Table of Contents

Incoming Firewall

The Firewall Incoming feature is used for two primary purposes:

Installation

This feature is part of the core system and installed by default.

You can find this feature in the menu system at the following location:

<navigation>Network|Firewall|Incoming</navigation>

Configuration

Incoming Connections

When the firewall is enabled on your ClearOS system, the default behavior is to block all external (Internet) traffic. If you plan on running services on your ClearOS system that can be accessible from the Internet, then you will need to add the firewall policy to do so. For example, the OpenVPN server requires UDP port 1194 to be open on the firewall.

You can also open up ports to allow for remote management of your ClearOS system. For example, you can open up TCP port 81 to give access to Webconfig.

There are three ways to add an incoming firewall rule:

Unlike some other firewall systems you do not need to open a port on the incoming page if you are forwarding the the port to an internal server on your network.

Block External Hosts

search?q=clearos%2C%20clearos%20content%2C%20Incoming%20Firewall%2C%20app-incoming_firewall%2C%20clearos5%2C%20userguide%2C%20categorynetwork%2C%20subcategoryfirewall%2C%20maintainer_dloper&amp;btnI=lucky