`###添加指定需要开放的端口:
firewall-cmd --add-port=443/tcp --permanent
firewall-cmd --reload
firewall-cmd --query-port=123/tcp
`
说明:
firewall-cmd --zone=public --add-port=8080/tcp --permanent
--zone 作用域
--permanent 永久生效
`firewall-cmd --permanent --add-rich-rule="rule family="ipv4" source address="172.16.110.55" accept"
firewall-cmd --reload
`
firewall-cmd --permanent --add-rich-rule='rule family="ipv4" source address="192.168.1.0/24" port protocol="tcp" port="8080-8090" accept'
firewall-cmd --permanent --add-rich-rule='rule family="ipv4" source address="192.168.1.1" port protocol="tcp" port="8080" reject'
防火墙必须开启状态
systemctl status firewalld ####查看防火墙状态
systemctl start firewalld ####开启防火墙
firewall-cmd --list-ports
firewall-cmd --query-port=5601/tcp
firewall-cmd --list-all
firewall-cmd --query-port=8080/tcp
firewall-cmd --permanent --add-port=8080/tcp
firewall-cmd --permanent --remove-port=8080/tcp
firewall-cmd --permanent --add-port=9001-9100/tcp
或者修改/etc/firewalld/zones/public.xml里面的信息
注意:任何修改操作,配置完成后,需要重新装载firewall。或重新启动firewalld服务。
systemctl restart firewalld
本文地址: https://www.7yiqi.com/article/23.html