It is possible to go back to a more classic iptables setup. First, stop and mask the firewalld service:php
systemctl stop firewalld systemctl mask firewalld
Then, install the iptables-services package:html
yum install iptables-services
Enable the service at boot-time:centos
systemctl enable iptables
Managing the serviceapp
systemctl [stop|start|restart] iptables
Saving your firewall rules can be done as follows:tcp
service iptables save
oride
/usr/libexec/iptables/iptables.init save
开启端口
firewall-cmd --zone=public --add-port=80/tcp --permanentui
命令含义:
--zone #做用域
--add-port=80/tcp #添加端口,格式为:端口/通信协议
--permanent #永久生效,没有此参数重启后失效url
重启防火墙
firewall-cmd --reloadcentos7
参考:https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Security_Guide/sec-Using_Firewalls.htmlspa