HP Matrix Operating Environment 7.3 and 7.3 Update 1 Infrastructure Orchestration User Guide

Configuring a firewall
1. Select either Required or Optional according to the requirements of your provider.
2. Complete the following steps to set up a firewall rule:
a. Select the Protocol (TCP, UDP, ICMP) for which the firewall rule applies.
b. Enter a Start Port (0–65535) and End Port (0–65535) to specify the port range to which
the rule applies.
NOTE: When the Protocol is set to ICMP, the Start Port and End Port fields are replaced
by Type and Code fields.
c. In IP Sources, enter a comma-separated list of sources of the connections to allow.
Use CIDR notation, which is the IP address followed by the slash (/) character and the
routing prefix size expressed as a decimal number. For example, 127.0.0.1/24.
To allow all incoming traffic, specify 0.0.0.0/0.
To allow SSH connections to a server, select the TCP protocol, specify a Start Port of 22
and an End Port of 22 and IP Sources of 0.0.0.0/0.
d. Click Add.
3. (Optional) To remove the firewall rule, click the Trash icon.
Viewing the details of a firewall
Details of a firewall associated with a template and service are shown on the Firewall Details pane
at the bottom of the infrastructure orchestration console Templates and Services tabs. Select a
service or template and click Details, then select the Firewall Details tab.
In the following template, the firewall configured for the template allows inbound traffic over the
TCP protocol on ports 2 through 4 from locations defined by CIDR IP notation 10.0.0.0/24.
Inbound traffic is also allowed over the UDP, ICMP, and TCP protocols, with the details shown
below.
58 Installation and configuration