前言:centos7之前的防火墙是叫iptables,但是在centos7的防火墙就叫firewallle
1.我们先查看防火墙的的状态,有着running字样的就表示防火墙是在运行的状态
systemctl status firewalld
● firewalld.service - firewalld - dynamic firewall daemon
Loaded: loaded (/usr/lib/systemd/system/firewalld.service; enabled; vendor preset: enabled)
Active: active (running) since 五 2022-01-07 16:40:18 CST; 9s ago
Docs: man:firewalld(1)
Main PID: 1774 (firewalld)
Tasks: 2
Memory: 23.4M
CGroup: /system.slice/firewalld.service
└─1774 /usr/bin/python2 -Es /usr/sbin/firewalld --nofork --nopid
2.查看防火墙的规则
firewall-cmd --list-all
[root@localhost conf]# firewall-cmd --list-all
public (active)
target: default
icmp-block-inversion: no
interfaces: enp1s0
sources: 192.168.5.226
services: dhcpv6-client http ssh
ports: 3344/tcp 3355/tcp 9000/tcp 9000/udp 21/tcp 139/tcp 445/tcp 137/udp 138/udp 3000/tcp 8080/tcp 8081/tcp 9001/tcp 5000/tcp 8000/tcp
protocols:
masquerade: no
forward-ports:
source-ports:
icmp-blocks:
3.让防火墙放行3344端口
firewall-cmd --permanent --add-port=3344/tcp
参数解释:--permanent 表示永久开放的意思
--add-port 添加端口
4.删除指定的端口
firewall-cmd --premanent --remove-port=3344/tcp
参数解释:--permanent 表示永久开放的意思
- -reload 删除端口