防火墙操作
- 查看、启动、关闭、重启防火墙、禁止开启启动:
firewall-cmd --state
systemctl start firewalld.service
systemctl stop firewalld.service
systemctl restart firewalld.service
systemctl disable firewalld.service
- 管理防火墙
add 和 remove必须一一对应,如果–add-port=8080-8085/tcp,–remove-port=8080/tcp是不生效的
firewall-cmd --permanent --add-port=8080-8085/tcp
firewall-cmd --reload
firewall-cmd --permanent --remove-port=8080-8085/tcp
- 查看开启的端口和服务
firewall-cmd --permanent --list-ports
firewall-cmd --permanent --list-services