Skip to content

Firewall

Self-hosted version

For self-hosting Coolify, you need to allow some ports on your firewall.

  • For Coolify: 8000 (http), 6001 (websocket), 6002 (terminal), and 22 (SSH, or a custom port) (required)
  • Reverse Proxy: 80, 443 (optional)

GitHub integration

Webhooks

You need to allow TCP port 80 or 443 for GitHub webhooks.

To specify the IP addresses (optional), you can use the following API endpoint to get them:

Terminal

Since 4.0.0-beta.336, you need to allow TCP port 6002 for terminal access on /terminal endpoint.

Cloud version

If you need the public facing IPs to allow inbound connections to your servers, here is an up-to-date list of IPs that you can use to whitelist: