A Hytale server is reachable only if the firewall lets the right ports through (5520/UDP). This tool writes the commands for Linux (ufw or iptables) and Windows (netsh).
How to use the tool
Check the default ports and change them if you modified them.
Choose the format: ufw, iptables or Windows (netsh).
Copy or download the commands and run them on the server (sudo, or an administrator PowerShell).
Open the same ports at your provider or on your router (NAT), then test from outside.
Limits
These rules only configure the machine's own firewall. The provider firewall (“security group”) and the router's port forwarding are set separately.
Hytale uses QUIC over UDP: open UDP only, no TCP forwarding (source: Hytale support). At a hosting provider the assigned port may differ from 5520.
Frequently asked questions
- Why can't my players connect despite the rules?
- Check the provider firewall, the NAT forward, that the server really listens on these ports and that the protocol (UDP/TCP) matches.
- Can I restrict access to one IP address?
- Yes: enter the source IP or network (e.g. 203.0.113.10). Left empty, the rules apply to everyone. Useful for admin ports.
