- 方式一
- 方式二
- 开放端口:8080
/sbin/iptable -I INPUT -p tcp —dprot 8080-j ACCEPT - 关闭防火墙
systemctl stop firewalld.service - 开启防火墙
systemctl start firewalld.service - 关闭开机自启动
systemctl disable firewalld.service - 开启开机自启动
systemctl enable firewalld.service - 查看某个端口是否开启
firewall-cmd —query-port=80/tcp - 查看防火墙状态
firewall-cmd —state - 查看防火墙开放的端口
firewall-cmd —list-ports - 永久开放某个TCP端口
firewall-cmd —zone=public —add-port=80/tcp —permanent - 永久关闭某个TCP端口
firewall-cmd —zone=public —remove-port=80/tcp —permanent - 永久开放某个UDP端口
firewall-cmd —zone=public —add-port=80/udp —permanent - 永久关闭某个UDP端口
firewall-cmd —zone=public —remove-port=80/udp —permanent - 批量添加区间端口
firewall-cmd —zone=public —add-port=8081-8082/tcp —permanent
firewall-cmd —zone=public —add-port=8081-8082/udp —permanent
方式一
1.开启防火墙
systemctl start firewalld
2.开放指定端口
firewall-cmd —zone=public —add-prot=1935/tcp —permanent
命令含义:
—zone #作用域
—add-prot=1935/tcp #添加端口,格式为:端口/通讯协议
—permanent #永久生效,没有此参数重启后失效
3.重新加载后生效
firewall-cmd —reload
或systemctl restart firewalld.service
4.查看端口号
netstat -ntlp //查看当前所有tcp端口
netstat - ntulp |grep 1935 //查看所有1935端口使用情况
5.查看防火墙开启的端口
firewall-cmd —list-ports
方式二
开放端口:8080
/sbin/iptable -I INPUT -p tcp —dprot 8080-j ACCEPT
方式三
-A INPUT 0m state —state NEW -m tcp —dprot 8080 0j ACCEPT
service iptables restart