Requesting a firewall rule without losing access
A firewall request should describe a required communication path, not simply ask to open all traffic. Both provider-side and operating-system rules may affect a connection. Plan the change so that management access remains available.
State the required rule
- Source address or trusted network, destination service, protocol and port, and whether access is temporary.
- Reason for access and whether a VPN, private address or narrower allowlist can be used.
- Current management path, recovery access and a time window for testing.
- Expected application test and an explicit rollback if the new rule blocks legitimate traffic.
Do not expose database, administrative or remote-management ports publicly without a reviewed requirement. For an existing fault, include the exact error and test endpoints. Avoid clearing all firewall rules as a troubleshooting shortcut.
Further reading: Ubuntu: firewall documentation