heqiuyong

放通某个端口
firewall-cmd --permanent --zone=public --add-port=5672/tcp
移除以上规则
firewall-cmd --permanent --zone=public --remove-port=5672/tcp

放通某个端口段
firewall-cmd --permanent --zone=public --add-port=10000-20000/tcp

查看所有放通的端口
firewall-cmd --zone=public --list-ports

查看防火墙的配置
firewall-cmd --list-all

放通某个IP访问
firewall-cmd --permanent --add-rich-rule=\'rule family=ipv4 source address=192.168.1.169 accept\'
移除以上规则
firewall-cmd --permanent --remove-rich-rule=\'rule family=ipv4 source address=192.168.1.169 accept\'

放通某个IP段访问
firewall-cmd --permanent --add-rich-rule=\'rule family=ipv4 source address=192.168.2.0/24 accept\'

禁止某个IP访问
firewall-cmd --permanent --add-rich-rule=\'rule family=ipv4 source address=192.168.1.169 drop\'

放通某个IP访问某个端口
firewall-cmd --permanent --add-rich-rule=\'rule family=ipv4 source address=192.168.1.169 port protocol=tcp port=6379 accept\'

重新加载防火墙配置
firewall-cmd --reload

关闭防火墙
systemctl stop firewalld.service

启动防火墙
systemctl start firewalld.service

重启防火墙
systemctl restart firewalld.service

查看防火墙状态
firewall-cmd --state

分类:

技术点:

相关文章:

  • 2021-09-26
  • 2021-11-06
  • 2021-11-06
  • 2021-04-12
  • 2021-06-16
  • 2021-11-16
  • 2021-11-06
  • 2021-11-06
猜你喜欢
  • 2018-07-17
  • 2021-11-06
  • 2021-11-06
  • 2021-11-28
相关资源
相似解决方案