查询开放的端口和规则
firewall-cmd --zone=public --list-all
开放端口
firewall-cmd --zone=public --add-port=443/tcp --permanent
重载
firewall-cmd --reload
移除端口
firewall-cmd --zone=public --remove-port=443/udp --permanent
移除端口、添加端口都要重载
添加规则 端口5233 针对172.0.0.75开放
firewall-cmd --permanent --add-rich-rule="rule family="ipv4" source address="172.0.0.75" port protocol="tcp" port="5233" accept"
移除规则
firewall-cmd --permanent --remove-rich-rule="rule family="ipv4" source address="172.0.0.75" port protocol="tcp" port="5233" accept"
添加和移除都要重载
之前的移除命令
firewall-cmd --remove-rich-rule='rule family="ipv4" source address="172.0.0.75" port port="5233" protocol="tcp" accept'
没生效原因是没加
--permanent