v4GuardDocumentation
Features

Upstream Protection

Thousands of devices are constantly scanning the Internet for devices with open ports and storing this information for public use. Malicious actors can take advantage of this information to expose your upstream's IP address and directly attack your server, bypassing the protection of the v4Guard Tunnel.

It is important that you properly firewall your server so that only trusted connections from the v4Guard Tunnel network can access the ports where your server is running.

To achieve this, you can make use of any firewall software, such as iptables or ufw, or you can use the built-in firewall of your cloud provider. (e.g. OVH, Hetzner, ReliableSite...)

We provide a list of our edge IP addresses so you can easily whitelist them on your firewall:

What happens if I'm being attacked directly?

If you're being directly attacked to your upstream's IP address, v4Guard Tunnel will not be able to protect you, as the attacker is bypassing our network.

You should probably consider changing your IP address, and re-check that you have properly configured your firewall, and/or that you're not exposing your IP address in any other way (e.g. in your DNS records, by sending emails, website...)

How is this guide?

On this page