Linux 防火墙与端口命令

防火墙

1.查看防火墙端口状态

$ sudo ufw status
Status: active

To                         Action      From
--                         ------      ----
20,21,22,80,888,8888/tcp   ALLOW       Anywhere                  
39000:40000/tcp            ALLOW       Anywhere                  
888/tcp                    ALLOW       Anywhere                  
2015                       ALLOW       Anywhere                                   
443                        ALLOW       Anywhere                  
20,21,22,80,888,8888/tcp (v6) ALLOW       Anywhere (v6)             
39000:40000/tcp (v6)       ALLOW       Anywhere (v6)             
888/tcp (v6)               ALLOW       Anywhere (v6)             
2015 (v6)                  ALLOW       Anywhere (v6)                          
443 (v6)                   ALLOW       Anywhere (v6) 

2.关闭防火墙

$ sudo ufw disable

3.打开防火墙

$ sudo ufw enable

端口

1.防火墙打开端口 2016

$ sudo ufw allow 2016
$ sudo ufw status
Status: active

To                         Action      From
--                         ------      ----
20,21,22,80,888,8888/tcp   ALLOW       Anywhere                  
39000:40000/tcp            ALLOW       Anywhere                  
888/tcp                    ALLOW       Anywhere                  
2015                       ALLOW       Anywhere                  
2016                       ALLOW       Anywhere                  
443                        ALLOW       Anywhere                  
20,21,22,80,888,8888/tcp (v6) ALLOW       Anywhere (v6)             
39000:40000/tcp (v6)       ALLOW       Anywhere (v6)             
888/tcp (v6)               ALLOW       Anywhere (v6)             
2015 (v6)                  ALLOW       Anywhere (v6)             
2016 (v6)                  ALLOW       Anywhere (v6)             
443 (v6)                   ALLOW       Anywhere (v6) 

2.防火墙拒绝 2016 端口访问

$ sudo ufw deny 2016
Rule updated
Rule updated (v6)

$ sudo ufw status
Status: active

To                         Action      From
--                         ------      ----
20,21,22,80,888,8888/tcp   ALLOW       Anywhere                  
39000:40000/tcp            ALLOW       Anywhere                  
888/tcp                    ALLOW       Anywhere                  
2015                       ALLOW       Anywhere                  
2016                       DENY        Anywhere                  
443                        ALLOW       Anywhere                  
20,21,22,80,888,8888/tcp (v6) ALLOW       Anywhere (v6)             
39000:40000/tcp (v6)       ALLOW       Anywhere (v6)             
888/tcp (v6)               ALLOW       Anywhere (v6)             
2015 (v6)                  ALLOW       Anywhere (v6)             
2016 (v6)                  DENY        Anywhere (v6)             
443 (v6)                   ALLOW       Anywhere (v6) 

3.查看 2015 端口进程占用情况

$ lsof -i :2015
caddy   829 root    6u  IPv6  14652      0t0  TCP *:2015 (LISTEN)

 

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值