@jarhead said in Question about Automation and firewall rules (enable/disable using SSH/API):

@bmeeks said in Question about Automation and firewall rules (enable/disable using SSH/API):

@andrek said in Question about Automation and firewall rules (enable/disable using SSH/API):

thank you.
is the appliance open for SSH to shell so I can run pfctl from another device?

When you enable the SSD daemon via the GUI, it automatically opens the necessary port on the LAN. It does not open WAN ports that I remember.

Pretty sure it's open on all interfaces but you would need a firewall rule to allow it through the WAN. Not that I'm suggesting that.

Yeah, the daemon listens on all interfaces, but the default firewall ruleset will only allow inbound traffic to connect from the LAN. The docs I linked explain that a little farther down (and refreshed my memory).