01-03 linux 防火墙配置

  • 最近在搭建图片服务器:在linux中完成后,本机无法访问,发现是防火墙没有打开,稍微研究了一下,顺便做个笔记。

1、列出所有开放的端口:

[root@bogon ~]# firewall-cmd --list-all
public (active)
  target: default
  icmp-block-inversion: no
  interfaces: ens33
  sources: 
  services: ssh dhcpv6-client
  ports: 80/tcp 81/tcp 8080/tcp 82/tcp
  protocols: 
  masquerade: no
  forward-ports: 
  source-ports: 
  icmp-blocks: 
  rich rules: 
  • 说明:
    firewall-cmd:是linux中提供的操作firewall的一个工具

2、添加开放端口:

[root@bogon ~]# firewall-cmd --permanent --zone=public --add-port=8081/tcp
success
  • 说明:
    –permanent:表示设置为持久
    –zone=public:指定的zone为public
    –add-port:表示添加一个端口

3、删除一个开放端口:

[root@bogon ~]# firewall-cmd --permanent --zone=public --remove-port=8081/tcp
success

4、重新加载防火墙配置文件:

[root@bogon ~]# firewall-cmd --reload 
success

5、查看防火墙状态

[root@bogon ~]# systemctl status firewalld.service 
● firewalld.service - firewalld - dynamic firewall daemon
   Loaded: loaded (/usr/lib/systemd/system/firewalld.service; enabled; vendor preset: enabled)
   Active: active (running) since 三 2018-06-06 12:36:27 EDT; 1 day 9h ago
     Docs: man:firewalld(1)
 Main PID: 3403 (firewalld)
   CGroup: /system.slice/firewalld.service
           └─3403 /usr/bin/python -Es /usr/sbin/firewalld --nofork --nopid
​
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
607 22:31:06 bogon firewalld[3403]: WARNING: COMMAND_FAILED: '/usr/sbin/....
Hint: Some lines were ellipsized, use -l to show in full.

6、防火墙启动操作:

启动防火墙
systemctl start firewalld.service
关闭防火墙
systemctl stop firewalld.service
重新启动防火墙
systemctl restart firewalld.service

猜你喜欢

转载自blog.csdn.net/qq_34231253/article/details/80619917