###Centos 7tcp
firewall-cmd --list-ports
firewall-cmd --zone=public --add-port=80/tcp --permanent –zone #做用域 –add-port=80/tcp #添加端口,格式为:端口/通信协议 –permanent #永久生效,没有此参数重启后失效
firewall-cmd --zone=public --remove-port=9005/tcp --permanent
firewall-cmd --reload #重启firewall systemctl start firewalld.service #启动 systemctl start firewalld.service #重启 systemctl stop firewalld.service #中止firewall systemctl disable firewalld.service #禁止firewall开机启动 firewall-cmd --state #查看默认防火墙状态(关闭后显示notrunning,开启后显示running)
/sbin/iptables -I INPUT -p tcp --dport 80 -j ACCEPT /sbin/iptables -I INPUT -p tcp --dport 22 -j ACCEPT /sbin/iptables -I INPUT -p tcp --dport 8080 -j ACCEPT
etc/rc.d/init.d/iptables save
/etc/init.d/iptables status
开启: chkconfig iptables on 关闭: chkconfig iptables off
开启: service iptables start 关闭: service iptables stop