This Knowledge Base article provides general information about Firewall Requests.
Overview
The Firewall Request service is used to request changes to firewall rules that allow or deny network traffic for university systems, applications, websites, and services. Firewall modifications help maintain secure communications while protecting university resources from unauthorized access.
Purpose
Firewall rule changes are necessary to support business operations, application connectivity, and secure communication between internal and external systems. This service provides a standardized process for requesting, reviewing, approving, and implementing firewall changes in accordance with university security policies and standards.
Details
Submit a Firewall Request when you need to:
- Allow inbound network traffic to a server or application.
- Allow outbound network traffic to an external system or service.
- Permit communication between internal systems.
- Block or restrict network traffic.
- Modify an existing firewall rule.
- Remove a firewall rule that is no longer required.
To help expedite processing of your request, please provide the following information:
- Requester Name – Individual requesting the firewall change.
- Supervisor Name – Supervisor of the requester, if applicable.
- Department – Department requesting the change.
- Location – Office, building, or residence hall location.
- Phone Number – Contact number for follow-up questions.
- Change Type – Permanent or Temporary.
- Source IP Address or Network – System initiating the traffic.
- Destination IP Address or Network – System receiving the traffic.
- Protocol – TCP, UDP, or IP.
- Port(s) – Required destination port numbers (for example, TCP 443).
- Action – Specify whether the traffic should be Allowed or Denied.
- Start Date – Date the rule should become active.
- End Date – Expiration date for temporary requests.
- Business Justification – Explanation of the business need or requirement.
Before submitting your request, verify that you have included:
- Source IP address or network.
- Destination IP address or network.
- Required protocol and port number(s).
- Allow or Deny action.
- Business justification.
- Requested implementation date.
- Supervisor approval, if required.
After submission, the Network & System Administration (NSA) team will review the request for completeness, validate the requested change, obtain necessary approvals, implement approved firewall rules, and notify the requester once the work has been completed.
Additional Information
Temporary firewall requests should include an expiration date whenever possible. All firewall changes are reviewed in accordance with university security policies and standards. Requests that introduce unacceptable security risks may require modification, additional review, or may be denied.
Related services include Wi-Fi and Network Support, VPN Services, Linux Administration, DNS Services, and Server Administration.
Need help? Submit a ticket at support.ncat.edu.