1
0
Fork 0
mirror of https://github.com/tldr-pages/tldr.git synced 2025-04-22 10:22:08 +02:00
tldr/pages/linux/firewall-cmd.md
bl-ue 8ebd171d6f
*: fix typos reported by Hunspell (#5848)
Co-authored-by: marchersimon <50295997+marchersimon@users.noreply.github.com>
Co-authored-by: Seth Falco <seth@falco.fun>
Co-authored-by: Patrice Denis <patricedenis@users.noreply.github.com>
2021-05-20 16:13:41 -04:00

970 B

firewall-cmd

The firewalld command-line client.

  • View the available firewall zones:

firewall-cmd --get-active-zones

  • View the rules which are currently applied:

firewall-cmd --list-all

  • Permanently move the interface into the block zone, effectively blocking all communication:

firewall-cmd --permanent --zone={{block}} --change-interface={{enp1s0}}

  • Permanently open the port for a service in the specified zone (like port 443 when in the public zone):

firewall-cmd --permanent --zone={{public}} --add-service={{https}}

  • Permanently close the port for a service in the specified zone (like port 80 when in the public zone):

firewall-cmd --permanent --zone={{public}} --remove-service={{http}}

  • Permanently open two arbitrary ports in the specified zone:

firewall-cmd --permanent --zone={{public}} --add-port={{25565/tcp}} --add-port={{19132/udp}}

  • Reload firewalld to force rule changes to take effect:

firewall-cmd --reload