delete_firewall_group
Удаляет группу правил firewall. Действие необратимо. Перед удалением рекомендуется отлинковать все связанные ресурсы через unlink_firewall_resource.
This record as markdown: /tools/timeweb-mcp/delete-firewall-group.md
What delete_firewall_group does on Timeweb
AI agents call delete_firewall_group to permanently remove resources in Timeweb, typically in cleanup and lifecycle workflows. It does its job in a single call, and there is no undo.
| Parameter | Type | Required | Description |
|---|---|---|---|
group_id | string | Yes | ОБЯЗАТЕЛЬНОЕ ПОЛЕ - ID группы правил firewall для удаления |
Parameters from the server's own tool schema.
Why delete_firewall_group is rated Critical
This tool irreversibly deletes firewall rule groups, which cannot be undone. Firewall groups are critical infrastructure security controls. Deletion is a destructive operation with high blast radius—an AI agent misusing this could disable security protections for cloud resources. This meets the Destructive category definition: irreversibly deletes or overwrites data.
From the tool's definition Tool name 'delete_firewall_group' combined with description stating 'Удаляет группу правил firewall' (deletes a firewall rules group) and explicitly 'Действие необратимо' (action is irreversible). The tool permanently removes firewall configuration.
Attacks that exploit this kind of access
The rule that runs delete_firewall_group safely
PolicyLayer is an MCP gateway: it sits between your AI agents and Timeweb, and checks every tool call against a rule you set before the call runs. Nothing changes on the server itself. For delete_firewall_group, this is the rule to start with:
delete_firewall_group is removed from the agent's tool list entirely, so the agent never calls it. The rest of the server keeps working.
The button opens the PolicyLayer dashboard: create your workspace, connect Timeweb, apply this rule, and every delete_firewall_group call is checked against it from then on.
Questions about delete_firewall_group
Удаляет группу правил firewall. Действие необратимо. Перед удалением рекомендуется отлинковать все связанные ресурсы через unlink_firewall_resource. It is categorised as a Destructive tool in the Timeweb MCP Server, which means it can permanently delete or destroy data. Block by default and require explicit approval.
delete_firewall_group accepts 1 parameter: group_id. Required: group_id. The full parameter table on this page comes from the server's own tool schema.
Register the Timeweb MCP server in PolicyLayer and add a rule for delete_firewall_group: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Timeweb. Nothing to install.
delete_firewall_group is a Destructive tool with critical risk. Critical-risk tools should be blocked by default and only enabled with explicit human approval.
Yes. Add a rate_limit block to the delete_firewall_group rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.
Set action: deny in the PolicyLayer policy for delete_firewall_group. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.
delete_firewall_group is provided by the Timeweb MCP server (timeweb-mcp). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.
More on Timeweb, and thousands of servers like it.
Across the catalogue