firewall-cmd [--zone=<zone>] --add-port=<port>[-<port>]/<protocol> [--timeout=<seconds>]
systemctl status firewalld
systemctl start firewalld
firewall-cmd --zone=public --add-port=3306/tcp --permanent
firewall-cmd --zone=public --add-port=8888-9999/tcp --permanent
firewall-cmd --reload
firewall-cmd --zone=public --query-port=3306/tcp
,提示“yes”表示已开启。firewall-cmd --zone=public --remove-port=3306/tcp --permanent
firewall-cmd --list-all
add
-port=3306/tcp --permanentremove
-port=3306/tcp --permanentquery
-port=3306/tcp