firewall-cmd —list-all

    1. sudo firewall-cmd --zone=public --add-port=/tcp --permanent
    2. # zone 作用域
    3. sudo systemctl restart firewalld.service