATA[<p dir="auto">I have modified the <code>Match Address</code> parameter in the <code>SSH daemon configuration</code> pursuant to this: <a href="https://unix.stackexchange.com/questions/406245/limit-ssh-access-to-specific-clients-by-ip-address" target="_blank" rel="noopener noreferrer nofollow ugc">https://unix.stackexchange.com/questions/406245/limit-ssh-access-to-specific-clients-by-ip-address</a></p>
]]></description><link>https://forum.cloudron.io/post/84368</link><guid isPermaLink="true">https://forum.cloudron.io/post/84368</guid><dc:creator><![CDATA[necrevistonnezr]]></dc:creator><pubDate>Mon, 04 Mar 2024 09:42:34 GMT</pubDate></item><item><title><![CDATA[Reply to Restrict SSH access to specific IP addresses on Mon, 04 Mar 2024 09:19:40 GMT]]></title><description><![CDATA[<p dir="auto">Thanks for the feedback, but there is no firewall available in front of this machine (as it would be available when using some cloud providers like Hetzner). I am aware of the Cloudron firewall documentation, but it only provides information on blocking specific IPs. However, I only want to allow a specific IP for SSH.</p>
<p dir="auto">After some research, is it okay to use hosts.allow and hosts.deny in conjunction with Cloudron?</p>
]]></description><link>https://forum.cloudron.io/post/84366</link><guid isPermaLink="true">https://forum.cloudron.io/post/84366</guid><dc:creator><![CDATA[hcj-online]]></dc:creator><pubDate>Mon, 04 Mar 2024 09:19:40 GMT</pubDate></item><item><title><![CDATA[Reply to Restrict SSH access to specific IP addresses on Mon, 04 Mar 2024 08:16:15 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/hcj-online" aria-label="Profile: hcj-online">@<bdi>hcj-online</bdi></a> If you use Hetzner VPS, you can youse their firewall. Is very easy to configure.</p>
]]></description><link>https://forum.cloudron.io/post/84358</link><guid isPermaLink="true">https://forum.cloudron.io/post/84358</guid><dc:creator><![CDATA[p44]]></dc:creator><pubDate>Mon, 04 Mar 2024 08:16:15 GMT</pubDate></item><item><title><![CDATA[Reply to Restrict SSH access to specific IP addresses on Mon, 04 Mar 2024 04:31:25 GMT]]></title><description><![CDATA[<p dir="auto">Where are you hosting? As far as I know Cloudron manages it's own firewall so making rules make break something but the docs do have something that may or may not help: <a href="https://docs.cloudron.io/networking/#firewall" target="_blank" rel="noopener noreferrer nofollow ugc">https://docs.cloudron.io/networking/#firewall</a></p>
]]></description><link>https://forum.cloudron.io/post/84355</link><guid isPermaLink="true">https://forum.cloudron.io/post/84355</guid><dc:creator><![CDATA[murgero]]></dc:creator><pubDate>Mon, 04 Mar 2024 04:31:25 GMT</pubDate></item></channel></rss>