Configure the run-time node firewall
- Last UpdatedMay 29, 2025
- 2 minute read
Important: The firewall rules must be added to the node to which the OPC UA Server Service is deployed.
Configure the run-time node firewall
On the run-time node(s) where the OPC UA Server Service is deployed, open the Windows firewall and configure it as follows:
-
In the Windows Search bar, open Windows Firewall.
-
Select Advanced Settings and create an Inbound Rule.

-
Select New Rule.
The Rule Wizard opens. .
-
Select Program for the Rule Type and select Next.

-
Specify the program path for the selected rule.

-
On the next screen, select the option "Allow the connection". Select Next.

-
The wizard will ask when the rule applies.
-
For Domain environments: Select Domain and Private. We recommend that you deselect Public.
-
For Workgroup environments: Select Public. The Domain and Private settings have no affect in a Workgroup environment.

-
-
Finally, provide a name for this rule (for example, "OPC UA Server"). If you will be configuring multiple OPC UA services, be sure to use names that differentiate each service from the others.
-
Now, check that the new rule has been added to the list of InBound Rules in the Windows Firewall and that it is enabled.

-
Verify that you can connect to the run-time node from the OPC UA client node by repeating the Firewall Test.