Howdy! In making use of DO’s firewalls, I often have sets of IP addresses that I need to use frequently, either across multiple firewalls or across rules in a single firewall. Examples include: the long set of Uptime Robot IPs, my own IP(s), and services hosted on other providers. I’m borrowing the term “alias” for this from pfsense, but is there a way to configure sets of named IP addresses and/or ports for reuse and clarity?
This would also be extremely helpful for databases.
I’m using the API to help make this less painful with firewalls, but the requirement to include all existing data in firewall updates adds a significant additional risk.
This textbox defaults to using Markdown to format your answer.
You can type !ref in this text area to quickly search our full set of tutorials, documentation & marketplace offerings and insert the link!
These answers are provided by our Community. If you find them useful, show some love by clicking the heart. If you run into issues leave a comment, or add your own answer to help others.
Sign up for Infrastructure as a Newsletter.
Working on improving health and education, reducing inequality, and spurring economic growth? We'd like to help.
Get paid to write technical tutorials and select a tech-focused charity to receive a matching donation.
Looks like there’s already a suggestion on the ideas board that I missed! Send your upvotes: https://ideas.digitalocean.com/network/p/firewall-named-addresses-and-groups
If you have posted the idea on the board, can you share the link, I’m sure it will gain more traction it being here.
I also want to upvote it as I think it will be something useful.
Hey @melissaaveryweir,
I don’t think that this is available yet, but it is a great idea, sounds like it’d be super useful!
The best thing to do to get your voice heard regarding this would be to head over to the DigitalOcean Product Ideas board and post a new idea, including as much information as possible for what you’d like to see implemented.
Make sure to share the link of the idea here so I and other people could up vote it!
Hope that helps!
- Bobby.