Blocked ports and internet resources
A number of TCP/UDP ports are blocked in the Selectel infrastructure; details and a list of such ports are in the Blocked ports subsection.
Also, access to public subnets of the e-government is blocked from the Selectel infrastructure. For example, the Gosuslugi portal and related services are located in such a subnet.
You can view the full list of internet resources that belong to the e-government in the What is e-government instructions in the Gosuslugi portal documentation.
You can submit an unblock request. We consider each request individually, but cannot guarantee unblocking.
Blocked ports
To secure the Selectel infrastructure from malicious network activity, we limit access to certain TCP/UDP ports. Incoming and outgoing traffic is blocked as it passes through the border routers at the edge of the Selectel network.
For TCP ports 25, 465, and 587, only outgoing traffic to public IPv4 and IPv6 addresses is blocked. Instead of these ports, we recommend using the Selectel email service.
The full list of blocked ports is specified in the List of blocked ports table. If a port is unavailable, but is not listed in the table, check its availability from the operating system side using the nmap utility.
List of blocked ports
Submit a request for unblocking
You can submit a request for unblocking:
Each request is reviewed individually, but we cannot guarantee that access will be unblocked and reserve the right to refuse without explanation.
After unblocking, the port or access to the subnet may be blocked again, for example, if spam is sent or your IP address is blacklisted. For more information, see the Network blocks instructions.
Access to e-government subnets
You cannot unblock access to e-government subnets for VDS servers.
Each unblocking request is reviewed individually, but we cannot guarantee that the port will be unblocked and reserve the right to decline requests without providing a reason.
Dedicated Servers
Cloud servers
-
Create a ticket. In the ticket, specify:
-
the purpose of access;
-
IP addresses or subnets from which traffic will originate.
-
-
Wait for a response from a Selectel employee in the ticket regarding the decision.
Ports 25, 465, 587
We consider each unblock request individually, but cannot guarantee unblocking, and also reserve the right to refuse without explanation. Instead of ports 25, 465, and 587, we recommend using the Selectel email service.
If we approve your request, ports 25, 465, and 587 will be unblocked for all public addresses in the account, except for:
- IP addresses of dedicated servers in the pools TAS-1, TAS-2, ALM-1, NBO-1;
- IP addresses of the Cloud Platform in the pools uz-1, uz-2, kz-1, ke-1, as well as direct public IP addresses in all pools ;
- IP addresses of VDS servers.
To request unblocking of email ports:
-
Create a ticket. In the ticket, specify:
- types of emails — for example, transactional, business correspondence, newsletters, etc.;
- examples of emails;
- planned subjects (email topics);
- the domain from which the emails will be sent;
- expected sending volume — number of emails per week.
-
Wait for a response from a Selectel employee in the ticket regarding the decision.
Ports 135, 137, 138, 139, 445
You cannot unblock ports 135, 137, 138, 139, and 445 for VDS servers.
Ports 135, 137, 138, 139, and 445 can only be unblocked for servers in Russia. This cannot be done for servers in other countries.
We review every unblocking request on a case-by-case basis, but we cannot guarantee that ports will be unblocked and reserve the right to refuse without providing reasons.
Dedicated Servers
Cloud servers
You can submit a port unblock request only for a dedicated server public dedicated subnet.
-
Make sure the server IP address belongs to a public dedicated subnet. In the control panel, in the top menu, click Products → Dedicated Servers → Network → the Public Subnets tab → select the subnet type Dedicated → view the list of networks. If the IP address does not belong to a public dedicated subnet, the port cannot be unblocked for it.
-
Create a ticket. In the ticket, specify:
- the port to be unblocked;
- the purpose of using the port;
- the public dedicated subnet of the dedicated server for which you need to unblock the port. You can view the list of public dedicated subnets in the control panel: in the top menu, click Products → Dedicated Servers → Network → the Public Subnets tab → select the subnet type Dedicated.
-
Wait for a response from a Selectel employee in the ticket regarding the decision.