防火墙开关
- 查看防火墙状态,输出包含绿色的’running’字符表示防火墙开启了
systemctl status firewalld.service
- 停止命令
systemctl stop firewalld.service
- 开启命令
systemctl start firewalld.service
- 关闭开机自启动命令
systemctl disable firewalld.service
- 开启开机自启动命令
systemctl enable firewalld.service
- 一键停止防火墙
systemctl stop firewalld.service && systemctl disable firewalld.service
- 一键开启防火墙
systemctl start firewalld.service && systemctl enable firewalld.service
端口放行
- 查看已经打开端口列表(前提是防火墙已开)
firewall-cmd --list-ports
- 查询单个端口开关情况
firewall-cmd --query-port=80/tcp
- 开端口(需重启防火墙生效)
firewall-cmd --zone=public --add-port=80/tcp --permanent
- 关端口(需重启防火墙生效)
firewall-cmd --zone=public --remove-port=80/tcp --permanent
- 重启防火墙
firewall-cmd --reload
- 一键开端口
cat << 'EOF' > /tmp/oport
firewall-cmd --zone=public --add-port=$1/tcp --permanent
firewall-cmd --reload
firewall-cmd --list-ports
EOF
sh /tmp/oport 80
- 一键关端口
cat << 'EOF' > /tmp/cport
firewall-cmd --zone=public --remove-port=$1/tcp --permanent
firewall-cmd --reload
firewall-cmd --list-ports
EOF
sh /tmp/cport 80