IT/linux
[linux] firewalld
주니-
2023. 10. 11. 20:54
/etc/firewalld/zones/
firewalld-cmd --get-default-zone
firewalld-cmd --list-all
#포트 추가
firewalld-cmd --zone=public --add-port=8080/tcp
#포트 제거
firewalld-cmd --zone=public --remove-port=8080/tcp
#port 범위 허용
firewall-cmd --add-port=8000-9000/tcp
firewall-cmd --remove-port=8000-9000/tcp
#ip 대역 허용
firewall-cmd --add-source=192.168.0.0/24
firewall-cmd --remove-source=192.168.0.0/24
#승인
firewalld-cmd --permanent --add-rich-rule='rule family="ipv4" source addreess=x.x.x.x port port="80" protocol="tcp" accept'
#거절
firewalld-cmd --permanent --add-rich-rule='rule family="ipv4" source addreess=x.x.x.x port port="80" protocol="tcp" drop'
firewalld-cmd --permanent --add-rich-rule='rule family="ipv4" source addreess=x.x.x.x port port="80" protocol="tcp" reject'
#재시작
firewalld-cmd --reload