1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57
| systemctl stop firewalld.service
systemctl start firewalld.service
systemctl disable firewalld.service
systemctl enable firewalld.service
sudo firewall-cmd --state
sudo firewall-cmd --get-default-zone
sudo firewall-cmd --list-all
sudo firewall-cmd --list-services
sudo firewall-cmd --add-service=https
sudo firewall-cmd --permanent --add-service=https sudo firewall-cmd --reload
sudo firewall-cmd --remove-service=vnc-server --permanent sudo firewall-cmd --reload
sudo firewall-cmd --list-ports
sudo firewall-cmd --add-port=80/tcp --permanent sudo firewall-cmd --reload
sudo firewall-cmd --remove-port=80/tcp --permanent sudo firewall-cmd --reload
sudo firewall-cmd --permanent --add-rich-rule 'rule family="ipv4" source address="10.8.1.8" port port="22" protocol="tcp" accept' sudo firewall-cmd --permanent --add-rich-rule 'rule family="ipv4" source address="10.8.1.0/24" port port="22" protocol="tcp" accept' sudo firewall-cmd --reload
sudo firewall-cmd --permanent --add-rich-rule 'rule family="ipv4" source address="10.8.1.8" port port="22" protocol="tcp" reject' sudo firewall-cmd --permanent --add-rich-rule 'rule family="ipv4" source address="10.8.1.0/24" port port="22" protocol="tcp" reject' sudo firewall-cmd --reload
sudo firewall-cmd --list-rich-rules
|