查看防火墙状态
firewall-cmd --state
systemctl status firewalld
开启防火墙
systemctl start firewalld
关闭防火墙
systemctl stop firewalld
禁用防火墙
systemctl disable firewalld
更新防火墙规则
firewall-cmd --reload
获取当前域
firewall-cmd --get-active-zones
查看开放端口
firewall-cmd --zone=dmz --list-ports
添加开放端口(不指定域则为默认zone=public)
firewall-cmd --zone=dmz --add-port=