Network access
Network access is an optional, administrator-only IP allowlist. It adds a layer on top of parent passwords, child PINs, device pairing, and sign-in rate limits; it does not replace any of them.
It is most useful for a stable home network or VPN. It is not a good first step for a family whose home address changes often, or whose parents and children regularly use mobile data away from home.
Choose the least restrictive mode that solves your need
| Mode | Effect |
|---|---|
| Internet access | No IP addresses are blocked. This is the normal default. |
| Restrict child access | Child pages work only from listed IP addresses or networks. Parent pages remain available from other addresses. |
| Restrict all access | Both parent and child pages work only from listed addresses or networks. |
Before saving a rule
- Check the Current IP address shown in the Settings form.
- Enter one IP address or CIDR network per line. Examples:
192.0.2.25,192.0.2.0/24, or2001:db8::/64. - If choosing Restrict all access, include the current IP before saving. KinKudos refuses to save that mode without it.
- Keep a server administrator with SSH or console access available until you have tested a parent and child device.
Do not guess a network range. A wrong all-access rule can lock every parent and child out. The server administrator must then use the documented recovery command to disable network restrictions.
Changing a rule requires the parent administrator’s current password and is recorded as a security event. See Parent settings for field-by-field guidance.
Installation and maintenance → · PINs and sign-in protection → · Lietuviškai