1 开启firewalld 的debug日志,编辑 /etc/sysconfig/firewalld文件加入debug参数,重启firewalld,日志输出到 /var/log/firewalld:
root@xxx:[/var/log]$vi /etc/sysconfig/firewalld
# firewalld command line args
# possile values: --debug
FIREWALLD_ARGS= --debug=10
root@xxx:[/var/log]$systemctl restart firewalld.
root@Zabbix:[/var/log]$tail -n 5 /var/log/firewalld
2019-05-23 14:42:15 DEBUG1: config.ZoneAdded('trusted')
2019-05-23 14:42:15 DEBUG1: config.ZoneAdded('work')
2019-05-23 14:42:15 DEBUG1: zone.changeZoneOfInterface('', 'ens192')
2019-05-23 14:42:15 DEBUG1: zone.ZoneOfInterfaceChanged('public', 'ens192')
2019-05-23 14:42:15 DEBUG1: zone.ZoneChanged('public', 'ens192')
root@Zabbix:[/var/log]$
原始firewalld troubleshooting 连接 https://firewalld.org/documentation/howto/debug-firewalld.html
~