查看状态:systemctl status firewalld或者 firewall-cmd --state
禁用防火墙:systemctl stop firewalld
开启防火墙命令:systemctl start firewalld
设置开机启动:systemctl enable firewalld
停止并禁用开机启动:sytemctl disable firewalld
查看端口列表:firewall-cmd --permanent --list-port
firewall开启端口命令:firewall-cmd --zone=public --add-port=80/tcp --permanent
firewall关闭端口命令:firewall-cmd --zone=public --remove-port=80/tcp --permanent
批量添加区间端口:firewall-cmd --zone=public --add-port=4400-4600/udp --permanent
重启防火墙命令:firewall-cmd --reload 或者 service firewalld restart