compute
PUT /v1/compute/servers/{serverId}/firewall
Replace a server's firewall rules.
Autenticação
Envie uma chave de API como um token de portador. A chave deve ter a permissão sites.restart; uma chave sem ela é recusada com 403, e não 404.
Este endpoint não requer um ID de organização. Sua chave já identifica a organização à qual pertence, e a resposta é delimitada a ela.
Experimente
Substitua qualquer item entre colchetes por seus próprios valores e o espaço reservado para a chave por uma chave do seu painel.
curl -X PUT https://api.zinndigital.com/v1/compute/servers/{serverId}/firewall \
-H "Authorization: Bearer zdk_live_…" \
-H "Content-Type: application/json" \
-d '{ "rules": <ComputeFirewallRule[]> }'Conectado? O console da API no seu painel preenche o ID da sua organização real e a sua própria chave, e executa a requisição contra a API de produção para que você possa ver a resposta real. Abra este endpoint no console da API
Detalhes
⭐ **PUT, and the verb is the contract**: this replaces the entire rule set. The provider's write is atomic, and an add/remove surface layered over an atomic replace is how two people editing at once discard each other's rule with both requests reporting success. ⛔⛔ **This can lock the customer out of their own machine.** A set with no inbound SSH is applied exactly as asked and their next connection is refused. That is why `openComputeServerConsole` exists, and why a client should say so beside this control. Refused when more than one firewall is applied to the machine: the effective policy is their union, so editing one and reporting the result would be false in the dangerous direction. The whole rule set is audit-logged, not a count — when a customer reports being locked out, "12 rules were set" answers nothing. Requires `sites.restart`.
Parâmetros
| Nome | Tipo | Obrigatório | O que é |
|---|---|---|---|
serverId (path) | Uuid | Sim | The server's id, as `listComputeServers` reports it. **Ours** (UUIDv7), minted when the order row was written — never the provider's own identifier for the machine. |
Corpo da requisição
| Nome | Tipo | Obrigatório | O que é |
|---|---|---|---|
rules | ComputeFirewallRule[] | Sim | — |
Resposta
| Nome | Tipo | Obrigatório | O que é |
|---|---|---|---|
id | string | Sim | The provider's firewall id |
name | string | Sim | Its name at the provider |
attached | boolean | Sim | Whether a firewall resource is actually applied to this machine. |
rules | ComputeFirewallRule[] | Sim | — |
Erros que este endpoint pode retornar
401 · 403 · 404 · 422 · 429 · 503