一、查询有哪些端口是开启的。tcp
firewall-cmd --list-port
二、查询某个端口号是否开启,如80端口。code
firewall-cmd --query-port=80/tcp
三、开启端口,如80端口。rem
firewall-cmd --permanent --zone=public --add-port=80/tcp
四、取消端口开放,如80端口。cmd
firewall-cmd --permanent --zone=public --remove-port=80/tcp
五、容许某个端口(如80端口)经过public区域,当即生效且永久生效。class
firewall-cmd --reload
六、防火墙相关命令防火墙
启动: systemctl start firewalldim
查看状态: systemctl status firewalld 查询
中止: systemctl disable firewalldtop
禁用: systemctl stop firewalldimg