关于CentOS7.5防火墙的相关命令

[root@localhost apps]# telnet 127.0.0.1 80
Trying 127.0.0.1...
telnet: connect to address 127.0.0.1: Connection refused
[root@localhost apps]# 
[root@localhost apps]# 
[root@localhost apps]# 
[root@localhost apps]# 
[root@localhost apps]# telnet 127.0.0.1 8888
Trying 127.0.0.1...
Connected to 127.0.0.1.
Escape character is '^]'.





^CConnection closed by foreign host.
[root@localhost apps]# 
[root@localhost apps]# 
[root@localhost apps]# 192.168.1.10
-bash: 192.168.1.10: 未找到命令
[root@localhost apps]# telnet 192.168.1.10
Trying 192.168.1.10...
telnet: connect to address 192.168.1.10: Connection refused
[root@localhost apps]# telnet 192.168.1.10 3306
Trying 192.168.1.10...
telnet: connect to address 192.168.1.10: Connection refused
[root@localhost apps]# telnet 192.168.1.10 2181
Trying 192.168.1.10...
Connected to 192.168.1.10.
Escape character is '^]'.
^CConnection closed by foreign host.
[root@localhost apps]# telnet 192.168.1.20 3306
Trying 192.168.1.20...
telnet: connect to address 192.168.1.20: No route to host
[root@localhost apps]# 
[root@localhost apps]# 
[root@localhost apps]# ping 192.168.1.20
PING 192.168.1.20 (192.168.1.20) 56(84) bytes of data.
64 bytes from 192.168.1.20: icmp_seq=1 ttl=64 time=0.335 ms
64 bytes from 192.168.1.20: icmp_seq=2 ttl=64 time=0.307 ms
64 bytes from 192.168.1.20: icmp_seq=3 ttl=64 time=0.308 ms
64 bytes from 192.168.1.20: icmp_seq=4 ttl=64 time=0.534 ms
^C
--- 192.168.1.20 ping statistics ---
4 packets transmitted, 4 received, 0% packet loss, time 3000ms
rtt min/avg/max/mdev = 0.307/0.371/0.534/0.094 ms

如上所示,可以ping通 但是telnet不通过
这是由于防火墙的问题

#centos7启动防火墙
systemctl start firewalld.service
#centos7停止防火墙/关闭防火墙
systemctl stop firewalld.service
#centos7重启防火墙
systemctl restart firewalld.service
 
 
#设置开机启用防火墙
systemctl enable firewalld.service
#设置开机不启动防火墙
systemctl disable firewalld.service

开放端口
firewall-cmd --zone=public --add-port=80/tcp --permanent
#说明:
#–zone #作用域
#–add-port=80/tcp #添加端口,格式为:端口/通讯协议
#–permanent 永久生效,没有此参数重启后失效
 
#多个端口:
firewall-cmd --zone=public --add-port=80-90/tcp --permanent

#centos7查看防火墙所有信息
firewall-cmd --list-all
#centos7查看防火墙开放的端口信息
firewall-cmd --list-ports
#删除
firewall-cmd --zone=public --remove-port=80/tcp --permanent
#查看防火墙状态
firewall-cmd --state

开启端口后记得重启

firewall -cmd --reload
發表評論
所有評論
還沒有人評論,想成為第一個評論的人麼? 請在上方評論欄輸入並且點擊發布.
相關文章