# 查看防火墙状态systemctl status firewalld# 开启防火墙systemctl start firewalld# 关闭防火墙systemctl stop firewalld# 永久关闭防火墙systemctl disable firewalld# 临时关闭防火墙systemctl stop firewalld.service# 查看想开的端口是否已开firewall-cmd --query-port=8888/tcpfirewall-cmd --list-all# 开放端口号firewall-cmd --add-port=80/tcp --permanentfirewall-cmd --add-service=http --permanent# 开通一个范围的端口firewall-cmd --add-port=8000-9999/tcp --permanentfirewall-cmd --add-port=27017-27018/tcp --permanent# 关闭端口firewall-cmd --permanent --remove-port=8888/tcp# 要使配置生效一定要重新载入配置firewall-cmd --reload# 查看防火墙状态firewall-cmd --state