防火墙
1.查看防火墙端口状态
$ sudo ufw status
Status: active
To Action From
-- ------ ----
20,21,22,80,888,8888/tcp ALLOW Anywhere
39000:40000/tcp ALLOW Anywhere
888/tcp ALLOW Anywhere
2015 ALLOW Anywhere
443 ALLOW Anywhere
20,21,22,80,888,8888/tcp (v6) ALLOW Anywhere (v6)
39000:40000/tcp (v6) ALLOW Anywhere (v6)
888/tcp (v6) ALLOW Anywhere (v6)
2015 (v6) ALLOW Anywhere (v6)
443 (v6) ALLOW Anywhere (v6)
2.关闭防火墙
$ sudo ufw disable
3.打开防火墙
$ sudo ufw enable
端口
1.防火墙打开端口 2016
$ sudo ufw allow 2016
$ sudo ufw status
Status: active
To Action From
-- ------ ----
20,21,22,80,888,8888/tcp ALLOW Anywhere
39000:40000/tcp ALLOW Anywhere
888/tcp ALLOW Anywhere
2015 ALLOW Anywhere
2016 ALLOW Anywhere
443 ALLOW Anywhere
20,21,22,80,888,8888/tcp (v6) ALLOW Anywhere (v6)
39000:40000/tcp (v6) ALLOW Anywhere (v6)
888/tcp (v6) ALLOW Anywhere (v6)
2015 (v6) ALLOW Anywhere (v6)
2016 (v6) ALLOW Anywhere (v6)
443 (v6) ALLOW Anywhere (v6)
2.防火墙拒绝 2016 端口访问
$ sudo ufw deny 2016
Rule updated
Rule updated (v6)
$ sudo ufw status
Status: active
To Action From
-- ------ ----
20,21,22,80,888,8888/tcp ALLOW Anywhere
39000:40000/tcp ALLOW Anywhere
888/tcp ALLOW Anywhere
2015 ALLOW Anywhere
2016 DENY Anywhere
443 ALLOW Anywhere
20,21,22,80,888,8888/tcp (v6) ALLOW Anywhere (v6)
39000:40000/tcp (v6) ALLOW Anywhere (v6)
888/tcp (v6) ALLOW Anywhere (v6)
2015 (v6) ALLOW Anywhere (v6)
2016 (v6) DENY Anywhere (v6)
443 (v6) ALLOW Anywhere (v6)
3.查看 2015 端口进程占用情况
$ lsof -i :2015
caddy 829 root 6u IPv6 14652 0t0 TCP *:2015 (LISTEN)