1.查看版本:
firewall-cmd --version
2.服務啓動
查看防火牆狀態 systemctl status firewalld
停止 firewall systemctl stop firewalld
啓動 firewall systemctl start firewalld
重啓 firewall systemctl restart firewalld
firewall是否開機啓動 systemctl is-enabled firewalld
開機啓 firewall systemctl enable firewalld.service
開機禁 firewall systemctl disable firewalld.service
3.查看 firewall-cmd狀態
即查看 firewall 防火牆程序是否正在運行:
firewall-cmd --state
4.查看已打開的所有端口
firewall-cmd --zone=public --list-ports
5.開啓指定端口:
firewall-cmd --zone=public --add-port=443/tcp --permanent
–permanent 永久生效,沒有此參數重啓後失效
6.重新加載firewall
修改配置後,必須重新加載才能生效:
firewall-cmd --reload
7.關閉指定端口:
firewall-cmd --zone=public --remove-port=443/tcp --permanent
8.示例:
firewall-cmd --zone=public --list-ports
firewall-cmd --zone=public --remove-port=443/tcp --permanent
firewall-cmd --reload
firewall-cmd --zone=public --list-ports