1.如果你用的是Framwork框架
重点在于c:/Windows/Systm32/FirewallAPI.dll,要将这个dll复制并引用到自己的项目中
ZNetFwMangerHelper.NetFwAddPorts("8001", 8001, "TCP");
public class ZNetFwMangerHelper
{
/// <summary>
/// 添加防火墙例外端口
/// </summary>
/// <param name="name">
/// 名称
/// </param>
/// <param name="port">
/// 端口
/// </param>
/// <param name="protocol">
/// 协议(TCP、UDP)
/// </param>
public static void NetFwAddPorts(string name, int port, string protocol)
{
//创建firewall管理类的实例
INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));
INetFwOpenPort objPort = (INetFwOpenPort)Activator.CreateInstance(
Type.GetTypeFromProgID("HNetCfg.FwOpenPort"));
objPort.Name = name;
objPort.Port = port;
if (protocol.ToUpper() == "TCP")
{
objPort.Protocol = NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_TCP;
}
else
{
objPort.Protocol = NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_UDP;
}
objPort.Scope = NET_FW_SCOPE_.NET_FW_SCOPE_ALL;
objPort.Enabled = true;
bool exist = false;
//加入到防火墙的管理策略
foreach (INetFwOpenPort mPort in netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts)
{
if (objPort == mPort)
{
exist = true;
break;
}
}
if (!exist) netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Add(objPort);
}
/// <summary>
/// 将应用程序添加到防火墙例外
/// </summary>
/// <param name="name">
/// 应用程序名称
/// </param>
/// <param name="executablePath">
/// 应用程序可执行文件全路径
/// </param>
public static void NetFwAddApps(string name, string executablePath)
{
//创建firewall管理类的实例
INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));
INetFwAuthorizedApplication app = (INetFwAuthorizedApplication)Activator.CreateInstance(
Type.GetTypeFromProgID("HNetCfg.FwAuthorizedApplication"));
//在例外列表里,程序显示的名称
app.Name = name;
//程序的路径及文件名
app.ProcessImageFileName = executablePath;
//是否启用该规则
app.Enabled = true;
bool exist = false;
//加入到防火墙的管理策略
foreach (INetFwAuthorizedApplication mApp in netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications)
{
if (app == mApp)
{
exist = true;
break;
}
}
if (!exist) netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications.Add(app);
}
/// <summary>
/// 删除防火墙例外端口
/// </summary>
/// <param name="port">
/// 端口
/// </param>
/// <param name="protocol">
/// 协议(TCP、UDP)
/// </param>
public static void NetFwDelPorts(int port, string protocol)
{
INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));
if (protocol == "TCP")
{
netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Remove(port, NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_TCP);
}
else
{
netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Remove(port, NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_UDP);
}
}
/// <summary>
/// 删除防火墙例外中应用程序
/// </summary>
/// <param name="executablePath">
/// 程序的绝对路径
/// </param>
public static void NetFwDelApps(string executablePath)
{
INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));
netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications.Remove(executablePath);
}
}
2.如果你用的是.net6框架
ZNetFwMangerHelper.NetFwAddPorts("8001", 8001, "TCP");
/// <summary>
/// 添加防火墙例外端口
/// </summary>
/// <param name="fname">
/// 名称
/// </param>
/// <param name="port">
/// 端口
/// </param>
/// <param name="protocol">
/// 协议(TCP、UDP)
/// </param>
public static bool NetFwAddPorts(string fname = "9005", int port = 9005, string protocol = "tcp")
{
try
{
if(IsInboundRuleExists(fname)==false)
{
Process process = new Process();
process.StartInfo.FileName = "netsh";
process.StartInfo.Arguments = $"advfirewall firewall add rule name={fname} dir=in action=allow protocol={protocol} localport={port}"; // 替换为实际的命令参数
process.StartInfo.UseShellExecute = false;
process.StartInfo.CreateNoWindow = true;
process.StartInfo.RedirectStandardOutput = true;
process.Start();
string output = process.StandardOutput.ReadToEnd();
process.WaitForExit();
return true;
}else{
return false;
}
}
catch (Exception ex)
{
LogUtil.LogError(ex);
return false;
}
/// <summary>
/// 判断是否有该入站规则
/// </summary>
/// <param name="ruleName"></param>
/// <returns></returns>
public static bool IsInboundRuleExists(string ruleName)
{
Process process = new Process();
process.StartInfo.FileName = "netsh";
process.StartInfo.Arguments = $"advfirewall firewall show rule name={ruleName}"; // 替换为实际的命令参数
process.StartInfo.UseShellExecute = false;
process.StartInfo.CreateNoWindow = true;
process.StartInfo.RedirectStandardOutput = true;
process.Start();
string output = process.StandardOutput.ReadToEnd();
bool ruleExists = output.Contains("已启用");
process.WaitForExit();
return ruleExists;
}
}